Логотип exploitDog
bind:"CVE-2015-5160" OR bind:"CVE-2015-5313" OR bind:"CVE-2016-5008"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2015-5160" OR bind:"CVE-2015-5313" OR bind:"CVE-2016-5008"

Количество 25

Количество 25

oracle-oval логотип

ELSA-2016-2577

почти 9 лет назад

ELSA-2016-2577: libvirt security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2015-5160

около 7 лет назад

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2015-5160

около 10 лет назад

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2015-5160

около 7 лет назад

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2015-5160

около 7 лет назад

libvirt before 2.2 includes Ceph credentials on the qemu command line ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-57w8-4258-hhvg

больше 3 лет назад

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2015-5313

больше 9 лет назад

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS3: 2.5
EPSS: Низкий
redhat логотип

CVE-2015-5313

больше 9 лет назад

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS2: 4.9
EPSS: Низкий
nvd логотип

CVE-2015-5313

больше 9 лет назад

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS3: 2.5
EPSS: Низкий
debian логотип

CVE-2015-5313

больше 9 лет назад

Directory traversal vulnerability in the virStorageBackendFileSystemVo ...

CVSS3: 2.5
EPSS: Низкий
ubuntu логотип

CVE-2016-5008

около 9 лет назад

libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2016-5008

больше 10 лет назад

libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server.

CVSS3: 5.6
EPSS: Низкий
nvd логотип

CVE-2016-5008

около 9 лет назад

libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2016-5008

около 9 лет назад

libvirt before 2.0.0 improperly disables password checking when the pa ...

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:0209-1

больше 9 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:0931-1

больше 9 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:0923-1

больше 9 лет назад

Security update for libvirt

EPSS: Низкий
github логотип

GHSA-qr2q-8mvm-hxvr

больше 3 лет назад

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS3: 2.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:1975-1

около 9 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:1810-1

около 9 лет назад

Security update for libvirt

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2016-2577

ELSA-2016-2577: libvirt security, bug fix, and enhancement update (MODERATE)

почти 9 лет назад
ubuntu логотип
CVE-2015-5160

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 5.5
0%
Низкий
около 7 лет назад
redhat логотип
CVE-2015-5160

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 3.3
0%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-5160

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 5.5
0%
Низкий
около 7 лет назад
debian логотип
CVE-2015-5160

libvirt before 2.2 includes Ceph credentials on the qemu command line ...

CVSS3: 5.5
0%
Низкий
около 7 лет назад
github логотип
GHSA-57w8-4258-hhvg

libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2015-5313

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS3: 2.5
0%
Низкий
больше 9 лет назад
redhat логотип
CVE-2015-5313

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS2: 4.9
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2015-5313

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS3: 2.5
0%
Низкий
больше 9 лет назад
debian логотип
CVE-2015-5313

Directory traversal vulnerability in the virStorageBackendFileSystemVo ...

CVSS3: 2.5
0%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2016-5008

libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server.

CVSS3: 9.8
3%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-5008

libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server.

CVSS3: 5.6
3%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-5008

libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server.

CVSS3: 9.8
3%
Низкий
около 9 лет назад
debian логотип
CVE-2016-5008

libvirt before 2.0.0 improperly disables password checking when the pa ...

CVSS3: 9.8
3%
Низкий
около 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:0209-1

Security update for libvirt

0%
Низкий
больше 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:0931-1

Security update for libvirt

0%
Низкий
больше 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:0923-1

Security update for libvirt

0%
Низкий
больше 9 лет назад
github логотип
GHSA-qr2q-8mvm-hxvr

Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL but not domain:write permission to write to arbitrary files via a .. (dot dot) in a volume name.

CVSS3: 2.5
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2016:1975-1

Security update for libvirt

3%
Низкий
около 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:1810-1

Security update for libvirt

3%
Низкий
около 9 лет назад

Уязвимостей на страницу