CVE-2020-15708: Canonical Ubuntu Linux
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Ubuntu's packaging of libvirt in 20.04 LTS created a control socket with world read and write permissions. An attacker could use this to overwrite arbitrary files or execute arbitrary code.
Affected products
- Canonical Ubuntu Linux: version 20.04 only
Published 2020-11-06. Last modified 2026-06-17.