The process_tx_desc function in hw/net/e1000.c in QEMU before 2.4.0.1 does not properly process transmit descriptor data when sending a network packet, which allows attackers to cause a denial of service (infinite loop and guest crash) via unspecified vectors.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
|
Information
Published : 2020-01-31 14:15
Updated : 2021-11-30 11:50
NVD link : CVE-2015-6815
Mitre link : CVE-2015-6815
JSON object : View
CWE
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
Products Affected
xen
- xen
novell
- suse_linux_enterprise_server
- suse_linux_enterprise_desktop
- suse_linux_enterprise_software_development_kit
- suse_linux_enterprise_debuginfo
redhat
- openstack
- enterprise_linux
arista
- eos
fedoraproject
- fedora
canonical
- ubuntu_linux
qemu
- qemu