Lucene search

K
cveRedhatCVE-2012-2693
HistoryJun 17, 2012 - 3:41 a.m.

CVE-2012-2693

2012-06-1703:41:42
CWE-264
redhat
web.nvd.nist.gov
44
4
libvirt
usb devices
virtual machines
vendor and product id
security vulnerability
local access

CVSS2

3.7

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

5.1%

libvirt, possibly before 0.9.12, does not properly assign USB devices to virtual machines when multiple devices have the same vendor and product ID, which might cause the wrong device to be associated with a guest and might allow local users to access unintended USB devices.

Affected configurations

Nvd
Node
redhatlibvirtRange0.9.11
OR
redhatlibvirtMatch0.0.1
OR
redhatlibvirtMatch0.0.2
OR
redhatlibvirtMatch0.0.3
OR
redhatlibvirtMatch0.0.4
OR
redhatlibvirtMatch0.0.5
OR
redhatlibvirtMatch0.0.6
OR
redhatlibvirtMatch0.1.0
OR
redhatlibvirtMatch0.1.1
OR
redhatlibvirtMatch0.1.3
OR
redhatlibvirtMatch0.1.4
OR
redhatlibvirtMatch0.1.5
OR
redhatlibvirtMatch0.1.6
OR
redhatlibvirtMatch0.1.7
OR
redhatlibvirtMatch0.1.8
OR
redhatlibvirtMatch0.1.9
OR
redhatlibvirtMatch0.2.0
OR
redhatlibvirtMatch0.2.1
OR
redhatlibvirtMatch0.2.2
OR
redhatlibvirtMatch0.2.3
OR
redhatlibvirtMatch0.3.0
OR
redhatlibvirtMatch0.3.1
OR
redhatlibvirtMatch0.3.2
OR
redhatlibvirtMatch0.3.3
OR
redhatlibvirtMatch0.4.0
OR
redhatlibvirtMatch0.4.1
OR
redhatlibvirtMatch0.4.2
OR
redhatlibvirtMatch0.4.3
OR
redhatlibvirtMatch0.4.4
OR
redhatlibvirtMatch0.4.5
OR
redhatlibvirtMatch0.4.6
OR
redhatlibvirtMatch0.5.0
OR
redhatlibvirtMatch0.5.1
OR
redhatlibvirtMatch0.6.0
OR
redhatlibvirtMatch0.6.1
OR
redhatlibvirtMatch0.6.2
OR
redhatlibvirtMatch0.6.3
OR
redhatlibvirtMatch0.6.4
OR
redhatlibvirtMatch0.6.5
OR
redhatlibvirtMatch0.7.0
OR
redhatlibvirtMatch0.7.1
OR
redhatlibvirtMatch0.7.2
OR
redhatlibvirtMatch0.7.3
OR
redhatlibvirtMatch0.7.4
OR
redhatlibvirtMatch0.7.5
OR
redhatlibvirtMatch0.7.6
OR
redhatlibvirtMatch0.7.7
OR
redhatlibvirtMatch0.8.0
OR
redhatlibvirtMatch0.8.1
OR
redhatlibvirtMatch0.8.2
OR
redhatlibvirtMatch0.8.3
OR
redhatlibvirtMatch0.8.4
OR
redhatlibvirtMatch0.8.5
OR
redhatlibvirtMatch0.8.6
OR
redhatlibvirtMatch0.8.7
OR
redhatlibvirtMatch0.8.8
OR
redhatlibvirtMatch0.9.0
OR
redhatlibvirtMatch0.9.1
OR
redhatlibvirtMatch0.9.2
OR
redhatlibvirtMatch0.9.3
OR
redhatlibvirtMatch0.9.4
OR
redhatlibvirtMatch0.9.5
OR
redhatlibvirtMatch0.9.6
OR
redhatlibvirtMatch0.9.7
OR
redhatlibvirtMatch0.9.8
OR
redhatlibvirtMatch0.9.9
OR
redhatlibvirtMatch0.9.10
VendorProductVersionCPE
redhatlibvirt*cpe:2.3:a:redhat:libvirt:*:*:*:*:*:*:*:*
redhatlibvirt0.0.1cpe:2.3:a:redhat:libvirt:0.0.1:*:*:*:*:*:*:*
redhatlibvirt0.0.2cpe:2.3:a:redhat:libvirt:0.0.2:*:*:*:*:*:*:*
redhatlibvirt0.0.3cpe:2.3:a:redhat:libvirt:0.0.3:*:*:*:*:*:*:*
redhatlibvirt0.0.4cpe:2.3:a:redhat:libvirt:0.0.4:*:*:*:*:*:*:*
redhatlibvirt0.0.5cpe:2.3:a:redhat:libvirt:0.0.5:*:*:*:*:*:*:*
redhatlibvirt0.0.6cpe:2.3:a:redhat:libvirt:0.0.6:*:*:*:*:*:*:*
redhatlibvirt0.1.0cpe:2.3:a:redhat:libvirt:0.1.0:*:*:*:*:*:*:*
redhatlibvirt0.1.1cpe:2.3:a:redhat:libvirt:0.1.1:*:*:*:*:*:*:*
redhatlibvirt0.1.3cpe:2.3:a:redhat:libvirt:0.1.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 671

Social References

More

CVSS2

3.7

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

5.1%