Debian Security Advisory DSA 3925-1 (qemu - security update)

Published: 2017-08-03 22:00:00
CVE Author: NIST National Vulnerability Database (NVD)

CVSS Base Vector:

Solution Type:
Vendor Patch

Detection Type:
Linux Distribution Package

Affected Versions:
qemu on Debian Linux

For the stable distribution (stretch), these problems have been fixed in version 1:2.8+dfsg-6+deb9u2. We recommend that you upgrade your qemu Linux Distribution Packages.

Multiple vulnerabilities were found in qemu, a fast processor emulator: CVE-2017-9524 Denial of service in qemu-nbd server CVE-2017-10806 Buffer overflow in USB redirector CVE-2017-11334 Out-of-band memory access in DMA operations CVE-2017-11434 Out-of-band memory access in SLIRP/DHCP

Detection Method:
This check tests the installed software version using the apt Linux Distribution Package manager.

NIST (National Institute of Standards and Technology) NVD (National Vulnerability Database)


CVSS Score

You never have to pay for a vulnerability scanning and management software again.

Tired of paying a subscription 'per asset' or 'per IP'? Well you can officially cancel your current subscription. Mageni provides a free, open source and enterprise-ready vulnerability scanning and management platform which helps you to find, prioritize, remediate and manage your vulnerabilities. It is free and always will be.