CVE-2010-0297

QEMU < 0.11.1 - Buffer Overflow in USB Passthrough Handling

Title source: llm
STIX 2.1

Description

Buffer overflow in the usb_host_handle_control function in the USB passthrough handling implementation in usb-linux.c in QEMU before 0.11.1 allows guest OS users to cause a denial of service (guest OS crash or hang) or possibly execute arbitrary code on the host OS via a crafted USB packet.

References (12)

Core 12
Core References
Mailing List mailing-list x_refsource_mlist
http://www.mail-archive.com/kvm%40vger.kernel.org/msg19581.html
Mailing List mailing-list x_refsource_mlist
http://www.mail-archive.com/kvm%40vger.kernel.org/msg18447.html
Mailing List mailing-list x_refsource_mlist
http://www.mail-archive.com/kvm%40vger.kernel.org/msg19596.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/38158
Mailing List mailing-list x_refsource_mlist
http://marc.info/?l=oss-security&m=126527304127254&w=2
Vendor Advisory vendor-advisory x_refsource_redhat
https://rhn.redhat.com/errata/RHSA-2010-0088.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/56194
Issue Tracking x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=557025
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11786
Mailing List mailing-list x_refsource_mlist
http://marc.info/?l=oss-security&m=126510479211473&w=2
Third Party Advisory x_refsource_confirm
http://wiki.qemu.org/ChangeLog

Scores

EPSS 0.0008
EPSS Percentile 23.6%

Details

CWE
CWE-119
Status published
Products (41)
qemu/qemu 0.1.0
qemu/qemu 0.1.1
qemu/qemu 0.1.2
qemu/qemu 0.1.3
qemu/qemu 0.1.4
qemu/qemu 0.1.5
qemu/qemu 0.1.6
qemu/qemu 0.2.0
qemu/qemu 0.3.0
qemu/qemu 0.4.0
... and 31 more
Published Feb 12, 2010
Tracked Since Feb 18, 2026