CVE-2016-1981
Summary
| CVE | CVE-2016-1981 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2016-12-29 22:59:00 UTC |
| Updated | 2023-02-12 23:17:00 UTC |
| Description | QEMU (aka Quick Emulator) built with the e1000 NIC emulation support is vulnerable to an infinite loop issue. It could occur while processing data via transmit or receive descriptors, provided the initial receive/transmit descriptor head (TDH/RDH) is set outside the allocated descriptor buffer. A privileged user inside guest could use this flaw to crash the QEMU instance resulting in DoS. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Debian -- Security Information -- DSA-3471-1 qemu |
DEBIAN |
www.debian.org |
Third Party Advisory |
| Red Hat Customer Portal |
REDHAT |
rhn.redhat.com |
Third Party Advisory |
| oss-security - Re: CVE request Qemu: net: e1000 infinite loop in start_xmit and e1000_receive_iov routines |
MLIST |
www.openwall.com |
Mailing List, Third Party Advisory |
| Debian -- Security Information -- DSA-3469-1 qemu |
DEBIAN |
www.debian.org |
Third Party Advisory |
| CVE-2016-1981 - Red Hat Customer Portal |
MISC |
access.redhat.com |
|
| Debian -- Security Information -- DSA-3470-1 qemu-kvm |
DEBIAN |
www.debian.org |
Third Party Advisory |
| Red Hat Customer Portal |
MISC |
access.redhat.com |
|
| Bug 1298570 – CVE-2016-1981 Qemu: net: e1000 infinite loop in start_xmit and e1000_receive_iov routines |
CONFIRM |
bugzilla.redhat.com |
Issue Tracking |
| oss-security - CVE request Qemu: net: e1000 infinite loop in start_xmit and
e1000_receive_iov routines |
MLIST |
www.openwall.com |
Mailing List, Third Party Advisory |
| QEMU CVE-2016-1981 Multiple Denial of Service Vulnerabilities |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| QEMU: Multiple vulnerabilities (GLSA 201604-01) — Gentoo Security |
GENTOO |
security.gentoo.org |
Third Party Advisory |
| [Qemu-devel] [PATCH] e1000: eliminate infinite loops on out-of-bounds tr |
MLIST |
lists.gnu.org |
Patch, Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 900063 CBL-Mariner Linux Security Update for qemu-kvm 4.2.0