A use-after-free flaw was found in the VirtFS, host directory sharing via Plan 9 File System(9pfs) support in QEMU. It could occur due to a race condition while accessing files on a shared host directory. A user inside guest could use this flaw to crash the QEMU process resulting in DoS issue. Upstream patch: --------------- -> https://lists.gnu.org/archive/html/qemu-devel/2018-11/msg01139.html -> https://lists.gnu.org/archive/html/qemu-devel/2018-11/msg02795.html Reference: ---------- -> https://www.openwall.com/lists/oss-security/2018/11/20/1
Acknowledgments: Name: Zhibin Hu
Created qemu tracking bugs for this issue: Affects: fedora-all [bug 1651359]