Vulnerabilities > CVE-2007-2894 - Buffer Overflow and Denial Of Service vulnerability in Bochs Project Bochs 2.3

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
local
low complexity
bochs-project
nessus
exploit available

Summary

The emulated floppy disk controller in Bochs 2.3 allows local users of the guest operating system to cause a denial of service (virtual machine crash) via unspecified vectors, resulting in a divide-by-zero error.

Vulnerable Configurations

Part Description Count
Application
Bochs_Project
1

Exploit-Db

descriptionBochs 2.3 Buffer Overflow and Denial Of Service Vulnerabilities. CVE-2007-2894. Dos exploit for linux platform
idEDB-ID:30110
last seen2016-02-03
modified2007-05-31
published2007-05-31
reporterTavis Ormandy
sourcehttps://www.exploit-db.com/download/30110/
titleBochs 2.3 - Buffer Overflow and Denial of Service Vulnerabilities

Nessus

  • NASL familyFedora Local Security Checks
    NASL idFEDORA_2007-1778.NASL
    descriptionThis security update of bochs fixes CVE-2007-2894 : The emulated floppy disk controller in Bochs 2.3 allows local users of the guest operating system to cause a denial of service (virtual machine crash) via unspecified vectors, resulting in a divide-by-zero error. Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
    last seen2020-06-01
    modified2020-06-02
    plugin id27733
    published2007-11-06
    reporterThis script is Copyright (C) 2007-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/27733
    titleFedora 7 : bochs-2.3-7.fc7 (2007-1778)
  • NASL familyGentoo Local Security Checks
    NASL idGENTOO_GLSA-200711-21.NASL
    descriptionThe remote host is affected by the vulnerability described in GLSA-200711-21 (Bochs: Multiple vulnerabilities) Tavis Ormandy of the Google Security Team discovered a heap-based overflow vulnerability in the NE2000 driver (CVE-2007-2893). He also discovered a divide-by-zero error in the emulated floppy disk controller (CVE-2007-2894). Impact : A local attacker in the guest operating system could exploit these issues to execute code outside of the virtual machine, or cause Bochs to crash. Workaround : There is no known workaround at this time.
    last seen2020-06-01
    modified2020-06-02
    plugin id28260
    published2007-11-20
    reporterThis script is Copyright (C) 2007-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/28260
    titleGLSA-200711-21 : Bochs: Multiple vulnerabilities