Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-9922
Description:The cirrus_do_copy function in hw/display/cirrus_vga.c in QEMU (aka Quick Emulator), when cirrus graphics mode is VGA, allows local guest OS privileged users to cause a denial of service (divide-by-zero error and QEMU process crash) via vectors involving blit pitch values.
Test IDs: 1.3.6.1.4.1.25623.1.1.1.2.2016.765   1.3.6.1.4.1.25623.1.1.1.2.2016.764   1.3.6.1.4.1.25623.1.0.891497  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-9922
94803
http://www.securityfocus.com/bid/94803
RHSA-2017:2392
https://access.redhat.com/errata/RHSA-2017:2392
RHSA-2017:2408
https://access.redhat.com/errata/RHSA-2017:2408
[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update
https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html
[oss-security] 20161209 Re: CVE request Qemu: display: cirrus_vga: a divide by zero in cirrus_do_copy
http://www.openwall.com/lists/oss-security/2016/12/09/1
[qemu-devel] 20161205 [PULL 4/4] display: cirrus: check vga bits per pixel(bpp) value
https://lists.gnu.org/archive/html/qemu-devel/2016-12/msg00442.html
http://git.qemu-project.org/?p=qemu.git%3Ba=commit%3Bh=4299b90e9ba9ce5ca9024572804ba751aa1a7e70
http://git.qemu-project.org/?p=qemu.git%3Ba=commit%3Bh=4299b90e9ba9ce5ca9024572804ba751aa1a7e70
https://bugzilla.redhat.com/show_bug.cgi?id=1334398
https://bugzilla.redhat.com/show_bug.cgi?id=1334398




© 1998-2025 E-Soft Inc. All rights reserved.