Quick Emulator(Qemu) built with the AMD PC-Net II emulator support is vulnerable to an infinite loop issue. It could occur while receiving packets via pcnet_receive().
A privileged user/process inside guest could use this issue to crash the Qemu process on the host leading to DoS.
Name: Li Qiang (Qihoo 360 Inc.)
Created attachment 1149665 [details]
Created qemu tracking bugs for this issue:
Affects: fedora-all [bug 1381196]
Author: Prasad J Pandit <email@example.com>
Date: Fri Sep 30 00:27:33 2016 +0530
net: pcnet: check rx/tx descriptor ring length
*** Bug 1329596 has been marked as a duplicate of this bug. ***