SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2019-17562

A buffer overflow vulnerability has been found in the baremetal component of Apache CloudStack.

CRITICAL 9.8EPSS 2.92%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (2.92%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

A buffer overflow vulnerability has been found in the baremetal component of Apache CloudStack. This applies to all versions prior to 4.13.1. The vulnerability is due to the lack of validation of the mac parameter in baremetal virtual router. If you insert an arbitrary shell command into the mac parameter, v-router will process the command. For example: Normal: http://{GW}:10086/baremetal/provisiondone/{mac}, Abnormal: http://{GW}:10086/baremetal/provisiondone/#';whoami;#. Mitigation of this issue is an upgrade to Apache CloudStack 4.13.1.0 or beyond.

CVSS 3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
2.92% probability · 86th percentile
CISA KEV
Not listed
Weakness
CWE-119
Affected
apache/cloudstack
Source
security@apache.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.