VDB
BDU%3A2019-02852
BDU%3A2019-02852
PUBLISHED
CVSS 7.199999809265137 HIGH
Уязвимость функции virDomainSaveImageGetXMLDesc() библиотеки управления виртуализацией Libvirt, позволяющая нарушителю вызвать отказ в обслуживании, выполнить произвольный код или определить наличие и размер произвольных файлов
Risk Scores
CVSS 2.0
7.199999809265137
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Canonical Ltd., ООО «РусБИТех-Астра», Сообщество свободного программного обеспечения, Novell Inc., АО «Концерн ВНИИНС» | Red Hat Enterprise Linux, Ubuntu, Astra Linux Special Edition (запись в едином реестре российских программ №369), Debian GNU/Linux, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, SUSE Linux Enterprise Module for Open Buildservice Development Tools, Suse Linux Enterprise Server, OpenSUSE Leap, SUSE Linux Enterprise Module for Basesystem, SUSE Linux Enterprise Point of Sale, libvirt, ОС ОН «Стрелец» (запись в едином реестре российских программ №6177) |
Timeline
- Aug 13, 2019 CVE Published
- Nov 21, 2023 CVE Updated
References
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-10161 url
- https://nvd.nist.gov/vuln/detail/CVE-2019-10161 url
- https://www.suse.com/security/cve/CVE-2019-10161/ advisory
- https://security-tracker.debian.org/tracker/CVE-2019-10161 advisory
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20210730SE16 advisory
- https://access.redhat.com/security/cve/cve-2019-10161 url
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10161 url
- https://security.libvirt.org/2019/0004.html url
- https://wiki.astralinux.ru/astra-linux-se15-bulletin-20201201SE15 url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20210611SE16 url
- https://strelets.net/patchi-i-obnovleniya-bezopasnosti#16012023 url
- https://libvirt.org/git/?p=libvirt.git;a=commit;h=aed6a032cead4386472afb24b16196579e239580 advisory
- https://usn.ubuntu.com/4047-1/ advisory