CVE-2016-2857Improper Restriction of Operations within the Bounds of a Memory Buffer in Qemu

Severity
8.4HIGHNVD
EPSS
0.1%
top 81.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 12
Latest updateMay 13

Description

The net_checksum_calculate function in net/checksum.c in QEMU allows local guest OS users to cause a denial of service (out-of-bounds heap read and crash) via the payload length in a crafted packet.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:HExploitability: 2.0 | Impact: 5.8

Affected Packages7 packages

Debianqemu/qemu< 1:2.6+dfsg-1+3
NVDqemu/qemu2.5.1.1
NVDredhat/openstack5 versions+4
NVDredhat/virtualization3.0, 4.0+1

Also affects: Debian Linux 8.0, Ubuntu Linux 12.04, 14.04, 15.10, 16.04, Enterprise Linux 7.3, 7.4, 7.5, 7.6, 7.7

🔴Vulnerability Details

3
GHSA
GHSA-r736-2mvg-hchh: The net_checksum_calculate function in net/checksum2022-05-13
OSV
CVE-2016-2857: The net_checksum_calculate function in net/checksum2016-04-12
CVEList
CVE-2016-2857: The net_checksum_calculate function in net/checksum2016-04-08

📋Vendor Advisories

3
Ubuntu
QEMU vulnerabilities2016-05-12
Red Hat
Qemu: net: out of bounds read in net_checksum_calculate()2016-02-17
Debian
CVE-2016-2857: qemu - The net_checksum_calculate function in net/checksum.c in QEMU allows local guest...2016

💬Community

1
Bugzilla
CVE-2016-2857 Qemu: net: out of bounds read in net_checksum_calculate()2016-01-07
CVE-2016-2857 — Qemu vulnerability | cvebase