PT-2013-3560 · Red Hat · Red Hat Enterprise Virtualization Manager

Daniel Erez

·

Published

2013-07-03

·

Updated

2013-07-04

·

CVE-2013-2144

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Red Hat Enterprise Virtualization Manager (RHEVM) versions prior to 3.2
Description The issue allows attackers to cause a denial of service by consuming disk space through cloning a VM from a snapshot, due to improper permission checks for the target storage domain.
Recommendations For versions prior to 3.2, update to version 3.2 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-2144
RHSA-2013:0888

Affected Products

Red Hat Enterprise Virtualization Manager