Vulnerability Name:

CVE-2014-9710 (CCN-101789)

Assigned:2015-03-24
Published:2015-03-24
Updated:2023-02-13
Summary:
CVSS v3 Severity:5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:6.9 Medium (CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C)
5.1 Medium (Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
4.6 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
3.4 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Consequences:Gain Privileges
References:Source: MITRE
Type: CNA
CVE-2014-9710

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: oss-security Mailing List, Tue, 24 Mar 2015 14:02:00 +0530 (IST)
CVE request Linux kernel: fs: btrfs: non-atomic xattr replace operation

Source: CCN
Type: oss-security Mailing List, Tue, 24 Mar 2015 12:51:00 -0400 (EDT)
Re: CVE request Linux kernel: fs: btrfs: non-atomic xattr replace operation

Source: CCN
Type: IBM Security Bulletin T1022487
PowerKVM is affected by Linux Kernel vulnerabilities (multiple CVEs)

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: BID-73308
Linux Kernel 'btrfs/ctree.c' Local Privilege Escalation Vulnerability

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: XF
Type: UNKNOWN
linux-kernel-btrfs-priv-esc(101789)

Source: CCN
Type: Linux Kernel GIT Repository
Btrfs: make xattr replace operations atomic

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Vulnerable Configuration:Configuration CCN 1:
  • cpe:/a:accelatech:bizsearch:3.2:-:*:*:*:linux_kernel:*:*
  • AND
  • cpe:/a:ibm:powerkvm:2.1:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20149710
    V
    CVE-2014-9710
    2022-09-02
    oval:org.opensuse.security:def:35293
    P
    Security update for openexr (Important)
    2022-01-12
    oval:org.opensuse.security:def:30170
    P
    Security update for net-snmp (Important)
    2022-01-05
    oval:org.opensuse.security:def:34053
    P
    Security update for libsndfile (Important)
    2022-01-05
    oval:org.opensuse.security:def:30274
    P
    Security update for xen (Moderate)
    2021-11-29
    oval:org.opensuse.security:def:31310
    P
    Security update for webkit2gtk3 (Important)
    2021-11-23
    oval:org.opensuse.security:def:31289
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-10-18
    oval:org.opensuse.security:def:34560
    P
    Security update for apache2-mod_auth_openidc (Moderate)
    2021-10-12
    oval:org.opensuse.security:def:34548
    P
    Security update for hivex (Moderate)
    2021-09-23
    oval:org.opensuse.security:def:34549
    P
    Security update for gd (Moderate)
    2021-09-23
    oval:org.opensuse.security:def:33964
    P
    Security update for unrar (Moderate)
    2021-08-25
    oval:org.opensuse.security:def:31250
    P
    Security update for openssl (Important)
    2021-08-24
    oval:org.opensuse.security:def:14032
    P
    shim-0.9-20.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14054
    P
    vsftpd-3.0.2-31.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:30225
    P
    Security update for qemu (Moderate)
    2021-07-21
    oval:org.opensuse.security:def:33675
    P
    Security update for apache2 (Important)
    2021-06-17
    oval:org.opensuse.security:def:13302
    P
    gdk-pixbuf-lang-2.30.6-1.17 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36082
    P
    apache2-2.2.12-1.51.52.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13381
    P
    libopenssl1_0_0-1.0.1i-2.12 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13327
    P
    kernel-default-3.12.28-4.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13394
    P
    librpcsecgss3-0.19-16.54 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13371
    P
    liblcms1-1.19-17.28 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:33907
    P
    Security update for djvulibre (Important)
    2021-05-19
    oval:org.opensuse.security:def:34425
    P
    Security update for python36 (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:35244
    P
    Security update for openexr (Moderate)
    2021-04-07
    oval:org.opensuse.security:def:31145
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-04-07
    oval:org.opensuse.security:def:31354
    P
    Security update for wpa_supplicant (Important)
    2021-03-09
    oval:org.opensuse.security:def:34644
    P
    Security update for grub2 (Important)
    2021-03-02
    oval:org.opensuse.security:def:30017
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP2) (Important)
    2021-02-10
    oval:org.opensuse.security:def:31201
    P
    Security update for ImageMagick (Important)
    2021-01-22
    oval:org.opensuse.security:def:13096
    P
    libwavpack1-4.60.99-5.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13066
    P
    libsndfile1-1.0.25-36.16.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13208
    P
    vsftpd-3.0.2-40.11.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13145
    P
    perl-YAML-LibYAML-0.38-10.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13074
    P
    libssh2-1-1.4.3-20.9.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13227
    P
    yubikey-manager-0.6.0-1.27 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36041
    P
    system-config-printer-1.0.8-9.23.44 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13192
    P
    sysvinit-tools-2.88+-101.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:29582
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31051
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:30756
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30539
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:35026
    P
    Security update for gtk2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30376
    P
    Security update for wpa_supplicant
    2020-12-01
    oval:org.opensuse.security:def:29874
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:34356
    P
    Security update for syslog-ng (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30550
    P
    Security update for KVM
    2020-12-01
    oval:org.opensuse.security:def:34210
    P
    Security update for perl-XML-LibXML (Important)
    2020-12-01
    oval:org.opensuse.security:def:32030
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:33580
    P
    Security update for MozillaFirefox, MozillaFirefox-branding-SLED, mozilla-nspr and mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:30990
    P
    Security update for jakarta-commons-fileupload
    2020-12-01
    oval:org.opensuse.security:def:35403
    P
    Security update for openssh (Critical)
    2020-12-01
    oval:org.opensuse.security:def:34879
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30313
    P
    Security update for tcpdump (Important)
    2020-12-01
    oval:org.opensuse.security:def:29655
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33581
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:35063
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:29570
    P
    Security update for SuSEfirewall2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30846
    P
    Security update for dbus-1 (Important)
    2020-12-01
    oval:org.opensuse.security:def:35332
    P
    Security update for mono-core (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35185
    P
    Security update for kvm (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31014
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:29931
    P
    Security update for libgdiplus0
    2020-12-01
    oval:org.opensuse.security:def:34381
    P
    Security update for tomcat6 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33811
    P
    Security update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:30624
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:34268
    P
    Security update for procmail (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30538
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:34936
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:30332
    P
    Security update for tomcat6 (Important)
    2020-12-01
    oval:org.opensuse.security:def:29787
    P
    Security update for graphviz (Low)
    2020-12-01
    oval:org.opensuse.security:def:34317
    P
    Security update for rzsz (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33592
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:35103
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:29571
    P
    Security update for adns (Important)
    2020-12-01
    oval:org.opensuse.security:def:31992
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:30903
    P
    Security update for fontconfig (Low)
    2020-12-01
    oval:org.opensuse.security:def:35359
    P
    Security update for nagios (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34780
    P
    Security update for Mozilla Firefox
    2020-12-01
    oval:com.ubuntu.precise:def:20149710000
    V
    CVE-2014-9710 on Ubuntu 12.04 LTS (precise) - low.
    2015-05-27
    oval:com.ubuntu.xenial:def:201497100000000
    V
    CVE-2014-9710 on Ubuntu 16.04 LTS (xenial) - low.
    2015-05-27
    oval:com.ubuntu.trusty:def:20149710000
    V
    CVE-2014-9710 on Ubuntu 14.04 LTS (trusty) - low.
    2015-05-27
    oval:com.ubuntu.xenial:def:20149710000
    V
    CVE-2014-9710 on Ubuntu 16.04 LTS (xenial) - low.
    2015-05-27
    BACK
    accelatech bizsearch 3.2 -
    ibm powerkvm 2.1