Information disclosure in QEMU - CVE-2015-5165
Published: August 12, 2015 / Updated: July 28, 2020
Vulnerability identifier: #VU32393
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2015-5165
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.
Affected software
QEMU
qemu (Alpine package)
qemu
xen
SUSE Linux
Fedora
qemu (Alpine package)
qemu
xen
SUSE Linux
Fedora
How to mitigate CVE-2015-5165
Install update from vendor's website.
qemu (Alpine package) - update to 1.6.2-r6
qemu - addressed in versions 2.1.3-9.fc21, 2.3.0-7.fc22, 2.3.1-1.fc22, 2.4.0-0.2.rc4.fc23, 2.4.0-1.fc23
xen - addressed in versions 4.4.3-1.fc21, 4.4.3-3.fc21, 4.5.1-6.fc22, 4.5.1-6.fc23, 4.5.1-8.fc22
qemu - addressed in versions 2.1.3-9.fc21, 2.3.0-7.fc22, 2.3.1-1.fc22, 2.4.0-0.2.rc4.fc23, 2.4.0-1.fc23
xen - addressed in versions 4.4.3-1.fc21, 4.4.3-3.fc21, 4.5.1-6.fc22, 4.5.1-6.fc23, 4.5.1-8.fc22
External References
- http://lists.fedoraproject.org/pipermail/package-announce/2015-September/165373.html
- http://lists.fedoraproject.org/pipermail/package-announce/2015-September/167792.html
- http://lists.fedoraproject.org/pipermail/package-announce/2015-September/167820.html
- http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00018.html
- http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00027.html
- http://rhn.redhat.com/errata/RHSA-2015-1674.html
- http://rhn.redhat.com/errata/RHSA-2015-1683.html
- http://rhn.redhat.com/errata/RHSA-2015-1739.html
- http://rhn.redhat.com/errata/RHSA-2015-1740.html
- http://rhn.redhat.com/errata/RHSA-2015-1793.html
- http://rhn.redhat.com/errata/RHSA-2015-1833.html
- http://support.citrix.com/article/CTX201717
- http://www.debian.org/security/2015/dsa-3348
- http://www.debian.org/security/2015/dsa-3349
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
- http://www.securityfocus.com/bid/76153
- http://www.securitytracker.com/id/1033176
- http://xenbits.xen.org/xsa/advisory-140.html
Related Security Bulletins
- Information disclosure in QEMU
- SUSE Linux update for xen
- Information disclosure in qemu (Alpine package)
- SUSE Linux update for Xen
- SUSE Linux update for xen
- Fedora 23 update for qemu
- Fedora 22 update for qemu
- Fedora 21 update for qemu
- Fedora 23 update for qemu
- Fedora 22 update for qemu
- Fedora 23 update for xen
- Fedora 22 update for xen
- Fedora 21 update for xen
- Fedora 22 update for xen
- Fedora 21 update for xen