cbcvebase.
CVE-2012-0029
published 2012-01-27

CVE-2012-0029: Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and possibly other versions, allows guest OS…

PriorityP334high7.4CVSS 2.0
AVAACMAuSCCICAC
EPSS
0.92%
56.4th percentile
Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and possibly other versions, allows guest OS users to cause a denial of service (QEMU crash) and possibly execute arbitrary code via crafted legacy mode packets.

Affected

6 ranges
VendorProductVersion rangeFixed in
debianxen< xen 4.1.3~rc1+hg-20120614.a9c0a89c08f2-1 (bookworm)xen 4.1.3~rc1+hg-20120614.a9c0a89c08f2-1 (bookworm)
kvm_groupqemu-kvm
xenxen>= 0 < 4.1.3~rc1+hg-20120614.a9c0a89c08f2-14.1.3~rc1+hg-20120614.a9c0a89c08f2-1
xenxen>= 0 < 4.1.3~rc1+hg-20120614.a9c0a89c08f2-14.1.3~rc1+hg-20120614.a9c0a89c08f2-1
xenxen>= 0 < 4.1.3~rc1+hg-20120614.a9c0a89c08f2-14.1.3~rc1+hg-20120614.a9c0a89c08f2-1
xenxen>= 0 < 4.1.3~rc1+hg-20120614.a9c0a89c08f2-14.1.3~rc1+hg-20120614.a9c0a89c08f2-1

CVSS provenance

nvdv2.07.4HIGHAV:A/AC:M/Au:S/C:C/I:C/A:C
osv7.4HIGH
vendor_debian7.4MEDIUM
vendor_redhat7.4HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.