First published: Thu Jun 24 2010(Updated: )
It was found that libvirt did not honour the user defined main disk format in guest XML when looking up disk backing stores in the security drivers. This could be possibly exploited by priviledged guest user to access arbitrary files on the host.
Affected Software | Affected Version | How to fix |
---|---|---|
libvirt |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-607810 is considered high due to potential arbitrary file access on the host.
To fix REDHAT-BUG-607810, users should update to the latest version of libvirt that addresses the vulnerability.
Privileged guest users running libvirt on the host system are most affected by REDHAT-BUG-607810.
The potential impacts of REDHAT-BUG-607810 include unauthorized access to arbitrary files on the host system.
The vulnerability in REDHAT-BUG-607810 arises from libvirt not honoring user-defined disk formats, leading to security bypass.