VDB
BDU%3A2025-16420
BDU%3A2025-16420
PUBLISHED
CVSS 5.5 MEDIUM
Уязвимость библиотеки управления виртуализацией libvirt, связанная с недостатками контроля доступа, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc. | libvirt | |
| Red Hat | Red Hat Enterprise Linux 8 | |
| Red Hat | Red Hat Enterprise Linux 7 | |
| Red Hat | Red Hat Enterprise Linux 6 | |
| Red Hat | Red Hat Enterprise Linux 9 | 0:11.10.0-12.el9_8 |
| Red Hat | Red Hat Enterprise Linux 10 | 0:11.10.0-12.el10_2 |
| 0 |
Timeline
- Nov 11, 2025 CVE Published
- Nov 11, 2025 PoC Published
- Dec 29, 2025 CVE Updated
- Jan 2, 2026 PoC Published
- Jan 8, 2026 PoC Published
- Jan 8, 2026 PoC Published
- Jan 8, 2026 PoC Published
- Jun 30, 2026 PoC Published
- Aug 9, 2026 Distribution Patch
- Aug 9, 2026 Distribution Patch
- Aug 9, 2026 Security Advisory
- Aug 9, 2026 Security Advisory
References
- RHSA-2026:18326 vendor-advisory
- RHSA-2026:18748 vendor-advisory
- https://access.redhat.com/security/cve/CVE-2025-12748 vdb
- RHBZ#2413801 issue
- https://gitlab.com/libvirt/libvirt/-/issues/825 url
- https://lists.libvirt.org/archives/list/devel@lists.libvirt.org/thread/LTGHU3S4JEMCF5KJNJGWWZ7F2CS6L5SG/ advisory
- https://vuldb.com/?id.332055 url
- https://gitlab.com/libvirt/libvirt/-/commit/2a326c415a7e1cdd49989cc7e46b88d9ca90dd97 url
- https://github.com/TERESH1/CVE-2025-12748 url