CVE-2014-5177
Last modified
CVE-2014-5177 is a vulnerability of currently unknown severity. libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows local users to read arbitrary files via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virDomainDefineXML, (2) virNetworkCreateXML, (3) virNetworkDefineXML, (4) virStoragePoolCreateXML, (5) virStoragePoolDefineXML, (6) virStorageVolCreateXML, (7) virDomainCreateXML, (8) virNodeDeviceCreateXML, (9) virInterfaceDefineXML, (10) virStorageVolCreateXMLFrom, (11) virConnectDomainXMLFromNative, (12) virConnectDomainXMLToNative, (13) virSecretDefineXML, (14) virNWFilterDefineXML, (15) virDomainSnapshotCreateXML, (16) virDomainSaveImageDefineXML, (17) virDomainCreateXMLWithFiles, (18) virConnectCompareCPU, or (19) virConnectBaselineCPU API method, related to an XML External Entity (XXE) issue. NOTE: this issue was SPLIT from CVE-2014-0179 per ADT3 due to different affected versions of some vectors.. EPSS estimates a 0.53% chance of exploitation in the next 30 days.
Description
libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows local users to read arbitrary files via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virDomainDefineXML, (2) virNetworkCreateXML, (3) virNetworkDefineXML, (4) virStoragePoolCreateXML, (5) virStoragePoolDefineXML, (6) virStorageVolCreateXML, (7) virDomainCreateXML, (8) virNodeDeviceCreateXML, (9) virInterfaceDefineXML, (10) virStorageVolCreateXMLFrom, (11) virConnectDomainXMLFromNative, (12) virConnectDomainXMLToNative, (13) virSecretDefineXML, (14) virNWFilterDefineXML, (15) virDomainSnapshotCreateXML, (16) virDomainSaveImageDefineXML, (17) virDomainCreateXMLWithFiles, (18) virConnectCompareCPU, or (19) virConnectBaselineCPU API method, related to an XML External Entity (XXE) issue. NOTE: this issue was SPLIT from CVE-2014-0179 per ADT3 due to different affected versions of some vectors.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Enterprise Virtualization | 3.0 |
| Opensuse | Opensuse | 12.3 |
| Opensuse | Opensuse | 13.1 |
| Redhat | Enterprise Linux | 6.0 |
| Redhat | Libvirt | 1.0.0 |
| Redhat | Libvirt | 1.0.1 |
| Redhat | Libvirt | 1.0.2 |
| Redhat | Libvirt | 1.0.3 |
| Redhat | Libvirt | 1.0.4 |
| Redhat | Libvirt | 1.0.5 |
| Redhat | Libvirt | 1.0.5.1 |
| Redhat | Libvirt | 1.0.5.2 |
| Redhat | Libvirt | 1.0.5.3 |
| Redhat | Libvirt | 1.0.5.4 |
| Redhat | Libvirt | 1.0.5.5 |
| Redhat | Libvirt | 1.0.5.6 |
| Redhat | Libvirt | 1.0.6 |
| Redhat | Libvirt | 1.1.0 |
| Redhat | Libvirt | 1.1.1 |
| Redhat | Libvirt | 1.1.2 |
| Redhat | Libvirt | 1.1.3 |
| Redhat | Libvirt | 1.1.4 |
| Redhat | Libvirt | 1.2.0 |
| Redhat | Libvirt | 1.2.1 |
| Redhat | Libvirt | 1.2.2 |
| Redhat | Libvirt | 1.2.3 |
| Redhat | Libvirt | 1.2.4 |
References
- http://security.libvirt.org/2014/0003.htmlPatch, Vendor Advisory
- http://security.libvirt.org/2014/0003.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-5177?
How severe is CVE-2014-5177?
How do I fix CVE-2014-5177?
Are you affected by CVE-2014-5177?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
