CVE-2018-25220
EUVD-2018-2169828.03.2026, 12:16
Bochs 2.6-5 contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying an oversized input string to the application. Attackers can craft a malicious payload with 1200 bytes of padding followed by a return-oriented programming chain to overwrite the instruction pointer and execute shell commands with application privileges.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bochs_project | bochs | 2.6.5 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration