Lucene search

K
prionPRIOn knowledge basePRION:CVE-2013-7336
HistoryMay 07, 2014 - 10:55 a.m.

Null pointer dereference

2014-05-0710:55:00
PRIOn knowledge base
www.prio-n.com
6

6.5 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

The qemuMigrationWaitForSpice function in qemu/qemu_migration.c in libvirt before 1.1.3 does not properly enter a monitor when performing seamless SPICE migration, which allows local users to cause a denial of service (NULL pointer dereference and libvirtd crash) by causing domblkstat to be called at the same time as the qemuMonitorGetSpiceMigrationStatus function.

6.5 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%