PT-2012-6366 · Red Hat+2 · Libvirt+3

Petr Matousek

+1

·

Published

1970-01-01

·

Updated

2024-06-15

·

CVE-2013-0170

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions libvirt versions 0.9.6 through 0.9.6.3 libvirt versions 0.9.10 through 0.9.10.8 libvirt versions 0.10.2 through 0.10.2.2 libvirt versions 1.0.x through 1.0.1
Description The issue is related to a use-after-free vulnerability in the virNetMessageFree function, which can be exploited remotely to cause a denial of service or possibly execute arbitrary code. This vulnerability can lead to a disruption of confidentiality, integrity, and availability of protected information. The exploitation can be carried out during an RPC connection by triggering certain errors, causing a message to be freed without being removed from the message queue.
Recommendations For libvirt versions 0.9.6 through 0.9.6.3, update to version 0.9.6.4 or later. For libvirt versions 0.9.10 through 0.9.10.8, update to version 0.9.10.9 or later. For libvirt versions 0.10.2 through 0.10.2.2, update to version 0.10.2.3 or later. For libvirt versions 1.0.x through 1.0.1, update to version 1.0.2 or later.

Fix

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-05502
BDU:2015-05503
BDU:2015-05528
BDU:2015-05529
BDU:2015-05530
BDU:2015-05531
BDU:2015-05532
BDU:2015-05533
BDU:2015-05534
BDU:2015-05535
BDU:2015-05536
BDU:2015-05537
BDU:2015-05538
BDU:2015-05539
BDU:2015-05540
BDU:2015-05541
BDU:2015-07392
BDU:2015-07393
BDU:2015-07394
BDU:2015-07395
BDU:2015-07396
BDU:2015-07397
BDU:2015-08938
BDU:2015-08939
BDU:2015-08940
BDU:2015-08941
BDU:2015-08942
BDU:2015-08943
CESA-2013_0199
CVE-2013-0170
OPENSUSE-SU-2013_0274-1
OPENSUSE-SU-2013_0275-1
OPENSUSE-SU-2024:10209-1
RHSA-2013:0199
RHSA-2013_0199
SUSE-SU-2013_0320-1

Affected Products

Centos
Red Hat
Suse
Libvirt