CVE-2013-4154
30.09.2013, 21:55
The qemuAgentCommand function in libvirt before 1.1.1, when a guest agent is not configured, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to "agent based cpu (un)plug," as demonstrated by the "virsh vcpucount foobar --guest" command.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redhat | libvirt | 𝑥 ≤ 1.1.0 |
| redhat | libvirt | 1.0.0 |
| redhat | libvirt | 1.0.1 |
| redhat | libvirt | 1.0.2 |
| redhat | libvirt | 1.0.3 |
| redhat | libvirt | 1.0.4 |
| redhat | libvirt | 1.0.5 |
| redhat | libvirt | 1.0.6 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References