Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Trent Shea

#27578of 53,632
9.3Total CVSS
Vulnerabilities · 1
PT-2020-3586
9.3
2020-08-04
Canonical · Libvirt · CVE-2020-15708
**Name of the Vulnerable Software and Affected Versions** libvirt versions 20.04 LTS **Description** The issue is related to incorrect permissions for a critical resource in the libvirt virtualization management library. An attacker could exploit this to overwrite arbitrary files or execute arbitrary code, potentially leading to privilege escalation. **Recommendations** For libvirt version 20.04 LTS, consider restricting access to the control socket to prevent unauthorized modifications until a patch is available. As a temporary workaround, review and adjust the permissions of the control socket to prevent world read and write access.