LWN.net Logo

libvirt: denial of service

Package(s):libvirt CVE #(s):CVE-2012-4423
Created:October 11, 2012 Updated:November 20, 2012
Description:

From the Red Hat advisory:

A flaw was found in libvirtd's RPC call handling. An attacker able to establish a read-only connection to libvirtd could use this flaw to crash libvirtd by sending an RPC message that has an event as the RPC number, or an RPC number that falls into a gap in the RPC dispatch table. (CVE-2012-4423)

Alerts:
Red Hat RHSA-2012:1359-01 2012-10-11
Scientific Linux SL-libv-20121011 2012-10-11
CentOS CESA-2012:1359 2012-10-11
Oracle ELSA-2012-1359 2012-10-11
Fedora FEDORA-2012-15634 2012-10-15
Fedora FEDORA-2012-15640 2012-10-17
SUSE SUSE-SU-2012:1503-1 2012-11-19
Ubuntu USN-1708-1 2013-01-29
openSUSE openSUSE-SU-2013:0274-1 2013-02-12

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds