LWN.net Logo

libvirt-bin: unintended write access

Package(s):libvirt-bin CVE #(s):CVE-2013-1766
Created:March 18, 2013 Updated:March 20, 2013
Description: From the Debian advisory:

Bastian Blank discovered that libvirtd, a daemon for management of virtual machines, network and storage, would change ownership of devices files so they would be owned by user `libvirt-qemu` and group `kvm`, which is a general purpose group not specific to libvirt, allowing unintended write access to those devices and files for the kvm group members.

Alerts:
Debian DSA-2650-1 2013-03-15
Debian DSA-2650-2 2013-03-17

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds