QEMU (aka Quick Emulator) built with an IDE AHCI emulation support is vulnerable to a null pointer dereference flaw. It occurs while unmapping the Frame Information Structure (FIS) and Command List Block (CLB) entries. A privileged user inside guest could use this flaw to crash the QEMU process instance resulting in DoS.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade qemu | Jul 30, 2024 | Dec 29, 2016 |
| Gentoo Linux | — | Upgrade app-emulation/qemu. | Oct 30, 2017 | Dec 29, 2016 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jan 28, 2016 |
| Suse | — | Upgrade qemu-guest-agentUpgrade qemu-block-rbdUpgrade qemu-ipxeUpgrade qemu-ppcUpgrade qemu-langUpgrade qemu-seabiosUpgrade qemu-toolsUpgrade qemu-x86Upgrade qemu-block-curlUpgrade qemu-sgabiosUpgrade qemuUpgrade qemu-kvmUpgrade qemu-s390Upgrade qemu-vgabios | Jul 26, 2016 | Jun 29, 2016 |
| Ubuntu | — | Upgrade qemu-system-aarch64Upgrade qemu-system-x86Upgrade qemu-kvmUpgrade qemu-system-mipsUpgrade qemu-system-sparcUpgrade qemu-system-miscUpgrade qemu-system-armUpgrade qemu-systemUpgrade qemu-system-ppc | Feb 3, 2016 | Feb 3, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub