CVE-2020-14364: Medium severity qemu vulnerability
An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice 'setuplen' exceeds its 'databuf[4096]' in the dotokenin, dotokenout routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.
Other sources
An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU. This issue occurs while processing USB packets from a guest when USBDevice 'setuplen' exceeds its 'databuf[4096]' in the dotokenin, dotokenout routines. This flaw allows a guest user to crash the QEMU process, resulting in a denial of service, or the potential execution of arbitrary code with the privileges of the QEMU process on the host.
An out-of-bounds read/write access issue was found in the USB emulator of the QEMU. It occurs while processing USB packets from a guest, when USBDevice 'setuplen' exceeds the 'databuf[4096]' in dotokenin, dotokenout routines.
A guest user may use this flaw to crash the QEMU process resulting in DoS OR potentially execute arbitrary code with the privileges of the QEMU process on the host.
Upstream patch: --------------- -> https://lists.gnu.org/archive/html/qemu-devel/2020-08/msg05969.html
— Red Hat
Affected Software
Remediation
Information
Patch Available
Event History
Parent advisories
This vulnerability appears in the following advisories.
- RHSA-2020:4290
- RHSA-2020:4291
- RHSA-2020:4056
- RHSA-2020:4054
- RHSA-2020:4055
- RHSA-2020:4078
- RHSA-2020:4079
- RHSA-2020:4048
- RHSA-2020:4050
- RHSA-2020:4051
- RHSA-2020:4052
- RHSA-2020:4162
- RHSA-2020:4047
- RHSA-2020:4053
- RHSA-2020:4059
- RHSA-2020:4058
- RHSA-2020:4049
- RHSA-2020:4176
- RHSA-2020:4167
- RHSA-2020:4111
- RHSA-2020:4115
- RHSA-2020:4172
Frequently Asked Questions
What is CVE-2020-14364?
CVE-2020-14364 is an out-of-bounds read/write access flaw found in the USB emulator of the QEMU.
What is the severity of CVE-2020-14364?
CVE-2020-14364 has a severity level of high.
What software versions are affected by CVE-2020-14364?
QEMU versions before 5.2.0 are affected by CVE-2020-14364.
How can I fix CVE-2020-14364?
To fix CVE-2020-14364, update QEMU to version 5.2.0 or later.
Are there any references for CVE-2020-14364?
Yes, you can find more information about CVE-2020-14364 at the following references: [link1](https://lists.gnu.org/archive/html/qemu-devel/2020-08/msg05969.html) [link2](https://www.openwall.com/lists/oss-security/2020/08/24/3) [link3](https://www.openwall.com/lists/oss-security/2020/08/24/2)