Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-0215

EPSS 0.11% · P29
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-0215

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
oxenstored in Xen 4.1.x, Xen 4.2.x, and xen-unstable does not properly consider the state of the Xenstore ring during read operations, which allows guest OS users to cause a denial of service (daemon crash and host-control outage, or memory consumption) or obtain sensitive control-plane data by leveraging guest administrative access.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Xen oxenstored环状态处理漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Xen是英国剑桥大学开发的一款开源的虚拟机监视器产品。该产品能够使不同和不兼容的操作系统运行在同一台计算机上,并支持在运行时进行迁移,保证正常运行并且避免宕机。 Xen 4.1.x,Xen 4.2.x,xen-unstable中的oxenstored中存在漏洞,该漏洞源于在读取操作期间程序没有考虑Xenstore环的状态。通过利用管理员访问权限,攻击者利用该漏洞导致拒绝服务(守护进程崩溃),因此引发主机控制中断,耗尽内存,或获得敏感的控制平面数据。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-0215

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-0215

登录查看更多情报信息。

Same Patch Batch · n/a · 2013-03-07 · 22 CVEs total

CVE-2013-2481Wireshark Mount解码器‘dissect_mount_dirpath_call’函数数字错误漏洞
CVE-2012-5053Trimble Infrastructure GNSS Series Receivers 未明跨站脚本漏洞
CVE-2011-4318Ubuntu dovecot 安全漏洞
CVE-2013-0151Xen 拒绝服务漏洞
CVE-2013-2488Wireshark DTLS解码器拒绝服务漏洞
CVE-2013-2487Wireshark RELOAD解码器拒绝服务漏洞
CVE-2013-2486Wireshark RELOAD解码器‘dissect_diagnosticrequest’函数拒绝服务漏洞
CVE-2013-2485Wireshark FCSP解码器拒绝服务漏洞
CVE-2013-2484Wireshark CIMD解码器拒绝服务漏洞
CVE-2013-2483Wireshark ACN解码器‘acn_add_dmp_data’函数拒绝服务漏洞
CVE-2013-2482Wireshark AMPQ解码器拒绝服务漏洞
CVE-2010-5107OpenSSH 远程拒绝服务漏洞
CVE-2013-2480Wireshark RTPS/RTPS2解析器拒绝服务漏洞
CVE-2013-2479Wireshark MPLS Echo解码器拒绝服务漏洞
CVE-2013-2478Wireshark MS-MMS解码器‘dissect_server_info’函数拒绝服务漏洞
CVE-2013-2477Wireshark CSN.1解码器拒绝服务漏洞
CVE-2013-2476Wireshark HART/IP解码器‘dissect_hartip’函数拒绝服务漏洞
CVE-2013-2475Wireshark TCP解码器拒绝服务漏洞
CVE-2013-2493Google Chrome Frame插件拒绝服务漏洞
CVE-2013-1154Cisco Small Business Switches 拒绝服务漏洞

Showing top 20 of 22 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2013-0215

No comments yet


Leave a comment