Логотип exploitDog
bind:CVE-2019-10161
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-10161

Количество 22

Количество 22

ubuntu логотип

CVE-2019-10161

больше 6 лет назад

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2019-10161

почти 7 лет назад

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2019-10161

больше 6 лет назад

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2019-10161

больше 6 лет назад

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1690-1

почти 7 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:14100-1

почти 7 лет назад

Security update for libvirt

EPSS: Низкий
github логотип

GHSA-6cwp-pxj6-56c7

почти 4 года назад

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 7.8
EPSS: Низкий
oracle-oval логотип

ELSA-2019-1578

почти 7 лет назад

ELSA-2019-1578: libvirt security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2019-02852

больше 6 лет назад

Уязвимость функции virDomainSaveImageGetXMLDesc() библиотеки управления виртуализацией Libvirt, позволяющая нарушителю вызвать отказ в обслуживании, выполнить произвольный код или определить наличие и размер произвольных файлов

CVSS3: 7.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2227-2

больше 6 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2227-1

больше 6 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2105-1

больше 6 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1686-1

почти 7 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:14097-1

почти 7 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1672-1

больше 6 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1637-1

почти 7 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1599-1

почти 7 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1753-1

больше 6 лет назад

Security update for libvirt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1643-1

почти 7 лет назад

Security update for libvirt

EPSS: Низкий
oracle-oval логотип

ELSA-2019-1580

больше 6 лет назад

ELSA-2019-1580: virt:ol security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-10161

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 7.8
0%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-10161

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 8.8
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2019-10161

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 7.8
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-10161

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would ...

CVSS3: 7.8
0%
Низкий
больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1690-1

Security update for libvirt

0%
Низкий
почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:14100-1

Security update for libvirt

0%
Низкий
почти 7 лет назад
github логотип
GHSA-6cwp-pxj6-56c7

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the existence of arbitrary files, cause denial of service or cause libvirtd to execute arbitrary programs.

CVSS3: 7.8
0%
Низкий
почти 4 года назад
oracle-oval логотип
ELSA-2019-1578

ELSA-2019-1578: libvirt security update (MODERATE)

почти 7 лет назад
fstec логотип
BDU:2019-02852

Уязвимость функции virDomainSaveImageGetXMLDesc() библиотеки управления виртуализацией Libvirt, позволяющая нарушителю вызвать отказ в обслуживании, выполнить произвольный код или определить наличие и размер произвольных файлов

CVSS3: 7.4
0%
Низкий
больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2227-2

Security update for libvirt

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2227-1

Security update for libvirt

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2105-1

Security update for libvirt

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1686-1

Security update for libvirt

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:14097-1

Security update for libvirt

почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1672-1

Security update for libvirt

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1637-1

Security update for libvirt

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:1599-1

Security update for libvirt

почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1753-1

Security update for libvirt

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1643-1

Security update for libvirt

почти 7 лет назад
oracle-oval логотип
ELSA-2019-1580

ELSA-2019-1580: virt:ol security update (IMPORTANT)

больше 6 лет назад

Уязвимостей на страницу