CVE-2016-7161 on Ubuntu 16.04 LTS (xenial) - medium.
Description:
Heap-based buffer overflow in the .receive callback of xlnx.xps-ethernetlite in QEMU (aka Quick Emulator) allows attackers to execute arbitrary code on the QEMU host via a large ethlite packet.