Количество 19
Количество 19
GHSA-h9fq-4hj4-g596
A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash.
CVE-2024-2494
A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash.
CVE-2024-2494
A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash.
CVE-2024-2494
A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash.
CVE-2024-2494
Libvirt: negative g_new0 length can lead to unbounded memory allocation
CVE-2024-2494
A flaw was found in the RPC library APIs of libvirt. The RPC server de ...
SUSE-SU-2024:1100-1
Security update for libvirt
SUSE-SU-2024:1083-1
Security update for libvirt
SUSE-SU-2024:1078-1
Security update for libvirt
RLSA-2024:3253
Moderate: virt:rhel and virt-devel:rhel security update
ELSA-2024-3253
ELSA-2024-3253: virt:ol and virt-devel:ol security update (MODERATE)
BDU:2024-02380
Уязвимость функции g_new0() библиотеки управления виртуализацией Libvirt, позволяющая нарушителю вызвать отказ в обслуживании
RLSA-2024:2560
Moderate: libvirt security and bug fix update
ELSA-2024-2560
ELSA-2024-2560: libvirt security and bug fix update (MODERATE)
ALT-PU-2024-4301
ALT-PU-2024-4301: package `libvirt` update to version 9.7.0-alt2.p10.2
ALT-PU-2024-4299
ALT-PU-2024-4299: package `libvirt` update to version 9.8.0-alt5
SUSE-SU-2024:1099-1
Security update for libvirt
ROS-20240423-02
Множественные уязвимости libvirt
ALT-PU-2025-15732
ALT-PU-2025-15732: package `libvirt` update to version 11.10.0-alt0.c10f2.1
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-h9fq-4hj4-g596 A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash. | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
CVE-2024-2494 A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash. | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
CVE-2024-2494 A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash. | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
CVE-2024-2494 A flaw was found in the RPC library APIs of libvirt. The RPC server deserialization code allocates memory for arrays before the non-negative length check is performed by the C API entry points. Passing a negative length to the g_new0 function results in a crash due to the negative length being treated as a huge positive number. This flaw allows a local, unprivileged user to perform a denial of service attack by causing the libvirt daemon to crash. | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
CVE-2024-2494 Libvirt: negative g_new0 length can lead to unbounded memory allocation | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
CVE-2024-2494 A flaw was found in the RPC library APIs of libvirt. The RPC server de ... | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
SUSE-SU-2024:1100-1 Security update for libvirt | 0% Низкий | больше 2 лет назад | ||
SUSE-SU-2024:1083-1 Security update for libvirt | 0% Низкий | больше 2 лет назад | ||
SUSE-SU-2024:1078-1 Security update for libvirt | 0% Низкий | больше 2 лет назад | ||
RLSA-2024:3253 Moderate: virt:rhel and virt-devel:rhel security update | 0% Низкий | больше 2 лет назад | ||
ELSA-2024-3253 ELSA-2024-3253: virt:ol and virt-devel:ol security update (MODERATE) | 0% Низкий | больше 2 лет назад | ||
BDU:2024-02380 Уязвимость функции g_new0() библиотеки управления виртуализацией Libvirt, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
RLSA-2024:2560 Moderate: libvirt security and bug fix update | больше 2 лет назад | |||
ELSA-2024-2560 ELSA-2024-2560: libvirt security and bug fix update (MODERATE) | больше 2 лет назад | |||
ALT-PU-2024-4301 ALT-PU-2024-4301: package `libvirt` update to version 9.7.0-alt2.p10.2 | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
ALT-PU-2024-4299 ALT-PU-2024-4299: package `libvirt` update to version 9.8.0-alt5 | CVSS3: 6.2 | 0% Низкий | больше 2 лет назад | |
SUSE-SU-2024:1099-1 Security update for libvirt | больше 2 лет назад | |||
ROS-20240423-02 Множественные уязвимости libvirt | CVSS3: 6.2 | больше 2 лет назад | ||
ALT-PU-2025-15732 ALT-PU-2025-15732: package `libvirt` update to version 11.10.0-alt0.c10f2.1 | CVSS3: 6.2 | 9 месяцев назад |
Уязвимостей на страницу