Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2007-2893
Description:Heap-based buffer overflow in the bx_ne2k_c::rx_frame function in iodev/ne2k.cc in the emulated NE2000 device in Bochs 2.3 allows local users of the guest operating system to write to arbitrary memory locations and gain privileges on the host operating system via vectors that cause TXCNT register values to exceed the device memory size, aka "RX Frame heap overflow."
Test IDs: 1.3.6.1.4.1.25623.1.0.59700   1.3.6.1.4.1.25623.1.0.59756   1.3.6.1.4.1.25623.1.0.58524   1.3.6.1.4.1.25623.1.0.861417  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2007-2893
BugTraq ID: 24246
http://www.securityfocus.com/bid/24246
Debian Security Information: DSA-1351 (Google Search)
http://www.debian.org/security/2007/dsa-1351
http://security.gentoo.org/glsa/glsa-200711-21.xml
http://taviso.decsystem.org/virtsec.pdf
http://osvdb.org/36799
http://secunia.com/advisories/25470
http://secunia.com/advisories/26364
http://secunia.com/advisories/27715
http://www.vupen.com/english/advisories/2007/1936
XForce ISS Database: bochs-ne2000-bo(34508)
https://exchange.xforce.ibmcloud.com/vulnerabilities/34508




© 1998-2025 E-Soft Inc. All rights reserved.