Description
Memory leak in the virtio_gpu_resource_create_2d function in
hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS
administrators to cause a denial of service (memory consumption) via a
large number of VIRTIO_GPU_CMD_RESOURCE_CREATE_2D commands.
Notes
ratliff | Note from Debian: "Vulnerable code introduced in 2.4.0-rc0" |
Package
Upstream: | not-affected
|
Ubuntu 14.04 ESM (Trusty Tahr): | DNE
|
Ubuntu 16.04 LTS (Xenial Xerus): | DNE
|
Updated: 2019-12-05 18:46:25 UTC (commit dd38ff22974aae499eb50644b9d5a2817483cbdb)