libguestfs records
5 published records for vendor libguestfs.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-255 Credentials Management Errors1
- CWE-264 Permissions, Privileges, and Access Controls1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
27Monitor | CVE-2013-4419No exploit | The guestfish command in libguestfs 1.20.12, 1.22.7, and earlier, when using the --remote or --listen option, does not properly check the owlibguestfs · libguestfs · CWE-264 | Medium6.8 | — | 0.8% | Nov 5, 2013 |
26Monitor | CVE-2022-2211No exploit | A vulnerability was found in libguestfs.libguestfs · libguestfs · CWE-120 | Medium6.5 | — | 1.0% | Jul 12, 2022 |
18Monitor | CVE-2013-2124No exploit | Double free vulnerability in inspect-fs.c in LibguestFS 1.20.x before 1.20.7, 1.21.x, 1.22.0, and 1.23.0 allows remote attackers to cause a libguestfs · libguestfs | Medium4.3 | — | 2.6% | May 27, 2014 |
18Monitor | CVE-2010-3851No exploit | libguestfs before 1.5.23, as used in virt-v2v, virt-inspector 1.5.3 and earlier, and possibly other products, when a raw-format disk image ilibguestfs · libguestfs · CWE-200 | Medium4.7 | — | 0.4% | Nov 4, 2010 |
8Monitor | CVE-2012-2690No exploit | virt-edit in libguestfs before 1.18.0 does not preserve the permissions from the original file and saves the new file with world-readable pelibguestfs · libguestfs · CWE-255 | Low2.1 | — | 0.4% | Jun 29, 2012 |
- CVE-2013-441927Monitor
The guestfish command in libguestfs 1.20.12, 1.22.7, and earlier, when using the --remote or --listen option, does not properly check the ow
MediumCVSS 6.8No exploitEPSS 1%libguestfs · libguestfsNov 5, 2013
- CVE-2022-221126Monitor
A vulnerability was found in libguestfs.
MediumCVSS 6.5No exploitEPSS 1%libguestfs · libguestfsJul 12, 2022
- CVE-2013-212418Monitor
Double free vulnerability in inspect-fs.c in LibguestFS 1.20.x before 1.20.7, 1.21.x, 1.22.0, and 1.23.0 allows remote attackers to cause a
MediumCVSS 4.3No exploitEPSS 3%libguestfs · libguestfsMay 27, 2014
- CVE-2010-385118Monitor
libguestfs before 1.5.23, as used in virt-v2v, virt-inspector 1.5.3 and earlier, and possibly other products, when a raw-format disk image i
MediumCVSS 4.7No exploitEPSS 0%libguestfs · libguestfsNov 4, 2010
- CVE-2012-26908Monitor
virt-edit in libguestfs before 1.18.0 does not preserve the permissions from the original file and saves the new file with world-readable pe
LowCVSS 2.1No exploitEPSS 0%libguestfs · libguestfsJun 29, 2012