Lucene search

K
cveRedhatCVE-2013-6457
HistoryJan 24, 2014 - 6:55 p.m.

CVE-2013-6457

2014-01-2418:55:04
CWE-264
redhat
web.nvd.nist.gov
51
cve-2013-6457
libxldomaingetnumaparameters
libvirt
denial of service
execute arbitrary code
nvd

CVSS2

5.2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:L/Au:S/C:P/I:P/A:P

AI Score

8.7

Confidence

High

EPSS

0

Percentile

5.1%

The libxlDomainGetNumaParameters function in the libxl driver (libxl/libxl_driver.c) in libvirt before 1.2.1 does not properly initialize the nodemap, which allows local users to cause a denial of service (invalid free operation and crash) or possibly execute arbitrary code via an inactive domain to the virsh numatune command.

Affected configurations

Nvd
Node
redhatlibvirtRange1.2.0
OR
redhatlibvirtMatch0.0.1
OR
redhatlibvirtMatch0.0.2
OR
redhatlibvirtMatch0.0.3
OR
redhatlibvirtMatch0.0.4
OR
redhatlibvirtMatch0.0.5
OR
redhatlibvirtMatch0.0.6
OR
redhatlibvirtMatch0.1.0
OR
redhatlibvirtMatch0.1.1
OR
redhatlibvirtMatch0.1.3
OR
redhatlibvirtMatch0.1.4
OR
redhatlibvirtMatch0.1.5
OR
redhatlibvirtMatch0.1.6
OR
redhatlibvirtMatch0.1.7
OR
redhatlibvirtMatch0.1.8
OR
redhatlibvirtMatch0.1.9
OR
redhatlibvirtMatch0.2.0
OR
redhatlibvirtMatch0.2.1
OR
redhatlibvirtMatch0.2.2
OR
redhatlibvirtMatch0.2.3
OR
redhatlibvirtMatch0.3.0
OR
redhatlibvirtMatch0.3.1
OR
redhatlibvirtMatch0.3.2
OR
redhatlibvirtMatch0.3.3
OR
redhatlibvirtMatch0.4.0
OR
redhatlibvirtMatch0.4.1
OR
redhatlibvirtMatch0.4.2
OR
redhatlibvirtMatch0.4.3
OR
redhatlibvirtMatch0.4.4
OR
redhatlibvirtMatch0.4.5
OR
redhatlibvirtMatch0.4.6
OR
redhatlibvirtMatch0.5.0
OR
redhatlibvirtMatch0.5.1
OR
redhatlibvirtMatch0.6.0
OR
redhatlibvirtMatch0.6.1
OR
redhatlibvirtMatch0.6.2
OR
redhatlibvirtMatch0.6.3
OR
redhatlibvirtMatch0.6.4
OR
redhatlibvirtMatch0.6.5
OR
redhatlibvirtMatch0.7.0
OR
redhatlibvirtMatch0.7.1
OR
redhatlibvirtMatch0.7.2
OR
redhatlibvirtMatch0.7.3
OR
redhatlibvirtMatch0.7.4
OR
redhatlibvirtMatch0.7.5
OR
redhatlibvirtMatch0.7.6
OR
redhatlibvirtMatch0.7.7
OR
redhatlibvirtMatch0.8.0
OR
redhatlibvirtMatch0.8.1
OR
redhatlibvirtMatch0.8.2
OR
redhatlibvirtMatch0.8.3
OR
redhatlibvirtMatch0.8.4
OR
redhatlibvirtMatch0.8.5
OR
redhatlibvirtMatch0.8.6
OR
redhatlibvirtMatch0.8.7
OR
redhatlibvirtMatch0.8.8
OR
redhatlibvirtMatch0.9.0
OR
redhatlibvirtMatch0.9.1
OR
redhatlibvirtMatch0.9.2
OR
redhatlibvirtMatch0.9.3
OR
redhatlibvirtMatch0.9.4
OR
redhatlibvirtMatch0.9.5
OR
redhatlibvirtMatch0.9.6
OR
redhatlibvirtMatch0.9.6.1
OR
redhatlibvirtMatch0.9.6.2
OR
redhatlibvirtMatch0.9.6.3
OR
redhatlibvirtMatch0.9.7
OR
redhatlibvirtMatch0.9.8
OR
redhatlibvirtMatch0.9.9
OR
redhatlibvirtMatch0.9.10
OR
redhatlibvirtMatch0.9.11
OR
redhatlibvirtMatch0.9.11.1
OR
redhatlibvirtMatch0.9.11.2
OR
redhatlibvirtMatch0.9.11.3
OR
redhatlibvirtMatch0.9.11.4
OR
redhatlibvirtMatch0.9.11.5
OR
redhatlibvirtMatch0.9.11.6
OR
redhatlibvirtMatch0.9.11.7
OR
redhatlibvirtMatch0.9.11.8
OR
redhatlibvirtMatch0.9.12
OR
redhatlibvirtMatch0.9.13
OR
redhatlibvirtMatch0.10.0
OR
redhatlibvirtMatch0.10.1
OR
redhatlibvirtMatch0.10.2
OR
redhatlibvirtMatch0.10.2.1
OR
redhatlibvirtMatch0.10.2.2
OR
redhatlibvirtMatch0.10.2.3
OR
redhatlibvirtMatch0.10.2.4
OR
redhatlibvirtMatch0.10.2.5
OR
redhatlibvirtMatch0.10.2.6
OR
redhatlibvirtMatch0.10.2.7
OR
redhatlibvirtMatch0.10.2.8
OR
redhatlibvirtMatch1.0.0
OR
redhatlibvirtMatch1.0.1
OR
redhatlibvirtMatch1.0.2
OR
redhatlibvirtMatch1.0.3
OR
redhatlibvirtMatch1.0.4
OR
redhatlibvirtMatch1.0.5
OR
redhatlibvirtMatch1.0.5.1
OR
redhatlibvirtMatch1.0.5.2
OR
redhatlibvirtMatch1.0.5.3
OR
redhatlibvirtMatch1.0.5.4
OR
redhatlibvirtMatch1.0.5.5
OR
redhatlibvirtMatch1.0.5.6
OR
redhatlibvirtMatch1.0.6
OR
redhatlibvirtMatch1.1.0
OR
redhatlibvirtMatch1.1.1
OR
redhatlibvirtMatch1.1.2
OR
redhatlibvirtMatch1.1.3
OR
redhatlibvirtMatch1.1.4
VendorProductVersionCPE
redhatlibvirt*cpe:2.3:a:redhat:libvirt:*:*:*:*:*:*:*:*
redhatlibvirt0.0.1cpe:2.3:a:redhat:libvirt:0.0.1:*:*:*:*:*:*:*
redhatlibvirt0.0.2cpe:2.3:a:redhat:libvirt:0.0.2:*:*:*:*:*:*:*
redhatlibvirt0.0.3cpe:2.3:a:redhat:libvirt:0.0.3:*:*:*:*:*:*:*
redhatlibvirt0.0.4cpe:2.3:a:redhat:libvirt:0.0.4:*:*:*:*:*:*:*
redhatlibvirt0.0.5cpe:2.3:a:redhat:libvirt:0.0.5:*:*:*:*:*:*:*
redhatlibvirt0.0.6cpe:2.3:a:redhat:libvirt:0.0.6:*:*:*:*:*:*:*
redhatlibvirt0.1.0cpe:2.3:a:redhat:libvirt:0.1.0:*:*:*:*:*:*:*
redhatlibvirt0.1.1cpe:2.3:a:redhat:libvirt:0.1.1:*:*:*:*:*:*:*
redhatlibvirt0.1.3cpe:2.3:a:redhat:libvirt:0.1.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 1101

CVSS2

5.2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:L/Au:S/C:P/I:P/A:P

AI Score

8.7

Confidence

High

EPSS

0

Percentile

5.1%