CVE-2025-12748
published 2025-11-11CVE-2025-12748: A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A…
PriorityP425medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.20%
10.4th percentile
A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A malicious user with limited permissions could exploit this flaw by submitting a specially crafted XML file, causing libvirt to allocate too much memory on the host. The excessive memory consumption could lead to a libvirt process crash on the host, resulting in a denial-of-service condition.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libvirt | < libvirt 11.10.0-1 (forky) | libvirt 11.10.0-1 (forky) |
| msrc | azl3_libvirt_10.0.0-5_on_azure_linux_3.0 | — | — |
| msrc | azl3_libvirt_10.0.0-6_on_azure_linux_3.0 | — | — |
| msrc | azl3_libvirt_10.0.0-7_on_azure_linux_3.0 | — | — |
| msrc | cbl2_libvirt_7.10.0-10_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_libvirt_7.10.0-11_on_cbl_mariner_2.0 | — | — |
| redhat | libvirt | >= 0 < 11.3.0-3+deb13u2 | 11.3.0-3+deb13u2 |
| redhat | libvirt | >= 0 < 11.10.0-1 | 11.10.0-1 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libvirt vulnerabilities
vendor_ubuntu·2026-01-08·CVSS 5.5
CVE-2025-13193 [MEDIUM] libvirt vulnerabilities
Title: libvirt vulnerabilities
Summary: Several security issues were fixed in libvirt.
It was discovered that libvirt parsed user-provided XML files before
performing ACL checks. An attacker could possibly use this issue to cause
libvirt to consume memory, resulting in a denial of service.
(CVE-2025-12748)
It was discovered that libvirt incorrectly handled permissions on external
inactive snapshots. A local attacker could possibly use this issue to
obtain sensitive guest contents. (CVE-2025-13193)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Microsoft
Libvirt: denial of service in xml parsing
vendor_msrc·2025-11-11·CVSS 5.5
CVE-2025-12748 [MEDIUM] CWE-770 Libvirt: denial of service in xml parsing
Libvirt: denial of service in xml parsing
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: https://learn.microsoft.com/en-us/azure/azure-linux/tutorial-azure-linux-upgrade
Red Hat
libvirt: Denial of service in XML parsing
vendor_redhat·2025-11-07·CVSS 5.5
CVE-2025-12748 [MEDIUM] CWE-770 libvirt: Denial of service in XML parsing
libvirt: Denial of service in XML parsing
A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A malicious user with limited permissions could exploit this flaw by submitting a specially crafted XML file, causing libvirt to allocate too much memory on the host. The excessive memory consumption could lead to a libvirt process crash on the host, resulting in a denial-of-service condition.
A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A malicious user with limited permissions could exploit this flaw by submitting a specially crafted XML file, causing libvirt to allocate too much me
Debian
CVE-2025-12748: libvirt - A flaw was discovered in libvirt in the XML file processing. More specifically, ...
vendor_debian·2025·CVSS 5.5
CVE-2025-12748 [MEDIUM] CVE-2025-12748: libvirt - A flaw was discovered in libvirt in the XML file processing. More specifically, ...
A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A malicious user with limited permissions could exploit this flaw by submitting a specially crafted XML file, causing libvirt to allocate too much memory on the host. The excessive memory consumption could lead to a libvirt process crash on the host, resulting in a denial-of-service condition.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 11.10.0-1)
sid: resolved (fixed in 11.10.0-1)
trixie: resolved (fixed in 11.3.0-3+deb13u2)
GHSA
GHSA-qwrw-p888-cc55: A flaw was discovered in libvirt in the XML file processing
ghsa_unreviewed·2025-11-11
CVE-2025-12748 [MEDIUM] CWE-770 GHSA-qwrw-p888-cc55: A flaw was discovered in libvirt in the XML file processing
A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A malicious user with limited permissions could exploit this flaw by submitting a specially crafted XML file, causing libvirt to allocate too much memory on the host. The excessive memory consumption could lead to a libvirt process crash on the host, resulting in a denial-of-service condition.
OSV
CVE-2025-12748: A flaw was discovered in libvirt in the XML file processing
osv·2025-11-11·CVSS 5.5
CVE-2025-12748 [MEDIUM] CVE-2025-12748: A flaw was discovered in libvirt in the XML file processing
A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A malicious user with limited permissions could exploit this flaw by submitting a specially crafted XML file, causing libvirt to allocate too much memory on the host. The excessive memory consumption could lead to a libvirt process crash on the host, resulting in a denial-of-service condition.
No detection rules found.
No public exploits indexed.
2025-11-11
Published