Lucene search

K
cveMitreCVE-2013-5651
HistorySep 30, 2013 - 9:55 p.m.

CVE-2013-5651

2013-09-3021:55:09
CWE-119
mitre
web.nvd.nist.gov
38
libvirt
cve-2013-5651
denial of service
out-of-bounds read
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

7.8

Confidence

High

EPSS

0.011

Percentile

84.7%

The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a crafted bitmap, as demonstrated by a large nodeset value to numatune.

Affected configurations

Nvd
Node
redhatlibvirtRange1.1.1
OR
redhatlibvirtMatch0.0.1
OR
redhatlibvirtMatch0.0.2
OR
redhatlibvirtMatch0.0.3
OR
redhatlibvirtMatch0.0.4
OR
redhatlibvirtMatch0.0.5
OR
redhatlibvirtMatch0.0.6
OR
redhatlibvirtMatch0.1.0
OR
redhatlibvirtMatch0.1.1
OR
redhatlibvirtMatch0.1.3
OR
redhatlibvirtMatch0.1.4
OR
redhatlibvirtMatch0.1.5
OR
redhatlibvirtMatch0.1.6
OR
redhatlibvirtMatch0.1.7
OR
redhatlibvirtMatch0.1.8
OR
redhatlibvirtMatch0.1.9
OR
redhatlibvirtMatch0.2.0
OR
redhatlibvirtMatch0.2.1
OR
redhatlibvirtMatch0.2.2
OR
redhatlibvirtMatch0.2.3
OR
redhatlibvirtMatch0.3.0
OR
redhatlibvirtMatch0.3.1
OR
redhatlibvirtMatch0.3.2
OR
redhatlibvirtMatch0.3.3
OR
redhatlibvirtMatch0.4.0
OR
redhatlibvirtMatch0.4.1
OR
redhatlibvirtMatch0.4.2
OR
redhatlibvirtMatch0.4.3
OR
redhatlibvirtMatch0.4.4
OR
redhatlibvirtMatch0.4.5
OR
redhatlibvirtMatch0.4.6
OR
redhatlibvirtMatch0.5.0
OR
redhatlibvirtMatch0.5.1
OR
redhatlibvirtMatch0.6.0
OR
redhatlibvirtMatch0.6.1
OR
redhatlibvirtMatch0.6.2
OR
redhatlibvirtMatch0.6.3
OR
redhatlibvirtMatch0.6.4
OR
redhatlibvirtMatch0.6.5
OR
redhatlibvirtMatch0.7.0
OR
redhatlibvirtMatch0.7.1
OR
redhatlibvirtMatch0.7.2
OR
redhatlibvirtMatch0.7.3
OR
redhatlibvirtMatch0.7.4
OR
redhatlibvirtMatch0.7.5
OR
redhatlibvirtMatch0.7.6
OR
redhatlibvirtMatch0.7.7
OR
redhatlibvirtMatch0.8.0
OR
redhatlibvirtMatch0.8.1
OR
redhatlibvirtMatch0.8.2
OR
redhatlibvirtMatch0.8.3
OR
redhatlibvirtMatch0.8.4
OR
redhatlibvirtMatch0.8.5
OR
redhatlibvirtMatch0.8.6
OR
redhatlibvirtMatch0.8.7
OR
redhatlibvirtMatch0.8.8
OR
redhatlibvirtMatch0.9.0
OR
redhatlibvirtMatch0.9.1
OR
redhatlibvirtMatch0.9.2
OR
redhatlibvirtMatch0.9.3
OR
redhatlibvirtMatch0.9.4
OR
redhatlibvirtMatch0.9.5
OR
redhatlibvirtMatch0.9.6
OR
redhatlibvirtMatch0.9.6.1
OR
redhatlibvirtMatch0.9.6.2
OR
redhatlibvirtMatch0.9.6.3
OR
redhatlibvirtMatch0.9.7
OR
redhatlibvirtMatch0.9.8
OR
redhatlibvirtMatch0.9.9
OR
redhatlibvirtMatch0.9.10
OR
redhatlibvirtMatch0.9.11
OR
redhatlibvirtMatch0.9.11.1
OR
redhatlibvirtMatch0.9.11.2
OR
redhatlibvirtMatch0.9.11.3
OR
redhatlibvirtMatch0.9.11.4
OR
redhatlibvirtMatch0.9.11.5
OR
redhatlibvirtMatch0.9.11.6
OR
redhatlibvirtMatch0.9.11.7
OR
redhatlibvirtMatch0.9.11.8
OR
redhatlibvirtMatch0.9.12
OR
redhatlibvirtMatch0.9.13
OR
redhatlibvirtMatch0.10.0
OR
redhatlibvirtMatch0.10.1
OR
redhatlibvirtMatch0.10.2
OR
redhatlibvirtMatch0.10.2.1
OR
redhatlibvirtMatch0.10.2.2
OR
redhatlibvirtMatch0.10.2.3
OR
redhatlibvirtMatch0.10.2.4
OR
redhatlibvirtMatch0.10.2.5
OR
redhatlibvirtMatch0.10.2.6
OR
redhatlibvirtMatch0.10.2.7
OR
redhatlibvirtMatch0.10.2.8
OR
redhatlibvirtMatch1.0.0
OR
redhatlibvirtMatch1.0.1
OR
redhatlibvirtMatch1.0.2
OR
redhatlibvirtMatch1.0.3
OR
redhatlibvirtMatch1.0.4
OR
redhatlibvirtMatch1.0.5
OR
redhatlibvirtMatch1.0.5.1
OR
redhatlibvirtMatch1.0.5.2
OR
redhatlibvirtMatch1.0.5.3
OR
redhatlibvirtMatch1.0.5.4
OR
redhatlibvirtMatch1.0.5.5
OR
redhatlibvirtMatch1.0.5.6
OR
redhatlibvirtMatch1.0.6
OR
redhatlibvirtMatch1.1.0
VendorProductVersionCPE
redhatlibvirt0.0.1cpe:/a:redhat:libvirt:0.0.1:::
redhatlibvirt0.7.7cpe:/a:redhat:libvirt:0.7.7:::
redhatlibvirt0.9.11.8cpe:/a:redhat:libvirt:0.9.11.8:::
redhatlibvirt0.1.1cpe:/a:redhat:libvirt:0.1.1:::
redhatlibvirt0.1.7cpe:/a:redhat:libvirt:0.1.7:::
redhatlibvirt0.2.3cpe:/a:redhat:libvirt:0.2.3:::
redhatlibvirt0.3.3cpe:/a:redhat:libvirt:0.3.3:::
redhatlibvirt0.9.11.2cpe:/a:redhat:libvirt:0.9.11.2:::
redhatlibvirt0.10.2.2cpe:/a:redhat:libvirt:0.10.2.2:::
redhatlibvirt0.2.2cpe:/a:redhat:libvirt:0.2.2:::
Rows per page:
1-10 of 1061

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

7.8

Confidence

High

EPSS

0.011

Percentile

84.7%