AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2014-0148

MEDIUM · CVSS 5.5 EPSS 0.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-09-29 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2014-0148
Severity
MEDIUM
CVSS
5.5
EPSS
0.30%

Original NVD Description

Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other potential issues when calculating BAT entries, due to missing bounds checks for block_size and logical_sector_size variables. These are used to derive other fields like 'sectors_per_block' etc. A user able to alter the Qemu disk image could ise this flaw to crash the Qemu instance resulting in DoS.

Related CVEs

Other vulnerabilities affecting the same vendor(s)