CVE-2015-0236: qemu: Check ACLs when dumping security info from save image
authorPeter Krempa <pkrempa@redhat.com>
Tue, 20 Jan 2015 16:01:01 +0000 (17:01 +0100)
committerEric Blake <eblake@redhat.com>
Thu, 22 Jan 2015 17:02:58 +0000 (10:02 -0700)
commitcc0cc987a53f5e3825c7d972e219e08688d4480b
treec70302189d1b32575c069911c3c3012996f7bb7a
parent220759259bcbcc705a96dc1cbaeb2f2ce980c479
CVE-2015-0236: qemu: Check ACLs when dumping security info from save image

The ACL check didn't check the VIR_DOMAIN_XML_SECURE flag and the
appropriate permission for it.

(cherry picked from commit 03c3c0c874c84dfa51ef17556062b095c6e1c0a3)
src/qemu/qemu_driver.c
src/remote/remote_protocol.x