Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-4296
HistorySep 17, 2013 - 12:00 a.m.

CVE-2013-4296

2013-09-1700:00:00
ubuntu.com
ubuntu.com
14

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

EPSS

0.01

Percentile

83.9%

The remoteDispatchDomainMemoryStats function in daemon/remote.c in libvirt
0.9.1 through 0.10.1.x, 0.10.2.x before 0.10.2.8, 1.0.x before 1.0.5.6, and
1.1.x before 1.1.2 allows remote authenticated users to cause a denial of
service (uninitialized pointer dereference and crash) via a crafted RPC
call.

Notes

Author Note
mdeslaur introduced in 0.9.1 by 158ba8730e44b7dd07a21ab90499996c5dec080a
OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchlibvirt< 0.9.8-2ubuntu17.13UNKNOWN
ubuntu12.10noarchlibvirt< 0.9.13-0ubuntu12.5UNKNOWN
ubuntu13.04noarchlibvirt< 1.0.2-0ubuntu11.13.04.4UNKNOWN

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

EPSS

0.01

Percentile

83.9%