QEMU 0.8.2 allows local users to crash a virtual machine via the divisor operand to the aam instruction, as demonstrated by "aam 0x0," which triggers a divide-by-zero error.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/23731 | vdb entry third party advisory |
http://www.debian.org/security/2007/dsa-1284 | third party advisory vendor advisory |
http://secunia.com/advisories/25073 | third party advisory |
http://taviso.decsystem.org/virtsec.pdf | third party advisory technical description |
http://lists.gnu.org/archive/html/qemu-devel/2007-04/msg00650.html | third party advisory mailing list |
http://www.mandriva.com/security/advisories?name=MDVSA-2008:162 | third party advisory vendor advisory |
http://osvdb.org/35498 | vdb entry broken link |
http://www.vupen.com/english/advisories/2007/1597 | vdb entry third party advisory |
http://secunia.com/advisories/29129 | third party advisory |
http://secunia.com/advisories/25095 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34046 | vdb entry third party advisory |
http://lists.gnu.org/archive/html/qemu-devel/2007-04/msg00651.html | mailing list third party advisory patch |