|
|
Log in / Subscribe / Register

libvirt: information disclosure

Package(s):libvirt CVE #(s):CVE-2014-7823
Created:November 11, 2014 Updated:January 6, 2015
Description: From the Ubuntu advisory:

Eric Blake discovered that libvirt incorrectly handled permissions when processing the qemuDomainFormatXML command. An attacker with read-only privileges could possibly use this to gain access to certain information from the domain xml file.

Alerts:
Mandriva MDVSA-2015:115 libvirt 2015-03-29
Oracle ELSA-2015-0323 libvirt 2015-03-12
Oracle ELSA-2015-0008 libvirt 2015-01-05
Red Hat RHSA-2015:0008-01 libvirt 2015-01-05
Scientific Linux SLSA-2015:0008-1 libvirt 2015-01-06
CentOS CESA-2015:0008 libvirt 2015-01-05
Gentoo 201412-04 libvirt 2014-12-09
Mandriva MDVSA-2014:222 libvirt 2014-11-21
Fedora FEDORA-2014-15228 libvirt 2014-11-22
Oracle ELSA-2014-1873 libvirt 2014-11-20
openSUSE openSUSE-SU-2014:1471-1 libvirt 2014-11-21
Mageia MGASA-2014-0470 libvirt 2014-11-21
Scientific Linux SLSA-2014:1873-1 libvirt 2014-11-18
CentOS CESA-2014:1873 libvirt 2014-11-18
Red Hat RHSA-2014:1873-01 libvirt 2014-11-18
Ubuntu USN-2404-1 libvirt 2014-11-11

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds