Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Alexander Kuznetsov

#45745of 53,630
5.5Total CVSS
Vulnerabilities · 1
PT-2024-2717
5.5
2024-03-01
Libvirt · Libvirt · CVE-2024-1441
**Name of the Vulnerable Software and Affected Versions** libvirt (affected versions not specified) **Description** The issue is related to an off-by-one error flaw in the `udevListInterfacesByStatus()` function in libvirt. This flaw occurs when the number of interfaces exceeds the size of the `names` array. An unprivileged client can exploit this issue by sending specially crafted data to the libvirt daemon, allowing them to perform a denial of service attack by causing the libvirt daemon to crash. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.