[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256288

 
 

909

 
 

199146

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2020-1569 --- libvirt

ID: oval:org.secpod.oval:def:1700525Date: (C)2020-12-11   (M)2024-04-03
Class: PATCHFamily: unix




A double free memory issue was found to occur in the libvirt API responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability

Platform:
Amazon Linux 2
Product:
libvirt
Reference:
ALAS2-2020-1569
CVE-2020-25637
CVE    1
CVE-2020-25637

© SecPod Technologies