DEBIAN-CVE-2015-7295

Advisory lineage Upstream: 1 Downstream: 3
Published: 09 Nov 2015, 16:59
Last modified:28 Apr 2026, 20:14

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

09 Nov 2015, 16:59
Published
Vulnerability first disclosed
28 Apr 2026, 20:14
Last Modified
Vulnerability information updated

Description

hw/virtio/virtio.c in the Virtual Network Device (virtio-net) support in QEMU, when big or mergeable receive buffers are not supported, allows remote attackers to cause a denial of service (guest network consumption) via a flood of jumbo frames on the (1) tuntap or (2) macvtap interface.

Affected Systems

  • debianqemu

    < 1:2.4+dfsg-4 | < 1:2.4+dfsg-4 | < 1:2.4+dfsg-4 | < 1:2.4+dfsg-4

References (1)