cbcvebase.
CVE-2015-5166
published 2015-08-12

CVE-2015-5166: Use-after-free vulnerability in QEMU in Xen 4.5.x and earlier does not completely unplug emulated block devices, which allows local HVM guest users to gain…

PriorityP431high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.43%
34.6th percentile
Use-after-free vulnerability in QEMU in Xen 4.5.x and earlier does not completely unplug emulated block devices, which allows local HVM guest users to gain privileges by unplugging a block device twice.

Affected

15 ranges
VendorProductVersion rangeFixed in
debianqemu< qemu 1:2.4+dfsg-1a (bookworm)qemu 1:2.4+dfsg-1a (bookworm)
debianxen< qemu 1:2.4+dfsg-1a (bookworm)qemu 1:2.4+dfsg-1a (bookworm)
fedoraprojectfedora
fedoraprojectfedora
qemuqemu>= 0 < 1:2.4+dfsg-1a1:2.4+dfsg-1a
qemuqemu>= 0 < 1:2.4+dfsg-1a1:2.4+dfsg-1a
qemuqemu>= 0 < 1:2.4+dfsg-1a1:2.4+dfsg-1a
qemuqemu>= 0 < 1:2.4+dfsg-1a1:2.4+dfsg-1a
qemuqemu>= 0 < 2.0.0+dfsg-2ubuntu1.172.0.0+dfsg-2ubuntu1.17
xenxen<= 4.5.0
xenxen
xenxen>= 0 < 4.4.0-14.4.0-1
xenxen>= 0 < 4.4.0-14.4.0-1
xenxen>= 0 < 4.4.0-14.4.0-1
xenxen>= 0 < 4.4.0-14.4.0-1

CVSS provenance

nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2HIGH
vendor_redhat7.2HIGH
vendor_ubuntu4.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.