CVE-2020-14394
Last modified
CVE-2020-14394 is a low-severity vulnerability rated 3.2/10 on the CVSS scale. An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.. EPSS estimates a 0.36% chance of exploitation in the next 30 days.
Description
An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.
Metrics
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:L
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Qemu | Qemu | 6.1.50 |
| Fedoraproject | Extra Packages For Enterprise Linux | 7.0 |
| Fedoraproject | Fedora | 33 |
| Fedoraproject | Fedora | 37 |
| Redhat | Openstack Platform | 10.0 |
| Redhat | Openstack Platform | 13.0 |
| Redhat | Enterprise Linux | 5.0 |
| Redhat | Enterprise Linux | 6.0 |
| Redhat | Enterprise Linux | 7.0 |
| Redhat | Enterprise Linux | 8.0 |
| Redhat | Enterprise Linux | 9.0 |
References
- https://bugzilla.redhat.com/show_bug.cgi?id=1908004Exploit, Issue Tracking, Third Party Advisory
- https://gitlab.com/qemu-project/qemu/-/issues/646Exploit, Issue Tracking, Patch, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1908004Exploit, Issue Tracking, Third Party Advisory
- https://gitlab.com/qemu-project/qemu/-/issues/646Exploit, Issue Tracking, Patch, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-14394?
How severe is CVE-2020-14394?
How do I fix CVE-2020-14394?
Are you affected by CVE-2020-14394?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
