Red Hat Bugzilla – Bug 1421995
CVE-2017-5987 Qemu: sd: infinite loop issue in multi block transfers
Last modified: 2017-09-11 04:35:55 EDT
Quick emulator(Qemu) built with the SDHCI device emulation support is vulnerable
to an infinite loop issue. It could occur while doing a multi block SDMA
transfer via 'sdhci_sdma_transfer_multi_blocks' routine.
A privileged user inside guest could use this flaw to crash the Qemu process
resulting in DoS.
Created qemu tracking bugs for this issue:
Affects: fedora-all [bug 1422001]
Name: Jiang Xin (Huawei), Wjjzhang (Tencent)