Resource management error in libvirt - CVE-2020-10703

 

Resource management error in libvirt - CVE-2020-10703

Published: May 23, 2020


Vulnerability identifier: #VU28191
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-10703
CWE-ID: CWE-399
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper management of internal resources with the application when performing pool lookups within the storagePoolLookupByTargetPath() function in storage/storage_driver.c. A remote user can create a pool with empty target path and then perform  search for an empty target, which results in libvirt crash.


Affected software

libvirt
libvirt (Ubuntu package)
libvirt (Red Hat package)
libvirt
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat CodeReady Linux Builder for x86_64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for ARM 64
Fedora

How to mitigate CVE-2020-10703

Install updates from vendor's website.

libvirt - update to 6.0.0
libvirt (Ubuntu package) - addressed in versions 4.0.0-1ubuntu8.17, 5.4.0-0ubuntu5.4
libvirt (Red Hat package) - update to 4.5.0-36.el7
libvirt - update to 5.6.0-7.fc31

External References

Related Security Bulletins