Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2014-9718


The (1) BMDMA and (2) AHCI HBA interfaces in the IDE functionality in QEMU 1.0 through 2.1.3 have multiple interpretations of a function's return value, which allows guest OS users to cause a host OS denial of service (memory consumption or infinite loop, and system crash) via a PRDT with zero complete sectors, related to the bmdma_prepare_buf and ahci_dma_prepare_buf functions.


Published

2015-04-21T16:59:00.077

Last Modified

2025-04-12T10:46:40.837

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.9 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:N/I:N/A:C

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: COMPLETE
Exploitability Score

3.9

Impact Score

6.9

Weaknesses
  • Type: Primary
    CWE-399

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System debian debian_linux 8.0 Yes
Application qemu qemu 1.0 Yes
Application qemu qemu 1.0 Yes
Application qemu qemu 1.0 Yes
Application qemu qemu 1.0 Yes
Application qemu qemu 1.0 Yes
Application qemu qemu 1.0.1 Yes
Application qemu qemu 1.1 Yes
Application qemu qemu 1.1 Yes
Application qemu qemu 1.1 Yes
Application qemu qemu 1.1 Yes
Application qemu qemu 1.1 Yes
Application qemu qemu 1.4.1 Yes
Application qemu qemu 1.4.2 Yes
Application qemu qemu 1.5.0 Yes
Application qemu qemu 1.5.0 Yes
Application qemu qemu 1.5.0 Yes
Application qemu qemu 1.5.0 Yes
Application qemu qemu 1.5.1 Yes
Application qemu qemu 1.5.2 Yes
Application qemu qemu 1.5.3 Yes
Application qemu qemu 1.6.0 Yes
Application qemu qemu 1.6.0 Yes
Application qemu qemu 1.6.0 Yes
Application qemu qemu 1.6.0 Yes
Application qemu qemu 1.6.1 Yes
Application qemu qemu 1.6.2 Yes
Application qemu qemu 1.7.1 Yes
Application qemu qemu 2.0.0 Yes
Application qemu qemu 2.0.0 Yes
Application qemu qemu 2.0.0 Yes
Application qemu qemu 2.0.0 Yes
Application qemu qemu 2.0.0 Yes
Application qemu qemu 2.0.2 Yes
Application qemu qemu 2.1.0 Yes
Application qemu qemu 2.1.0 Yes
Application qemu qemu 2.1.0 Yes
Application qemu qemu 2.1.0 Yes
Application qemu qemu 2.1.0 Yes
Application qemu qemu 2.1.0 Yes
Application qemu qemu 2.1.1 Yes
Application qemu qemu 2.1.2 Yes
Application qemu qemu 2.1.3 Yes

References