Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-8131

Опубликовано: 06 янв. 2015
Источник: nvd
CVSS2: 4
EPSS Низкий

Описание

The qemu implementation of virConnectGetAllDomainStats in libvirt before 1.2.11 does not properly handle locks when a domain is skipped due to ACL restrictions, which allows a remote authenticated users to cause a denial of service (deadlock or segmentation fault and crash) via a request to access the users does not have privileges to access.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:libvirt:*:*:*:*:*:*:*:*
Версия до 1.2.10 (включая)

EPSS

Процентиль: 59%
0.00374
Низкий

4 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
около 11 лет назад

The qemu implementation of virConnectGetAllDomainStats in libvirt before 1.2.11 does not properly handle locks when a domain is skipped due to ACL restrictions, which allows a remote authenticated users to cause a denial of service (deadlock or segmentation fault and crash) via a request to access the users does not have privileges to access.

redhat
около 11 лет назад

The qemu implementation of virConnectGetAllDomainStats in libvirt before 1.2.11 does not properly handle locks when a domain is skipped due to ACL restrictions, which allows a remote authenticated users to cause a denial of service (deadlock or segmentation fault and crash) via a request to access the users does not have privileges to access.

debian
около 11 лет назад

The qemu implementation of virConnectGetAllDomainStats in libvirt befo ...

github
больше 3 лет назад

The qemu implementation of virConnectGetAllDomainStats in libvirt before 1.2.11 does not properly handle locks when a domain is skipped due to ACL restrictions, which allows a remote authenticated users to cause a denial of service (deadlock or segmentation fault and crash) via a request to access the users does not have privileges to access.

EPSS

Процентиль: 59%
0.00374
Низкий

4 Medium

CVSS2

Дефекты

CWE-264