CVE-2013-1766

Description

libvirt 1.0.2 and earlier sets the group owner to kvm for device files, which allows local users to write to these files via unspecified vectors.

Risk Information

Base Score
8.6
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
0.056

Associated Vulnerability

VulnerabilityOS Platform
libvirt-bin security update(DSA-2650-1) libvirt-bin_1.2.9-9+deb8u2~bpo70+1_i386.debLinux
libvirt-bin security update(DSA-2650-1) libvirt-bin_1.2.9-9+deb8u2~bpo70+1_amd64.debLinux
CVE-2013-1766NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234