Threats Tagged 'cve-2026-61477'
View all threats tagged with 'cve-2026-61477'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-61477'
Click on any threat for detailed analysis and mitigation recommendations
0 This update for libvirt fixes the following issues: - CVE-2026-18917: integer overflow in `NodeGetFreePages` RPC handler leads to heap buffer overflow and allows for possible local privilege escalation (bsc#1275863). - CVE-2026-61477: newline injection in network XML DNS TXT/SRV fields allows for `dnsmasq` configuration directive injection and can lead to arbitrary code execution as root (bsc#1274576). - CVE-2026-63622: symlink-following in `virFileChownFiles()` allows `swtpm` user to trick the root-level `libvirt` daemon into changing the ownership of an arbitrary file and can lead to privilege escalation (bsc#1275264). - CVE-2026-63623: newly created volume images are temporarily world-readable during clone/convert operations, which can lead to sensitive information disclosure (bsc#1275265). - CVE-2026-77159: root `chown()` on `swtpm` logfile follows symlinks and allows for root-owned file ownership changes, which can lead to privilege escalation (bsc#1274946). Join the discussion | GCVE Database | 09/02/2026, 09:43:39 UTC Added: 08/20/2026, 14:08:15 UTC |
0 An injection vulnerability exists in libvirt's virtual network driver due to improper handling of newline characters in DNS TXT and SRV record attributes. This flaw allows users with permission to define virtual networks to inject arbitrary dnsmasq configuration directives, potentially leading to arbitrary command execution as root. The vulnerability has a medium severity rating with a CVSS score of 2.3. A patch is available to address this issue. Join the discussion | GCVE Database | 08/07/2026, 14:17:00 UTC Added: 08/08/2026, 14:54:43 UTC |
0 An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline characters from DNS TXT record value attributes and SRV record domain/target attributes. These values are written verbatim into the dnsmasq configuration file generated by the network driver, allowing a user with permission to define virtual networks to inject arbitrary dnsmasq configuration directives such as dhcp-script, leading to arbitrary command execution as root. Join the discussion | CVE Database V5 | 08/07/2026, 14:09:23 UTC Added: 08/07/2026, 15:12:05 UTC |
Showing 1 to 3 of 3 results