CVE-2008-5086
published 2008-12-19CVE-2008-5086: Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and…
PriorityP424high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.38%
30.6th percentile
Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libvirt | < libvirt 0.8.8-3 (bookworm) | libvirt 0.8.8-3 (bookworm) |
| debian | libvirt | < libvirt 0.4.6-10 (bookworm) | libvirt 0.4.6-10 (bookworm) |
| libvirt | libvirt | — | — |
| libvirt | libvirt | — | — |
| libvirt | libvirt | — | — |
| libvirt | libvirt | — | — |
| libvirt | libvirt | — | — |
| libvirt | libvirt | — | — |
| libvirt | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | >= 0 < 0.4.6-10 | 0.4.6-10 |
| redhat | libvirt | >= 0 < 0.8.8-3 | 0.8.8-3 |
| redhat | libvirt | >= 0 < 0.4.6-10 | 0.4.6-10 |
| redhat | libvirt | >= 0 < 0.8.8-3 | 0.8.8-3 |
| redhat | libvirt | >= 0 < 0.4.6-10 | 0.4.6-10 |
| redhat | libvirt | >= 0 < 0.8.8-3 | 0.8.8-3 |
| redhat | libvirt | >= 0 < 0.4.6-10 | 0.4.6-10 |
| redhat | libvirt | >= 0 < 0.8.8-3 | 0.8.8-3 |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2HIGH
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
libvirt: several API calls do not honour read-only connection
vendor_redhat·2011-03-02·CVSS 7.2
CVE-2011-1146 [HIGH] libvirt: several API calls do not honour read-only connection
libvirt: several API calls do not honour read-only connection
libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operations in a read-only connection, which allows remote attackers to cause a denial of service (host OS crash) or possibly execute arbitrary code via a (1) virNodeDeviceDettach, (2) virNodeDeviceReset, (3) virDomainRevertToSnapshot, (4) virDomainSnapshotDelete, (5) virNodeDeviceReAttach, or (6) virConnectDomainXMLToNative call, a different vulnerability than CVE-2008-5086.
Package: libvirt (Red Hat Enterprise Linux 5) - Affected
Debian
CVE-2011-1146: libvirt - libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operati...
vendor_debian·2011·CVSS 7.2
CVE-2011-1146 [HIGH] CVE-2011-1146: libvirt - libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operati...
libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operations in a read-only connection, which allows remote attackers to cause a denial of service (host OS crash) or possibly execute arbitrary code via a (1) virNodeDeviceDettach, (2) virNodeDeviceReset, (3) virDomainRevertToSnapshot, (4) virDomainSnapshotDelete, (5) virNodeDeviceReAttach, or (6) virConnectDomainXMLToNative call, a different vulnerability than CVE-2008-5086.
Scope: local
bookworm: resolved (fixed in 0.8.8-3)
bullseye: resolved (fixed in 0.8.8-3)
forky: resolved (fixed in 0.8.8-3)
sid: resolved (fixed in 0.8.8-3)
trixie: resolved (fixed in 0.8.8-3)
Ubuntu
libvirt vulnerability
vendor_ubuntu·2008-12-18
CVE-2008-5086 libvirt vulnerability
Title: libvirt vulnerability
Summary: libvirt vulnerability
It was discovered that libvirt did not mark certain operations as read-only. A
local attacker may be able to perform privileged actions such as migrating
virtual machines, adjusting autostart flags, or accessing privileged data in
the virtual machine memory and disks.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
libvirt: missing checks for read-only connection
vendor_redhat·2008-12-17·CVSS 7.2
CVE-2008-5086 [HIGH] libvirt: missing checks for read-only connection
libvirt: missing checks for read-only connection
Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions.
Debian
CVE-2008-5086: libvirt - Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is ...
vendor_debian·2008·CVSS 7.2
CVE-2008-5086 [HIGH] CVE-2008-5086: libvirt - Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is ...
Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions.
Scope: local
bookworm: resolved (fixed in 0.4.6-10)
bullseye: resolved (fixed in 0.4.6-10)
forky: resolved (fixed in 0.4.6-10)
sid: resolved (fixed in 0.4.6-10)
trixie: resolved (fixed in 0.4.6-10)
GHSA
GHSA-69mw-4jhr-4j3r: libvirt
ghsa_unreviewed·2022-05-17·CVSS 7.2
CVE-2011-1146 [HIGH] GHSA-69mw-4jhr-4j3r: libvirt
libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operations in a read-only connection, which allows remote attackers to cause a denial of service (host OS crash) or possibly execute arbitrary code via a (1) virNodeDeviceDettach, (2) virNodeDeviceReset, (3) virDomainRevertToSnapshot, (4) virDomainSnapshotDelete, (5) virNodeDeviceReAttach, or (6) virConnectDomainXMLToNative call, a different vulnerability than CVE-2008-5086.
GHSA
GHSA-g8pw-f6pq-hcg2: Multiple methods in libvirt 0
ghsa_unreviewed·2022-05-17
CVE-2008-5086 [HIGH] GHSA-g8pw-f6pq-hcg2: Multiple methods in libvirt 0
Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions.
OSV
CVE-2011-1146: libvirt
osv·2011-03-15·CVSS 7.2
CVE-2011-1146 [HIGH] CVE-2011-1146: libvirt
libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operations in a read-only connection, which allows remote attackers to cause a denial of service (host OS crash) or possibly execute arbitrary code via a (1) virNodeDeviceDettach, (2) virNodeDeviceReset, (3) virDomainRevertToSnapshot, (4) virDomainSnapshotDelete, (5) virNodeDeviceReAttach, or (6) virConnectDomainXMLToNative call, a different vulnerability than CVE-2008-5086.
OSV
CVE-2008-5086: Multiple methods in libvirt 0
osv·2008-12-19·CVSS 7.2
CVE-2008-5086 [HIGH] CVE-2008-5086: Multiple methods in libvirt 0
Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.htmlhttp://osvdb.org/50919http://secunia.com/advisories/33198http://secunia.com/advisories/33217http://secunia.com/advisories/33292http://secunia.com/advisories/34397http://www.redhat.com/archives/fedora-package-announce/2008-December/msg00938.htmlhttp://www.redhat.com/support/errata/RHSA-2009-0382.htmlhttp://www.securityfocus.com/bid/32905http://www.ubuntu.com/usn/usn-694-1https://bugzilla.redhat.com/show_bug.cgi?id=476560https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8765https://www.redhat.com/archives/libvir-list/2008-December/msg00522.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.htmlhttp://osvdb.org/50919http://secunia.com/advisories/33198http://secunia.com/advisories/33217http://secunia.com/advisories/33292http://secunia.com/advisories/34397http://www.redhat.com/archives/fedora-package-announce/2008-December/msg00938.htmlhttp://www.redhat.com/support/errata/RHSA-2009-0382.htmlhttp://www.securityfocus.com/bid/32905http://www.ubuntu.com/usn/usn-694-1https://bugzilla.redhat.com/show_bug.cgi?id=476560https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8765https://www.redhat.com/archives/libvir-list/2008-December/msg00522.html
2008-12-19
Published