Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-0297
HistoryFeb 12, 2010 - 12:00 a.m.

CVE-2010-0297

2010-02-1200:00:00
ubuntu.com
ubuntu.com
11

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.001

Percentile

41.6%

Buffer overflow in the usb_host_handle_control function in the USB
passthrough handling implementation in usb-linux.c in QEMU before 0.11.1
allows guest OS users to cause a denial of service (guest OS crash or hang)
or possibly execute arbitrary code on the host OS via a crafted USB packet.

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.001

Percentile

41.6%