Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-3525

Опубликовано: 05 окт. 2009
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 7.2

Описание

The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-virtualized guests, which allows attackers with access to the para-virtualized guest console to boot the guest or modify the guest's kernel boot parameters without providing the expected password.

РелизСтатусПримечание
dapper

ignored

end of life
devel

ignored

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

upstream

ignored

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

ignored

intrepid

ignored

end of life
jaunty

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

upstream

ignored

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

ignored

end of life
intrepid

DNE

jaunty

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

upstream

ignored

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

ignored

hardy

DNE

intrepid

ignored

end of life
jaunty

ignored

end of life
karmic

ignored

end of life
lucid

ignored

maverick

ignored

natty

ignored

upstream

ignored

Показывать по

Ссылки на источники

EPSS

Процентиль: 80%
0.01424
Низкий

7.2 High

CVSS2

Связанные уязвимости

redhat
почти 16 лет назад

The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-virtualized guests, which allows attackers with access to the para-virtualized guest console to boot the guest or modify the guest's kernel boot parameters without providing the expected password.

nvd
больше 15 лет назад

The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-virtualized guests, which allows attackers with access to the para-virtualized guest console to boot the guest or modify the guest's kernel boot parameters without providing the expected password.

debian
больше 15 лет назад

The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not sup ...

github
около 3 лет назад

The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-virtualized guests, which allows attackers with access to the para-virtualized guest console to boot the guest or modify the guest's kernel boot parameters without providing the expected password.

oracle-oval
больше 15 лет назад

ELSA-2009-1472: xen security and bug fix update (MODERATE)

EPSS

Процентиль: 80%
0.01424
Низкий

7.2 High

CVSS2

Уязвимость CVE-2009-3525