CVE Vulnerabilities

CVE-2012-2690

Published: Jun 29, 2012 | Modified: Aug 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
1.2 LOW
AV:L/AC:H/Au:N/C:P/I:N/A:N
RedHat/V3
Ubuntu
LOW

virt-edit in libguestfs before 1.18.0 does not preserve the permissions from the original file and saves the new file with world-readable permissions when editing, which might allow local guest users to obtain sensitive information.

Affected Software

Name Vendor Start Version End Version
Libguestfs Libguestfs * 1.17.43 (including)
Libguestfs Libguestfs 1.16.0 (including) 1.16.0 (including)
Libguestfs Libguestfs 1.16.1 (including) 1.16.1 (including)
Libguestfs Libguestfs 1.16.2 (including) 1.16.2 (including)
Libguestfs Libguestfs 1.16.3 (including) 1.16.3 (including)
Libguestfs Libguestfs 1.16.4 (including) 1.16.4 (including)
Libguestfs Libguestfs 1.16.5 (including) 1.16.5 (including)
Libguestfs Libguestfs 1.16.6 (including) 1.16.6 (including)
Libguestfs Libguestfs 1.16.7 (including) 1.16.7 (including)
Libguestfs Libguestfs 1.16.8 (including) 1.16.8 (including)
Libguestfs Libguestfs 1.16.9 (including) 1.16.9 (including)
Libguestfs Libguestfs 1.16.10 (including) 1.16.10 (including)
Libguestfs Libguestfs 1.16.11 (including) 1.16.11 (including)
Libguestfs Libguestfs 1.16.12 (including) 1.16.12 (including)
Libguestfs Libguestfs 1.16.13 (including) 1.16.13 (including)
Libguestfs Libguestfs 1.16.14 (including) 1.16.14 (including)
Libguestfs Libguestfs 1.16.15 (including) 1.16.15 (including)
Libguestfs Libguestfs 1.16.16 (including) 1.16.16 (including)
Libguestfs Libguestfs 1.16.17 (including) 1.16.17 (including)
Libguestfs Libguestfs 1.16.18 (including) 1.16.18 (including)
Libguestfs Libguestfs 1.16.19 (including) 1.16.19 (including)
Libguestfs Libguestfs 1.16.20 (including) 1.16.20 (including)
Libguestfs Libguestfs 1.16.21 (including) 1.16.21 (including)
Libguestfs Libguestfs 1.16.22 (including) 1.16.22 (including)
Libguestfs Libguestfs 1.16.23 (including) 1.16.23 (including)
Libguestfs Libguestfs 1.16.24 (including) 1.16.24 (including)
Libguestfs Libguestfs 1.16.25 (including) 1.16.25 (including)
Libguestfs Libguestfs 1.16.26 (including) 1.16.26 (including)
Libguestfs Libguestfs 1.17.0 (including) 1.17.0 (including)
Libguestfs Libguestfs 1.17.1 (including) 1.17.1 (including)
Libguestfs Libguestfs 1.17.2 (including) 1.17.2 (including)
Libguestfs Libguestfs 1.17.3 (including) 1.17.3 (including)
Libguestfs Libguestfs 1.17.4 (including) 1.17.4 (including)
Libguestfs Libguestfs 1.17.5 (including) 1.17.5 (including)
Libguestfs Libguestfs 1.17.6 (including) 1.17.6 (including)
Libguestfs Libguestfs 1.17.7 (including) 1.17.7 (including)
Libguestfs Libguestfs 1.17.8 (including) 1.17.8 (including)
Libguestfs Libguestfs 1.17.9 (including) 1.17.9 (including)
Libguestfs Libguestfs 1.17.10 (including) 1.17.10 (including)
Libguestfs Libguestfs 1.17.11 (including) 1.17.11 (including)
Libguestfs Libguestfs 1.17.12 (including) 1.17.12 (including)
Libguestfs Libguestfs 1.17.13 (including) 1.17.13 (including)
Libguestfs Libguestfs 1.17.14 (including) 1.17.14 (including)
Libguestfs Libguestfs 1.17.15 (including) 1.17.15 (including)
Libguestfs Libguestfs 1.17.16 (including) 1.17.16 (including)
Libguestfs Libguestfs 1.17.17 (including) 1.17.17 (including)
Libguestfs Libguestfs 1.17.18 (including) 1.17.18 (including)
Libguestfs Libguestfs 1.17.19 (including) 1.17.19 (including)
Libguestfs Libguestfs 1.17.20 (including) 1.17.20 (including)
Libguestfs Libguestfs 1.17.21 (including) 1.17.21 (including)
Libguestfs Libguestfs 1.17.22 (including) 1.17.22 (including)
Libguestfs Libguestfs 1.17.23 (including) 1.17.23 (including)
Libguestfs Libguestfs 1.17.24 (including) 1.17.24 (including)
Libguestfs Libguestfs 1.17.25 (including) 1.17.25 (including)
Libguestfs Libguestfs 1.17.26 (including) 1.17.26 (including)
Libguestfs Libguestfs 1.17.27 (including) 1.17.27 (including)
Libguestfs Libguestfs 1.17.28 (including) 1.17.28 (including)
Libguestfs Libguestfs 1.17.29 (including) 1.17.29 (including)
Libguestfs Libguestfs 1.17.30 (including) 1.17.30 (including)
Libguestfs Libguestfs 1.17.31 (including) 1.17.31 (including)
Libguestfs Libguestfs 1.17.32 (including) 1.17.32 (including)
Libguestfs Libguestfs 1.17.33 (including) 1.17.33 (including)
Libguestfs Libguestfs 1.17.34 (including) 1.17.34 (including)
Libguestfs Libguestfs 1.17.35 (including) 1.17.35 (including)
Libguestfs Libguestfs 1.17.36 (including) 1.17.36 (including)
Libguestfs Libguestfs 1.17.37 (including) 1.17.37 (including)
Libguestfs Libguestfs 1.17.38 (including) 1.17.38 (including)
Libguestfs Libguestfs 1.17.39 (including) 1.17.39 (including)
Libguestfs Libguestfs 1.17.40 (including) 1.17.40 (including)
Libguestfs Libguestfs 1.17.41 (including) 1.17.41 (including)
Libguestfs Libguestfs 1.17.42 (including) 1.17.42 (including)
Red Hat Enterprise Linux 6 RedHat libguestfs-1:1.16.19-1.el6 *
Libguestfs Ubuntu precise *
Libguestfs Ubuntu upstream *

References