All errata/sisyphus_loongarch64/ALT-PU-2024-10967-1
ALT-PU-2024-10967-1

Package update qemu in branch sisyphus_loongarch64

Version9.0.2-alt2
Task#0
Published2024-08-08
Max severityHIGH
Severity:

Closed issues (1)

CVE-2024-4467
HIGH7.8

A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a `json:{}` value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.

Published: 2024-07-02Modified: 2026-04-15
CVSS 3.xHIGH 7.8
CVSS:3.x/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Closed bugs (1)

/lib/udev/rules.d/90-qemu-guest-agent.rules содержит синтаксические ошибки