Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-2242
HistoryAug 19, 2010 - 12:00 a.m.

CVE-2010-2242

2010-08-1900:00:00
ubuntu.com
ubuntu.com
18

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.001

Percentile

26.4%

Red Hat libvirt 0.2.0 through 0.8.2 creates iptables rules with improper
mappings of privileged source ports, which allows guest OS users to bypass
intended access restrictions by leveraging IP address and source-port
values, as demonstrated by copying and deleting an NFS directory tree.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchlibvirt< 0.4.0-2ubuntu8.3UNKNOWN
ubuntu9.04noarchlibvirt< 0.6.1-0ubuntu5.2UNKNOWN
ubuntu9.10noarchlibvirt< 0.7.0-1ubuntu13.2UNKNOWN
ubuntu10.04noarchlibvirt< 0.7.5-5ubuntu27.5UNKNOWN
ubuntu10.10noarchlibvirt< 0.8.3-1ubuntu8UNKNOWN

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.001

Percentile

26.4%