CVE-2013-4291
30.09.2013, 21:55
The virSecurityManagerSetProcessLabel function in libvirt 0.10.2.7, 1.0.5.5, and 1.1.1, when the domain has read an uid:gid label, does not properly set group memberships, which allows local users to gain privileges.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | libvirt | 0.10.2.7 |
redhat | libvirt | 1.0.5.5 |
redhat | libvirt | 1.1.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References