CVE-2010-3851: Infoleak

Published Oct 18, 2010
·
Updated

libguestfs before 1.5.23, as used in virt-v2v, virt-inspector 1.5.3 and earlier, and possibly other products, when a raw-format disk image is used, allows local guest OS administrators to read files from the host via a crafted (1) qcow2, (2) VMDK, or (3) VDI header, related to lack of support for a disk format specifier.

Other sources

Libguestfs doesn't currently allow the format of a disk to be specified explicitly. Because of that malicious guest admin can exploit automatic image format detection in qemu, when the libguestfs is used to administer the image, to read arbitrary file on host via forging a image header with backing store.

Red Hat

Affected Software

25 affected components
libguestfs libguestfs<=1.5.22
libguestfs libguestfs=1.5.0
libguestfs libguestfs=1.5.1
libguestfs libguestfs=1.5.2
libguestfs libguestfs=1.5.3
libguestfs libguestfs=1.5.4
libguestfs libguestfs=1.5.5
libguestfs libguestfs=1.5.6
libguestfs libguestfs=1.5.7
libguestfs libguestfs=1.5.8
libguestfs libguestfs=1.5.9
libguestfs libguestfs=1.5.10
libguestfs libguestfs=1.5.11
libguestfs libguestfs=1.5.12
libguestfs libguestfs=1.5.13
libguestfs libguestfs=1.5.14
libguestfs libguestfs=1.5.15
libguestfs libguestfs=1.5.16
libguestfs libguestfs=1.5.17
libguestfs libguestfs=1.5.18
libguestfs libguestfs=1.5.19
libguestfs libguestfs=1.5.20
libguestfs libguestfs=1.5.21
Matthew Booth Virt-v2v
Richard Jones Virt-inspector<=1.5.3

Event History

Oct 18, 2010
Data Sourced
via Red Hat·04:06 PM
DescriptionSeverityAffected Software
Nov 4, 2010
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
06:00 PM
DescriptionWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2010-3851?

CVE-2010-3851 is classified as a high-severity vulnerability due to the potential for local guest OS administrators to access host files.

2

How do I fix CVE-2010-3851?

To fix CVE-2010-3851, upgrade libguestfs to version 1.5.23 or later to address the vulnerability.

3

What systems are affected by CVE-2010-3851?

CVE-2010-3851 affects libguestfs versions prior to 1.5.23, as well as older versions of virt-v2v and virt-inspector.

4

What types of disk images can trigger CVE-2010-3851?

CVE-2010-3851 can be triggered using raw-format disk images like qcow2, VMDK, or VDI.

5

Who can exploit CVE-2010-3851?

CVE-2010-3851 can be exploited by local guest OS administrators with access to vulnerable systems.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203