HIGH · 7.5

CVE-2015-3209

Heap-based buffer overflow in the PCNET controller in QEMU allows remote attackers to execute arbitrary code by sending a packet with TXSTATUS_STARTPACKET set and then a crafted packet with TXSTATUS_D...

Vulnerability Description

Heap-based buffer overflow in the PCNET controller in QEMU allows remote attackers to execute arbitrary code by sending a packet with TXSTATUS_STARTPACKET set and then a crafted packet with TXSTATUS_DEVICEOWNS set.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
QemuQemu<= 2.3.1
JuniperJunos Space<= 15.1
CanonicalUbuntu Linux12.04
DebianDebian Linux7.0
RedhatEnterprise Linux Desktop6.0
RedhatEnterprise Linux Eus6.6
RedhatEnterprise Linux Server5.0
RedhatEnterprise Linux Server Aus6.6
RedhatEnterprise Linux Server Tus6.6
RedhatEnterprise Linux Workstation5.0
RedhatOpenstack5.0
RedhatVirtualization3.0
RedhatEnterprise Linux6.0
FedoraprojectFedora20
SuseLinux Enterprise Debuginfo11
SuseLinux Enterprise Desktop11
SuseLinux Enterprise Server10
SuseLinux Enterprise Software Development Kit11
AristaEos4.12

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-3209?

CVE-2015-3209 is a vulnerability with a CVSS score of 7.5 (HIGH). Heap-based buffer overflow in the PCNET controller in QEMU allows remote attackers to execute arbitrary code by sending a packet with TXSTATUS_STARTPACKET set and then a crafted packet with TXSTATUS_D...

How severe is CVE-2015-3209?

CVE-2015-3209 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-3209?

Check the references section above for vendor advisories and patch information. Affected products include: Qemu Qemu, Juniper Junos Space, Canonical Ubuntu Linux, Debian Debian Linux, Redhat Enterprise Linux Desktop.