CVE-2016-8576 PUBLISHED

The xhci_ring_fetch function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by leveraging failure to limit the number of link Transfer Request Blocks (TRB) to process.

EPSS 0.11% · 29.9th percentile

Risk Scores

EPSS Score
0.11%
29.9th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSqemu0, 1.5.0+dfsg-3ubuntu5, 1.5.0+dfsg-3ubuntu6
Ubuntu:16.04:LTSqemu0, 1:2.3+dfsg-5ubuntu9, 1:2.3+dfsg-5ubuntu10

Timeline

References

Open in Interactive Console →