Количество 21
Количество 21
BDU:2021-03736
Уязвимость демона для управления виртуализацией Libvirt, связанная с повторным освобождением памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
ROS-20240423-11
Уязвимость libvirt
CVE-2020-25637
A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2020-25637
A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2020-25637
A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2020-25637
A double free memory issue was found to occur in the libvirt API in versions before 6.8.0 responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon resulting in a denial of service or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2020-25637
A double free memory issue was found to occur in the libvirt API, in v ...
GHSA-2qf3-2mv6-pggh
A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
ELSA-2020-5961
ELSA-2020-5961: libvirt security update (IMPORTANT)
ELSA-2020-5040
ELSA-2020-5040: libvirt security and bug fix update (MODERATE)
openSUSE-SU-2020:1778-1
Security update for libvirt
openSUSE-SU-2020:1777-1
Security update for libvirt
SUSE-SU-2020:3143-1
Security update for libvirt
SUSE-SU-2020:3095-1
Security update for libvirt
SUSE-SU-2020:3039-1
Security update for libvirt
SUSE-SU-2020:3038-1
Security update for libvirt
SUSE-SU-2020:3037-1
Security update for libvirt
SUSE-SU-2020:2970-1
Security update for libvirt
SUSE-SU-2020:2969-1
Security update for libvirt
RLSA-2021:1762
Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2021-03736 Уязвимость демона для управления виртуализацией Libvirt, связанная с повторным освобождением памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 6.7 | 0% Низкий | около 5 лет назад | |
ROS-20240423-11 Уязвимость libvirt | CVSS3: 6.7 | 0% Низкий | больше 1 года назад | |
CVE-2020-25637 A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. | CVSS3: 6.7 | 0% Низкий | около 5 лет назад | |
CVE-2020-25637 A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. | CVSS3: 6.4 | 0% Низкий | около 5 лет назад | |
CVE-2020-25637 A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. | CVSS3: 6.7 | 0% Низкий | около 5 лет назад | |
CVE-2020-25637 A double free memory issue was found to occur in the libvirt API in versions before 6.8.0 responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon resulting in a denial of service or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. | CVSS3: 6.7 | 0% Низкий | около 5 лет назад | |
CVE-2020-25637 A double free memory issue was found to occur in the libvirt API, in v ... | CVSS3: 6.7 | 0% Низкий | около 5 лет назад | |
GHSA-2qf3-2mv6-pggh A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL permissions could use this flaw to crash the libvirt daemon, resulting in a denial of service, or potentially escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. | CVSS3: 6.7 | 0% Низкий | больше 3 лет назад | |
ELSA-2020-5961 ELSA-2020-5961: libvirt security update (IMPORTANT) | почти 5 лет назад | |||
ELSA-2020-5040 ELSA-2020-5040: libvirt security and bug fix update (MODERATE) | около 5 лет назад | |||
openSUSE-SU-2020:1778-1 Security update for libvirt | около 5 лет назад | |||
openSUSE-SU-2020:1777-1 Security update for libvirt | около 5 лет назад | |||
SUSE-SU-2020:3143-1 Security update for libvirt | около 5 лет назад | |||
SUSE-SU-2020:3095-1 Security update for libvirt | около 5 лет назад | |||
SUSE-SU-2020:3039-1 Security update for libvirt | около 5 лет назад | |||
SUSE-SU-2020:3038-1 Security update for libvirt | около 5 лет назад | |||
SUSE-SU-2020:3037-1 Security update for libvirt | около 5 лет назад | |||
SUSE-SU-2020:2970-1 Security update for libvirt | около 5 лет назад | |||
SUSE-SU-2020:2969-1 Security update for libvirt | около 5 лет назад | |||
RLSA-2021:1762 Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update | больше 4 лет назад |
Уязвимостей на страницу