Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-2239

EPSS 0.16% · P37
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-2239

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
vzkernel before 042stab080.2 in the OpenVZ modification for the Linux kernel 2.6.32 does not initialize certain length variables, which allows local users to obtain sensitive information from kernel stack memory via (1) a crafted ploop driver ioctl call, related to the ploop_getdevice_ioc function in drivers/block/ploop/dev.c, or (2) a crafted quotactl system call, related to the compat_quotactl function in fs/quota/quota.c.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
OpenVZ Kernel Memory Leak 多个本地信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
OpenVZ是OpenVZ项目的一套基于Linux内核的操作系统级虚拟化技术,也被称为虚拟专用服务器(VPS)或虚拟环境(VE),它具有允许物理服务器运行多个操作系统的特点。 OpenVZ modification for the Linux kernel 2.6.32版本中的vzkernel 042stab080.2之前的版本中drivers/block/ploop/dev.c文件中的‘ploop_getdevice_ioc’函数和fs/quota/quota.c文件中的‘compat_quotactl
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-2239

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-2239

登录查看更多情报信息。

Same Patch Batch · n/a · 2013-11-12 · 12 CVEs total

CVE-2013-5726Tapbots Tweetbot For iOS和Mac 跨站请求伪造漏洞
CVE-2013-3918Microsoft IE ActiveX控件缓冲区溢出漏洞
CVE-2013-4511Linux Kernel 整数溢出漏洞
CVE-2013-4512Linux Kernel ‘exitcode_proc_write()’函数本地缓冲区错误漏洞
CVE-2013-4513Linux Kernel ‘oz_cdev_write()’函数本地缓冲区错误漏洞
CVE-2013-4514Linux Kernel ‘drivers/staging/wlags49_h2/wl_priv.c’本地缓冲区错误漏洞
CVE-2013-4515Linux Kernel ‘/bcm/Bcmchar.c’本地信息泄露漏洞
CVE-2013-4516Linux Kernel ‘mp_get_count()’函数本地信息泄露漏洞
CVE-2013-4740Goodix gt915触屏驱动程序缓冲区溢出漏洞
CVE-2013-6122Goodix gt915触屏驱动程序缓冲区溢出漏洞
CVE-2013-6763Linux kernel ‘uio_mmap_physical’函数缓冲区溢出漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2013-2239

No comments yet


Leave a comment