← Back

CVE-2014-9718

nvd nist
Published: Apr 21, 2015Modified: May 6, 2026

JSON object

Loading...
4.9
Vector
AV:L/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 3.9 / Impact: 6.9
Source: NVD

Description

The (1) BMDMA and (2) AHCI HBA interfaces in the IDE functionality in QEMU 1.0 through 2.1.3 have multiple interpretations of a function's return value, which allows guest OS users to cause a host OS denial of service (memory consumption or infinite loop, and system crash) via a PRDT with zero complete sectors, related to the bmdma_prepare_buf and ahci_dma_prepare_buf functions.

Affected (43)

Products: Debian: Debian Linux · Qemu: Qemu
1 product
Debian Linux
1 product
Qemu
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Configuration B
42 vulnerable
Vulnerable SoftwareAffected Versions
Qemu
Version 1.0.1
Version 1.0
Version 1.0 rc1
Version 1.0 rc2
Version 1.0 rc3
Version 1.0 rc4
Version 1.1
Version 1.1 rc1
Version 1.1 rc2
Version 1.1 rc3
Version 1.1 rc4
Version 1.4.1
Version 1.4.2
Version 1.5.0
Version 1.5.0 rc1
Version 1.5.0 rc2
Version 1.5.0 rc3
Version 1.5.1
Version 1.5.2
Version 1.5.3
Version 1.6.0
Version 1.6.0 rc1
Version 1.6.0 rc2
Version 1.6.0 rc3
Version 1.6.1
Version 1.6.2
Version 1.7.1
Version 2.0.0
Version 2.0.0 rc0
Version 2.0.0 rc1
Version 2.0.0 rc2
Version 2.0.0 rc3
Version 2.0.2
Version 2.1.0
Version 2.1.0 rc0
Version 2.1.0 rc1
Version 2.1.0 rc2
Version 2.1.0 rc3
Version 2.1.0 rc5
Version 2.1.1
Version 2.1.2
Version 2.1.3

Related CWEs

References (8)

Timeline

No history available yet.