CVE Database
/

CVE-2010-0428

Back to search

CVE-2010-0428

Published: Aug 24, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2010:0622
vendor-advisory
x_refsource_REDHAT
RHSA-2010:0633
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now