CVE-2010-0297 describes a buffer overflow vulnerability in QEMU versions prior to 0.11.1, specifically within the usb_host_handle_control function in its USB passthrough handling. This flaw allows a malicious guest OS user to trigger a denial of service (crash or hang) in the guest, or potentially execute arbitrary code on the host OS, through a specially crafted USB packet. With a CVSS score of 7.2, it is considered highly severe, requiring local access but with low attack complexity, leading to complete compromise of confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage, suggesting it is not widely targeted.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.11.0CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:* | ||
0.1.0CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:0.1.0:*:*:*:*:*:*:* | ||
0.1.1CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:0.1.1:*:*:*:*:*:*:* | ||
0.1.2CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:0.1.2:*:*:*:*:*:*:* | ||
0.1.3CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:0.1.3:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.