Back to bug 2034602

Who When What Removed Added
Guilherme de Almeida Suckevicz 2021-12-21 13:24:42 UTC CC security-response-team
Guilherme de Almeida Suckevicz 2021-12-21 13:27:41 UTC Alias CVE-2021-4145
Summary EMBARGOED QEMU: NULL pointer dereference in mirror_wait_on_conflicts() in block/mirror.c EMBARGOED CVE-2021-4145 QEMU: NULL pointer dereference in mirror_wait_on_conflicts() in block/mirror.c
Guilherme de Almeida Suckevicz 2021-12-21 13:28:23 UTC Blocks 2034603
Guilherme de Almeida Suckevicz 2021-12-21 13:29:29 UTC Blocks 2031962
Mauro Matteo Cascella 2021-12-21 15:47:23 UTC CC dbecker, jjoyce, jschluet, lhh, lpeer, mburns, michal.skrivanek, mperina, sbonazzo, sclewis, slinaber
Deadline 2021-12-10
Mauro Matteo Cascella 2021-12-21 15:48:39 UTC Group qe_staff, security
Deadline 2021-12-10
Summary EMBARGOED CVE-2021-4145 QEMU: NULL pointer dereference in mirror_wait_on_conflicts() in block/mirror.c CVE-2021-4145 QEMU: NULL pointer dereference in mirror_wait_on_conflicts() in block/mirror.c
CC berrange, cfergeau, crobinso, lkundrak, ondrejj, philmd, rjones, virt-maint, virt-maint
Mauro Matteo Cascella 2021-12-21 15:59:28 UTC CC dbecker, jforbes, jjoyce, jschluet, lhh, lpeer, m.a.young, mburns, sclewis, slinaber
Mauro Matteo Cascella 2021-12-21 16:50:40 UTC Comment 0 updated
Mauro Matteo Cascella 2021-12-22 14:07:10 UTC Depends On 2002607
Mauro Matteo Cascella 2021-12-22 14:10:09 UTC Depends On 2001404
Mauro Matteo Cascella 2021-12-22 14:36:31 UTC Depends On 2034944
Mauro Matteo Cascella 2021-12-22 14:39:51 UTC Fixed In Version qemu-kvm 6.2.0
Mauro Matteo Cascella 2021-12-22 15:31:31 UTC Doc Text A NULL pointer dereference issue was found in the block mirror layer of QEMU. The `self` pointer is dereferenced in mirror_wait_on_conflicts() without ensuring that it's not NULL. A malicious unprivileged user within the guest could use this flaw to crash the QEMU process on the host when writing data reaches the threshold of mirroring node.
Mauro Matteo Cascella 2021-12-22 17:35:35 UTC Depends On 2035011
Red Hat Bugzilla 2022-01-19 07:13:30 UTC CC philmd
Red Hat Bugzilla 2022-03-01 08:29:23 UTC CC ribarry
errata-xmlrpc 2022-05-10 13:17:54 UTC Link ID Red Hat Product Errata RHSA-2022:1759
Product Security DevOps Team 2022-05-10 18:15:36 UTC Resolution --- ERRATA
Status NEW CLOSED
Last Closed 2022-05-10 18:15:36 UTC

Back to bug 2034602