ID | CVE-2009-3525 | ||||||
Sažetak | The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-virtualized guests, which allows attackers with access to the para-virtualized guest console to boot the guest or modify the guest's kernel boot parameters without providing the expected password. | ||||||
Reference |
|
||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:L/AC:L/Au:N/C:C/I:C/A:C | ||||||
Zadnje važnije ažuriranje | 19-09-2017 - 01:29 | ||||||
Objavljeno | 05-10-2009 - 19:30 |