QEMU Realtek Rtl8139 Model Information Disclosure Vulnerabilities
25 Sep. 2015
Summary
The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory
Credit:
The information has been provided by Donghai Zhu of Alibaba.
The Realtek rtl8139 model for QEMU is prone to an information-disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may aid in further attacks.