Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Edoardo Comar

Pesquisador deIBM
#49538de 53,635
5CVSS total
Vulnerabilidades · 1
PT-2013-3493
5.0
2013-05-16
Libvirt · Libvirt · CVE-2013-1962
**Name of the Vulnerable Software and Affected Versions** libvirt version 1.0.5 **Description** The issue allows remote attackers to cause a denial of service by consuming file descriptors via a large number of requests to list all volumes for a particular pool. This is related to the remoteDispatchStoragePoolListAllVolumes function in the storage pool manager. **Recommendations** For libvirt version 1.0.5, consider restricting access to the remoteDispatchStoragePoolListAllVolumes function until a patch is available. As a temporary workaround, limit the number of requests to list all volumes for a particular pool to prevent file descriptor consumption.