Red Hat Bugzilla – Bug 1421995
CVE-2017-5987 Qemu: sd: infinite loop issue in multi block transfers
Last modified: 2017-02-14 23:43:23 EST
Quick emulator(Qemu) built with the SDHCI device emulation support is vulnerable
to an infinite loop issue. It could occur while doing a multi block SDMA
transfer via 'sdhci_sdma_transfer_multi_blocks' routine.
A privileged user inside guest could use this flaw to crash the Qemu process
resulting in DoS.
Name: Jiang Xin (Huawei.com Inc.) Wjjzhang (Tencent.com Inc.)
Created qemu tracking bugs for this issue:
Affects: fedora-all [bug 1422001]