Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.841622
Category:Ubuntu Local Security Checks
Title:Ubuntu: Security Advisory (USN-2026-1)
Summary:The remote host is missing an update for the 'libvirt' package(s) announced via the USN-2026-1 advisory.
Description:Summary:
The remote host is missing an update for the 'libvirt' package(s) announced via the USN-2026-1 advisory.

Vulnerability Insight:
It was discovered that libvirt incorrectly checked privileges when the
virConnectDomainXMLToNative API function was used. An attacker could
possibly use this flaw to gain write privileges, contrary to expected
behaviour.

Affected Software/OS:
'libvirt' package(s) on Ubuntu 13.10.

Solution:
Please install the updated package(s).

CVSS Score:
8.5

CVSS Vector:
AV:N/AC:M/Au:S/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2013-4401
1029241
http://www.securitytracker.com/id/1029241
55210
http://secunia.com/advisories/55210
60895
http://secunia.com/advisories/60895
GLSA-201412-04
http://security.gentoo.org/glsa/glsa-201412-04.xml
USN-2026-1
http://www.ubuntu.com/usn/USN-2026-1
http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=57687fd6bf7f6e1b3662c52f3f26c06ab19dc96c
http://wiki.libvirt.org/page/Maintenance_Releases
https://bugzilla.redhat.com/show_bug.cgi?id=1015259
CopyrightCopyright (C) 2013 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.