Libvirt Service Arbitrary File Write Privilege Escalation Vulnerability
CVE-2020-15708
9.3CRITICAL
What is CVE-2020-15708?
Ubuntu's packaging of libvirt in 20.04 LTS created a control socket with world read and write permissions. An attacker could use this to overwrite arbitrary files or execute arbitrary code.
Affected Version(s)
libvirt < 6.0.0-0ubuntu8.3