Heap-based buffer overflow in the bx_ne2k_c::rx_frame function in iodev/ne2k.cc in the emulated NE2000 device in Bochs 2.3 allows local users of the guest operating system to write to arbitrary memory locations and gain privileges on the host operating system via vectors that cause TXCNT register values to exceed the device memory size, aka "RX Frame heap overflow."
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-05-30T01:00:00

Updated: 2024-08-07T13:57:54.038Z

Reserved: 2007-05-29T00:00:00

Link: CVE-2007-2893

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2007-05-30T01:30:00.000

Modified: 2020-05-19T19:56:05.877

Link: CVE-2007-2893

cve-icon Redhat

Severity : Moderate

Publid Date: 2007-04-20T00:00:00Z

Links: CVE-2007-2893 - Bugzilla