CVE-2013-4299

Оценки

EPSS

0.000нет0.0%
0%20%40%60%80%100%

Процентиль: 0.0%

CVSS

6.0средний2.0
0246810

Оценка CVSS: 6.0/10

Все оценки CVSS

CVSS 2.0
6.0

Вектор: AV:N/AC:M/Au:S/C:P/I:P/A:P

Описание

Конфликт интерпретации в drivers/md/dm-snap-persistent.c в ядре Linux до версии 3.11.6 позволяет удаленным аутентифицированным пользователям получать конфиденциальную информацию или изменять данные через поддельное отображение на устройство моментального снимка.

Сканер-ВС 7 — современное решение для управления уязвимостями

Использует эту базу данных для обнаружения уязвимостей. Высокая скорость поиска, кроссплатформенность, продвинутый аудит конфигурации и гибкая фильтрация. Подходит для организаций любого масштаба.
Подробнее о Сканер-ВС 7

Источники

debiannvdubuntu

CWE

CWE-200

Рекомендации

Источник: nvd

Before applying this update, make sure all previously released erratarelevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to use theRed Hat Network to apply this update are available athttps://access.redhat.com/site/articles/11258
To install kernel packages manually, use “rpm -ivh [package]”. Do not use”rpm -Uvh” as that will remove the running kernel binaries from yoursystem. You may use “rpm -e” to remove old kernels after determining thatthe new kernel functions properly on your system.

URL: http://rhn.redhat.com/errata/RHSA-2013-1860.html

Источник: nvd

Before applying this update, make sure all previously released erratarelevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to use theRed Hat Network to apply this update are available athttps://access.redhat.com/site/articles/11258
To install kernel packages manually, use “rpm -ivh [package]”. Do not use”rpm -Uvh” as that will remove the running kernel binaries from yoursystem. You may use “rpm -e” to remove old kernels after determining thatthe new kernel functions properly on your system.

URL: http://rhn.redhat.com/errata/RHSA-2013-1783.html

Источник: nvd

Before applying this update, make sure all previously released erratarelevant to your system have been applied.
Details on how to use the Red Hat Network to apply this update areavailable at https://access.redhat.com/site/articles/11258
This Red Hat OpenStack 3.0 kernel may be installed by running this commandwhile logged in as the root user on a system that has the requiredentitlements and subscriptions attached:

yum install “kernel-2.6.*.openstack.el6.x86_64”

Documentation for both stable and preview releases of Red Hat OpenStack isavailable at:
https://access.redhat.com/site/documentation/Red_Hat_OpenStack/
In particular it is highly recommended that all users read the ReleaseNotes document for the relevant Red Hat OpenStack release prior toinstallation.

URL: http://rhn.redhat.com/errata/RHSA-2013-1520.html

Источник: nvd

Before applying this update, make sure all previously released erratarelevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to use theRed Hat Network to apply this update are available athttps://access.redhat.com/site/articles/11258
To install kernel packages manually, use “rpm -ivh [package]”. Do not use”rpm -Uvh” as that will remove the running kernel binaries from yoursystem. You may use “rpm -e” to remove old kernels after determining thatthe new kernel functions properly on your system.

URL: http://rhn.redhat.com/errata/RHSA-2013-1519.html

Источник: nvd

This update is available via the Red Hat Network. Details on how to use theRed Hat Network to apply this update are available athttps://access.redhat.com/site/articles/11258
To upgrade Hypervisors in Red Hat Enterprise Virtualization environmentsusing the disk image provided by this package, refer to:
https://access.redhat.com/site/documentation/en-US/Red_Hat_Enterprise_Linux/6/html/Hypervisor_Deployment_Guide/chap-Deployment_Guide-Upgrading_Red_Hat_Enterprise_Virtualization_Hypervisors.html

URL: http://rhn.redhat.com/errata/RHSA-2013-1460.html

Источник: nvd

Before applying this update, make sure all previously released erratarelevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to use theRed Hat Network to apply this update are available athttps://access.redhat.com/site/articles/11258
To install kernel packages manually, use “rpm -ivh [package]”. Do not use”rpm -Uvh” as that will remove the running kernel binaries from yoursystem. You may use “rpm -e” to remove old kernels after determining thatthe new kernel functions properly on your system.

URL: http://rhn.redhat.com/errata/RHSA-2013-1450.html

Источник: nvd

Before applying this update, make sure all previously released erratarelevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to use theRed Hat Network to apply this update are available athttps://access.redhat.com/site/articles/11258
To install kernel packages manually, use “rpm -ivh [package]”. Do not use”rpm -Uvh” as that will remove the running kernel binaries from yoursystem. You may use “rpm -e” to remove old kernels after determining thatthe new kernel functions properly on your system.

URL: http://rhn.redhat.com/errata/RHSA-2013-1449.html

Источник: nvd

Before applying this update, make sure all previously released erratarelevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to use theRed Hat Network to apply this update are available athttps://access.redhat.com/site/articles/11258
To install kernel packages manually, use “rpm -ivh [package]”. Do not use”rpm -Uvh” as that will remove the running kernel binaries from yoursystem. You may use “rpm -e” to remove old kernels after determining thatthe new kernel functions properly on your system.

URL: http://rhn.redhat.com/errata/RHSA-2013-1436.html

Уязвимое ПО (54)

Тип: Конфигурация

Продукт: linux

Операционная система: debian wheezy 7

Характеристика:
{  "fixed": "3.2.53-1"}

Источник: debian

Тип: Конфигурация

Продукт: linux

Операционная система: ubuntu utopic 14.10

Характеристика:
{  "unaffected": true}

Источник: ubuntu

Тип: Конфигурация

Продукт: linux

Операционная система: ubuntu vivid 15.04

Характеристика:
{  "unaffected": true}

Источник: ubuntu

Тип: Конфигурация

Продукт: linux

Операционная система: ubuntu wily 15.10

Характеристика:
{  "unaffected": true}

Источник: ubuntu

Тип: Конфигурация

Продукт: linux

Операционная система: ubuntu xenial 16.04

Характеристика:
{  "unaffected": true}

Источник: ubuntu

Тип: Конфигурация

Продукт: linux

Операционная система: ubuntu yakkety 16.10

Характеристика:
{  "unaffected": true}

Источник: ubuntu

Тип: Конфигурация

Продукт: linux

Операционная система: ubuntu zesty 17.04

Характеристика:
{  "unaffected": true}

Источник: ubuntu

Тип: Конфигурация

Продукт: linux

Операционная система: debian

Характеристика:
{  "fixed": "3.11.6-2"}

Источник: debian

Тип: Конфигурация

Продукт: linux

Операционная система: ubuntu trusty 14.04

Характеристика:
{  "unaffected": true}

Источник: ubuntu

Тип: Конфигурация

Продукт: linux-2.6

Операционная система: debian

Характеристика:
{  "unfixed": true}

Источник: debian