CVE-2013-4296
30.09.2013, 21:55
The remoteDispatchDomainMemoryStats function in daemon/remote.c in libvirt 0.9.1 through 0.10.1.x, 0.10.2.x before 0.10.2.8, 1.0.x before 1.0.5.6, and 1.1.x before 1.1.2 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and crash) via a crafted RPC call.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | libvirt | 0.9.1 |
| redhat | libvirt | 0.9.2 |
| redhat | libvirt | 0.9.3 |
| redhat | libvirt | 0.9.4 |
| redhat | libvirt | 0.9.5 |
| redhat | libvirt | 0.9.6 |
| redhat | libvirt | 0.9.7 |
| redhat | libvirt | 0.9.8 |
| redhat | libvirt | 0.9.9 |
| redhat | libvirt | 0.9.10 |
| redhat | libvirt | 0.9.11 |
| redhat | libvirt | 0.9.12 |
| redhat | libvirt | 0.9.13 |
| redhat | libvirt | 0.10.0 |
| redhat | libvirt | 0.10.1 |
| redhat | libvirt | 0.10.2 |
| redhat | libvirt | 0.10.2.1 |
| redhat | libvirt | 0.10.2.2 |
| redhat | libvirt | 0.10.2.3 |
| redhat | libvirt | 0.10.2.4 |
| redhat | libvirt | 0.10.2.5 |
| redhat | libvirt | 0.10.2.6 |
| redhat | libvirt | 0.10.2.7 |
| redhat | libvirt | 1.0.5.1 |
| redhat | libvirt | 1.0.5.2 |
| redhat | libvirt | 1.0.5.3 |
| redhat | libvirt | 1.0.5.4 |
| redhat | libvirt | 1.0.5.5 |
| redhat | libvirt | 1.1.0 |
| redhat | libvirt | 1.1.1 |
| canonical | ubuntu_linux | 10.04 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 12.10 |
| canonical | ubuntu_linux | 13.04 |
| redhat | enterprise_linux | 6.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| libvirt |
| ||||||||
| libvirt-admin |
| ||||||||
| libvirt-client |
| ||||||||
| libvirt-daemon |
| ||||||||
| libvirt-daemon-config-network |
| ||||||||
| libvirt-daemon-config-nwfilter |
| ||||||||
| libvirt-daemon-driver-interface |
| ||||||||
| libvirt-daemon-driver-libxl |
| ||||||||
| libvirt-daemon-driver-lxc |
| ||||||||
| libvirt-daemon-driver-network |
| ||||||||
| libvirt-daemon-driver-nodedev |
| ||||||||
| libvirt-daemon-driver-nwfilter |
| ||||||||
| libvirt-daemon-driver-qemu |
| ||||||||
| libvirt-daemon-driver-secret |
| ||||||||
| libvirt-daemon-driver-storage |
| ||||||||
| libvirt-daemon-driver-storage-core |
| ||||||||
| libvirt-daemon-driver-storage-disk |
| ||||||||
| libvirt-daemon-driver-storage-iscsi |
| ||||||||
| libvirt-daemon-driver-storage-logical |
| ||||||||
| libvirt-daemon-driver-storage-mpath |
| ||||||||
| libvirt-daemon-driver-storage-rbd |
| ||||||||
| libvirt-daemon-driver-storage-scsi |
| ||||||||
| libvirt-daemon-hooks |
| ||||||||
| libvirt-daemon-lxc |
| ||||||||
| libvirt-daemon-qemu |
| ||||||||
| libvirt-daemon-xen |
| ||||||||
| libvirt-devel |
| ||||||||
| libvirt-doc |
| ||||||||
| libvirt-libs |
| ||||||||
| libvirt-lock-sanlock |
| ||||||||
| libvirt-nss |
|
Red Hat Enterprise Linux Releases
Common Weakness Enumeration
References