Novell Home

CVE-2008-5086

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

CVE-2008-5086 at MITRE

Details

Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions.
Novell Bugzilla entry: 459009

SUSE Security Advisories:

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Desktop 10 SP2 for AMD64 and Intel EM64T
SUSE Linux Enterprise Desktop 10 SP2 for x86
  • libvirt >= 0.3.3-18.11
  • libvirt-python >= 0.3.3-18.11
sles10-sp2-sdk. x86-64
sled10-sp2. x86
sles10-sp2. x86-64
sled10-sp2. x86-64
sles10-sp2. x86
sles10-sp2-debuginfo. x86
sles10-sp2-sdk. x86
sles10-sp2-debuginfo. x86-64
ZYPP Patch Nr: 5869
SUSE Linux Enterprise 10 SP2 DEBUGINFO for AMD64 and Intel EM64T
SUSE Linux Enterprise 10 SP2 DEBUGINFO for x86
  • libvirt-debuginfo >= 0.3.3-18.11
sles10-sp2-sdk. x86-64
sled10-sp2. x86
sles10-sp2. x86-64
sled10-sp2. x86-64
sles10-sp2. x86
sles10-sp2-debuginfo. x86
sles10-sp2-sdk. x86
sles10-sp2-debuginfo. x86-64
ZYPP Patch Nr: 5869
SLE SDK 10 SP2 for X86-64
SLE SDK 10 SP2 for x86
  • libvirt-devel >= 0.3.3-18.11
  • libvirt-python >= 0.3.3-18.11
sles10-sp2-sdk. x86-64
sled10-sp2. x86
sles10-sp2. x86-64
sled10-sp2. x86-64
sles10-sp2. x86
sles10-sp2-debuginfo. x86
sles10-sp2-sdk. x86
sles10-sp2-debuginfo. x86-64
ZYPP Patch Nr: 5869
SUSE Linux Enterprise Server 10 SP2 for AMD64 and Intel EM64T
SUSE Linux Enterprise Server 10 SP2 for x86
  • libvirt >= 0.3.3-18.11
  • libvirt-devel >= 0.3.3-18.11
  • libvirt-python >= 0.3.3-18.11
sles10-sp2-sdk. x86-64
sled10-sp2. x86
sles10-sp2. x86-64
sled10-sp2. x86-64
sles10-sp2. x86
sles10-sp2-debuginfo. x86
sles10-sp2-sdk. x86
sles10-sp2-debuginfo. x86-64
ZYPP Patch Nr: 5869
openSUSE 10.3
  • libvirt >= 0.3.0-30.7
  • libvirt-devel >= 0.3.0-30.7
  • libvirt-doc >= 0.3.0-30.7
  • libvirt-python >= 0.3.0-30.7
ZYPP Patch Nr: 5874
SAT Patch Nr: 373
openSUSE 11.0
  • libvirt-debuginfo >= 0.4.0-59.4
  • libvirt-debugsource >= 0.4.0-59.4
ZYPP Patch Nr: 5874
SAT Patch Nr: 373
openSUSE 11.0
  • libvirt >= 0.4.0-59.4
  • libvirt-devel >= 0.4.0-59.4
  • libvirt-doc >= 0.4.0-59.4
  • libvirt-python >= 0.4.0-59.4
ZYPP Patch Nr: 5874
SAT Patch Nr: 373
openSUSE 11.1
  • libvirt >= 0.4.6-11.2
  • libvirt-debuginfo >= 0.4.6-11.2
  • libvirt-debugsource >= 0.4.6-11.2
  • libvirt-devel >= 0.4.6-11.2
  • libvirt-doc >= 0.4.6-11.2
  • libvirt-python >= 0.4.6-11.2
ZYPP Patch Nr: 5874
SAT Patch Nr: 373
openSUSE 11.1
  • libvirt >= 0.4.6-11.2
  • libvirt-devel >= 0.4.6-11.2
  • libvirt-doc >= 0.4.6-11.2
  • libvirt-python >= 0.4.6-11.2
ZYPP Patch Nr: 5874
SAT Patch Nr: 373

Novell® Making IT Work As One

© 2009 Novell, Inc. All Rights Reserved.