CVE-2013-4401
published 2013-11-02CVE-2013-4401: The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 checks for the connect:read permission instead of the connect:write permission…
PriorityP339high8.5CVSS 2.0
AVNACMAuSCCICAC
EPSS
1.69%
74.5th percentile
The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 checks for the connect:read permission instead of the connect:write permission, which allows attackers to gain domain:write privileges and execute Qemu binaries via crafted XML. NOTE: some of these details are obtained from third party information.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libvirt | < libvirt 1.1.4-1 (bookworm) | libvirt 1.1.4-1 (bookworm) |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | >= 0 < 1.1.4-1 | 1.1.4-1 |
| redhat | libvirt | >= 0 < 1.1.4-1 | 1.1.4-1 |
| redhat | libvirt | >= 0 < 1.1.4-1 | 1.1.4-1 |
| redhat | libvirt | >= 0 < 1.1.4-1 | 1.1.4-1 |
CVSS provenance
nvdv2.08.5HIGHAV:N/AC:M/Au:S/C:C/I:C/A:C
osv8.5HIGH
vendor_debian8.5HIGH
vendor_redhat8.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libvirt vulnerability
vendor_ubuntu·2013-11-11
CVE-2013-4401 libvirt vulnerability
Title: libvirt vulnerability
Summary: libvirt would allow unintended access privileges.
It was discovered that libvirt incorrectly checked privileges when the
virConnectDomainXMLToNative API function was used. An attacker could
possibly use this flaw to gain write privileges, contrary to expected
behaviour.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
libvirt: unintended API access due to incorrect permissions checks
vendor_redhat·2013-10-21·CVSS 8.5
CVE-2013-4401 [HIGH] libvirt: unintended API access due to incorrect permissions checks
libvirt: unintended API access due to incorrect permissions checks
The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 checks for the connect:read permission instead of the connect:write permission, which allows attackers to gain domain:write privileges and execute Qemu binaries via crafted XML. NOTE: some of these details are obtained from third party information.
Statement: Not vulnerable.
This issue did not affect the versions of libvirt package as shipped with Red Hat Enterprise Linux 5 and 6.
Package: libvirt (Red Hat Enterprise Linux 6) - Not affected
Package: libvirt (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2013-4401: libvirt - The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 chec...
vendor_debian·2013·CVSS 8.5
CVE-2013-4401 [HIGH] CVE-2013-4401: libvirt - The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 chec...
The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 checks for the connect:read permission instead of the connect:write permission, which allows attackers to gain domain:write privileges and execute Qemu binaries via crafted XML. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 1.1.4-1)
bullseye: resolved (fixed in 1.1.4-1)
forky: resolved (fixed in 1.1.4-1)
sid: resolved (fixed in 1.1.4-1)
trixie: resolved (fixed in 1.1.4-1)
GHSA
GHSA-p6vr-89w4-8gh3: The virConnectDomainXMLToNative API function in libvirt 1
ghsa_unreviewed·2022-05-17
CVE-2013-4401 [HIGH] GHSA-p6vr-89w4-8gh3: The virConnectDomainXMLToNative API function in libvirt 1
The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 checks for the connect:read permission instead of the connect:write permission, which allows attackers to gain domain:write privileges and execute Qemu binaries via crafted XML. NOTE: some of these details are obtained from third party information.
OSV
CVE-2013-4401: The virConnectDomainXMLToNative API function in libvirt 1
osv·2013-11-02·CVSS 8.5
CVE-2013-4401 [HIGH] CVE-2013-4401: The virConnectDomainXMLToNative API function in libvirt 1
The virConnectDomainXMLToNative API function in libvirt 1.1.0 through 1.1.3 checks for the connect:read permission instead of the connect:write permission, which allows attackers to gain domain:write privileges and execute Qemu binaries via crafted XML. NOTE: some of these details are obtained from third party information.
No detection rules found.
No public exploits indexed.
http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=57687fd6bf7f6e1b3662c52f3f26c06ab19dc96chttp://secunia.com/advisories/55210http://secunia.com/advisories/60895http://security.gentoo.org/glsa/glsa-201412-04.xmlhttp://wiki.libvirt.org/page/Maintenance_Releaseshttp://www.securitytracker.com/id/1029241http://www.ubuntu.com/usn/USN-2026-1https://bugzilla.redhat.com/show_bug.cgi?id=1015259http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=57687fd6bf7f6e1b3662c52f3f26c06ab19dc96chttp://secunia.com/advisories/55210http://secunia.com/advisories/60895http://security.gentoo.org/glsa/glsa-201412-04.xmlhttp://wiki.libvirt.org/page/Maintenance_Releaseshttp://www.securitytracker.com/id/1029241http://www.ubuntu.com/usn/USN-2026-1https://bugzilla.redhat.com/show_bug.cgi?id=1015259
2013-11-02
Published