Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-25637

Опубликовано: 30 сент. 2020
Источник: redhat
CVSS3: 6.4

Описание

A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

A double free memory issue was found to occur in the libvirt API responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Отчет

Red Hat Enterprise Linux 5 and 6 are not affected by this issue as they shipped an older version of libvirt which did not include the vulnerable code. This flaw affects versions of the libvirt package as shipped with Red Hat Enterprise Linux 7 and 8 as well as Red Hat Enterprise Linux Advanced Virtualization 8. Future libvirt package updates for these products may address this issue.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libvirtNot affected
Red Hat Enterprise Linux 6libvirtNot affected
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:8.1/libvirtWill not fix
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:8.2/libvirtAffected
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:8.3/libvirtAffected
Red Hat Enterprise Linux 9libvirtNot affected
Advanced Virtualization for RHEL 8.2.1virtFixedRHSA-2020:511118.11.2020
Advanced Virtualization for RHEL 8.2.1virt-develFixedRHSA-2020:511118.11.2020
Red Hat Enterprise Linux 7libvirtFixedRHSA-2020:504010.11.2020
Red Hat Enterprise Linux 8virt-develFixedRHSA-2021:176218.05.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-415
https://bugzilla.redhat.com/show_bug.cgi?id=1881037libvirt: double free in qemuAgentGetInterfaces() in qemu_agent.c

6.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.7
ubuntu
больше 4 лет назад

A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 6.7
nvd
больше 4 лет назад

A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 6.7
debian
больше 4 лет назад

A double free memory issue was found to occur in the libvirt API, in v ...

CVSS3: 6.7
github
около 3 лет назад

A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

oracle-oval
больше 4 лет назад

ELSA-2020-5961: libvirt security update (IMPORTANT)

6.4 Medium

CVSS3