cbcvebase.
CVE-2013-2016
published 2019-12-30

CVE-2013-2016: A flaw was found in the way qemu v1.3.0 and later (virtio-rng) validates addresses when guest accesses the config space of a virtio device. If the virtio…

PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.51%
39.9th percentile
A flaw was found in the way qemu v1.3.0 and later (virtio-rng) validates addresses when guest accesses the config space of a virtio device. If the virtio device has zero/small sized config space, such as virtio-rng, a privileged guest user could use this flaw to access the matching host's qemu address space and thus increase their privileges on the host.

Affected

44 ranges· showing 25
VendorProductVersion rangeFixed in
bundlerbundler>= 1.0.0 < 2.0.02.0.0
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianqemu< qemu 1.5.0+dfsg-1 (bookworm)qemu 1.5.0+dfsg-1 (bookworm)
jenkinsasync_http_client_plugin
jenkinsbuild_failure_analyzer_plugin
jenkinsimage_gallery_plugin
jenkinstap_plugin
jenkinsusers_of_build_failure_analyzer_plugin
jenkinsusers_of_image_gallery_plugin
jenkinsusers_of_tap_plugin
msrcmicrosoft_exchange_server_2010_service_pack_3
msrcmicrosoft_exchange_server_2013_cumulative_update_21
msrcmicrosoft_exchange_server_2013_cumulative_update_22
msrcmicrosoft_exchange_server_2013_cumulative_update_23
msrcmicrosoft_exchange_server_2013_service_pack_1
msrcmicrosoft_exchange_server_2016_cumulative_update_10
msrcmicrosoft_exchange_server_2016_cumulative_update_11
msrcmicrosoft_exchange_server_2016_cumulative_update_12
msrcmicrosoft_exchange_server_2016_cumulative_update_13
msrcmicrosoft_exchange_server_2016_cumulative_update_14
msrcmicrosoft_exchange_server_2016_cumulative_update_15
msrcmicrosoft_exchange_server_2016_cumulative_update_16
msrcmicrosoft_exchange_server_2016_cumulative_update_17

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
ghsa5.0MEDIUM
osv7.8HIGH
vendor_redhat9.3CRITICAL
vendor_msrc9.1CRITICAL
vendor_debian7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.