Lucene search

K
osvGoogleOSV:CVE-2021-3416
HistoryMar 18, 2021 - 8:15 p.m.

CVE-2021-3416

2021-03-1820:15:13
Google
osv.dev
14
stack overflow
qemu
nic emulators
dos scenario
cpu consumption
dma checks

AI Score

6.7

Confidence

Low

EPSS

0.001

Percentile

19.0%

A potential stack overflow via infinite loop issue was found in various NIC emulators of QEMU in versions up to and including 5.2.0. The issue occurs in loopback mode of a NIC wherein reentrant DMA checks get bypassed. A guest user/process may use this flaw to consume CPU cycles or crash the QEMU process on the host resulting in DoS scenario.