Vulnerability record · CVE-2020-10731 · published 31 July 2020
CVE-2020-10731: Redhat openstack platform improper access control vulnerability
Redhat · Openstack Platform
A flaw was found in the nova_libvirt container provided by the Red Hat OpenStack Platform 16, where it does not have SELinux enabled. This flaw causes sVirt, an important isolation mechanism, to be disabled for all running virtual machines.
Description
A flaw was found in the nova_libvirt container provided by the Red Hat OpenStack Platform 16, where it does not have SELinux enabled. This flaw causes sVirt, an important isolation mechanism, to be disabled for all running virtual machines.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=1831544 | Issue TrackingVendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=1831544 | Issue TrackingVendor Advisory |
Track CVE-2020-10731 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2020-10731), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.