QEMU KVM CVE-2012-0029 Local Privilege Escalation Vulnerability
BID:51642
Info
QEMU KVM CVE-2012-0029 Local Privilege Escalation Vulnerability
| Bugtraq ID: | 51642 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2012-0029 |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 23 2012 12:00AM |
| Updated: | Apr 13 2015 09:41PM |
| Credit: | <br>Nicolae Mogoreanu |
| Vulnerable: |
XenSource Xen 4.1.1 XenSource Xen 4.0 XenSource Xen 0 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Ubuntu Ubuntu Linux 10.10 powerpc Ubuntu Ubuntu Linux 10.10 i386 Ubuntu Ubuntu Linux 10.10 ARM Ubuntu Ubuntu Linux 10.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 SuSE Studio Standard Edition 1.2 Redhat Enterprise Virtualization Hypervisor for RHEL 6 0 Redhat Enterprise Virtualization Hypervisor for RHEL 5 0 Redhat Enterprise Linux Workstation 6 Redhat Enterprise Linux Virtualization 5 Server Redhat Enterprise Linux Server 6 Redhat Enterprise Linux HPC Node 6 Redhat Enterprise Linux Desktop Multi OS 5 client Redhat Enterprise Linux Desktop 6 Redhat Enterprise Linux Desktop 5 client Redhat Enterprise Linux 5 Server QEMU QEMU 0 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Oracle Enterprise Linux 5 Gentoo Linux Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 Avaya Aura System Platform 6.0.2 Avaya Aura System Platform 6.0.1 Avaya Aura System Platform 6.0 SP3 Avaya Aura System Platform 6.0 SP2 Avaya Aura System Platform 6.0 Avaya Aura System Platform 1.0 |
| Not Vulnerable: | |
Discussion
QEMU KVM CVE-2012-0029 Local Privilege Escalation Vulnerability
QEMU KVM is prone to a local privilege-escalation vulnerability because of a heap-based buffer-overflow issue.
An attacker can exploit this issue to execute arbitrary code with superuser privileges on the host operating system or crash the host operating system.
QEMU KVM is prone to a local privilege-escalation vulnerability because of a heap-based buffer-overflow issue.
An attacker can exploit this issue to execute arbitrary code with superuser privileges on the host operating system or crash the host operating system.
Exploit / POC
QEMU KVM CVE-2012-0029 Local Privilege Escalation Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
QEMU KVM CVE-2012-0029 Local Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
QEMU KVM CVE-2012-0029 Local Privilege Escalation Vulnerability
References:
References: