Revision Date: | 2019-04-04 | Version: | 1 | Title: | CVE-2019-3886 on Ubuntu 18.10 (cosmic) - low. | Description: | An incorrect permissions check was discovered in libvirt 4.8.0 and above. The readonly permission was allowed to invoke APIs depending on the guest agent, which could lead to potentially disclosing unintended information or denial of service by causing libvirt to block.
| Family: | unix | Class: | vulnerability | Status: | | Reference(s): | CVE-2019-3886
| Platform(s): | Ubuntu 18.10
| Product(s): | | Definition Synopsis | Ubuntu 18.10 (cosmic) is installed. AND Package Information
NOT libnss-libvirt package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-clients package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-daemon package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-daemon-driver-storage-gluster package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-daemon-driver-storage-rbd package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-daemon-driver-storage-sheepdog package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-daemon-driver-storage-zfs package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-daemon-system package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-sanlock package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt-wireshark package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libvirt0 package in cosmic, while related to the CVE in some way, is not affected (note: 'code not present').
|
|