Hide Forgot
An out of bounds memory access issue was found in the LSI53C895A SCSI Host Bus Adapter emulation while writing a message in lsi_do_msgin. It could occur during migration if the 'msg_len' field has an invalid value. A user/process could use this flaw to crash the Qemu process resulting in DoS. Upstream patch: --------------- -> https://lists.gnu.org/archive/html/qemu-devel/2018-10/msg06682.html Reference: ---------- -> https://www.openwall.com/lists/oss-security/2018/11/01/1
Acknowledgments: Name: Deja vu Security (dejavusecurity.com)
Created qemu tracking bugs for this issue: Affects: fedora-all [bug 1644977] Created xen tracking bugs for this issue: Affects: fedora-all [bug 1644978]