Количество 16
Количество 16

BDU:2022-05841
Уязвимость компонента API virStoragePoolLookupByTargetPath библиотеки управления виртуализацией Libvirt, позволяющая нарушителю вызвать отказ в обслуживании

ROS-20240329-20
Множественные уязвимости libvirt

CVE-2021-3667
An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

CVE-2021-3667
An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

CVE-2021-3667
An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

CVE-2021-3667
CVE-2021-3667
An improper locking issue was found in the virStoragePoolLookupByTarge ...

openSUSE-SU-2021:1451-1
Security update for libvirt

SUSE-SU-2021:3586-1
Security update for libvirt

SUSE-SU-2021:3540-1
Security update for libvirt

SUSE-SU-2021:3277-1
Security update for libvirt
GHSA-q27q-h2jw-qq6c
An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

openSUSE-SU-2021:2812-1
Security update for libvirt

SUSE-SU-2021:2812-1
Security update for libvirt

RLSA-2021:4191
Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update
ELSA-2021-4191
ELSA-2021-4191: virt:ol and virt-devel:ol security, bug fix, and enhancement update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2022-05841 Уязвимость компонента API virStoragePoolLookupByTargetPath библиотеки управления виртуализацией Libvirt, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 6.5 | 0% Низкий | почти 4 года назад |
![]() | ROS-20240329-20 Множественные уязвимости libvirt | CVSS3: 6.5 | около 1 года назад | |
![]() | CVE-2021-3667 An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад |
![]() | CVE-2021-3667 An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. | CVSS3: 6.5 | 0% Низкий | почти 4 года назад |
![]() | CVE-2021-3667 An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад |
![]() | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад | |
CVE-2021-3667 An improper locking issue was found in the virStoragePoolLookupByTarge ... | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад | |
![]() | openSUSE-SU-2021:1451-1 Security update for libvirt | 0% Низкий | больше 3 лет назад | |
![]() | SUSE-SU-2021:3586-1 Security update for libvirt | 0% Низкий | больше 3 лет назад | |
![]() | SUSE-SU-2021:3540-1 Security update for libvirt | 0% Низкий | больше 3 лет назад | |
![]() | SUSE-SU-2021:3277-1 Security update for libvirt | 0% Низкий | больше 3 лет назад | |
GHSA-q27q-h2jw-qq6c An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt. It occurs in the storagePoolLookupByTargetPath function where a locked virStoragePoolObj object is not properly released on ACL permission failure. Clients connecting to the read-write socket with limited ACL permissions could use this flaw to acquire the lock and prevent other users from accessing storage pool/volume APIs, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад | |
![]() | openSUSE-SU-2021:2812-1 Security update for libvirt | почти 4 года назад | ||
![]() | SUSE-SU-2021:2812-1 Security update for libvirt | почти 4 года назад | ||
![]() | RLSA-2021:4191 Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update | больше 3 лет назад | ||
ELSA-2021-4191 ELSA-2021-4191: virt:ol and virt-devel:ol security, bug fix, and enhancement update (MODERATE) | больше 3 лет назад |
Уязвимостей на страницу