CVE-2010-2793 Information
Feb 14, 2021
cve
Description
Race condition in the SPICE (aka spice-activex) plug-in for Internet Explorer in Red Hat Enterprise Virtualization (RHEV) Manager before 2.2.4 allows local users to create a certain named pipe and consequently gain privileges via vectors involving knowledge of the name of this named pipe in conjunction with use of the ImpersonateNamedPipeClient function.
Reference
http://securitytracker.com/id?1024825 http://www.securityfocus.com/bid/45213 https://bugzilla.redhat.com/show_bug.cgi?id=620355 https://rhn.redhat.com/errata/RHSA-2010-0818.html
Share on: