QEMU (aka Quick Emulator) built with an IDE AHCI emulation support is vulnerable to a null pointer dereference flaw. It occurs while unmapping the Frame Information Structure (FIS) and Command List Block (CLB) entries. A privileged user inside guest could use this flaw to crash the QEMU process instance resulting in DoS.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade qemu | Jul 30, 2024 | Dec 29, 2016 |
| Gentoo Linux | — | Upgrade app-emulation/qemu. | Oct 30, 2017 | Dec 29, 2016 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jan 28, 2016 |
| Suse | — | Upgrade qemu-block-rbdUpgrade qemu-ppcUpgrade qemu-ipxeUpgrade qemu-seabiosUpgrade qemu-langUpgrade qemu-toolsUpgrade qemu-guest-agentUpgrade qemu-kvmUpgrade qemu-vgabiosUpgrade qemu-block-curlUpgrade qemuUpgrade qemu-s390Upgrade qemu-sgabiosUpgrade qemu-x86 | Jul 26, 2016 | Jun 29, 2016 |
| Ubuntu | — | Upgrade qemu-system-armUpgrade qemu-system-ppcUpgrade qemu-systemUpgrade qemu-system-x86Upgrade qemu-system-mipsUpgrade qemu-system-sparcUpgrade qemu-system-miscUpgrade qemu-kvmUpgrade qemu-system-aarch64 | Feb 3, 2016 | Feb 3, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub