Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-4344

Опубликовано: 04 окт. 2013
Источник: debian
EPSS Низкий

Описание

Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has more than 256 attached devices, allows local users to gain privileges via a small transfer buffer in a REPORT LUNS command.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xenfixed4.2-1package
xennot-affectedwheezypackage
xenend-of-lifesqueezepackage
qemufixed1.6.0+dfsg-2package
qemu-kvmremovedpackage
xen-qemu-dm-4.0removedpackage
xen-qemu-dm-4.0end-of-lifesqueezepackage

Примечания

  • Qemu only exploitable by privileged administrator with malicious configuration

  • Xen in Squeeze uses a separate source package: xen-qemu-dm-4.0

  • Xen in Wheezy includes qemu

  • Xen after Wheezy uses qemu-system-x86 from qemu, marking 4.2 as pseudo fixed

EPSS

Процентиль: 21%
0.00068
Низкий

Связанные уязвимости

ubuntu
почти 12 лет назад

Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has more than 256 attached devices, allows local users to gain privileges via a small transfer buffer in a REPORT LUNS command.

redhat
почти 12 лет назад

Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has more than 256 attached devices, allows local users to gain privileges via a small transfer buffer in a REPORT LUNS command.

nvd
почти 12 лет назад

Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has more than 256 attached devices, allows local users to gain privileges via a small transfer buffer in a REPORT LUNS command.

github
больше 3 лет назад

Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has more than 256 attached devices, allows local users to gain privileges via a small transfer buffer in a REPORT LUNS command.

oracle-oval
почти 12 лет назад

ELSA-2013-1553: qemu-kvm security, bug fix, and enhancement update (IMPORTANT)

EPSS

Процентиль: 21%
0.00068
Низкий