CVE-2020-15708 PUBLISHED

Ubuntu's packaging of libvirt in 20.04 LTS created a control socket with world read and write permissions. An attacker could use this to overwrite arbitrary files or execute arbitrary code.

EPSS 0.15% · 35.9th percentile

Risk Scores

EPSS Score
0.15%
35.9th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSlibvirt0, 5.4.0-0ubuntu5, 6.0.0-0ubuntu1

Timeline

References

Open in Interactive Console →