Information disclosure in QEMU - CVE-2015-5165

 

Information disclosure in QEMU - CVE-2015-5165

Published: August 12, 2015 / Updated: July 28, 2020


Vulnerability identifier: #VU32393
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2015-5165
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.

The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.


Affected software

QEMU
qemu (Alpine package)
qemu
xen
SUSE Linux
Fedora

How to mitigate CVE-2015-5165

Install update from vendor's website.

qemu (Alpine package) - update to 1.6.2-r6
qemu - addressed in versions 2.1.3-9.fc21, 2.3.0-7.fc22, 2.3.1-1.fc22, 2.4.0-0.2.rc4.fc23, 2.4.0-1.fc23
xen - addressed in versions 4.4.3-1.fc21, 4.4.3-3.fc21, 4.5.1-6.fc22, 4.5.1-6.fc23, 4.5.1-8.fc22

External References

Related Security Bulletins