CVE-2015-8745: Debian Linux

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It could occur while reading Interrupt Mask Registers (IMR). A privileged (CAP_SYS_RAWIO) guest user could use this flaw to crash the QEMU process instance resulting in DoS.

Affected products

  • Debian Debian Linux: version 8.0 only
  • Qemu Qemu: up to and including 2.4.1

Published 2016-12-29. Last modified 2026-06-17.