Описание
The qemuMigrationWaitForSpice function in qemu/qemu_migration.c in libvirt before 1.1.3 does not properly enter a monitor when performing seamless SPICE migration, which allows local users to cause a denial of service (NULL pointer dereference and libvirtd crash) by causing domblkstat to be called at the same time as the qemuMonitorGetSpiceMigrationStatus function.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1.2.2-0ubuntu4 |
| esm-infra-legacy/trusty | not-affected | 1.2.2-0ubuntu4 |
| lucid | not-affected | code not present |
| precise | not-affected | code not present |
| quantal | not-affected | code not present |
| saucy | released | 1.1.1-0ubuntu8.11 |
| trusty | not-affected | 1.2.2-0ubuntu4 |
| trusty/esm | not-affected | 1.2.2-0ubuntu4 |
| upstream | released | 1.1.4-1 |
Показывать по
EPSS
1.9 Low
CVSS2
Связанные уязвимости
The qemuMigrationWaitForSpice function in qemu/qemu_migration.c in libvirt before 1.1.3 does not properly enter a monitor when performing seamless SPICE migration, which allows local users to cause a denial of service (NULL pointer dereference and libvirtd crash) by causing domblkstat to be called at the same time as the qemuMonitorGetSpiceMigrationStatus function.
The qemuMigrationWaitForSpice function in qemu/qemu_migration.c in libvirt before 1.1.3 does not properly enter a monitor when performing seamless SPICE migration, which allows local users to cause a denial of service (NULL pointer dereference and libvirtd crash) by causing domblkstat to be called at the same time as the qemuMonitorGetSpiceMigrationStatus function.
The qemuMigrationWaitForSpice function in qemu/qemu_migration.c in lib ...
The qemuMigrationWaitForSpice function in qemu/qemu_migration.c in libvirt before 1.1.3 does not properly enter a monitor when performing seamless SPICE migration, which allows local users to cause a denial of service (NULL pointer dereference and libvirtd crash) by causing domblkstat to be called at the same time as the qemuMonitorGetSpiceMigrationStatus function.
EPSS
1.9 Low
CVSS2