Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-3975

Опубликовано: 17 нояб. 2021
Источник: redhat
CVSS3: 5.3
EPSS Низкий

Описание

A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be triggered by the virConnectGetAllDomainStats API when the guest is shutting down. An unprivileged client with a read-only connection could use this flaw to perform a denial of service attack by causing the libvirt daemon to crash.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libvirtOut of support scope
Red Hat Enterprise Linux 7libvirtOut of support scope
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:8.2/libvirtFix deferred
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:av/libvirtAffected
Red Hat Enterprise Linux 9libvirtNot affected
Advanced Virtualization for RHEL 8.5.0virtFixedRHBA-2021:468416.11.2021
Advanced Virtualization for RHEL 8.5.0virt-develFixedRHBA-2021:468416.11.2021
Red Hat Enterprise Linux 8virt-develFixedRHSA-2022:175910.05.2022
Red Hat Enterprise Linux 8virtFixedRHSA-2022:175910.05.2022

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2024326libvirt: segmentation fault during VM shutdown can lead to vdsm hang

EPSS

Процентиль: 48%
0.00251
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 3 года назад

A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be triggered by the virConnectGetAllDomainStats API when the guest is shutting down. An unprivileged client with a read-only connection could use this flaw to perform a denial of service attack by causing the libvirt daemon to crash.

CVSS3: 6.5
nvd
почти 3 года назад

A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be triggered by the virConnectGetAllDomainStats API when the guest is shutting down. An unprivileged client with a read-only connection could use this flaw to perform a denial of service attack by causing the libvirt daemon to crash.

CVSS3: 6.5
msrc
почти 3 года назад

Описание отсутствует

CVSS3: 6.5
debian
почти 3 года назад

A use-after-free flaw was found in libvirt. The qemuMonitorUnregister( ...

CVSS3: 6.5
github
почти 3 года назад

A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be triggered by the virConnectGetAllDomainStats API when the guest is shutting down. An unprivileged client with a read-only connection could use this flaw to perform a denial of service attack by causing the libvirt daemon to crash.

EPSS

Процентиль: 48%
0.00251
Низкий

5.3 Medium

CVSS3