QEMU is a FAST! processor emulator using dynamic translation to achieve good emulation speed.
Security Fix(es):
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp6_input() function and could occur while processing a udp packet that is smaller than the size of the 'udphdr' structure. This issue may lead to out-of-bounds read access or indirect host memory disclosure to the guest. The highest threat from this vulnerability is to data confidentiality.(CVE-2021-3593)
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the bootpinput() function and could occur while processing a udp packet that is smaller than the size of the 'bootpt' structure. A malicious guest could use this flaw to leak 10 bytes of uninitialized heap memory from the host. The highest threat from this vulnerability is to data confidentiality.(CVE-2021-3592)
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the tftpinput() function and could occur while processing a udp packet that is smaller than the size of the 'tftpt' structure. This issue may lead to out-of-bounds read access or indirect host memory disclosure to the guest. The highest threat from this vulnerability is to data confidentiality.(CVE-2021-3595)
{ "severity": "Low" }
{ "x86_64": [ "qemu-debuginfo-4.1.0-58.oe1.x86_64.rpm", "qemu-debugsource-4.1.0-58.oe1.x86_64.rpm", "qemu-seabios-4.1.0-58.oe1.x86_64.rpm", "qemu-block-iscsi-4.1.0-58.oe1.x86_64.rpm", "qemu-4.1.0-58.oe1.x86_64.rpm", "qemu-img-4.1.0-58.oe1.x86_64.rpm", "qemu-block-rbd-4.1.0-58.oe1.x86_64.rpm", "qemu-block-ssh-4.1.0-58.oe1.x86_64.rpm", "qemu-guest-agent-4.1.0-58.oe1.x86_64.rpm", "qemu-block-curl-4.1.0-58.oe1.x86_64.rpm" ], "src": [ "qemu-4.1.0-58.oe1.src.rpm" ], "aarch64": [ "qemu-guest-agent-4.1.0-58.oe1.aarch64.rpm", "qemu-debuginfo-4.1.0-58.oe1.aarch64.rpm", "qemu-4.1.0-58.oe1.aarch64.rpm", "qemu-block-curl-4.1.0-58.oe1.aarch64.rpm", "qemu-img-4.1.0-58.oe1.aarch64.rpm", "qemu-block-iscsi-4.1.0-58.oe1.aarch64.rpm", "qemu-block-ssh-4.1.0-58.oe1.aarch64.rpm", "qemu-block-rbd-4.1.0-58.oe1.aarch64.rpm", "qemu-debugsource-4.1.0-58.oe1.aarch64.rpm" ], "noarch": [ "qemu-help-4.1.0-58.oe1.noarch.rpm" ] }
{ "x86_64": [ "qemu-debuginfo-4.1.0-60.oe1.x86_64.rpm", "qemu-debugsource-4.1.0-60.oe1.x86_64.rpm", "qemu-seabios-4.1.0-60.oe1.x86_64.rpm", "qemu-block-iscsi-4.1.0-60.oe1.x86_64.rpm", "qemu-4.1.0-60.oe1.x86_64.rpm", "qemu-img-4.1.0-60.oe1.x86_64.rpm", "qemu-block-rbd-4.1.0-60.oe1.x86_64.rpm", "qemu-block-ssh-4.1.0-60.oe1.x86_64.rpm", "qemu-guest-agent-4.1.0-60.oe1.x86_64.rpm", "qemu-block-curl-4.1.0-60.oe1.x86_64.rpm" ], "src": [ "qemu-4.1.0-60.oe1.src.rpm" ], "aarch64": [ "qemu-guest-agent-4.1.0-60.oe1.aarch64.rpm", "qemu-debuginfo-4.1.0-60.oe1.aarch64.rpm", "qemu-4.1.0-60.oe1.aarch64.rpm", "qemu-block-curl-4.1.0-60.oe1.aarch64.rpm", "qemu-img-4.1.0-60.oe1.aarch64.rpm", "qemu-block-iscsi-4.1.0-60.oe1.aarch64.rpm", "qemu-block-ssh-4.1.0-60.oe1.aarch64.rpm", "qemu-block-rbd-4.1.0-60.oe1.aarch64.rpm", "qemu-debugsource-4.1.0-60.oe1.aarch64.rpm" ], "noarch": [ "qemu-help-4.1.0-60.oe1.noarch.rpm" ] }