Synced 18 Jun 2026 05:58 UTC Account
← All products

CVE-2015-5165

HIGH severity · CVSS 9.3 · CWE-908
9.3CVSS HIGH

Summary

The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.

Impact & exploitability

Attack vectorNetwork
Attack complexity
Privileges required
User interaction
Confidentiality impact
Integrity impact
Availability impact
Exploit probability (EPSS)13%

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products we track (2)

Recommendation

Apply the vendor fix promptly. Open any affected product above for its exact safe version.