PT-2017-19389 · Red Hat · Libvirt

Published

2017-09-29

·

Updated

2017-09-29

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions libvirt (affected versions not specified)
Description The issue allows for command execution by interpreting malicious hostname as arguments due to improper escaping of the ssh command line. This can be exploited when a malicious hostname is provided, enabling an attacker to execute arbitrary commands.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

SUSE-SU-2017:2598-1

Affected Products

Libvirt