Professional OVAL Repository
[Eng]
[Rus]
[Sign-In]
OVAL
Search
Categories
RedCheck
About
OVAL Definitions
OVAL Items
FSTEC Data Bank Information Security Threats
NKCKI
EOL (End Of Life)
Linux Security Advisories
Mozilla Foundation Security Advisory
IBM
VMware
Cisco
Check Point Software Technologies
Apache
Solaris
FreeBSD
Development
GitHub Enterprise
Google Chrome Security Advisories
Oracle Security Advisories
Adobe Security Advisories
OpenSSL Security Advisories
Microsoft
CVE
CWE
CPE
Latest Updates
OS ROSA
ALT Linux
Astra Linux
RED OS
DSA (Debian Security Advisory) Patсh Statistics
DSA (Debian Security Advisory) Patсh Feed
DSA (Debian Security Advisory) Vulnerability Feed
DLA (Debian Security Advisory) Patсh Statistics
DLA (Debian Security Advisory) Patсh Feed
DLA (Debian Security Advisory) Vulnerability Feed
ALT Linux (Security Bulletins) Patсh Statistics
ALT Linux (Security Bulletins) Patсh Feed
ALT Linux (Security Bulletins) Vulnerability Feed
RED OS (Security Bulletins) Patсh Statistics
RED OS (Security Bulletins) Patсh Feed
RED OS (Security Bulletins) Vulnerability Feed
USN (Ubuntu Security Notice) Patсh Statistics
USN (Ubuntu Security Notice) Patсh Feed
USN (Ubuntu Security Notice) Vulnerability Feed
RHSA (RedHat Security Advisory) Patсh Statistics
RHSA (RedHat Security Advisory) Patсh Feed
RHSA (RedHat Security Advisory) Vulnerability Feed
ELSA (Oracle Linux Security Advisory) Patсh Statistics
ELSA (Oracle Linux Security Advisory) Patсh Feed
ELSA (Oracle Linux Security Advisory) Vulnerability Feed
SUSE (SUSE Security Advisories) Patсh Statistics
SUSE (SUSE Security Advisories) Patсh Feed
SUSE (SUSE Security Advisories) Vulnerability Feed
openSUSE (openSUSE Security Advisories) Patсh Statistics
openSUSE (openSUSE Security Advisories) Patсh Feed
openSUSE (openSUSE Security Advisories) Vulnerability Feed
Amazon Linux AMI (Security Bulletins) Patсh Statistics
Amazon Linux AMI (Security Bulletins) Patсh Feed
Amazon Linux AMI (Security Bulletins) Vulnerability Feed
Mageia Linux (Security Bulletins) Patсh Statistics
Mageia Linux (Security Bulletins) Patсh Feed
Mageia Linux (Security Bulletins) Vulnerability Feed
OS ROSA SX COBALT 1.0
OS ROSA DX COBALT 1.0
ROSA 7.3 (Security Advisories) Patсh Statistics
ROSA 7.3 (Security Advisories) Patсh Feed
ROSA 7.3 (Security Advisories) Vulnerability Feed
ALT Linux SPT 6.0
ALT Linux SPT 7.0
ALT 8 SP
ALT 9
Astra Linux SE 1.5
Astra Linux SE 1.6
Astra Linux SE 1.7
Astra Linux SE 1.8
RED OS Murom 7.1
RED OS Murom 7.2
IBM DB2
VMware Vulnerabilities Advisory (VMSA)
VMware vCenter Patch Advisories
VMware ESXi Patch Advisories
VMware NSX Patches
VMware NSX Vulnerabilities
VMware Photon OS 1.0 Patches
VMware Photon OS 1.0 Vulnerabilities
VMware Photon OS 2.0 Patches
VMware Photon OS 2.0 Vulnerabilities
Cisco ASA
Cisco IOS/NX-OS Advisory
Cisco NX-OS Vulnerabilities
Check Point Gaia
Apache Tomcat Advisories
Apache Tomcat Server
Apache HTTP Server
Python
Node.js
RubyGems
Qt
Microsoft Security Bulletin
Microsoft Knowledge Base Article
Microsoft SharePoint
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Server 2013
Microsoft SharePoint Server 2016
About OVALdb
User manual
Pricing
Contact us
OVAL Definitions
>
OVAL Definition Details
Id
oval:ru.altx-soft.nix:def:113543
[Eng]
Version
2
Class
vulnerability
ALTXid
299920
Language
Russian
Severity
Medium
Title
Mageia -- уязвимость в libvirt (CVE-2014-7823)
Description
В продукте libvirt обнаружена уязвимость CVE-2014-7823.
Family
unix
Platform
Mageia 3
Mageia 4
Product
libvirt
Reference
FSTEC: BDU:2015-09274
FSTEC: BDU:2015-09274
Id:
BDU:2015-09274
Reference:
https://bdu.fstec.ru/vul/2015-09274
FSTEC: BDU:2015-09273
FSTEC: BDU:2015-09273
Id:
BDU:2015-09273
Reference:
https://bdu.fstec.ru/vul/2015-09273
FSTEC: BDU:2015-09272
FSTEC: BDU:2015-09272
Id:
BDU:2015-09272
Reference:
https://bdu.fstec.ru/vul/2015-09272
FSTEC: BDU:2015-09271
FSTEC: BDU:2015-09271
Id:
BDU:2015-09271
Reference:
https://bdu.fstec.ru/vul/2015-09271
FSTEC: BDU:2015-09270
FSTEC: BDU:2015-09270
Id:
BDU:2015-09270
Reference:
https://bdu.fstec.ru/vul/2015-09270
FSTEC: BDU:2015-09269
FSTEC: BDU:2015-09269
Id:
BDU:2015-09269
Reference:
https://bdu.fstec.ru/vul/2015-09269
FSTEC: BDU:2015-09268
FSTEC: BDU:2015-09268
Id:
BDU:2015-09268
Reference:
https://bdu.fstec.ru/vul/2015-09268
FSTEC: BDU:2015-09267
FSTEC: BDU:2015-09267
Id:
BDU:2015-09267
Reference:
https://bdu.fstec.ru/vul/2015-09267
FSTEC: BDU:2015-09266
FSTEC: BDU:2015-09266
Id:
BDU:2015-09266
Reference:
https://bdu.fstec.ru/vul/2015-09266
FSTEC: BDU:2015-09265
FSTEC: BDU:2015-09265
Id:
BDU:2015-09265
Reference:
https://bdu.fstec.ru/vul/2015-09265
FSTEC: BDU:2015-09264
FSTEC: BDU:2015-09264
Id:
BDU:2015-09264
Reference:
https://bdu.fstec.ru/vul/2015-09264
FSTEC: BDU:2015-09263
FSTEC: BDU:2015-09263
Id:
BDU:2015-09263
Reference:
https://bdu.fstec.ru/vul/2015-09263
FSTEC: BDU:2015-09262
FSTEC: BDU:2015-09262
Id:
BDU:2015-09262
Reference:
https://bdu.fstec.ru/vul/2015-09262
FSTEC: BDU:2015-09261
FSTEC: BDU:2015-09261
Id:
BDU:2015-09261
Reference:
https://bdu.fstec.ru/vul/2015-09261
FSTEC: BDU:2015-09260
FSTEC: BDU:2015-09260
Id:
BDU:2015-09260
Reference:
https://bdu.fstec.ru/vul/2015-09260
FSTEC: BDU:2015-09259
FSTEC: BDU:2015-09259
Id:
BDU:2015-09259
Reference:
https://bdu.fstec.ru/vul/2015-09259
FSTEC: BDU:2015-09258
FSTEC: BDU:2015-09258
Id:
BDU:2015-09258
Reference:
https://bdu.fstec.ru/vul/2015-09258
FSTEC: BDU:2015-09257
FSTEC: BDU:2015-09257
Id:
BDU:2015-09257
Reference:
https://bdu.fstec.ru/vul/2015-09257
FSTEC: BDU:2015-09256
FSTEC: BDU:2015-09256
Id:
BDU:2015-09256
Reference:
https://bdu.fstec.ru/vul/2015-09256
FSTEC: BDU:2015-09255
FSTEC: BDU:2015-09255
Id:
BDU:2015-09255
Reference:
https://bdu.fstec.ru/vul/2015-09255
FSTEC: BDU:2015-09254
FSTEC: BDU:2015-09254
Id:
BDU:2015-09254
Reference:
https://bdu.fstec.ru/vul/2015-09254
FSTEC: BDU:2015-09151
FSTEC: BDU:2015-09151
Id:
BDU:2015-09151
Reference:
https://bdu.fstec.ru/vul/2015-09151
FSTEC: BDU:2015-09150
FSTEC: BDU:2015-09150
Id:
BDU:2015-09150
Reference:
https://bdu.fstec.ru/vul/2015-09150
FSTEC: BDU:2015-09149
FSTEC: BDU:2015-09149
Id:
BDU:2015-09149
Reference:
https://bdu.fstec.ru/vul/2015-09149
FSTEC: BDU:2015-09148
FSTEC: BDU:2015-09148
Id:
BDU:2015-09148
Reference:
https://bdu.fstec.ru/vul/2015-09148
FSTEC: BDU:2015-09147
FSTEC: BDU:2015-09147
Id:
BDU:2015-09147
Reference:
https://bdu.fstec.ru/vul/2015-09147
FSTEC: BDU:2015-07139
FSTEC: BDU:2015-07139
Id:
BDU:2015-07139
Reference:
https://bdu.fstec.ru/vul/2015-07139
FSTEC: BDU:2015-07138
FSTEC: BDU:2015-07138
Id:
BDU:2015-07138
Reference:
https://bdu.fstec.ru/vul/2015-07138
FSTEC: BDU:2015-07137
FSTEC: BDU:2015-07137
Id:
BDU:2015-07137
Reference:
https://bdu.fstec.ru/vul/2015-07137
FSTEC: BDU:2015-07136
FSTEC: BDU:2015-07136
Id:
BDU:2015-07136
Reference:
https://bdu.fstec.ru/vul/2015-07136
FSTEC: BDU:2015-07135
FSTEC: BDU:2015-07135
Id:
BDU:2015-07135
Reference:
https://bdu.fstec.ru/vul/2015-07135
FSTEC: BDU:2015-07134
FSTEC: BDU:2015-07134
Id:
BDU:2015-07134
Reference:
https://bdu.fstec.ru/vul/2015-07134
FSTEC: BDU:2015-07133
FSTEC: BDU:2015-07133
Id:
BDU:2015-07133
Reference:
https://bdu.fstec.ru/vul/2015-07133
FSTEC: BDU:2015-07132
FSTEC: BDU:2015-07132
Id:
BDU:2015-07132
Reference:
https://bdu.fstec.ru/vul/2015-07132
FSTEC: BDU:2015-07131
FSTEC: BDU:2015-07131
Id:
BDU:2015-07131
Reference:
https://bdu.fstec.ru/vul/2015-07131
FSTEC: BDU:2015-07130
FSTEC: BDU:2015-07130
Id:
BDU:2015-07130
Reference:
https://bdu.fstec.ru/vul/2015-07130
FSTEC: BDU:2015-07129
FSTEC: BDU:2015-07129
Id:
BDU:2015-07129
Reference:
https://bdu.fstec.ru/vul/2015-07129
FSTEC: BDU:2015-07128
FSTEC: BDU:2015-07128
Id:
BDU:2015-07128
Reference:
https://bdu.fstec.ru/vul/2015-07128
FSTEC: BDU:2015-07127
FSTEC: BDU:2015-07127
Id:
BDU:2015-07127
Reference:
https://bdu.fstec.ru/vul/2015-07127
FSTEC: BDU:2015-07126
FSTEC: BDU:2015-07126
Id:
BDU:2015-07126
Reference:
https://bdu.fstec.ru/vul/2015-07126
FSTEC: BDU:2015-07125
FSTEC: BDU:2015-07125
Id:
BDU:2015-07125
Reference:
https://bdu.fstec.ru/vul/2015-07125
FSTEC: BDU:2015-07124
FSTEC: BDU:2015-07124
Id:
BDU:2015-07124
Reference:
https://bdu.fstec.ru/vul/2015-07124
FSTEC: BDU:2015-07123
FSTEC: BDU:2015-07123
Id:
BDU:2015-07123
Reference:
https://bdu.fstec.ru/vul/2015-07123
FSTEC: BDU:2015-07122
FSTEC: BDU:2015-07122
Id:
BDU:2015-07122
Reference:
https://bdu.fstec.ru/vul/2015-07122
FSTEC: BDU:2015-07121
FSTEC: BDU:2015-07121
Id:
BDU:2015-07121
Reference:
https://bdu.fstec.ru/vul/2015-07121
FSTEC: BDU:2015-07120
FSTEC: BDU:2015-07120
Id:
BDU:2015-07120
Reference:
https://bdu.fstec.ru/vul/2015-07120
FSTEC: BDU:2015-07119
FSTEC: BDU:2015-07119
Id:
BDU:2015-07119
Reference:
https://bdu.fstec.ru/vul/2015-07119
FSTEC: BDU:2015-06013
FSTEC: BDU:2015-06013
Id:
BDU:2015-06013
Reference:
https://bdu.fstec.ru/vul/2015-06013
FSTEC: BDU:2015-06012
FSTEC: BDU:2015-06012
Id:
BDU:2015-06012
Reference:
https://bdu.fstec.ru/vul/2015-06012
FSTEC: BDU:2015-06011
FSTEC: BDU:2015-06011
Id:
BDU:2015-06011
Reference:
https://bdu.fstec.ru/vul/2015-06011
FSTEC: BDU:2015-06010
FSTEC: BDU:2015-06010
Id:
BDU:2015-06010
Reference:
https://bdu.fstec.ru/vul/2015-06010
FSTEC: BDU:2015-06009
FSTEC: BDU:2015-06009
Id:
BDU:2015-06009
Reference:
https://bdu.fstec.ru/vul/2015-06009
CVE: CVE-2014-7823
CVE: CVE-2014-7823
Id:
CVE-2014-7823
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7823
Comment
: The virDomainGetXMLDesc API in Libvirt before 1.2.11 allows remote read-only users to obtain the VNC password by using the VIR_DOMAIN_XML_MIGRATABLE flag, which triggers the use of the VIR_DOMAIN_XML_SECURE flag.
CVSSv2 Score:
5
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE:
255 (Credentials Management)
References:
USN-2404-1 (UBUNTU)
62303 (SECUNIA)
http://security.libvirt.org/2014/0007.html (CONFIRM)
60010 (SECUNIA)
openSUSE-SU-2014:1471 (SUSE)
60895 (SECUNIA)
GLSA-201412-04 (GENTOO)
62058 (SECUNIA)
VENDOR: MGASA-2014-0470
VENDOR: MGASA-2014-0470
Id:
MGASA-2014-0470
Reference:
https://advisories.mageia.org/MGASA-2014-0470.html
Content available only for registered users!
ovaldb@altx-soft.com