CVE-2015-3456
Publication date 13 May 2015
Last updated 24 July 2024
Ubuntu priority
The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (out-of-bounds write and guest crash) or possibly execute arbitrary code via the (1) FD_CMD_READ_ID, (2) FD_CMD_DRIVE_SPECIFICATION_COMMAND, or other unspecified commands, aka VENOM.
Status
Package | Ubuntu Release | Status |
---|---|---|
qemu | ||
14.04 LTS trusty |
Fixed 2.0.0+dfsg-2ubuntu1.11
|
|
qemu-kvm | ||
14.04 LTS trusty | Not in release | |
virtualbox | ||
14.04 LTS trusty |
Fixed 4.3.10-dfsg-1ubuntu5
|
|
xen | ||
14.04 LTS trusty |
Fixed 4.4.1-0ubuntu0.14.04.6
|
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-2608-1
- QEMU vulnerabilities
- 13 May 2015