CVE-2019-10168
Summary
| CVE | CVE-2019-10168 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-08-02 13:15:00 UTC |
| Updated | 2020-10-15 13:28:00 UTC |
| Description | The virConnectBaselineHypervisorCPU() and virConnectCompareHypervisorCPU() libvirt APIs, 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accept an "emulator" argument to specify the program providing emulation for a domain. Since v1.2.19, libvirt will execute that program to probe the domain's capabilities. Read-only clients could specify an arbitrary path for this argument, causing libvirtd to execute a crafted executable with its own privileges. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| libvirt: Multiple vulnerabilities (GLSA 202003-18) — Gentoo security |
GENTOO |
security.gentoo.org |
Third Party Advisory |
| libvirt privilege escalation vulnerabilities - Red Hat Customer Portal |
CONFIRM |
access.redhat.com |
Vendor Advisory |
| 1720118 – (CVE-2019-10168) CVE-2019-10168 libvirt: arbitrary command execution via virConnectBaselineHypervisorCPU and virConnectCompareHypervisorCPU APIs |
CONFIRM |
bugzilla.redhat.com |
Issue Tracking, Third Party Advisory, Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 377037 Alibaba Cloud Linux Security Update for libvirt (ALINUX2-SA-2019:0039)
- 377413 Alibaba Cloud Linux Security Update for virt:rhel and virt-devel:rhel (ALINUX3-SA-2022:0119)
- 500325 Alpine Linux Security Update for libvirt