CVE-2015-3209
Publication date 10 June 2015
Last updated 24 July 2024
Ubuntu priority
Description
Heap-based buffer overflow in the PCNET controller in QEMU allows remote attackers to execute arbitrary code by sending a packet with TXSTATUS_STARTPACKET set and then a crafted packet with TXSTATUS_DEVICEOWNS set.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| qemu | ||
| 14.04 LTS trusty |
Fixed 2.0.0+dfsg-2ubuntu1.13
|
|
| qemu-kvm | ||
| 14.04 LTS trusty | Not in release | |
| xen | ||
| 14.04 LTS trusty |
Fixed 4.4.2-0ubuntu0.14.04.2
|
|
Patch details
| Package | Patch details |
|---|---|
| qemu |
References
Related Ubuntu Security Notices (USN)
- USN-2630-1
- QEMU vulnerabilities
- 10 June 2015