CVE-2012-0029
Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and possibly other versions, allows guest OS users to cause a denial of service (QEMU crash) and possibly execute arbitrary code via crafted legacy mode packets.
Date published : 2012-01-27
http://www.securityfocus.com/bid/51642
http://git.qemu.org/?p=qemu.git;a=log;h=refs/heads/stable-1.0