util/virlog.c in libvirt does not properly determine the hostname on LXC container startup, which allows local guest OS users to bypass an intended container protection mechanism and execute arbitrary commands via a crafted NSS module.
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "1.3.1-1ubuntu10.19",
"binary_name": "libvirt-bin"
},
{
"binary_version": "1.3.1-1ubuntu10.19",
"binary_name": "libvirt-dev"
},
{
"binary_version": "1.3.1-1ubuntu10.19",
"binary_name": "libvirt0"
}
]
}