hw/rdma/vmw/pvrdma_cmd.c in QEMU allows attackers to cause a denial of service (NULL pointer dereference or excessive memory allocation) in create_cq_ring or create_qp_rings.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
http://www.openwall.com/lists/oss-security/2018/12/19/3 | mailing list third party advisory patch |
http://www.securityfocus.com/bid/106298 | vdb entry third party advisory |
https://lists.gnu.org/archive/html/qemu-devel/2018-12/msg02823.html | mailing list third party advisory patch |
https://usn.ubuntu.com/3923-1/ | third party advisory vendor advisory |