Vulnerability Name:

CVE-2007-1321 (CCN-34047)

Assigned:2007-04-20
Published:2007-04-20
Updated:2020-12-15
Summary:Integer signedness error in the NE2000 emulator in QEMU 0.8.2, as used in Xen and possibly other products, allows local users to trigger a heap-based buffer overflow via certain register values that bypass sanity checks, aka QEMU NE2000 "receive" integer signedness error.
Note: this identifier was inadvertently used by some sources to cover multiple issues that were labeled "NE2000 network driver and the socket code," but separate identifiers have been created for the individual vulnerabilities since there are sometimes different fixes; see CVE-2007-5729 and CVE-2007-5730.
CVSS v3 Severity:5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
5.3 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
4.6 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
3.4 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Privileges
References:Source: MITRE
Type: CNA
CVE-2007-1321

Source: CCN
Type: QEMU Web site
QEMU

Source: OSVDB
Type: Broken Link
35495

Source: CCN
Type: RHSA-2007-0323
Important: xen security update

Source: CCN
Type: SA25073
QEMU Various Vulnerabilities

Source: SECUNIA
Type: Third Party Advisory
25073

Source: SECUNIA
Type: Third Party Advisory
25095

Source: SECUNIA
Type: Third Party Advisory
27047

Source: SECUNIA
Type: Third Party Advisory
27072

Source: SECUNIA
Type: Third Party Advisory
27103

Source: SECUNIA
Type: Third Party Advisory
27486

Source: CCN
Type: SA29129
KVM Block Device Backend Security Bypass

Source: SECUNIA
Type: Third Party Advisory
29129

Source: CCN
Type: SECTRACK ID: 1018761
Xen NE2000 Driver Heap Overflow May Let Local Users Gain Elevated Privileges

Source: SECTRACK
Type: Third Party Advisory, VDB Entry
1018761

Source: CCN
Type: Tavis Ormandy White paper
An Empirical Study into the Security Exposures to Hosts of Hostile Virtualized Environments

Source: MISC
Type: Technical Description, Third Party Advisory
http://taviso.decsystem.org/virtsec.pdf

Source: VIM
Type: Third Party Advisory
20071030 Clarification on old QEMU/NE2000/Xen issues

Source: DEBIAN
Type: Third Party Advisory
DSA-1284

Source: DEBIAN
Type: DSA-1284
qemu -- several vulnerabilities

Source: MANDRIVA
Type: Third Party Advisory
MDKSA-2007:203

Source: MANDRIVA
Type: Third Party Advisory
MDVSA-2008:162

Source: CCN
Type: OSVDB ID: 35495
QEMU NE2000 Network Driver Ethernet Frame Handling Overflow

Source: CCN
Type: OSVDB ID: 42985
QEMU net socket listen Option Local Overflow

Source: CCN
Type: OSVDB ID: 42986
QEMU NE2000 Emulator slirp Library Local Overflow

Source: REDHAT
Type: Third Party Advisory
RHSA-2007:0323

Source: BID
Type: Third Party Advisory, VDB Entry
23731

Source: CCN
Type: BID-23731
QEMU Multiple Local Vulnerabilities

Source: VUPEN
Type: Third Party Advisory
ADV-2007-1597

Source: XF
Type: UNKNOWN
qemu-ne2000-bo(34047)

Source: OVAL
Type: Third Party Advisory
oval:org.mitre.oval:def:9302

Source: FEDORA
Type: Third Party Advisory
FEDORA-2007-2708

Source: FEDORA
Type: Third Party Advisory
FEDORA-2007-2270

Source: FEDORA
Type: Third Party Advisory
FEDORA-2007-713

Vulnerable Configuration:Configuration 1:
  • cpe:/a:qemu:qemu:0.8.2:*:*:*:*:*:*:*
  • AND
  • cpe:/o:xen:xen:-:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:fedoraproject:fedora:7:*:*:*:*:*:*:*
  • OR cpe:/o:fedoraproject:fedora_core:6:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:debian:debian_linux:3.1:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/a:redhat:rhel_virtualization:5:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/a:redhat:rhel_virtualization:5::client:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/a:redhat:rhel_virtualization:5::server:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:5::client:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:5::server:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:fabrice_bellard:qemu:0.8.2:*:*:*:*:*:*:*
  • AND
  • cpe:/o:debian:debian_linux:3.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007::x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0::x86_64:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*
  • OR cpe:/a:redhat:rhel_virtualization:5:*:server:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0::x86-64:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5:*:client:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.1:x86_64:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007.1::x86-64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.1:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20071321
    V
    CVE-2007-1321
    2022-05-20
    oval:org.opensuse.security:def:26218
    P
    Security update for java-1_8_0-ibm (Important) (in QA)
    2022-01-04
    oval:org.opensuse.security:def:42250
    P
    Security update for openssh (Important)
    2021-12-22
    oval:org.opensuse.security:def:26185
    P
    Security update for xorg-x11-server (Important)
    2021-12-20
    oval:org.opensuse.security:def:32240
    P
    Security update for the Linux Kernel (Live Patch 41 for SLE 12 SP3) (Important)
    2021-12-14
    oval:org.opensuse.security:def:31311
    P
    Security update for java-1_8_0-openjdk (Important)
    2021-11-23
    oval:org.opensuse.security:def:31310
    P
    Security update for webkit2gtk3 (Important)
    2021-11-23
    oval:org.opensuse.security:def:26169
    P
    Security update for postgresql, postgresql13, postgresql14 (Important)
    2021-11-20
    oval:org.opensuse.security:def:26161
    P
    Security update for samba (Important)
    2021-11-10
    oval:org.opensuse.security:def:26143
    P
    Security update for curl (Moderate)
    2021-10-11
    oval:org.opensuse.security:def:32191
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-09-23
    oval:org.opensuse.security:def:26132
    P
    Security update for MozillaFirefox (Important)
    2021-09-22
    oval:org.opensuse.security:def:26131
    P
    Security update for xen (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:26125
    P
    Security update for grilo (Important)
    2021-09-09
    oval:org.opensuse.security:def:31677
    P
    Security update for libesmtp (Important)
    2021-09-02
    oval:org.opensuse.security:def:32983
    P
    Security update for cpio (Important)
    2021-08-23
    oval:org.opensuse.security:def:32160
    P
    Security update for djvulibre (Important)
    2021-08-05
    oval:org.opensuse.security:def:26080
    P
    Security update for libnettle (Important)
    2021-06-23
    oval:org.opensuse.security:def:32130
    P
    Security update for the Linux Kernel (Live Patch 33 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:31205
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:26072
    P
    Security update for caribou (Important)
    2021-06-10
    oval:org.opensuse.security:def:36327
    P
    xen-4.4.2_08-1.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36582
    P
    xen-devel-4.4.2_08-1.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:42734
    P
    xen-4.4.2_08-1.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32103
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-06-04
    oval:org.opensuse.security:def:31620
    P
    Security update for the Linux Kernel (Important)
    2021-05-18
    oval:org.opensuse.security:def:32086
    P
    Security update for java-1_7_0-openjdk (Moderate)
    2021-04-29
    oval:org.opensuse.security:def:31611
    P
    Security update for libnettle (Important)
    2021-04-28
    oval:org.opensuse.security:def:32064
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-04-07
    oval:org.opensuse.security:def:42058
    P
    Security update for xen (Important)
    2021-04-06
    oval:org.opensuse.security:def:32279
    P
    Security update for the Linux Kernel (Live Patch 33 for SLE 12 SP3) (Important)
    2021-03-17
    oval:org.opensuse.security:def:31743
    P
    Security update for python (Moderate)
    2021-03-16
    oval:org.opensuse.security:def:26207
    P
    Security update for openssl-1_1 (Moderate)
    2021-03-09
    oval:org.opensuse.security:def:31729
    P
    Security update for screen (Important)
    2021-02-17
    oval:org.opensuse.security:def:31337
    P
    Security update for python (Important)
    2021-02-11
    oval:org.opensuse.security:def:31322
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-02-10
    oval:org.opensuse.security:def:32247
    P
    Security update for the Linux Kernel (Live Patch 33 for SLE 12 SP3) (Important)
    2021-02-10
    oval:org.opensuse.security:def:33022
    P
    Security update for python3 (Important)
    2021-02-08
    oval:org.opensuse.security:def:26111
    P
    Security update for cups (Moderate)
    2021-02-02
    oval:org.opensuse.security:def:32135
    P
    Security update for postgresql, postgresql12, postgresql13 (Important)
    2021-01-26
    oval:org.opensuse.security:def:26034
    P
    Security update for openldap2 (Moderate)
    2021-01-14
    oval:org.opensuse.security:def:32011
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2020-12-07
    oval:org.opensuse.security:def:42466
    P
    xen-4.2.2_04-0.7.5 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35651
    P
    xen-4.0.0_21091_04-0.2.6 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:25970
    P
    Security update for gdm (Important)
    2020-12-03
    oval:org.opensuse.security:def:35843
    P
    xen-4.1.2_14-0.5.5 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36059
    P
    xen-4.2.2_04-0.7.5 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:25893
    P
    Security update for gstreamer-0_10-plugins-base (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26608
    P
    libxml2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33290
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31793
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:26335
    P
    security update for go (Low)
    2020-12-01
    oval:org.opensuse.security:def:25779
    P
    Security update for the SUSE Linux Enterprise 12 kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31873
    P
    Security update for cvs (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26842
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25393
    P
    Security update for libqt5-qtbase (Important)
    2020-12-01
    oval:org.opensuse.security:def:31396
    P
    Security update for perl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27290
    P
    shim on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31805
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26473
    P
    Security update for Chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:25881
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:31939
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:25405
    P
    Security update for spice-gtk (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26238
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:32301
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25877
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26708
    P
    glibc on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25934
    P
    Security update for the Linux kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:32616
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31119
    P
    Security update for krb5
    2020-12-01
    oval:org.opensuse.security:def:25597
    P
    Security update for squid (Critical)
    2020-12-01
    oval:org.opensuse.security:def:31764
    P
    Security update for MozillaFirefox, MozillaFirefox-branding-SLE and mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:26326
    P
    Security update for MozillaThunderbird (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25952
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26810
    P
    pure-ftpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26616
    P
    mutt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31131
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:25735
    P
    Security update for exiv2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31976
    P
    Security update for jasper (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26384
    P
    Security update for chromium (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31526
    P
    Security update for rsyslog (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32403
    P
    Security update for vim (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26863
    P
    apache2-mod_jk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25203
    P
    Security update for mariadb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27057
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25608
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26302
    P
    Security update for python-PyYAML (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32508
    P
    expat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27545
    P
    python-imaging on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25278
    P
    Security update for mozilla-nspr, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:31486
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25620
    P
    Security update for ovmf (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31835
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:26506
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:32569
    P
    libsoup-2_4-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25487
    P
    Security update for ovmf (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32807
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25812
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:31979
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:26594
    P
    libopensc2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33251
    P
    rsyslog on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25628
    P
    Security update for dpdk (Critical)
    2020-12-01
    oval:org.opensuse.security:def:31834
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:26807
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25950
    P
    Security update for evince (Important)
    2020-12-01
    oval:org.opensuse.security:def:26652
    P
    xorg-x11 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31794
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:26416
    P
    Security update for nginx (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25832
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:31895
    P
    Security update for MozillaFirefox, mozilla-nspr (Important)
    2020-12-01
    oval:org.opensuse.security:def:25394
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:31528
    P
    Security update for ruby (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27325
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25876
    P
    Security update for libssh (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31879
    P
    Security update for dhcp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26557
    P
    gnome-screensaver on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25920
    P
    Security update for gstreamer-plugins-base (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32577
    P
    man on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25469
    P
    Security update for ncurses (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26287
    P
    Security update for zeromq (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32345
    P
    Security update for spice (Important)
    2020-12-01
    oval:org.opensuse.security:def:25888
    P
    Security update for flash-player (Critical)
    2020-12-01
    oval:org.opensuse.security:def:26761
    P
    libpulse-browse0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25978
    P
    Security update for tcpdump, libpcap (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31120
    P
    Security update for krb5
    2020-12-01
    oval:org.opensuse.security:def:25678
    P
    Security update for kernel-firmware (Important)
    2020-12-01
    oval:org.opensuse.security:def:31920
    P
    Security update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:26340
    P
    Recommended update for openjpeg (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31525
    P
    Security update for rsyslog
    2020-12-01
    oval:org.opensuse.security:def:26849
    P
    zoo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26651
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25202
    P
    Security update for libgxps (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25819
    P
    Security update for python-tornado (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32025
    P
    Security update for kernel-source (Important)
    2020-12-01
    oval:org.opensuse.security:def:27022
    P
    qt3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31537
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32459
    P
    Security update for xorg-x11-libX11 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26907
    P
    gnome-screensaver on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25214
    P
    Security update for transfig (Low)
    2020-12-01
    oval:org.opensuse.security:def:31429
    P
    Recommended update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26023
    P
    Security update for evince (Important)
    2020-12-01
    oval:org.opensuse.security:def:25609
    P
    Security update for sysstat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26453
    P
    Security update for kauth (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32547
    P
    libapr-util1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27580
    P
    xen-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25406
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:31573
    P
    Security update for strongswan (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32768
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25684
    P
    Security update for postgresql10 (Important)
    2020-12-01
    oval:org.opensuse.security:def:31892
    P
    Security update for expat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26555
    P
    glib2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32613
    P
    wget on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25544
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31785
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.mitre.oval:def:18512
    P
    DSA-1284-1 qemu
    2014-06-23
    oval:org.mitre.oval:def:22666
    P
    ELSA-2007:0323: xen security update (Important)
    2014-05-26
    oval:org.mitre.oval:def:9302
    V
    Integer signedness error in the NE2000 emulator in QEMU 0.8.2, as used in Xen and possibly other products, allows local users to trigger a heap-based buffer overflow via certain register values that bypass sanity checks, aka QEMU NE2000 "receive" integer signedness error. NOTE: this identifier was inadvertently used by some sources to cover multiple issues that were labeled "NE2000 network driver and the socket code," but separate identifiers have been created for the individual vulnerabilities since there are sometimes different fixes; see CVE-2007-5729 and CVE-2007-5730.
    2013-04-29
    oval:com.redhat.rhsa:def:20070323
    P
    RHSA-2007:0323: xen security update (Important)
    2007-10-02
    oval:org.debian:def:1284
    V
    several vulnerabilities
    2007-05-01
    BACK
    qemu qemu 0.8.2
    xen xen -
    fedoraproject fedora 7
    fedoraproject fedora core 6
    debian debian linux 3.1
    debian debian linux 4.0
    fabrice_bellard qemu 0.8.2
    debian debian linux 3.1
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux corporate server 4.0
    mandrakesoft mandrake linux corporate server 4.0
    redhat enterprise linux 5
    redhat rhel virtualization 5
    mandrakesoft mandrake linux 2007.1
    mandrakesoft mandrake linux 2008.0
    debian debian linux 4.0
    redhat enterprise linux 5
    mandrakesoft mandrake linux 2008.0
    mandrakesoft mandrake linux 2008.1 x86_64
    mandrakesoft mandrake linux 2007.1
    mandrakesoft mandrake linux 2008.1