1
PublicDateAtUSN: 2016-06-01
2
Candidate: CVE-2016-4453
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4453
6
https://lists.gnu.org/archive/html/qemu-devel/2016-05/msg05270.html
7
https://usn.ubuntu.com/usn/usn-3047-1
9
The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU allows
10
local guest OS administrators to cause a denial of service (infinite loop
11
and QEMU process crash) via a VGA command.
14
tyhicks> Marking as negligible because a privileged user inside the guest
15
could shut down the guest OS.
17
https://bugzilla.redhat.com/show_bug.cgi?id=1336650
19
Discovered-by: Li Qiang
23
upstream_qemu-kvm: needs-triage
24
precise_qemu-kvm: released (1.0+noroms-0ubuntu14.29)
26
vivid/ubuntu-core_qemu-kvm: DNE
27
vivid/stable-phone-overlay_qemu-kvm: DNE
33
upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=4e68a0ee17dad7b8d870df0081d4ab2e079016c2
34
upstream_qemu: needs-triage
36
trusty_qemu: released (2.0.0+dfsg-2ubuntu1.26)
37
vivid/ubuntu-core_qemu: DNE
38
vivid/stable-phone-overlay_qemu: DNE
39
wily_qemu: ignored (reached end-of-life)
40
xenial_qemu: released (1:2.5+dfsg-5ubuntu10.3)
41
devel_qemu: not-affected (1:2.6+dfsg-3ubuntu1)