[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2019:1579 -- centos 7 libvirt

ID: oval:org.secpod.oval:def:205221Date: (C)2019-06-21   (M)2024-01-29
Class: PATCHFamily: unix




The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems. Security Fix: * libvirt: arbitrary file read/exec via virDomainSaveImageGetXMLDesc API * libvirt: virDomainManagedSaveDefineXML API exposed to readonly clients * libvirt: arbitrary command execution via virConnectGetDomainCapabilities API * libvirt: arbitrary command execution via virConnectBaselineHypervisorCPU and virConnectCompareHypervisorCPU APIs For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix: * Live migration fail with unsafe error when GPFS is used as shared filesystem

Platform:
CentOS 7
Product:
libvirt
Reference:
CESA-2019:1579
CVE-2019-10161
CVE-2019-10166
CVE-2019-10167
CVE-2019-10168
CVE    4
CVE-2019-10161
CVE-2019-10167
CVE-2019-10166
CVE-2019-10168
...

© SecPod Technologies