CVE-2016-5126
HIGH severity · CVSS 7.8 · Out-of-bounds write
7.8CVSS HIGH
Summary
Heap-based buffer overflow in the iscsi_aio_ioctl function in block/iscsi.c in QEMU allows local guest OS users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code via a crafted iSCSI asynchronous I/O ioctl call.
Impact & exploitability
Attack vectorLocal
Attack complexityLow
Privileges requiredLow
User interactionNone
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
Exploit probability (EPSS)1%
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products we track (1)
Recommendation
Apply the vendor fix promptly. Open any affected product above for its exact safe version.
Additional information
- NVD record
- http://git.qemu.org/?p=qemu.git%3Ba=commit%3Bh=a6b3167fa0e825aebb5a7cd8b437b6d41584a196
- http://rhn.redhat.com/errata/RHSA-2016-1606.htmlAdvisory
- http://rhn.redhat.com/errata/RHSA-2016-1607.htmlAdvisory
- http://rhn.redhat.com/errata/RHSA-2016-1653.htmlAdvisory
- http://rhn.redhat.com/errata/RHSA-2016-1654.htmlAdvisory
- http://rhn.redhat.com/errata/RHSA-2016-1655.htmlAdvisory
- http://rhn.redhat.com/errata/RHSA-2016-1756.htmlAdvisory
- http://rhn.redhat.com/errata/RHSA-2016-1763.htmlAdvisory