[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#994080: qemu-system-x86: Upgrading to 1:2.8+dfsg-6+deb9u15 breaks user-mode networking in guest



Am Samstag, dem 11.09.2021 um 03:49 -0500 schrieb Matt Roberds:
> Package: qemu-system-x86
> Version: 1:2.8+dfsg-6+deb9u15
> Severity: important
> X-Debbugs-Cc: debian-lts@lists.debian.org
> 
> Hello all!
> 
> Quick version:
> ==============
> 
> I recently upgraded the qemu packages on my host from
> 1:2.8+dfsg-6+deb9u14 to 1:2.8+dfsg-6+deb9u15 , but this breaks user-mode
> networking in the guest.  This is reproducible; going back to deb9u14 on
> the host makes user-mode networking work again in the guest, and going
> forward to deb9u15 breaks user-mode networking again in the guest.

Hello Michael, hello Matt

thanks for the report. I can reproduce the problem and I believe the patch for
CVE-2021-3592 introduced it. On my system I also get an IP address when I use
ifup/ifdown and DCHP appears to be working. However I experience the same
"Network is unreachable" error when I try to ssh into the host system.

I have backported all relevant functions now (dhcp_decode, bootp_reply and
bootp_input) but the problem still exists. It probably has something to do with
the removal of the optional structure field DHCP_OPT_LEN. Since I do not have
an imminent solution for this issue, I intend to revert the patch for CVE-2021-
3592. I will release a regression update shortly.

Regards,

Markus

Attachment: signature.asc
Description: This is a digitally signed message part


Reply to: