CVE-2016-8909
MEDIUMQEMU - DoS
Title source: llmDescription
The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via an entry with the same value for buffer length and pointer position.
References (9)
Scores
CVSS v3
6.0
EPSS
0.0004
EPSS Percentile
10.8%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
Classification
CWE
CWE-835
Status
published
Affected Products (11)
qemu/qemu
< 2.7.1
debian/debian_linux
opensuse/leap
redhat/openstack
redhat/openstack
redhat/openstack
redhat/openstack
redhat/openstack
redhat/openstack
redhat/virtualization
n/a/n/a
Timeline
Published
Nov 04, 2016
Tracked Since
Feb 18, 2026