CVE-2017-9330Infinite Loop in Qemu

CWE-835Infinite Loop17 documents7 sources
Severity
6.5MEDIUMNVD
NVD5.6OSV7.8
EPSS
0.1%
top 83.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 8
Latest updateMay 13

Description

QEMU (aka Quick Emulator) before 2.9.0, when built with the USB OHCI Emulation support, allows local guest OS users to cause a denial of service (infinite loop) by leveraging an incorrect return value, a different vulnerability than CVE-2017-6505.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:HExploitability: 1.1 | Impact: 4.0

Affected Packages4 packages

debiandebian/qemu< qemu 1:2.8+dfsg-7 (bookworm)+1
Debianqemu/qemu< 1:2.8+dfsg-4+7
Ubuntuqemu/qemu< 2.0.0+dfsg-2ubuntu1.36+3
NVDqemu/qemu2.8.1.1

Also affects: Debian Linux 8.0, 9.0

Patches

🔴Vulnerability Details

6
GHSA
GHSA-pfx6-rwwf-8mgx: The ohci_service_ed_list function in hw/usb/hcd-ohci2022-05-13
GHSA
GHSA-fxf9-ppj6-ph5r: QEMU (aka Quick Emulator) before 22022-05-13
OSV
qemu regression2017-09-20
OSV
qemu vulnerabilities2017-09-13
OSV
CVE-2017-9330: QEMU (aka Quick Emulator) before 22017-06-08

📋Vendor Advisories

6
Ubuntu
QEMU regression2017-09-20
Ubuntu
QEMU vulnerabilities2017-09-13
Red Hat
Qemu: usb: ohci: infinite loop due to incorrect return value2017-02-07
Red Hat
Qemu: usb: an infinite loop issue in ohci_service_ed_list2017-02-07
Debian
CVE-2017-9330: qemu - QEMU (aka Quick Emulator) before 2.9.0, when built with the USB OHCI Emulation s...2017

💬Community

3
Bugzilla
CVE-2017-9330 Qemu: usb: ohci: infinite loop due to incorrect return value2017-06-01
Bugzilla
CVE-2017-9330 Qemu: usb: ohci: infinite loop due to incorrect return value [fedora-all]2017-06-01
Bugzilla
CVE-2017-9330 xen: Qemu: usb: ohci: infinite loop due to incorrect return value [fedora-all]2017-06-01