[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2015-5225":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":68,"aliases":69,"duplicate_of":9,"upstream":70,"downstream":71,"duplicates":84,"related":85,"reserved_at":9,"published_at":88,"modified_at":89,"state":90,"summary":91,"references_raw":100,"kevs":161,"epss":162,"epss_history":165,"metrics":422,"affected":427},"CVE-2015-5225","Buffer overflow in the vnc_refresh_server_surface function in the VNC display driver in QEMU before 2.4.0.1 allows guest users to cause a denial of service (heap memory corruption and process crash) or possibly execute arbitrary code on the host via unspecified vectors, related to refreshing the server display surface.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-119","Improper Restriction of Operations within the Bounds of a Memory Buffer","The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.","weakness","Stable","Class","High",[20,24,28,32,36,40,44,48,52,56,60,64],{"id":21,"name":22,"techniques":23},"CAPEC-10","Buffer Overflow via Environment Variables",[],{"id":25,"name":26,"techniques":27},"CAPEC-100","Overflow Buffers",[],{"id":29,"name":30,"techniques":31},"CAPEC-123","Buffer Manipulation",[],{"id":33,"name":34,"techniques":35},"CAPEC-14","Client-side Injection-induced Buffer Overflow",[],{"id":37,"name":38,"techniques":39},"CAPEC-24","Filter Failure through Buffer Overflow",[],{"id":41,"name":42,"techniques":43},"CAPEC-42","MIME Conversion",[],{"id":45,"name":46,"techniques":47},"CAPEC-44","Overflow Binary Resource File",[],{"id":49,"name":50,"techniques":51},"CAPEC-45","Buffer Overflow via Symbolic Links",[],{"id":53,"name":54,"techniques":55},"CAPEC-46","Overflow Variables and Tags",[],{"id":57,"name":58,"techniques":59},"CAPEC-47","Buffer Overflow via Parameter Expansion",[],{"id":61,"name":62,"techniques":63},"CAPEC-8","Buffer Overflow in an API Call",[],{"id":65,"name":66,"techniques":67},"CAPEC-9","Buffer Overflow in Local Command-Line Utilities",[],[],[],[],[72,74,76,78,80,82],{"_key":73},"RHSA-2015:1772",{"_key":75},"RHSA-2015:1837",{"_key":77},"OPENSUSE-SU-2024:11287-1",{"_key":79},"DSA-3348-1",{"_key":81},"MGASA-2015-0369",{"_key":83},"DEBIAN-CVE-2015-5225",[],[86,87],{"_key":77},{"_key":81},"2015-11-06T21:00:00.000Z","2024-08-06T06:41:08.516Z","Modified",{"cisa_kev":92,"cisa_ransomware":92,"cisa_vendor":9,"epss_severity":93,"epss_score":94,"severity":95,"severity_score":96,"severity_version":97,"severity_source":98,"severity_vector":99,"severity_status":90},false,"low",0.00167,"high",7.2,"v2.0","nvd","AV:L/AC:L/Au:N/C:C/I:C/A:C",[101,110,114,119,124,129,133,137,143,147,152,156],{"url":102,"sources":103,"tags":105},"https://lists.gnu.org/archive/html/qemu-devel/2015-09/msg05832.html",[104,98],"cve.org",[106,107,108,109],"Mailing List","X Refsource MLIST","Patch","Vendor Advisory",{"url":111,"sources":112,"tags":113},"https://lists.gnu.org/archive/html/qemu-devel/2015-08/msg02495.html",[104,98],[106,107],{"url":115,"sources":116,"tags":117},"http://rhn.redhat.com/errata/RHSA-2015-1837.html",[104,98],[109,118],"X Refsource REDHAT",{"url":120,"sources":121,"tags":122},"http://lists.fedoraproject.org/pipermail/package-announce/2015-September/165484.html",[104,98],[109,123],"X Refsource FEDORA",{"url":125,"sources":126,"tags":127},"http://www.debian.org/security/2015/dsa-3348",[104,98],[109,128],"X Refsource DEBIAN",{"url":130,"sources":131,"tags":132},"http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169039.html",[104,98],[109,123],{"url":134,"sources":135,"tags":136},"http://rhn.redhat.com/errata/RHSA-2015-1772.html",[104,98],[109,118],{"url":138,"sources":139,"tags":140},"http://www.securitytracker.com/id/1033547",[104,98],[141,142],"VDB Entry","X Refsource SECTRACK",{"url":144,"sources":145,"tags":146},"http://www.openwall.com/lists/oss-security/2015/08/21/6",[104,98],[106,107],{"url":148,"sources":149,"tags":150},"http://www.securityfocus.com/bid/76506",[104,98],[141,151],"X Refsource BID",{"url":153,"sources":154,"tags":155},"http://lists.fedoraproject.org/pipermail/package-announce/2015-September/166798.html",[104,98],[109,123],{"url":157,"sources":158,"tags":159},"https://security.gentoo.org/glsa/201602-01",[104,98],[109,160],"X Refsource GENTOO",[],{"date":163,"score":94,"percentile":164},"2026-06-03",0.37561,[166,169,172,175,178,181,184,187,190,193,196,198,201,204,207,210,213,216,218,221,224,227,230,233,236,239,242,245,247,249,252,255,258,261,264,267,269,272,275,278,281,283,286,289,292,295,298,301,304,307,310,313,316,319,322,324,327,330,333,336,339,342,345,348,350,353,356,359,362,364,367,370,373,376,378,381,383,386,389,392,395,398,400,403,406,409,412,415,418,420],{"date":167,"score":94,"percentile":168},"2025-11-04",0.38361,{"date":170,"score":94,"percentile":171},"2025-11-05",0.38353,{"date":173,"score":94,"percentile":174},"2025-11-06",0.38354,{"date":176,"score":94,"percentile":177},"2025-11-07",0.38378,{"date":179,"score":94,"percentile":180},"2025-11-08",0.38379,{"date":182,"score":94,"percentile":183},"2025-11-09",0.3836,{"date":185,"score":94,"percentile":186},"2025-11-10",0.38321,{"date":188,"score":94,"percentile":189},"2025-11-11",0.38342,{"date":191,"score":94,"percentile":192},"2025-11-12",0.38384,{"date":194,"score":94,"percentile":195},"2025-11-13",0.384,{"date":197,"score":94,"percentile":195},"2025-11-14",{"date":199,"score":94,"percentile":200},"2025-11-15",0.38395,{"date":202,"score":94,"percentile":203},"2025-11-16",0.38375,{"date":205,"score":94,"percentile":206},"2025-11-17",0.38352,{"date":208,"score":94,"percentile":209},"2025-11-18",0.32573,{"date":211,"score":94,"percentile":212},"2025-11-19",0.32589,{"date":214,"score":94,"percentile":215},"2025-11-20",0.32572,{"date":217,"score":94,"percentile":171},"2025-11-21",{"date":219,"score":94,"percentile":220},"2025-11-22",0.38358,{"date":222,"score":94,"percentile":223},"2025-11-23",0.38323,{"date":225,"score":94,"percentile":226},"2025-11-24",0.38314,{"date":228,"score":94,"percentile":229},"2025-11-25",0.38326,{"date":231,"score":94,"percentile":232},"2025-11-26",0.3832,{"date":234,"score":94,"percentile":235},"2025-11-27",0.38328,{"date":237,"score":94,"percentile":238},"2025-11-28",0.38302,{"date":240,"score":94,"percentile":241},"2025-11-29",0.38278,{"date":243,"score":94,"percentile":244},"2025-11-30",0.38261,{"date":246,"score":94,"percentile":192},"2025-12-01",{"date":248,"score":94,"percentile":200},"2025-12-02",{"date":250,"score":94,"percentile":251},"2025-12-03",0.38394,{"date":253,"score":94,"percentile":254},"2025-12-04",0.3826,{"date":256,"score":94,"percentile":257},"2025-12-05",0.38293,{"date":259,"score":94,"percentile":260},"2025-12-06",0.38289,{"date":262,"score":94,"percentile":263},"2025-12-07",0.38267,{"date":265,"score":94,"percentile":266},"2025-12-08",0.38281,{"date":268,"score":94,"percentile":223},"2025-12-09",{"date":270,"score":94,"percentile":271},"2025-12-10",0.38382,{"date":273,"score":94,"percentile":274},"2025-12-11",0.3841,{"date":276,"score":94,"percentile":277},"2025-12-12",0.38443,{"date":279,"score":94,"percentile":280},"2025-12-13",0.38419,{"date":282,"score":94,"percentile":271},"2025-12-14",{"date":284,"score":94,"percentile":285},"2025-12-15",0.38357,{"date":287,"score":94,"percentile":288},"2025-12-16",0.38389,{"date":290,"score":94,"percentile":291},"2025-12-17",0.38434,{"date":293,"score":94,"percentile":294},"2025-12-18",0.38486,{"date":296,"score":94,"percentile":297},"2025-12-19",0.38506,{"date":299,"score":94,"percentile":300},"2025-12-20",0.38488,{"date":302,"score":94,"percentile":303},"2025-12-21",0.3844,{"date":305,"score":94,"percentile":306},"2025-12-22",0.38414,{"date":308,"score":94,"percentile":309},"2025-12-23",0.38418,{"date":311,"score":94,"percentile":312},"2025-12-24",0.3843,{"date":314,"score":94,"percentile":315},"2025-12-25",0.38482,{"date":317,"score":94,"percentile":318},"2025-12-26",0.38464,{"date":320,"score":94,"percentile":321},"2025-12-27",0.38485,{"date":323,"score":94,"percentile":192},"2025-12-28",{"date":325,"score":94,"percentile":326},"2025-12-29",0.38356,{"date":328,"score":94,"percentile":329},"2025-12-30",0.38345,{"date":331,"score":94,"percentile":332},"2025-12-31",0.38412,{"date":334,"score":94,"percentile":335},"2026-01-01",0.38566,{"date":337,"score":94,"percentile":338},"2026-01-02",0.38541,{"date":340,"score":94,"percentile":341},"2026-01-03",0.38535,{"date":343,"score":94,"percentile":344},"2026-01-04",0.38367,{"date":346,"score":94,"percentile":347},"2026-01-05",0.38338,{"date":349,"score":94,"percentile":329},"2026-01-06",{"date":351,"score":94,"percentile":352},"2026-01-07",0.38368,{"date":354,"score":94,"percentile":355},"2026-01-08",0.38393,{"date":357,"score":94,"percentile":358},"2026-01-09",0.38388,{"date":360,"score":94,"percentile":361},"2026-01-10",0.38391,{"date":363,"score":94,"percentile":352},"2026-01-11",{"date":365,"score":94,"percentile":366},"2026-01-12",0.38317,{"date":368,"score":94,"percentile":369},"2026-01-13",0.38296,{"date":371,"score":94,"percentile":372},"2026-01-14",0.38349,{"date":374,"score":94,"percentile":375},"2026-01-15",0.3834,{"date":377,"score":94,"percentile":183},"2026-01-16",{"date":379,"score":94,"percentile":380},"2026-01-17",0.3833,{"date":382,"score":94,"percentile":241},"2026-01-18",{"date":384,"score":94,"percentile":385},"2026-01-19",0.38244,{"date":387,"score":94,"percentile":388},"2026-01-20",0.38223,{"date":390,"score":94,"percentile":391},"2026-01-21",0.38204,{"date":393,"score":94,"percentile":394},"2026-01-22",0.38194,{"date":396,"score":94,"percentile":397},"2026-01-23",0.38253,{"date":399,"score":94,"percentile":244},"2026-01-24",{"date":401,"score":94,"percentile":402},"2026-01-25",0.38207,{"date":404,"score":94,"percentile":405},"2026-01-26",0.38139,{"date":407,"score":94,"percentile":408},"2026-01-27",0.38135,{"date":410,"score":94,"percentile":411},"2026-01-28",0.3811,{"date":413,"score":94,"percentile":414},"2026-01-29",0.38088,{"date":416,"score":94,"percentile":417},"2026-01-30",0.38086,{"date":419,"score":94,"percentile":417},"2026-01-31",{"date":421,"score":94,"percentile":394},"2026-02-01",[423],{"source":98,"cvss_v2_0":424,"cvss_v3_0":9,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":96,"baseSeverity":9,"vectorString":99,"impactScore":425,"exploitabilityScore":426},10,3.9,[428,440,449],{"ecosystem":9,"name":429,"vendor":430,"product":429,"cpe_part":431,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":432},"fedora","fedoraproject","o",[433,436,438],{"version":434,"is_range":92,"range_type":435,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"21","cpe",{"version":437,"is_range":92,"range_type":435,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"22",{"version":439,"is_range":92,"range_type":435,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"23",{"ecosystem":9,"name":441,"vendor":441,"product":441,"cpe_part":442,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":443},"qemu","a",[444],{"version":445,"is_range":446,"range_type":435,"version_start":9,"version_start_type":9,"version_end":447,"version_end_type":448,"fixed_in":9},"lte2.4.0",true,"2.4.0","including",{"ecosystem":9,"name":450,"vendor":451,"product":450,"cpe_part":442,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":452},"openstack","redhat",[453,455,457],{"version":454,"is_range":92,"range_type":435,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.0",{"version":456,"is_range":92,"range_type":435,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.0",{"version":458,"is_range":92,"range_type":435,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0"]