Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.882749
Categoría:CentOS Local Security Checks
Título:CentOS Update for qemu-img CESA-2017:1681 centos7
Resumen:Check the version of qemu-img
Descripción:Summary:
Check the version of qemu-img

Vulnerability Insight:
Kernel-based Virtual Machine (KVM) is a
full virtualization solution for Linux on a variety of architectures.
The qemu-kvm package provides the user-space component for running virtual
machines that use KVM.

Security Fix(es):

* Quick Emulator (QEMU) built with Network Block Device (NBD) Server
support was vulnerable to a null-pointer dereference issue. The flaw could
occur when releasing a client, which was not initialized due to failed
negotiation. A remote user or process could exploit this flaw to crash the
qemu-nbd server (denial of service). (CVE-2017-9524)

Affected Software/OS:
qemu-img on CentOS 7

Solution:
Please Install the Updated Packages.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2017-9524
BugTraq ID: 99011
http://www.securityfocus.com/bid/99011
Debian Security Information: DSA-3925 (Google Search)
http://www.debian.org/security/2017/dsa-3925
http://www.openwall.com/lists/oss-security/2017/06/12/1
https://lists.gnu.org/archive/html/qemu-devel/2017-05/msg06240.html
https://lists.gnu.org/archive/html/qemu-devel/2017-06/msg02321.html
RedHat Security Advisories: RHSA-2017:1681
https://access.redhat.com/errata/RHSA-2017:1681
RedHat Security Advisories: RHSA-2017:1682
https://access.redhat.com/errata/RHSA-2017:1682
RedHat Security Advisories: RHSA-2017:2408
https://access.redhat.com/errata/RHSA-2017:2408
CopyrightCopyright (C) 2017 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.