Description
The (1) fw_cfg_write and (2) fw_cfg_read functions in hw/nvram/fw_cfg.c in QEMU before 2.4, when built with the Firmware Configuration device emulation support, allow guest OS users with the CAP_SYS_RAWIO privilege to cause a denial of service (out-of-bounds read or write access and process crash) or possibly execute arbitrary code via an invalid current entry value in a firmware configuration.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-3469-1 | qemu security update |
Debian DSA |
DSA-3470-1 | qemu-kvm security update |
Debian DSA |
DSA-3471-1 | qemu security update |
EUVD |
EUVD-2016-2809 | The (1) fw_cfg_write and (2) fw_cfg_read functions in hw/nvram/fw_cfg.c in QEMU before 2.4, when built with the Firmware Configuration device emulation support, allow guest OS users with the CAP_SYS_RAWIO privilege to cause a denial of service (out-of-bounds read or write access and process crash) or possibly execute arbitrary code via an invalid current entry value in a firmware configuration. |
Ubuntu USN |
USN-2891-1 | QEMU vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T23:02:12.885Z
Reserved: 2016-01-12T00:00:00.000Z
Link: CVE-2016-1714
No data.
Status : Modified
Published: 2016-04-07T19:59:02.480
Modified: 2026-05-06T22:30:45.220
Link: CVE-2016-1714
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN