Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2007-2894Project Bochs vulnerability

6 documents6 sources
Severity
2.1LOWNVD
EPSS
0.1%
top 70.09%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedMay 30
Latest updateMay 1

Description

The emulated floppy disk controller in Bochs 2.3 allows local users of the guest operating system to cause a denial of service (virtual machine crash) via unspecified vectors, resulting in a divide-by-zero error.

CVSS vector

AV:L/AC:L/C:N/I:N/A:PExploitability: 3.9 | Impact: 2.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-f2jw-776x-83xf: The emulated floppy disk controller in Bochs 22022-05-01
OSV
CVE-2007-2894: The emulated floppy disk controller in Bochs 22007-05-30

💥Exploits & PoCs

1
Exploit-DB
Bochs 2.3 - Buffer Overflow (Denial of Service) (PoC)2007-05-31

📋Vendor Advisories

1
Debian
CVE-2007-2894: bochs - The emulated floppy disk controller in Bochs 2.3 allows local users of the guest...2007

💬Community

1
Bugzilla
CVE-2007-2894: bochs guest OS local user DoS2007-05-30