CVE-2020-17376

NameCVE-2020-17376
DescriptionAn issue was discovered in Guest.migrate in virt/libvirt/guest.py in OpenStack Nova before 19.3.1, 20.x before 20.3.1, and 21.0.0. By performing a soft reboot of an instance that has previously undergone live migration, a user may gain access to destination host devices that share the same paths as host devices previously referenced by the virtual machine on the source host. This can include block devices that map to different Cinder volumes at the destination than at the source. Only deployments allowing host-based connections (for instance, root and ephemeral devices) are affected.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs969052

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
nova (PTS)jessie2014.1.3-11vulnerable
stretch (security), stretch (lts), stretch2:14.0.0-4+deb9u1vulnerable
buster (security), buster, buster (lts)2:18.1.0-6+deb10u2vulnerable
bullseye2:22.0.1-2+deb11u1fixed
bullseye (security)2:22.4.0-1~deb11u5fixed
bookworm (security), bookworm2:26.2.2-1~deb12u3fixed
trixie2:30.0.0-3fixed
sid2:30.0.0-4fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
novasourcejessie(unfixed)end-of-life
novasource(unstable)2:21.1.0-1969052

Notes

[buster] - nova <no-dsa> (Minor issue)
[stretch] - nova <no-dsa> (Minor issue)
https://launchpad.net/bugs/1890501
https://www.openwall.com/lists/oss-security/2020/08/25/4

Search for package or bug name: Reporting problems