Описание
A flaw was found in libvirt. External inactive snapshots for shut-down VMs are incorrectly created as world-readable, making it possible for unprivileged users to inspect the guest OS contents. This results in an information disclosure vulnerability.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | pending | 11.6.0-1ubuntu7 |
| esm-infra-legacy/trusty | needs-triage | |
| esm-infra/bionic | needs-triage | |
| esm-infra/focal | needs-triage | |
| esm-infra/xenial | needs-triage | |
| jammy | released | 8.0.0-1ubuntu7.15 |
| noble | released | 10.0.0-2ubuntu8.11 |
| plucky | released | 11.0.0-2ubuntu6.5 |
| questing | released | 11.6.0-1ubuntu3.2 |
| upstream | needs-triage |
Показывать по
5.5 Medium
CVSS3
Связанные уязвимости
A flaw was found in libvirt. External inactive snapshots for shut-down VMs are incorrectly created as world-readable, making it possible for unprivileged users to inspect the guest OS contents. This results in an information disclosure vulnerability.
Libvirt: information disclosure via world-readable vm snapshots
A flaw was found in libvirt. External inactive snapshots for shut-down ...
A flaw was found in libvirt. External inactive snapshots for shut-down VMs are incorrectly created as world-readable, making it possible for unprivileged users to inspect the guest OS contents. This results in an information disclosure vulnerability.
5.5 Medium
CVSS3