ubuntu · CVE-2010-2242

Quick triage

Priority: low Published: 2010-08-19 00:00:00 UTC Updated: 2024-07-24 15:57:39 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2010-2242 low priority: Ubuntu including 1 source packages (libvirt), 7 status rows across 7 suites (dapper, hardy, jaunty, karmic, lucid, maverick, upstream): released 6, DNE 1.

Description:

Red Hat libvirt 0.2.0 through 0.8.2 creates iptables rules with improper mappings of privileged source ports, which allows guest OS users to bypass intended access restrictions by leveraging IP address and source-port values, as demonstrated by copying and deleting an NFS directory tree.

cvelogic Threat Intelligence