The v9fs_xattrcreate function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to obtain sensitive host heap memory information by reading xattribute values before writing to them.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://lists.gnu.org/archive/html/qemu-devel/2016-10/msg01790.html | mailing list third party advisory patch |
https://security.gentoo.org/glsa/201611-11 | third party advisory vendor advisory |
http://www.openwall.com/lists/oss-security/2016/10/30/7 | third party advisory mailing list |
http://www.openwall.com/lists/oss-security/2016/10/28/1 | third party advisory mailing list |
http://git.qemu.org/?p=qemu.git%3Ba=commit%3Bh=eb687602853b4ae656e9236ee4222609f3a6887d | |
https://lists.debian.org/debian-lts-announce/2018/11/msg00038.html | third party advisory mailing list |
http://www.securityfocus.com/bid/93955 | vdb entry third party advisory |