Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-8135

Опубликовано: 19 дек. 2014
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

The storageVolUpload function in storage/storage_driver.c in libvirt before 1.2.11 does not check a certain return value, which allows local users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted offset value in a "virsh vol-upload" command.

Комментарий

CWE-476: NULL Pointer Dereference

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:libvirt:-:*:*:*:*:*:*:*

EPSS

Процентиль: 37%
0.00158
Низкий

2.1 Low

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
около 11 лет назад

The storageVolUpload function in storage/storage_driver.c in libvirt before 1.2.11 does not check a certain return value, which allows local users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted offset value in a "virsh vol-upload" command.

redhat
около 11 лет назад

The storageVolUpload function in storage/storage_driver.c in libvirt before 1.2.11 does not check a certain return value, which allows local users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted offset value in a "virsh vol-upload" command.

debian
около 11 лет назад

The storageVolUpload function in storage/storage_driver.c in libvirt b ...

github
больше 3 лет назад

The storageVolUpload function in storage/storage_driver.c in libvirt before 1.2.11 does not check a certain return value, which allows local users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted offset value in a "virsh vol-upload" command.

EPSS

Процентиль: 37%
0.00158
Низкий

2.1 Low

CVSS2

Дефекты

NVD-CWE-Other