Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-3851

Опубликовано: 14 окт. 2010
Источник: redhat
CVSS2: 1.5

Описание

libguestfs before 1.5.23, as used in virt-v2v, virt-inspector 1.5.3 and earlier, and possibly other products, when a raw-format disk image is used, allows local guest OS administrators to read files from the host via a crafted (1) qcow2, (2) VMDK, or (3) VDI header, related to lack of support for a disk format specifier.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=643958libguestfs: missing disk format specifier when adding a disk

1.5 Low

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

libguestfs before 1.5.23, as used in virt-v2v, virt-inspector 1.5.3 and earlier, and possibly other products, when a raw-format disk image is used, allows local guest OS administrators to read files from the host via a crafted (1) qcow2, (2) VMDK, or (3) VDI header, related to lack of support for a disk format specifier.

github
около 3 лет назад

libguestfs before 1.5.23, as used in virt-v2v, virt-inspector 1.5.3 and earlier, and possibly other products, when a raw-format disk image is used, allows local guest OS administrators to read files from the host via a crafted (1) qcow2, (2) VMDK, or (3) VDI header, related to lack of support for a disk format specifier.

oracle-oval
около 14 лет назад

ELSA-2011-0586: libguestfs security, bug fix, and enhancement update (LOW)

1.5 Low

CVSS2