alpine-cve-2016-9102

CVSS 6.0 osv_alpine
Description

Memory leak in the v9fs_xattrcreate function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) via a large number of Txattrcreate messages with the same fid number.

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References
Linked Vulnerabilities

No linked vulnerabilities found.

{
  "affected": [
    {
      "database_specific": {
        "source": "https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2016-9102.json"
      },
      "ecosystem_specific": {},
      "package": {
        "ecosystem": "Alpine:v3.10",
        "name": "qemu",
        "purl": "pkg:apk/alpine/qemu?arch=source"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2.8.1-r1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "database_specific": {
        "source": "https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2016-9102.json"
      },
      "ecosystem_specific": {},
      "package": {
        "ecosystem": "Alpine:v3.5",
        "name": "qemu",
        "purl": "pkg:apk/alpine/qemu?arch=source"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2.8.1.1-r0"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "database_specific": {
        "source": "https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2016-9102.json"
      },
      "ecosystem_specific": {},
      "package": {
        "ecosystem": "Alpine:v3.6",
        "name": "qemu",
        "purl": "pkg:apk/alpine/qemu?arch=source"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2.8.1-r1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "database_specific": {
        "source": "https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2016-9102.json"
      },
      "ecosystem_specific": {},
      "package": {
        "ecosystem": "Alpine:v3.7",
        "name": "qemu",
        "purl": "pkg:apk/alpine/qemu?arch=source"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2.8.1-r1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "database_specific": {
        "source": "https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2016-9102.json"
      },
      "ecosystem_specific": {},
      "package": {
        "ecosystem": "Alpine:v3.8",
        "name": "qemu",
        "purl": "pkg:apk/alpine/qemu?arch=source"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2.8.1-r1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "database_specific": {
        "source": "https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2016-9102.json"
      },
      "ecosystem_specific": {},
      "package": {
        "ecosystem": "Alpine:v3.9",
        "name": "qemu",
        "purl": "pkg:apk/alpine/qemu?arch=source"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2.8.1-r1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "details": "Memory leak in the v9fs_xattrcreate function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) via a large number of Txattrcreate messages with the same fid number.",
  "id": "ALPINE-CVE-2016-9102",
  "modified": "2026-09-22T06:30:43.718781120Z",
  "published": "2016-12-09T22:59:07.670Z",
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://security.alpinelinux.org/vuln/CVE-2016-9102"
    }
  ],
  "schema_version": "1.9.0",
  "severity": [
    {
      "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H",
      "type": "CVSS_V3"
    }
  ],
  "upstream": [
    "CVE-2016-9102"
  ]
}
View JSON API Download JSON