Lucene search

K
cve[email protected]CVE-2013-2194
HistoryAug 23, 2013 - 4:55 p.m.

CVE-2013-2194

2013-08-2316:55:07
CWE-189
web.nvd.nist.gov
35
cve-2013-2194
integer overflows
elf parser
libelf
xen 4.2.x
nvd

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.2%

Multiple integer overflows in the Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with certain permissions to have an unspecified impact via a crafted kernel.

Affected configurations

NVD
Node
xenxenRange4.2.2
OR
xenxenMatch4.2.0
OR
xenxenMatch4.2.1

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.2%