libvirt before 1.2.12 allow remote authenticated users to obtain the VNC password by using the VIR_DOMAIN_XML_SECURE flag with a crafted (1) snapshot to the virDomainSnapshotGetXMLDesc interface or (2) image to the virDomainSaveImageGetXMLDesc interface.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://security.libvirt.org/2015/0001.html | patch vendor advisory |
http://www.mandriva.com/security/advisories?name=MDVSA-2015:070 | vendor advisory broken link |
http://advisories.mageia.org/MGASA-2015-0046.html | third party advisory |
http://lists.opensuse.org/opensuse-updates/2015-02/msg00028.html | third party advisory vendor advisory |
http://secunia.com/advisories/62766 | third party advisory |
http://rhn.redhat.com/errata/RHSA-2015-0323.html | third party advisory vendor advisory |
http://www.mandriva.com/security/advisories?name=MDVSA-2015:035 | vendor advisory broken link |
http://www.ubuntu.com/usn/USN-2867-1 | third party advisory vendor advisory |