CVE-2013-2196: Medium severity xen xapi vulnerability
Published Aug 23, 2013
·Updated
Multiple unspecified vulnerabilities in the Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with certain permissions to have an unspecified impact via a crafted kernel, related to "other problems" that are not CVE-2013-2194 or CVE-2013-2195.
Affected Software
3 affected components
XEN Xen<=4.2.2
XEN Xen=4.2.0
XEN Xen=4.2.1
Remediation
Patch Available
Event History
Aug 23, 2013
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-2196?
CVE-2013-2196 is classified as a medium severity vulnerability that can be exploited by local guest administrators.
2
How do I fix CVE-2013-2196?
To address CVE-2013-2196, it is recommended to upgrade to a later version of Xen beyond 4.2.2.
3
What versions of Xen are affected by CVE-2013-2196?
CVE-2013-2196 affects Xen versions 4.2.0, 4.2.1, and 4.2.2 and earlier.
4
Who can exploit CVE-2013-2196?
CVE-2013-2196 can be exploited by local guest administrators with certain permissions.
5
What is the impact of CVE-2013-2196?
The impact of CVE-2013-2196 is currently unspecified but is related to vulnerabilities in the Elf parser.