CVE-2010-2811Redhat Enterprise Virtualization vulnerability

5 documents5 sources
Severity
5.7MEDIUMNVD
EPSS
0.5%
top 32.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 24
Latest updateMay 17

Description

Virtual Desktop Server Manager (VDSM) in Red Hat Enterprise Virtualization (RHEV) 2.2 does not properly accept TCP connections for SSL sessions, which allows remote attackers to cause a denial of service (daemon outage) via crafted SSL traffic.

CVSS vector

AV:A/AC:M/C:N/I:N/A:CExploitability: 5.5 | Impact: 6.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-gmq6-f2cw-4cmr: Virtual Desktop Server Manager (VDSM) in Red Hat Enterprise Virtualization (RHEV) 22022-05-17
CVEList
CVE-2010-2811: Virtual Desktop Server Manager (VDSM) in Red Hat Enterprise Virtualization (RHEV) 22010-08-24

📋Vendor Advisories

1
Red Hat
vdsm: SSL accept() blocks on a non-blocking Connection2010-08-19

💬Community

1
Bugzilla
CVE-2010-2811 vdsm: SSL accept() blocks on a non-blocking Connection2010-08-10
CVE-2010-2811 — Redhat vulnerability | cvebase