[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2007-2893Date: (C)2007-05-29   (M)2023-12-22


Heap-based buffer overflow in the bx_ne2k_c::rx_frame function in iodev/ne2k.cc in the emulated NE2000 device in Bochs 2.3 allows local users of the guest operating system to write to arbitrary memory locations and gain privileges on the host operating system via vectors that cause TXCNT register values to exceed the device memory size, aka "RX Frame heap overflow."

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.2
Exploit Score: 3.9
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
BID-24246
SECUNIA-25470
SECUNIA-26364
SECUNIA-27715
OSVDB-36799
ADV-2007-1936
DSA-1351
GLSA-200711-21
bochs-ne2000-bo(34508)
http://bugs.gentoo.org/show_bug.cgi?id=188148
http://taviso.decsystem.org/virtsec.pdf

CWE    1
CWE-119

© SecPod Technologies