CVE-2014-0077

Source
https://cve.org/CVERecord?id=CVE-2014-0077
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2014-0077.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2014-0077
Downstream
DEBIAN (1)
MGASA (10)
RHSA (4)
SUSE (6)
UBUNTU (1)
Related
Published
2014-04-14T23:55:07Z
Modified
2026-04-16T06:22:05Z
Summary
[none]
Details

drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable buffers are disabled, does not properly validate packet lengths, which allows guest OS users to cause a denial of service (memory corruption and host OS crash) or possibly gain privileges on the host OS via crafted packets, related to the handle_rx and get_rx_bufs functions.

References

Affected packages