The ne2000_receive function in hw/net/ne2000.c in QEMU...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jan 23, 2020
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Apr 4, 2024
The ne2000_receive function in hw/net/ne2000.c in QEMU before 2.4.0.1 allows attackers to cause a denial of service (infinite loop and instance crash) or possibly execute arbitrary code via vectors related to receiving packets.
References