CVE-2020-14394

LOW

QEMU - Denial of Service via Infinite Loop in USB xHCI Controller Emulation

Title source: llm
STIX 2.1

Description

An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.

References (4)

Core 4

Scores

CVSS v3 3.2
EPSS 0.0036
EPSS Percentile 28.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:L

Details

CWE
CWE-835
Status published
Products (11)
fedoraproject/extra_packages_for_enterprise_linux 7.0
fedoraproject/fedora 33
fedoraproject/fedora 37
qemu/qemu 6.1.50
redhat/enterprise_linux 5.0
redhat/enterprise_linux 6.0
redhat/enterprise_linux 7.0
redhat/enterprise_linux 8.0
redhat/enterprise_linux 9.0
redhat/openstack_platform 10.0
... and 1 more
Published Aug 17, 2022
Tracked Since Feb 18, 2026