Unrated severityNVD Advisory· Published Mar 2, 2022· Updated Nov 19, 2024
CVE-2021-3631
CVE-2021-3631
Description
A flaw was found in libvirt while it generates SELinux MCS category pairs for VMs' dynamic labels. This flaw allows one exploited guest to access files labeled for another guest, resulting in the breaking out of sVirt confinement. The highest threat from this vulnerability is to confidentiality and integrity.
Affected products
1- Range: Fixed-In - libvirt v7.5.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- security.gentoo.org/glsa/202210-06mitrevendor-advisory
- lists.debian.org/debian-lts-announce/2024/04/msg00000.htmlmitremailing-list
- access.redhat.com/errata/RHSA-2021:3631mitre
- bugzilla.redhat.com/show_bug.cgimitre
- gitlab.com/libvirt/libvirt/-/commit/15073504dbb624d3f6c911e85557019d3620fdb2mitre
- gitlab.com/libvirt/libvirt/-/issues/153mitre
- security.netapp.com/advisory/ntap-20220331-0010/mitre
News mentions
0No linked articles in our index yet.