CVE-2020-14339
NixOS vulnerability analysis and mitigation

Overview

A vulnerability (CVE-2020-14339) was discovered in libvirt version 6.2.0, where it accidentally leaked a file descriptor for /dev/mapper/control into the QEMU process. This vulnerability allows a malicious guest user or process to perform operations outside of their standard permissions, potentially causing serious damage to the host operating system (CVE Database, Red Hat Bugzilla).

Technical details

The vulnerability was introduced in libvirt version 6.2.0 and involves the unintended exposure of a file descriptor that allows privileged operations to be made against the device mapper on the host. The file descriptor for /dev/mapper/control was insufficiently protected, giving unauthorized access to privileged operations (Gentoo Security, Red Hat Bugzilla).

Impact

The vulnerability enables a malicious QEMU guest to potentially cause serious damage to the host operating system by performing privileged operations against the device mapper. This poses significant risks to the confidentiality, integrity, and availability of the host system (CVE Database).

Exploitability

The vulnerability is locally exploitable and requires a malicious guest user or process to access the leaked file descriptor. The severity is rated as high due to the potential for root privilege escalation (Gentoo Security).

Mitigation and workarounds

The issue is mitigated on Red Hat Enterprise Linux if SELinux is in enforcing mode, which prevents the /dev/mapper/control file descriptor from being accessible by a guest user/process. The vulnerability was fixed in libvirt version 6.7.0 and later. Users are advised to upgrade to the latest version of libvirt (Red Hat Bugzilla, Gentoo Security).

Additional resources


SourceThis report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-85706CRITICAL10
  • GitLab logoGitLab
  • gitlab
YesYesSep 12, 2026
CVE-2026-88009HIGH8.8
  • NixOS logoNixOS
  • github.com/traefik/traefik/v2
NoYesSep 10, 2026
CVE-2026-88008HIGH7
  • NixOS logoNixOS
  • github.com/traefik/traefik/v2
NoYesSep 10, 2026
CVE-2026-88012MEDIUM5.3
  • NixOS logoNixOS
  • traefik-fips-3
NoYesSep 10, 2026
CVE-2026-88011MEDIUM5.3
  • NixOS logoNixOS
  • github.com/traefik/traefik/v2
NoYesSep 10, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management