CVE-2013-4236
published 2013-08-19CVE-2013-4236: VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via invalid…
PriorityP48low2.7CVSS 2.0
AVAACLAuSCNINAP
EPSS
0.56%
42.6th percentile
VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via invalid XML characters in a guest agent response. NOTE: this issue is due to an incomplete fix for CVE-2013-0167.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | enterprise_virtualization | — | — |
| redhat | enterprise_virtualization | — | — |
CVSS provenance
nvdv2.02.7LOWAV:A/AC:L/Au:S/C:N/I:N/A:P
vendor_redhat2.7LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
vdsm: incomplete fix for CVE-2013-0167 issue
vendor_redhat·2013-07-16·CVSS 2.7
CVE-2013-4236 [LOW] vdsm: incomplete fix for CVE-2013-0167 issue
vdsm: incomplete fix for CVE-2013-0167 issue
VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via invalid XML characters in a guest agent response. NOTE: this issue is due to an incomplete fix for CVE-2013-0167.
GHSA
GHSA-jhj6-xfqh-j93v: VDSM in Red Hat Enterprise Virtualization 3 and 3
ghsa_unreviewed·2022-05-17·CVSS 2.7
CVE-2013-4236 [LOW] GHSA-jhj6-xfqh-j93v: VDSM in Red Hat Enterprise Virtualization 3 and 3
VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via invalid XML characters in a guest agent response. NOTE: this issue is due to an incomplete fix for CVE-2013-0167.
No detection rules found.
No public exploits indexed.
http://gerrit.ovirt.org/gitweb?p=vdsm.git%3Ba=commit%3Bh=5fe1615b7949999fc9abd896bde63bf24f8431d6http://rhn.redhat.com/errata/RHSA-2013-1155.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=996166http://gerrit.ovirt.org/gitweb?p=vdsm.git%3Ba=commit%3Bh=5fe1615b7949999fc9abd896bde63bf24f8431d6http://rhn.redhat.com/errata/RHSA-2013-1155.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=996166
2013-08-19
Published