CVE-2011-4600: Medium severity ubuntu vulnerability
The networkReloadIptablesRules function in network/bridgedriver.c in libvirt before 0.9.9 does not properly handle firewall rules on bridge networks when libvirtd is restarted, which might allow remote attackers to bypass intended access restrictions via a (1) DNS or (2) DHCP query.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4600?
CVE-2011-4600 is rated as a medium-severity vulnerability due to its potential to allow remote attackers to bypass access restrictions.
How do I fix CVE-2011-4600?
To fix CVE-2011-4600, upgrade libvirt to version 0.9.9 or later, or apply relevant security patches provided by your Linux distribution.
What systems are affected by CVE-2011-4600?
CVE-2011-4600 affects multiple versions of Ubuntu and Red Hat Libvirt, specifically libvirt versions before 0.9.9 and various Ubuntu LTS releases.
What type of attacks can exploit CVE-2011-4600?
CVE-2011-4600 can be exploited through crafted DNS or DHCP queries that may allow remote attackers to bypass firewall rules.
When was CVE-2011-4600 disclosed?
CVE-2011-4600 was disclosed in 2011 and affects older versions of libvirt software.