Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-2211
Description:The libxenlight (libxl) toolstack library in Xen 4.0.x, 4.1.x, and 4.2.x uses weak permissions for xenstore keys for paravirtualised and emulated serial console devices, which allows local guest administrators to modify the xenstore value via unspecified vectors.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-2211
55082
http://secunia.com/advisories/55082
DSA-3006
http://www.debian.org/security/2014/dsa-3006
GLSA-201309-24
http://security.gentoo.org/glsa/glsa-201309-24.xml
SUSE-SU-2014:0446
http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00021.html
[oss-security] 20130625 Re: Xen Security Advisory 57 - libxl allows guest write access to sensitive console related xenstore keys
http://www.openwall.com/lists/oss-security/2013/06/25/1
[oss-security] 20130626 Xen Security Advisory 57 (CVE-2013-2211) - libxl allows guest write access to sensitive console related xenstore keys
http://www.openwall.com/lists/oss-security/2013/06/26/4




© 1998-2025 E-Soft Inc. All rights reserved.