9.8

CVE-2016-4002

Buffer overflow in the mipsnet_receive function in hw/net/mipsnet.c in QEMU, when the guest NIC is configured to accept large packets, allows remote attackers to cause a denial of service (memory corruption and QEMU crash) or possibly execute arbitrary code via a packet larger than 1514 bytes.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qemu ≫ Qemu Version <= 2.6.2
Fedoraproject ≫ Fedora Version 22
Fedoraproject ≫ Fedora Version 23
Fedoraproject ≫ Fedora Version 24
Canonical ≫ Ubuntu Linux Version 12.04 SwEdition esm
Canonical ≫ Ubuntu Linux Version 14.04 SwEdition esm
Canonical ≫ Ubuntu Linux Version 15.10
Canonical ≫ Ubuntu Linux Version 16.04 SwEdition lts
Debian ≫ Debian Linux Version 8.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 6.34% 0.928
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
NIST 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

http://www.ubuntu.com/usn/USN-2974-1
Third Party Advisory
https://lists.debian.org/debian-lts-announce/2018/11/msg00038.html
Third Party Advisory
Mailing List
http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183275.html
Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/183350.html
Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184209.html
Third Party Advisory
http://www.openwall.com/lists/oss-security/2016/04/11/6
Patch
Third Party Advisory
Mailing List
http://www.openwall.com/lists/oss-security/2016/04/12/7
Patch
Third Party Advisory
Mailing List
http://www.securityfocus.com/bid/85992
Third Party Advisory
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=1326082
Patch
Third Party Advisory
Issue Tracking
https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg01131.html
Patch
Third Party Advisory
Mailing List
https://security.gentoo.org/glsa/201609-01
Third Party Advisory