Files
pve-qemu-qoup/debian
Oguz Bektas 284d3b2cab security patches for libslirp CVE-2020-8608
original commits and email can be found here[0]

A out-of-bounds heap buffer access issue was found in the SLiRP
networking implementation of the QEMU emulator. It occurs in tcp_emu()
routine while emulating IRC and other protocols due to unsafe usage of
snprintf(3) function.

A user/process could use this flaw to crash the Qemu process on the host
resulting in DoS or potentially execute arbitrary code with privileges
of the QEMU process on the host.

[0]: https://seclists.org/oss-sec/2020/q1/64

Signed-off-by: Oguz Bektas <o.bektas@proxmox.com>
Signed-off-by: Thomas Lamprecht <t.lamprecht@proxmox.com>
2020-03-06 15:17:29 +01:00
..
2018-03-14 14:18:17 +01:00
2020-02-18 11:26:27 +01:00
2017-04-05 11:39:09 +02:00
2017-04-05 11:39:09 +02:00
2017-04-05 11:39:09 +02:00
2017-04-05 11:40:20 +02:00
2017-04-05 11:39:09 +02:00
2017-04-05 11:39:09 +02:00
2017-10-16 14:05:22 +02:00