![](/assets/img/cve_300x82_sin_bg.png)
CVE-2010-2224 – rhev-m: merge snapshot does not pass postzero parameter for deleted volumes
https://notcve.org/view.php?id=CVE-2010-2224
24 Jun 2010 — The snapshot merging functionality in Red Hat Enterprise Virtualization Manager (aka RHEV-M) before 2.2 does not properly pass the postzero parameter during operations on deleted volumes, which allows guest OS users to obtain sensitive information by examining the disk blocks associated with a deleted virtual machine. La funcionalidad snapshot merging en Red Hat Enterprise Virtualization Manager (conocido como RHEV-M) anterior v2.2 no pasa adecuadamente el parámetro prostzero durante las operaciones en el b... • http://www.securityfocus.com/bid/41045 • CWE-264: Permissions, Privileges, and Access Controls •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2009-3939 – kernel: megaraid_sas permissions in sysfs
https://notcve.org/view.php?id=CVE-2009-3939
16 Nov 2009 — The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file. El fichero poll_mode_io para el controlador megaraid_sas en el kernel de Linux v2.6.31.6 y anteriores tiene permisos de escritura para todos, permitiendo a usuarios locales cambiar el modo de E/S del dispositivo modificando este fichero. • http://lists.opensuse.org/opensuse-security-announce/2009-12/msg00002.html • CWE-732: Incorrect Permission Assignment for Critical Resource •