PT-2010-2196 · Red Hat · Red Hat Enterprise Virtualization+4
Publicado
2010-08-19
·
Atualizado
2010-08-25
·
CVE-2010-0428
CVSS v2.0
6.6
Média
| Vetor | AV:L/AC:M/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
libspice versions as used in QEMU-KVM in Red Hat Enterprise Virtualization (RHEV) 2.2
qspice version 0.3.0
Description
The issue is related to the improper validation of guest QXL driver pointers in libspice, which can lead to a denial of service due to an invalid pointer dereference, causing the guest OS to crash. It is also possible for attackers to gain privileges via unspecified vectors.
Recommendations
For libspice as used in QEMU-KVM in Red Hat Enterprise Virtualization (RHEV) 2.2, update to a version that properly validates guest QXL driver pointers.
For qspice version 0.3.0, update to a version that properly validates guest QXL driver pointers.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Qemu-Kvm
Red Hat
Red Hat Enterprise Virtualization
Libspice
Qspice