CVE-2020-27661

A divide-by-zero issue was found in dwc2_handle_packet in hw/usb/hcd-dwc2.c in the hcd-dwc2 USB host controller emulation of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service.
Configurations

Configuration 1 (hide)

cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:21

Type Values Removed Values Added
References () https://bugzilla.redhat.com/show_bug.cgi?id=1890653 - Issue Tracking, Patch, Third Party Advisory () https://bugzilla.redhat.com/show_bug.cgi?id=1890653 - Issue Tracking, Patch, Third Party Advisory
References () https://git.qemu.org/?p=qemu.git%3Ba=commit%3Bh=bea2a9e3e00b275dc40cfa09c760c715b8753e03 - () https://git.qemu.org/?p=qemu.git%3Ba=commit%3Bh=bea2a9e3e00b275dc40cfa09c760c715b8753e03 -
References () https://lists.nongnu.org/archive/html/qemu-devel/2020-10/msg04263.html - Mailing List, Patch, Third Party Advisory () https://lists.nongnu.org/archive/html/qemu-devel/2020-10/msg04263.html - Mailing List, Patch, Third Party Advisory
References () https://security.netapp.com/advisory/ntap-20210720-0010/ - Third Party Advisory () https://security.netapp.com/advisory/ntap-20210720-0010/ - Third Party Advisory
References () https://www.mail-archive.com/debian-bugs-dist%40lists.debian.org/msg1770368.html - () https://www.mail-archive.com/debian-bugs-dist%40lists.debian.org/msg1770368.html -

13 May 2022, 17:28

Type Values Removed Values Added
References
  • (CONFIRM) https://security.netapp.com/advisory/ntap-20210720-0010/ - Third Party Advisory

14 Jun 2021, 15:23

Type Values Removed Values Added
CPE cpe:2.3:a:qemu:qemu:-:*:*:*:*:*:*:* cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*
References (MISC) https://www.mail-archive.com/debian-bugs-dist@lists.debian.org/msg1770368.html - Third Party Advisory (MISC) https://www.mail-archive.com/debian-bugs-dist@lists.debian.org/msg1770368.html - Patch, Third Party Advisory
References (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=1890653 - Issue Tracking, Third Party Advisory (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=1890653 - Issue Tracking, Patch, Third Party Advisory

11 Jun 2021, 14:45

Type Values Removed Values Added
CWE CWE-369
CPE cpe:2.3:a:qemu:qemu:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 2.1
v3 : 6.5
References (MISC) https://git.qemu.org/?p=qemu.git;a=commit;h=bea2a9e3e00b275dc40cfa09c760c715b8753e03 - (MISC) https://git.qemu.org/?p=qemu.git;a=commit;h=bea2a9e3e00b275dc40cfa09c760c715b8753e03 - Patch, Vendor Advisory
References (MISC) https://lists.nongnu.org/archive/html/qemu-devel/2020-10/msg04263.html - (MISC) https://lists.nongnu.org/archive/html/qemu-devel/2020-10/msg04263.html - Mailing List, Patch, Third Party Advisory
References (MISC) https://www.mail-archive.com/debian-bugs-dist@lists.debian.org/msg1770368.html - (MISC) https://www.mail-archive.com/debian-bugs-dist@lists.debian.org/msg1770368.html - Third Party Advisory
References (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=1890653 - (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=1890653 - Issue Tracking, Third Party Advisory

02 Jun 2021, 16:28

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-02 16:15

Updated : 2024-11-21 05:21


NVD link : CVE-2020-27661

Mitre link : CVE-2020-27661

CVE.ORG link : CVE-2020-27661


JSON object : View

Products Affected

qemu

  • qemu
CWE
CWE-369

Divide By Zero