Lucene search

K
redhatcveRedhat.comRH:CVE-2020-25723
HistoryNov 18, 2020 - 8:09 a.m.

CVE-2020-25723

2020-11-1808:09:43
redhat.com
access.redhat.com
34
qemu
usb
ehci
vulnerability
denial of service

EPSS

0

Percentile

14.1%

A reachable assertion vulnerability was found in the USB EHCI emulation code of QEMU. This issue occurs while processing USB requests due to missed handling of DMA memory map failure. This flaw allows a malicious privileged user within the guest to send bogus USB requests and crash the QEMU process on the host, resulting in a denial of service. The highest threat from this vulnerability is to system availability.