[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2013-6456Date: (C)2014-04-16   (M)2023-12-22


The LXC driver (lxc/lxc_driver.c) in libvirt 1.0.1 through 1.2.1 allows local users to (1) delete arbitrary host devices via the virDomainDeviceDettach API and a symlink attack on /dev in the container; (2) create arbitrary nodes (mknod) via the virDomainDeviceAttach API and a symlink attack on /dev in the container; and cause a denial of service (shutdown or reboot host OS) via the (3) virDomainShutdown or (4) virDomainReboot API and a symlink attack on /dev/initctl in the container, related to "paths under /proc/$PID/root" and the virInitctlSetRunLevel function.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 5.8
Exploit Score: 4.4
Impact Score: 7.8
 
CVSS V2 Metrics:
Access Vector: ADJACENT_NETWORK
Access Complexity: MEDIUM
Authentication: SINGLE
Confidentiality: NONE
Integrity: PARTIAL
Availability: COMPLETE
  
Reference:
SECUNIA-56187
SECUNIA-56215
SECUNIA-60895
BID-65743
FEDORA-2014-2864
GLSA-201412-04
http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=5fc590ad9f4
http://libvirt.org/news.html
http://security.libvirt.org/2013/0018.html
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=732394
https://bugzilla.redhat.com/show_bug.cgi?id=1045643
openSUSE-SU-2014:0593

CWE    1
CWE-59
OVAL    5
oval:org.secpod.oval:def:701946
oval:org.secpod.oval:def:106486
oval:org.secpod.oval:def:107962
oval:org.secpod.oval:def:108431
...

© SecPod Technologies