First published: Wed Jun 01 2011(Updated: )
Regression introduced in commit d6623003 (v0.8.8) - using the wrong sizeof operand meant that security manager private data was overlaying the allowDiskFOrmatProbing member of struct _virSecurityManager. This reopens disk probing, which was supposed to be prevented by the solution to <a href="https://access.redhat.com/security/cve/CVE-2010-2238">CVE-2010-2238</a>. Upstream patch: <a href="https://www.redhat.com/archives/libvir-list/2011-May/msg01935.html">https://www.redhat.com/archives/libvir-list/2011-May/msg01935.html</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Libvirt |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-709769 is significant as it reopens disk probing vulnerabilities in libvirt.
To fix REDHAT-BUG-709769, update to the latest version of libvirt where this regression has been addressed.
REDHAT-BUG-709769 affects the libvirt component developed by Red Hat.
REDHAT-BUG-709769 means that private data in the security manager is improperly handled, potentially allowing unauthorized disk probing.
Yes, REDHAT-BUG-709769 was introduced by a regression in a commit made in version 0.8.8 of libvirt.