QEMU (aka Quick Emulator) built with an IDE AHCI emulation support is vulnerable to a null pointer dereference flaw. It occurs while unmapping the Frame Information Structure (FIS) and Command List Block (CLB) entries. A privileged user inside guest could use this flaw to crash the QEMU process instance resulting in DoS.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade qemu | Jul 30, 2024 | Dec 29, 2016 |
| Gentoo Linux | — | Upgrade app-emulation/qemu. | Oct 30, 2017 | Dec 29, 2016 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jan 28, 2016 |
| Suse | — | Upgrade qemu-s390Upgrade qemu-sgabiosUpgrade qemu-kvmUpgrade qemuUpgrade qemu-vgabiosUpgrade qemu-block-curlUpgrade qemu-x86Upgrade qemu-langUpgrade qemu-ppcUpgrade qemu-ipxeUpgrade qemu-seabiosUpgrade qemu-block-rbdUpgrade qemu-guest-agentUpgrade qemu-tools | Jul 26, 2016 | Jun 29, 2016 |
| Ubuntu | — | Upgrade qemu-kvmUpgrade qemu-system-aarch64Upgrade qemu-system-miscUpgrade qemu-system-x86Upgrade qemu-system-sparcUpgrade qemu-system-mipsUpgrade qemu-system-ppcUpgrade qemu-systemUpgrade qemu-system-arm | Feb 3, 2016 | Feb 3, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub