CVE-2015-3214
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD
Description
The pit_ioport_read in i8254.c in the Linux kernel before 2.6.33 and QEMU before 2.3.1 does not distinguish between read lengths and write lengths, which might allow guest OS users to execute arbitrary code on the host OS by triggering use of an invalid index.
Affected (51)
Show all products
Linux: Linux Kernel · Qemu: Qemu · Arista: Eos · Debian: Debian Linux · Lenovo: Emc Px12 400r Ivx, Emc Px12 450r Ivx · Redhat: Enterprise Linux Compute Node Eus, Enterprise Linux For Power Big Endian, Enterprise Linux For Power Big Endian Eus, Enterprise Linux For Scientific Computing, Enterprise Linux Server, Enterprise Linux Server Aus, Enterprise Linux Server Eus, Enterprise Linux Server From Rhui, Enterprise Linux Server Tus, Enterprise Linux Server Update Services For Sap Solutions, Enterprise Linux Workstation, Openstack, Virtualization
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.6.32 | |
| Up to 2.3.0 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.0 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.10.33264 | |
| Before 1.0.10.33264 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.1 | |
| Version 7.0 | |
| Version 7.1_ppc64 | |
| Version 7.0 | |
| Version 7.0 | |
| Version 7.3 | |
| Version 7.1 | |
| Version 7.0 | |
| Version 7.3 | |
| Version 7.2 | |
| Version 7.0 | |
| Version 5.0 | |
| Version 3.0 |
References (34)
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
Broken LinkVendor Advisory
Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: secalert@redhat.com
PatchThird Party Advisory
Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.