util/virlog.c in libvirt does not properly determine the hostname on LXC container startup, which allows local guest OS users to bypass an intended container protection mechanism and execute arbitrary commands via a crafted NSS module.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libvirt-bin",
"binary_version": "1.3.1-1ubuntu10.19"
},
{
"binary_name": "libvirt-dev",
"binary_version": "1.3.1-1ubuntu10.19"
},
{
"binary_name": "libvirt0",
"binary_version": "1.3.1-1ubuntu10.19"
}
]
}