QEMU (aka Quick Emulator) built with the ColdFire Fast Ethernet Controller emulator support is vulnerable to an infinite loop issue. It could occur while receiving packets in 'mcf_fec_receive'. A privileged user/process inside guest could use this issue to crash the QEMU process on the host leading to DoS.
| Software | From | Fixed in |
|---|---|---|
| qemu / qemu | - | 2.7.1.x |
| qemu / qemu | 2.8.0-rc0 | 2.8.0-rc0.x |
| qemu / qemu | 2.8.0-rc1 | 2.8.0-rc1.x |
| qemu / qemu | 2.8.0-rc2 | 2.8.0-rc2.x |
| debian / debian_linux | 8.0 | 8.0.x |