The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (out-of-bounds write and guest crash) or possibly execute arbitrary code via the (1) FDCMDREADID, (2) FDCMDDRIVESPECIFICATION_COMMAND, or other unspecified commands, aka VENOM.
{
"binaries": [
{
"binary_name": "qemu",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-common",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-guest-agent",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-keymaps",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-kvm",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-aarch64",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-arm",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-common",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-mips",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-misc",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-ppc",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-sparc",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-system-x86",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-user",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-user-static",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
},
{
"binary_name": "qemu-utils",
"binary_version": "2.0.0+dfsg-2ubuntu1.11"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_name": "virtualbox",
"binary_version": "4.3.10-dfsg-1ubuntu5"
},
{
"binary_name": "virtualbox-dkms",
"binary_version": "4.3.10-dfsg-1ubuntu5"
},
{
"binary_name": "virtualbox-guest-dkms",
"binary_version": "4.3.10-dfsg-1ubuntu5"
},
{
"binary_name": "virtualbox-guest-source",
"binary_version": "4.3.10-dfsg-1ubuntu5"
},
{
"binary_name": "virtualbox-guest-utils",
"binary_version": "4.3.10-dfsg-1ubuntu5"
},
{
"binary_name": "virtualbox-guest-x11",
"binary_version": "4.3.10-dfsg-1ubuntu5"
},
{
"binary_name": "virtualbox-qt",
"binary_version": "4.3.10-dfsg-1ubuntu5"
},
{
"binary_name": "virtualbox-source",
"binary_version": "4.3.10-dfsg-1ubuntu5"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_name": "libxen-4.4",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "libxen-dev",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "libxen-ocaml",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "libxen-ocaml-dev",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "libxenstore3.0",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-hypervisor-4.1-amd64",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-hypervisor-4.3-amd64",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-hypervisor-4.3-armhf",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-hypervisor-4.4-amd64",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-hypervisor-4.4-arm64",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-hypervisor-4.4-armhf",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-system-amd64",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-system-arm64",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-system-armhf",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-utils-4.4",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xen-utils-common",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
},
{
"binary_name": "xenstore-utils",
"binary_version": "4.4.1-0ubuntu0.14.04.6"
}
],
"availability": "No subscription required"
}