Unrated severityNVD Advisory· Published Dec 19, 2008· Updated Apr 23, 2026
CVE-2008-5086
CVE-2008-5086
Description
Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions.
Affected products
7cpe:2.3:a:libvirt:libvirt:0.3.2:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:libvirt:libvirt:0.3.2:*:*:*:*:*:*:*
- cpe:2.3:a:libvirt:libvirt:0.3.3:*:*:*:*:*:*:*
- cpe:2.3:a:libvirt:libvirt:0.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:libvirt:libvirt:0.4.2:*:*:*:*:*:*:*
- cpe:2.3:a:libvirt:libvirt:0.4.6:*:*:*:*:*:*:*
- cpe:2.3:a:libvirt:libvirt:0.5.0:*:*:*:*:*:*:*
- cpe:2.3:a:libvirt:libvirt:0.5.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- www.securityfocus.com/bid/32905nvdPatch
- secunia.com/advisories/33217nvdVendor Advisory
- lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.htmlnvd
- osvdb.org/50919nvd
- secunia.com/advisories/33198nvd
- secunia.com/advisories/33292nvd
- secunia.com/advisories/34397nvd
- www.redhat.com/archives/fedora-package-announce/2008-December/msg00938.htmlnvd
- www.redhat.com/support/errata/RHSA-2009-0382.htmlnvd
- www.ubuntu.com/usn/usn-694-1nvd
- bugzilla.redhat.com/show_bug.cginvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8765nvd
- www.redhat.com/archives/libvir-list/2008-December/msg00522.htmlnvd
News mentions
0No linked articles in our index yet.