CVE-2020-14394 PUBLISHED

An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.

EPSS 0.03% · 6.8th percentile

Risk Scores

EPSS Score
0.03%
6.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:18.04:LTSqemu1:2.11+dfsg-1ubuntu7.37, 1:2.11+dfsg-1ubuntu7.36, 1:2.11+dfsg-1ubuntu7.35
Ubuntu:Pro:16.04:LTSqemu*, 1:2.5+dfsg-5ubuntu10.14, 1:2.5+dfsg-5ubuntu10.15
Ubuntu:22.04:LTSqemu*, 1:6.0+dfsg-2expubuntu1, 1:6.0+dfsg-2expubuntu2
Ubuntu:Pro:14.04:LTSqemu2.0.0+dfsg-2ubuntu1.5, *, *
Ubuntu:20.04:LTSqemu1:4.2-3ubuntu6.14, 1:4.2-3ubuntu6.15, 1:4.2-3ubuntu6.17

Timeline

References

Open in Interactive Console →