Use-after-free in QEMU - CVE-2014-3471
Published: January 12, 2018 / Updated: August 8, 2020
QEMU
Detailed vulnerability description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a use-after-free error when processing hotplug and hotunplug operations of Virtio block devices. A local guest OS users can cause a denial of service (QEMU instance crash).
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.