7.4
CVSSv2

CVE-2010-0430

Published: 27/12/2013 Updated: 27/12/2013
CVSS v2 Base Score: 7.4 | Impact Score: 10 | Exploitability Score: 4.4
VMScore: 659
Vector: AV:A/AC:M/Au:S/C:C/I:C/A:C

Vulnerability Summary

libspice, as used in QEMU-KVM in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) prior to 5.5-2.2 and possibly other products, allows guest OS users to read from or write to arbitrary QEMU memory by modifying the address that is used by Cairo for memory mappings.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise virtualization hypervisor

Vendor Advisories

Synopsis Important: kvm security, bug fix and enhancement update Type/Severity Security Advisory: Important Topic Updated kvm packages that fix one security issue, multiple bugs, and addenhancements are now available for Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this update as ...