Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue. It could occur while copying VGA data via bitblt copy in backward mode. A privileged user inside a guest could use this flaw to crash the QEMU process resulting in DoS or potentially execute arbitrary code on the host with privileges of QEMU process on the host.
References
Link Resource
http://rhn.redhat.com/errata/RHSA-2017-0309.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0328.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0329.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0330.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0331.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0332.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0333.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0334.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0344.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0350.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0396.html Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2017-0454.html Third Party Advisory
http://www.openwall.com/lists/oss-security/2017/02/01/6 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/95990 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1037804 Third Party Advisory VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2615 Issue Tracking Third Party Advisory
https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html
https://lists.gnu.org/archive/html/qemu-devel/2017-02/msg00015.html Patch Third Party Advisory
https://security.gentoo.org/glsa/201702-27 Third Party Advisory
https://security.gentoo.org/glsa/201702-28 Third Party Advisory
https://support.citrix.com/article/CTX220771 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2018-07-02T18:00:00

Updated: 2018-09-07T09:57:01

Reserved: 2016-12-01T00:00:00


Link: CVE-2017-2615

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-07-03T01:29:00.393

Modified: 2023-02-12T23:29:06.847


Link: CVE-2017-2615

JSON object: View

cve-icon Redhat Information

No data.