CVE-2013-4154
Publication date 30 September 2013
Last updated 24 July 2024
Ubuntu priority
The qemuAgentCommand function in libvirt before 1.1.1, when a guest agent is not configured, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to "agent based cpu (un)plug," as demonstrated by the "virsh vcpucount foobar --guest" command.
Status
Package | Ubuntu Release | Status |
---|---|---|
libvirt | ||
Notes
mdeslaur
Introduced by: http://libvirt.org/git/?p=libvirt.git;a=commitdiff;h=d47eff88fe50e43a36671f6d8d0eeda52835d5e0 which is in 1.1.0
Patch details
Package | Patch details |
---|---|
libvirt |