CVE-2020-14394 - CERT CVE
ID CVE-2020-14394
Sažetak An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.
Reference
CVSS
Base: 3.2
Impact: 1.4
Exploitability:1.5
Pristup
VektorSloženostAutentikacija
LOCAL LOW -
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE LOW
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:L
Zadnje važnije ažuriranje 07-11-2023 - 03:17
Objavljeno 17-08-2022 - 21:15