René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

131 lines
4.3 KiB
JSON

{
"id": "CVE-2015-0777",
"sourceIdentifier": "meissner@suse.de",
"published": "2015-04-05T21:59:00.077",
"lastModified": "2016-12-08T03:06:58.617",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "drivers/xen/usbback/usbback.c in linux-2.6.18-xen-3.4.0 (aka the Xen 3.4.x support patches for the Linux kernel 2.6.18), as used in the Linux kernel 2.6.x and 3.x in SUSE Linux distributions, allows guest OS users to obtain sensitive information from uninitialized locations in host OS kernel memory via unspecified vectors."
},
{
"lang": "es",
"value": "drivers/xen/usbback/usbback.c en linux-2.6.18-xen-3.4.0 (tambi\u00e9n conocido como los parches de soporte Xen 3.4.x para el kernel de Linux 2.6.18), utilizado en el kernel de Linux 2.6.x y 3.x en SUSE Linux distributions, permite a usuarios del sistema operativo invitado obtener informaci\u00f3n sensible de localizaciones no inicializadas en la memoria del kernel del sistema operativo anfitri\u00f3n a trav\u00e9s de vectores no especificados."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:N/A:N",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 2.1
},
"baseSeverity": "LOW",
"exploitabilityScore": 3.9,
"impactScore": 2.9,
"acInsufInfo": true,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-200"
}
]
}
],
"configurations": [
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:xen:xen:3.4.0:*:*:*:*:*:*:*",
"matchCriteriaId": "7F7D1B7E-C30F-430F-832D-2A405DA1F2D9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:xen:xen:3.4.1:*:*:*:*:*:*:*",
"matchCriteriaId": "B7C1D0AD-B804-474C-96A3-988BADA0DAD2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:xen:xen:3.4.2:*:*:*:*:*:*:*",
"matchCriteriaId": "1DCD1F05-9F96-40DD-B506-750E87306325"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:xen:xen:3.4.3:*:*:*:*:*:*:*",
"matchCriteriaId": "25B6AE42-E1EB-47A8-8FAF-7A93A67EC67F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:xen:xen:3.4.4:*:*:*:*:*:*:*",
"matchCriteriaId": "60BADA43-94D5-4E80-B5C8-D01A0249F13E"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:o:linux:linux_kernel:2.6.18:*:*:*:*:*:*:*",
"matchCriteriaId": "C06F0037-DE20-4B4A-977F-BFCFAB026517"
}
]
}
]
}
],
"references": [
{
"url": "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00001.html",
"source": "meissner@suse.de"
},
{
"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00004.html",
"source": "meissner@suse.de"
},
{
"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00018.html",
"source": "meissner@suse.de"
},
{
"url": "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00021.html",
"source": "meissner@suse.de"
},
{
"url": "http://www.securityfocus.com/bid/73921",
"source": "meissner@suse.de"
},
{
"url": "https://bugzilla.novell.com/show_bug.cgi?id=917830",
"source": "meissner@suse.de"
}
]
}