CVE-2017-11334 PUBLISHED

The address_space_write_continue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and guest instance crash) by leveraging use of qemu_map_ram_ptr to access guest ram block area.

EPSS 0.04% · 12.2th percentile

Risk Scores

EPSS Score
0.04%
12.2th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSqemu0, 1:2.3+dfsg-5ubuntu9, 1:2.3+dfsg-5ubuntu10
Ubuntu:Pro:14.04:LTSqemu2.0.0+dfsg-2ubuntu1.41, 2.0.0+dfsg-2ubuntu1.42, 2.0.0+dfsg-2ubuntu1.43

Timeline

References

Open in Interactive Console →