漏洞信息详情
QEMU 代码问题漏洞
漏洞简介
QEMU(Quick Emulator)是法国法布里斯-贝拉(Fabrice Bellard)个人开发者的一套模拟处理器软件。该软件具有速度快、跨平台等特点。
QEMU 4.0.0版本中存在代码问题漏洞。该漏洞源于网络系统或产品的代码开发过程中存在设计或实现不当的问题。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://git.qemu.org/?p=qemu.git;a=commit;h=d52680fc932efb8a2f334cc6993e705ed1e31e99
参考网址
来源:CONFIRM
链接:http://www.openwall.com/lists/oss-security/2019/05/22/1
来源:DEBIAN
链接:https://www.debian.org/security/2019/dsa-4454
来源:access.redhat.com
链接:https://access.redhat.com/security/cve/cve-2019-12155
来源:seclists.org
链接:https://seclists.org/oss-sec/2019/q2/122
来源:bugzilla.redhat.com
链接:https://bugzilla.redhat.com/show_bug.cgi?id=1712670
来源:git.qemu.org
链接:https://git.qemu.org/?p=qemu.git;a=commit;h=d52680fc932efb8a2f334cc6993e705ed1e31e99
来源:wiki.qemu.org
链接:http://wiki.qemu.org/Main_Page
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2019:2607
来源:BUGTRAQ
链接:https://seclists.org/bugtraq/2019/May/76
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2019:3787
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00000.html
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00008.html
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2019:2892
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2019:4344
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2019:3179
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2019:3345
来源:REDHAT
链接:https://access.redhat.com/errata/RHBA-2019:3723
来源:REDHAT
链接:https://access.redhat.com/errata/RHSA-2019:3742
来源:MLIST
链接:https://lists.debian.org/debian-lts-announce/2019/09/msg00021.html
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/RVDHJB2QKXNDU7OFXIHIL5O5VN5QCSZL/
来源:lists.gnu.org
链接:https://lists.gnu.org/archive/html/qemu-devel/2019-05/msg01321.html
来源:MISC
链接:https://git.qemu.org/?p=qemu.git;a=commit;h=3be7eb2f47bf71db5f80fcf8750ea395dd5ffdd2
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/BOE3PVFPMWMXV3DGP2R3XIHAF2ZQU3FS/
来源:UBUNTU
链接:https://usn.ubuntu.com/4191-1/
来源:UBUNTU
链接:https://usn.ubuntu.com/4191-2/
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:4344
来源:www.debian.org
链接:http://www.debian.org/security/2019/dsa-4454
来源:usn.ubuntu.com
链接:https://usn.ubuntu.com/4191-2/
来源:usn.ubuntu.com
链接:https://usn.ubuntu.com/4191-1/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.4287/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.1961/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/155337/Ubuntu-Security-Notice-USN-4191-1.html
来源:www.securityfocus.com
链接:https://www.securityfocus.com/bid/108429
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0561/
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/QEMU-NULL-pointer-dereference-in-the-QXL-device-driver-29384
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.4769/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/155741/Red-Hat-Security-Advisory-2019-4344-01.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.1944/
来源:www.securityfocus.com
链接:http://www.securityfocus.com/bid/108429
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2019-12155
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/153143/Debian-Security-Advisory-4454-1.html
受影响实体
暂无
补丁
- QEMU 代码问题漏洞的修复措施<!--2019-5-22-->
还没有评论,来说两句吧...