Summary
The remote host is missing updates announced in
advisory GLSA 201202-07.
Solution
All libvirt users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose '>=app-emulation/libvirt-0.9.3-r1'
http://www.securityspace.com/smysecure/catid.html?in=GLSA%20201202-07 http://bugs.gentoo.org/show_bug.cgi?id=358877
http://bugs.gentoo.org/show_bug.cgi?id=372963
http://bugs.gentoo.org/show_bug.cgi?id=373991
http://bugs.gentoo.org/show_bug.cgi?id=386287
Insight
Multiple vulnerabilities were found in libvirt, the worst of which might allow guest OS users to read arbitrary files on the host OS.
Severity
Classification
-
CVE CVE-2011-1146, CVE-2011-1486, CVE-2011-2178, CVE-2011-2511 -
CVSS Base Score: 6.9
AV:L/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities