6
CVSSv3

CVE-2016-7422

Published: 10/12/2016 Updated: 12/02/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 6 | Impact Score: 4 | Exploitability Score: 1.5
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) via a large I/O descriptor buffer length value.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qemu qemu

opensuse leap 42.2

redhat openstack 7.0

redhat openstack 6.0

redhat openstack 10

redhat openstack 9

redhat openstack 8

redhat openstack 11

redhat virtualization 4.0

Vendor Advisories

Several security issues were fixed in QEMU ...
Debian Bug report logs - #838850 qemu: CVE-2016-7161 Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 25 Sep 2016 18:27:02 UTC Severity: important Tags: patch, security, upstream Found in versions ...
Debian Bug report logs - #838146 qemu: CVE-2016-7422: virtio: null pointer dereference in virtqueue_map_desc Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 17 Sep 2016 17:57:13 UTC Severity: impo ...
Debian Bug report logs - #838147 qemu: CVE-2016-7421: scsi: pvscsi: infinite loop when processing IO requests Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 17 Sep 2016 18:00:01 UTC Severity: nor ...
Debian Bug report logs - #838145 qemu: CVE-2016-7423: scsi: mptsas: OOB access when freeing MPTSASRequest object Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 17 Sep 2016 17:57:09 UTC Severity: ...
The virtqueue_map_desc function in hw/virtio/virtioc in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) via a large I/O descriptor buffer length value ...