CVE-2010-2238
Published Aug 19, 2010
Last updated 14 years ago
Overview
- Description
- Red Hat libvirt, possibly 0.7.2 through 0.8.2, recurses into disk-image backing stores without extracting the defined disk backing-store format, which might allow guest OS users to read arbitrary files on the host OS, and possibly have unspecified other impact, via unknown vectors.
- Source
- secalert@redhat.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.4
- Impact score
- 6.9
- Exploitability score
- 2.7
- Vector string
- AV:L/AC:M/Au:S/C:C/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:libvirt:libvirt:0.7.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9C7F2E72-C436-46A4-A4B9-9F2B567FE8A0" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.7.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D1EBC94-5CB9-4B5A-9CB3-C10DE191AE3B" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.7.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05461C68-1BA6-4BA5-97F1-D56E0A62A37F" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.7.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6507C31-9F5F-488D-9D0D-C233CA1DED01" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.7.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3199D614-94CD-4E12-9127-4459BB6A84FB" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.7.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC2EE32A-68DF-4343-A5B1-6861324E592B" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "330BFC7B-1971-42C3-BBB5-1498B112E8DC" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39D87F93-98FE-414B-8D32-C9AB853A235D" }, { "criteria": "cpe:2.3:a:libvirt:libvirt:0.8.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B38AB6E8-DE2F-426C-A8E9-2572611AE5E1" } ], "operator": "OR" } ] } ]