Libvirt / Libvirt
19 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-10703 | libvirt: Potential denial of service via active pool without target path | MEDIUM | 6.5 | Jun 2, 2020 |
| CVE-2019-10168 | libvirt: arbitrary command execution via virConnectBaselineHypervisorCPU and virConnectCompareHypervisorCPU APIs | HIGH | 7.8 | Aug 2, 2019 |
| CVE-2019-10167 | libvirt: arbitrary command execution via virConnectGetDomainCapabilities API | HIGH | 7.8 | Aug 2, 2019 |
| CVE-2019-10166 | libvirt: virDomainManagedSaveDefineXML API exposed to readonly clients | HIGH | 7.8 | Aug 2, 2019 |
| CVE-2019-10161 | libvirt: arbitrary file read/exec via virDomainSaveImageGetXMLDesc API | HIGH | 7.8 | Jul 30, 2019 |
| CVE-2019-10132 | libvirt: wrong permissions in systemd admin-sock due to missing SocketMode parameter | HIGH | 8.8 | May 22, 2019 |
| CVE-2019-3886 | libvirt: virsh domhostname command discloses guest hostname in readonly mode | MEDIUM | 5.4 | Apr 4, 2019 |
| CVE-2019-3840 | libvirt: NULL pointer dereference after running qemuAgentCommand in qemuAgentGetInterfaces function | MEDIUM | 6.3 | Mar 27, 2019 |
| CVE-2017-2635 | libvirt: Null pointer dereference when updating storage size on empty drives | HIGH | 7.7 | Aug 22, 2018 |
| CVE-2015-5160 | libvirt: Ceph id/key leaked in the process list | MEDIUM | 5.5 | Aug 20, 2018 |
| CVE-2018-1064 | libvirt: Incomplete fix for CVE-2018-5748 triggered by QEMU guest agent | HIGH | 7.5 | Mar 28, 2018 |
| CVE-2014-3657 | libvirt: domain_conf: domain deadlock DoS | MEDIUM | 5.0 | Oct 6, 2014 |
| CVE-2014-3633 | libvirt: qemu: out-of-bounds read access in qemuDomainGetBlockIoTune() due to invalid index | MEDIUM | 5.8 | Oct 6, 2014 |
| CVE-2010-2242 | libvirt: improperly mapped source privileged ports may allow for obtaining privileged resources on the host | LOW | 2.1 | Aug 19, 2010 |
| CVE-2010-2239 | libvirt: not setting user defined backing store format when creating new image | MEDIUM | 4.4 | Aug 19, 2010 |
| CVE-2010-2238 | libvirt: ignoring defined disk backing store format when recursing into disk image backing stores | MEDIUM | 4.4 | Aug 19, 2010 |
| CVE-2010-2237 | libvirt: ignoring defined main disk format when looking up disk backing stores | MEDIUM | 4.4 | Aug 19, 2010 |
| CVE-2009-0036 | libvirt: libvirt_proxy buffer overflow | MEDIUM | 4.4 | Feb 11, 2009 |
| CVE-2008-5086 | libvirt: missing checks for read-only connection | HIGH | 7.2 | Dec 19, 2008 |
Showing 1 to 19 of 19 CVEs