Description
The ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular isochronous transfer descriptor (iTD) list.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-3469-1 | qemu security update |
Debian DSA |
DSA-3470-1 | qemu-kvm security update |
Debian DSA |
DSA-3471-1 | qemu security update |
EUVD |
EUVD-2015-8437 | The ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular isochronous transfer descriptor (iTD) list. |
Ubuntu USN |
USN-2891-1 | QEMU vulnerabilities |
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T08:20:43.261Z
Reserved: 2015-12-14T00:00:00.000Z
Link: CVE-2015-8558
No data.
Status : Modified
Published: 2016-05-23T19:59:00.307
Modified: 2026-05-06T22:30:45.220
Link: CVE-2015-8558
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN