A Null pointer dereference issue was found in QEMU's implementation of VMWare's paravirtual RDMA device. It could occur while creating CQ/QP ring objects in pvrdma_ring_init() routine. A guest user/process could use this flaw to crash QEMU process or allocate excessive memory on host resulting in DoS. Upstream patch: --------------- -> https://lists.gnu.org/archive/html/qemu-devel/2018-12/msg02823.html Reference: ---------- -> https://www.openwall.com/lists/oss-security/2018/12/19/3
Acknowledgments: Name: LI Qiang
Created qemu tracking bugs for this issue: Affects: fedora-all [bug 1660748]