Red Hat Bugzilla – Bug 1327465
CVE-2016-7908 Qemu: net: Infinite loop in mcf_fec_do_tx()
Last modified: 2018-01-16 05:24:41 EST
Quick Emulator(Qemu) built with the ColdFire Fast Ethernet Controller emulator support is vulnerable to an infinite loop issue. It could occur while processing packets on the transmit queue in 'mcf_fec_do_tx'. A privileged user/process inside guest could use this issue to crash the Qemu process on the host leading to DoS. Upstream patch -------------- -> https://lists.gnu.org/archive/html/qemu-devel/2016-09/msg05557.html
Acknowledgments: Name: Li Qiang (Qihoo 360 Inc.)
Created qemu tracking bugs for this issue: Affects: fedora-all [bug 1381193]
CVE assignment: http://seclists.org/oss-sec/2016/q4/11