Vulnerabilities > CVE-2013-2124 - Unspecified vulnerability in Libguestfs
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN libguestfs
nessus
Summary
Double free vulnerability in inspect-fs.c in LibguestFS 1.20.x before 1.20.7, 1.21.x, 1.22.0, and 1.23.0 allows remote attackers to cause a denial of service (crash) via empty guest files.
Vulnerable Configurations
Nessus
NASL family | Fedora Local Security Checks |
NASL id | FEDORA_2013-10029.NASL |
description | New upstream version 1.22.2. Contains complete fix for CVE-2013-2124. Fixes a potential denial of service attack when examining untrusted guests. For more information see: https://www.redhat.com/archives/libguestfs/2013-May/msg00079.html Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues. |
last seen | 2020-03-17 |
modified | 2013-07-12 |
plugin id | 67262 |
published | 2013-07-12 |
reporter | This script is Copyright (C) 2013-2020 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/67262 |
title | Fedora 19 : libguestfs-1.22.2-1.fc19 (2013-10029) |
code |
|
References
- http://osvdb.org/93724
- http://osvdb.org/93724
- http://seclists.org/oss-sec/2013/q2/431
- http://seclists.org/oss-sec/2013/q2/431
- http://www.securityfocus.com/bid/60205
- http://www.securityfocus.com/bid/60205
- https://exchange.xforce.ibmcloud.com/vulnerabilities/85145
- https://exchange.xforce.ibmcloud.com/vulnerabilities/85145
- https://github.com/libguestfs/libguestfs/commit/fa6a76050d82894365dfe32916903ef7fee3ffcd
- https://github.com/libguestfs/libguestfs/commit/fa6a76050d82894365dfe32916903ef7fee3ffcd
- https://www.redhat.com/archives/libguestfs/2013-May/msg00079.html
- https://www.redhat.com/archives/libguestfs/2013-May/msg00079.html
- https://www.redhat.com/archives/libguestfs/2013-May/msg00080.html
- https://www.redhat.com/archives/libguestfs/2013-May/msg00080.html