CVE-2017-1000256
—CVSS 3.1
8.1 high
EPSS
2%p76
Published
()
Modified
Description
libvirt version 2.3.0 and later is vulnerable to a bad default configuration of "verify-peer=no" passed to QEMU by libvirt resulting in a failure to validate SSL/TLS certificates by default.
In the news0 stories
No ingested article mentions this CVE yet.