[Forgot Password]
Login  Register Subscribe

23631

 
 

127000

 
 

102010

 
 

909

 
 

81341

 
 

133

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML view JSON

CVE-2007-2893Date: (C)2007-05-29   (M)2018-02-19


Heap-based buffer overflow in the bx_ne2k_c::rx_frame function in iodev/ne2k.cc in the emulated NE2000 device in Bochs 2.3 allows local users of the guest operating system to write to arbitrary memory locations and gain privileges on the host operating system via vectors that cause TXCNT register values to exceed the device memory size, aka "RX Frame heap overflow."

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score  : CVSS Score  : 7.2
Exploit Score: Exploit Score: 3.9
Impact Score : Impact Score : 10.0
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: Access Vector: LOCAL
Attack Complexity: Access Complexity: LOW
Privileges Required: Authentication: NONE
User Interaction: Confidentiality: COMPLETE
Scope: Integrity: COMPLETE
Confidentiality: Availability: COMPLETE
Integrity:  
Availability:  
  





Reference:
BID-24246
SECUNIA-25470
SECUNIA-26364
SECUNIA-27715
OSVDB-36799
ADV-2007-1936
DSA-1351
GLSA-200711-21
bochs-ne2000-bo(34508)
http://bugs.gentoo.org/show_bug.cgi?id=188148
http://taviso.decsystem.org/virtsec.pdf

CWE    1
CWE-119

© 2013 SecPod Technologies