CVE-2017-5987
MEDIUMQemu < 2.8.1.1 - Infinite Loop
Title source: ruleDescription
The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local OS guest privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors involving the transfer mode register during multi block transfer.
References (7)
Scores
CVSS v3
5.5
EPSS
0.0007
EPSS Percentile
20.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-835
Status
published
Affected Products (8)
qemu/qemu
< 2.8.1.1
qemu/qemu
qemu/qemu
qemu/qemu
qemu/qemu
qemu/qemu
debian/debian_linux
n/a/n/a
Timeline
Published
Mar 20, 2017
Tracked Since
Feb 18, 2026