CVE-2026-63622

🟡 Monitoruj

Luka w libvirt pozwala lokalnemu atakującemu na eskalację uprawnień do roota.

CVSS
7.8
EPSS
0.1%
Exploit
none
Vendor
Opis źródłowy (NVD)

A flaw was found in libvirt. A local attacker, specifically a process running as the confined `swtpm` user, could exploit a symlink-following vulnerability in the `virFileChownFiles()` function. By planting a symbolic link within the `swtpm` state directory, the attacker could trick the root-level libvirt daemon into changing the ownership of an arbitrary file to the `swtpm` user. This allows for privilege escalation from the `swtpm` sandbox to root-level file ownership control.

privilege-escalation Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS7.8
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.1%
Opublikowano (NVD)2026-08-10 21:17:23 UTC
Ostatnia modyfikacja (NVD)2026-09-17 13:16:45 UTC
Referencje