CVE-2012-0029: Kvm Group Qemu-Kvm

High severity, CVSS 7.4. EPSS: 0.9% chance of exploitation in the next 30 days.

Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and possibly other versions, allows guest OS users to cause a denial of service (QEMU crash) and possibly execute arbitrary code via crafted legacy mode packets.

Affected products

Published 2012-01-27. Last modified 2026-06-16.