QEMU: net: ignore packets with large size
Published Oct 9, 2018
9.8
CRITICALCVSS 3.1
EPSS 4.65%
Description
qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact.
Affected products
No data.
Configuration 1
Configuration 2
- 8.0
- 9.0
Configuration 3
- 14.04
- 16.04
- 18.04
- 18.10
Configuration 4
- 10
- 13
- 14
- 4.0
- 4.3
No data.
Red Hat Enterprise Linux 7
qemu-kvm-ma-10:2.12.0-33.el7
Fixed · RHSA-2019:2166
Red Hat OpenStack Platform 10.0 (Newton)
qemu-kvm-rhev-10:2.12.0-33.el7
Fixed · RHSA-2019:2425
Red Hat OpenStack Platform 13.0 (Queens)
qemu-kvm-rhev-10:2.12.0-33.el7
Fixed · RHSA-2019:2425
Red Hat OpenStack Platform 14.0 (Rocky)
qemu-kvm-rhev-10:2.12.0-33.el7
Fixed · RHSA-2019:2425
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7
qemu-kvm-rhev-10:2.12.0-33.el7
Fixed · RHSA-2019:2553
Red Hat Virtualization Engine 4.3
qemu-kvm-rhev-10:2.12.0-33.el7
Fixed · RHSA-2019:2553
Red Hat Enterprise Linux 5
kvm
Not affected
Red Hat Enterprise Linux 6
qemu-kvm
Will not fix
Red Hat Enterprise Linux 7
qemu-kvm
Will not fix
Red Hat Enterprise Linux 8
qemu-kvm
Not affected
Red Hat OpenStack Platform 12 (Pike)
qemu-kvm-rhev
Affected
Red Hat OpenStack Platform 8 (Liberty)
qemu-kvm-rhev
Will not fix
Red Hat OpenStack Platform 9 (Mitaka)
qemu-kvm-rhev
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | qemu-kvm-ma-10:2.12.0-33.el7 | Fixed | RHSA-2019:2166 |
| Red Hat OpenStack Platform 10.0 (Newton) | qemu-kvm-rhev-10:2.12.0-33.el7 | Fixed | RHSA-2019:2425 |
| Red Hat OpenStack Platform 13.0 (Queens) | qemu-kvm-rhev-10:2.12.0-33.el7 | Fixed | RHSA-2019:2425 |
| Red Hat OpenStack Platform 14.0 (Rocky) | qemu-kvm-rhev-10:2.12.0-33.el7 | Fixed | RHSA-2019:2425 |
| Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | qemu-kvm-rhev-10:2.12.0-33.el7 | Fixed | RHSA-2019:2553 |
| Red Hat Virtualization Engine 4.3 | qemu-kvm-rhev-10:2.12.0-33.el7 | Fixed | RHSA-2019:2553 |
| Red Hat Enterprise Linux 5 | kvm | Not affected | n/a |
| Red Hat Enterprise Linux 6 | qemu-kvm | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | qemu-kvm | Will not fix | n/a |
| Red Hat Enterprise Linux 8 | qemu-kvm | Not affected | n/a |
| Red Hat OpenStack Platform 12 (Pike) | qemu-kvm-rhev | Affected | n/a |
| Red Hat OpenStack Platform 8 (Liberty) | qemu-kvm-rhev | Will not fix | n/a |
| Red Hat OpenStack Platform 9 (Mitaka) | qemu-kvm-rhev | Will not fix | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (13)
- http://www.openwall.com/lists/oss-security/2018/10/08/1 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2166 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2425 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2553 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2018-17963 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1636777 Issue Tracking
- https://lists.debian.org/debian-lts-announce/2018/11/msg00038.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://lists.gnu.org/archive/html/qemu-devel/2018-09/msg03267.html mailing-listx_refsource_MLISTMailing ListPatchThird Party Advisory
- https://lists.gnu.org/archive/html/qemu-devel/2018-11/msg06054.html x_refsource_MISCMailing ListPatchThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-17963
- https://usn.ubuntu.com/3826-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2018-17963
- https://www.debian.org/security/2018/dsa-4338 vendor-advisoryx_refsource_DEBIANThird Party Advisory
Change history (0)
No recorded changes yet.