PT-2013-4888 · Foreman · Foreman

Published

2013-09-16

·

Updated

2023-02-13

·

CVE-2013-4180

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Foreman versions prior to 1.2.2
Description The issue allows remote attackers to cause a denial of service, specifically memory consumption, via unspecified input that is converted to a symbol. This is related to the power and ipmi boot actions in the HostController.
Recommendations For versions prior to 1.2.2, update to version 1.2.2 or later to resolve the issue.

Fix

RCE

Weakness Enumeration

Related Identifiers

CVE-2013-4180
RHSA-2013:1196

Affected Products

Foreman