CVE-2015-8701

Source
https://cve.org/CVERecord?id=CVE-2015-8701
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2015-8701.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2015-8701
Downstream
Published
2016-12-29T22:59:00Z
Modified
2026-04-10T03:45:33.548889Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

QEMU (aka Quick Emulator) built with the Rocker switch emulation support is vulnerable to an off-by-one error. It happens while processing transmit (tx) descriptors in 'txconsume' routine, if a descriptor was to have more than allowed (ROCKERTXFRAGSMAX=16) fragments. A privileged user inside guest could use this flaw to cause memory leakage on the host or crash the QEMU process instance resulting in DoS issue.

References

Affected packages