Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-1000256
HistoryOct 31, 2017 - 3:29 p.m.

Default configuration

2017-10-3115:29:00
PRIOn knowledge base
www.prio-n.com
3

7.6 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

61.4%

libvirt version 2.3.0 and later is vulnerable to a bad default configuration of “verify-peer=no” passed to QEMU by libvirt resulting in a failure to validate SSL/TLS certificates by default.

CPENameOperatorVersion
debian_linuxeq9.0
libvirtge2.3.0
libvirtlt3.9.0