{"id":"CVE-2016-2857","details":"The net_checksum_calculate function in net/checksum.c in QEMU allows local guest OS users to cause a denial of service (out-of-bounds heap read and crash) via the payload length in a crafted packet.","modified":"2026-05-15T12:01:39.287547198Z","published":"2016-04-12T02:00:07.243Z","related":["SUSE-SU-2016:1560-1","SUSE-SU-2016:1698-1","SUSE-SU-2016:1703-1","SUSE-SU-2016:1785-1"],"database_specific":{"unresolved_ranges":[{"cpes":["cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"],"extracted_events":[{"last_affected":"12.04"},{"last_affected":"14.04"},{"last_affected":"15.10"},{"last_affected":"16.04"}],"source":"CPE_FIELD","vendor_product":"canonical:ubuntu_linux"},{"cpes":["cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"8.0"}],"source":"CPE_FIELD","vendor_product":"debian:debian_linux"},{"cpes":["cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"6.0"},{"last_affected":"7.0"}],"source":"CPE_FIELD","vendor_product":"redhat:enterprise_linux_desktop"},{"cpes":["cpe:2.3:o:redhat:enterprise_linux_eus:7.3:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"7.3"},{"last_affected":"7.4"},{"last_affected":"7.5"},{"last_affected":"7.6"},{"last_affected":"7.7"}],"source":"CPE_FIELD","vendor_product":"redhat:enterprise_linux_eus"},{"cpes":["cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"6.0"},{"last_affected":"7.0"}],"source":"CPE_FIELD","vendor_product":"redhat:enterprise_linux_server"},{"cpes":["cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"7.3"},{"last_affected":"7.4"},{"last_affected":"7.6"},{"last_affected":"7.7"}],"source":"CPE_FIELD","vendor_product":"redhat:enterprise_linux_server_aus"},{"cpes":["cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"7.3"},{"last_affected":"7.6"},{"last_affected":"7.7"}],"source":"CPE_FIELD","vendor_product":"redhat:enterprise_linux_server_tus"},{"cpes":["cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"6.0"},{"last_affected":"7.0"}],"source":"CPE_FIELD","vendor_product":"redhat:enterprise_linux_workstation"},{"cpes":["cpe:2.3:a:redhat:openstack:5.0:*:*:*:*:*:*:*","cpe:2.3:a:redhat:openstack:6.0:*:*:*:*:*:*:*","cpe:2.3:a:redhat:openstack:7.0:*:*:*:*:*:*:*","cpe:2.3:a:redhat:openstack:8:*:*:*:*:*:*:*","cpe:2.3:a:redhat:openstack:9:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"5.0"},{"last_affected":"5.0"},{"last_affected":"6.0"},{"last_affected":"7.0"},{"last_affected":"8"},{"last_affected":"9"}],"source":"CPE_FIELD","vendor_product":"redhat:openstack"},{"cpes":["cpe:2.3:a:redhat:virtualization:3.0:*:*:*:*:*:*:*","cpe:2.3:a:redhat:virtualization:4.0:*:*:*:*:*:*:*"],"extracted_events":[{"last_affected":"3.0"},{"last_affected":"4.0"},{"last_affected":"3.0"}],"source":"CPE_FIELD","vendor_product":"redhat:virtualization"}]},"references":[{"type":"WEB","url":"http://git.qemu.org/?p=qemu.git%3Ba=commitdiff%3Bh=362786f14a753d8a5256ef97d7c10ed576d6572b"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2670.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2671.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2704.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2705.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2706.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2017-0083.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2017-0309.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2017-0334.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2017-0344.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2017-0350.html"},{"type":"ADVISORY","url":"http://www.openwall.com/lists/oss-security/2016/03/03/9"},{"type":"ADVISORY","url":"http://www.openwall.com/lists/oss-security/2016/03/07/3"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/84130"},{"type":"ADVISORY","url":"http://www.ubuntu.com/usn/USN-2974-1"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2018/11/msg00038.html"}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:H"}]}