CVE-2012-6075
Published: 31 December 2012
Buffer overflow in the e1000_receive function in the e1000 device driver (hw/e1000.c) in QEMU 1.3.0-rc2 and other versions, when the SBP and LPE flags are disabled, allows remote attackers to cause a denial of service (guest OS crash) and possibly execute arbitrary guest code via a large packet.
Notes
Author | Note |
---|---|
mdeslaur | hypervisor packages are in universe. For issues in the hypervisor, add appropriate tags to each section, ex: Tags_xen: universe-binary |
kees | qemu and kvm are only included if the Xen issue is in full-virt mode. |
seth-arnold | "there will be no more qemu-kvm releases." -- Michael Tokarev qemu patches should apply to xen's embedded copies |
mdeslaur | raring is replacing qemu-kvm with qemu (in progress) |
Priority
Status
Package | Release | Status |
---|---|---|
kvm Launchpad, Ubuntu, Debian |
hardy |
Ignored
(end of life)
|
lucid |
Does not exist
|
|
oneiric |
Does not exist
|
|
precise |
Does not exist
|
|
quantal |
Does not exist
|
|
raring |
Does not exist
|
|
saucy |
Does not exist
|
|
upstream |
Needs triage
|
|
qemu Launchpad, Ubuntu, Debian |
hardy |
Ignored
(end of life)
|
lucid |
Does not exist
|
|
oneiric |
Does not exist
|
|
precise |
Does not exist
|
|
quantal |
Does not exist
|
|
raring |
Released
(1.3.0+dfsg-1~exp3ubuntu3)
|
|
saucy |
Released
(1.3.0+dfsg-1~exp3ubuntu3)
|
|
upstream |
Needs triage
|
|
Patches: vendor: http://www.debian.org/security/2013/dsa-2608 |
||
qemu-kvm Launchpad, Ubuntu, Debian |
hardy |
Does not exist
|
lucid |
Released
(0.12.3+noroms-0ubuntu9.21)
|
|
oneiric |
Released
(0.14.1+noroms-0ubuntu6.6)
|
|
precise |
Released
(1.0+noroms-0ubuntu14.7)
|
|
quantal |
Released
(1.2.0+noroms-0ubuntu2.12.10.2)
|
|
raring |
Does not exist
|
|
saucy |
Does not exist
|
|
upstream |
Needs triage
|
|
Patches: upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=b0d9ffcd0251161c7c92f94804dcf599dfa3edeb upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=2c0331f4f7d241995452b99afaf0aab00493334a vendor: http://www.debian.org/security/2013/dsa-2607 |
||
xen Launchpad, Ubuntu, Debian |
hardy |
Does not exist
|
lucid |
Does not exist
|
|
oneiric |
Released
(4.1.1-2ubuntu4.5)
|
|
precise |
Released
(4.1.2-2ubuntu2.5)
|
|
quantal |
Released
(4.1.3-3ubuntu1.2)
|
|
raring |
Released
(4.2.0-1ubuntu6)
|
|
saucy |
Released
(4.2.0-1ubuntu6)
|
|
upstream |
Needs triage
|
|
Binaries built from this source package are in Universe and so are supported by the community. | ||
xen-3.1 Launchpad, Ubuntu, Debian |
hardy |
Ignored
(end of life)
|
lucid |
Does not exist
|
|
oneiric |
Does not exist
|
|
precise |
Does not exist
|
|
quantal |
Does not exist
|
|
raring |
Does not exist
|
|
saucy |
Does not exist
|
|
upstream |
Needs triage
|
|
Binaries built from this source package are in Universe and so are supported by the community. | ||
xen-3.2 Launchpad, Ubuntu, Debian |
hardy |
Ignored
(end of life)
|
lucid |
Does not exist
|
|
oneiric |
Does not exist
|
|
precise |
Does not exist
|
|
quantal |
Does not exist
|
|
raring |
Does not exist
|
|
saucy |
Does not exist
|
|
upstream |
Needs triage
|
|
Binaries built from this source package are in Universe and so are supported by the community. | ||
xen-3.3 Launchpad, Ubuntu, Debian |
hardy |
Does not exist
|
lucid |
Ignored
(end of life)
|
|
oneiric |
Does not exist
|
|
precise |
Does not exist
|
|
quantal |
Does not exist
|
|
raring |
Does not exist
|
|
saucy |
Does not exist
|
|
upstream |
Needs triage
|
|
Binaries built from this source package are in Universe and so are supported by the community. |