Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.703087
Kategorie:Debian Local Security Checks
Titel:Debian Security Advisory DSA 3087-1 (qemu - security update)
Zusammenfassung:Paolo Bonzini of Red Hat discovered that;the blit region checks were insufficient in the Cirrus VGA emulator in qemu, a fast;processor emulator. A privileged guest user could use this flaw to write into qemu;address space on the host, potentially escalating their privileges to those of the;qemu host process.
Beschreibung:Summary:
Paolo Bonzini of Red Hat discovered that
the blit region checks were insufficient in the Cirrus VGA emulator in qemu, a fast
processor emulator. A privileged guest user could use this flaw to write into qemu
address space on the host, potentially escalating their privileges to those of the
qemu host process.

Affected Software/OS:
qemu on Debian Linux

Solution:
For the stable distribution (wheezy),
this problem has been fixed in version 1.1.2+dfsg-6a+deb7u6.

We recommend that you upgrade your qemu packages.

CVSS Score:
4.6

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2014-8106
BugTraq ID: 71477
http://www.securityfocus.com/bid/71477
Debian Security Information: DSA-3087 (Google Search)
http://www.debian.org/security/2014/dsa-3087
Debian Security Information: DSA-3088 (Google Search)
http://www.debian.org/security/2014/dsa-3088
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/154656.html
http://lists.gnu.org/archive/html/qemu-devel/2014-12/msg00508.html
http://www.openwall.com/lists/oss-security/2014/12/04/8
RedHat Security Advisories: RHSA-2015:0349
http://rhn.redhat.com/errata/RHSA-2015-0349.html
RedHat Security Advisories: RHSA-2015:0624
http://rhn.redhat.com/errata/RHSA-2015-0624.html
RedHat Security Advisories: RHSA-2015:0643
http://rhn.redhat.com/errata/RHSA-2015-0643.html
RedHat Security Advisories: RHSA-2015:0795
http://rhn.redhat.com/errata/RHSA-2015-0795.html
RedHat Security Advisories: RHSA-2015:0867
http://rhn.redhat.com/errata/RHSA-2015-0867.html
RedHat Security Advisories: RHSA-2015:0868
http://rhn.redhat.com/errata/RHSA-2015-0868.html
RedHat Security Advisories: RHSA-2015:0891
http://rhn.redhat.com/errata/RHSA-2015-0891.html
http://secunia.com/advisories/60364
XForce ISS Database: qemu-cve20148106-sec-bypass(99126)
https://exchange.xforce.ibmcloud.com/vulnerabilities/99126
CopyrightCopyright (c) 2014 Greenbone Networks GmbH http://greenbone.net

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.