Use-after-free in QEMU - CVE-2016-9923
Published: December 24, 2016 / Updated: August 9, 2020
QEMU
Detailed vulnerability description
The vulnerability allows a local authenticated user to a crash the entire system.
Quick Emulator (Qemu) built with the 'chardev' backend support is vulnerable to a use after free issue. It could occur while hotplug and unplugging the device in the guest. A guest user/process could use this flaw to crash a Qemu process on the host resulting in DoS.