The rc4030_write function in hw/dma/rc4030.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via a large interval timer reload value.
The product divides a value by zero.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Qemu | Qemu | * | 2.8.1.1 (including) |
Qemu | Qemu | 2.9.0-rc0 (including) | 2.9.0-rc0 (including) |