CVE-2012-0029: Kvm Group Qemu-Kvm
High severity, CVSS 7.4. EPSS: 0.9% chance of exploitation in the next 30 days.
Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and possibly other versions, allows guest OS users to cause a denial of service (QEMU crash) and possibly execute arbitrary code via crafted legacy mode packets.
Affected products
- Kvm Group Qemu-Kvm: version 0.12 only
Published 2012-01-27. Last modified 2026-06-16.