CVE-2015-7504 is a heap-based buffer overflow in QEMU's pcnet_receive function, affecting various QEMU and Xen installations on Debian Linux. This vulnerability allows a guest OS administrator to trigger a denial of service or potentially execute arbitrary code by sending crafted packets in loopback mode. Rated 8.8 HIGH, it presents a significant risk with local access, low attack complexity, and high impact on confidentiality, integrity, and availability. While no public exploits or Metasploit modules are available, and it is not in CISA KEV, the vulnerability has received some community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.4.1CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:* | ||
2.5.0CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:2.5.0:rc0:*:*:*:*:*:* | ||
2.5.0CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:2.5.0:rc1:*:*:*:*:*:* | ||
2.5.0CPE matchmatch criteria | cpe:2.3:a:qemu:qemu:2.5.0:rc2:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2015-7504
Sep 8, 2020Heap-based buffer overflow in the pcnet_receive function in hw/net/pcnet.c in QEMU allows guest OS administrators to cause a denial of service (instance crash) or possibly execute arbitrary code via a series of packets in loopback mode.
Oct 10, 2017Qemu: net: pcnet: heap overflow vulnerability in pcnet_receive
Nov 30, 2015