Candidate: CVE-2013-4297 PublicDate: 2013-09-30 21:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4297 Description: The virFileNBDDeviceAssociate function in util/virfile.c in libvirt 1.1.2 and earlier allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and crash) via unspecified vectors. Ubuntu-Description: Notes: Bugs: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4297 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_libvirt: upstream: http://libvirt.org/git/?p=libvirt.git;a=commitdiff;h=2dba0323ff0cec31bdcea9dd3b2428af297401f2 upstream_libvirt: released (1.1.2-2) lucid_libvirt: not-affected (code not present) precise_libvirt: not-affected (code not present) quantal_libvirt: not-affected (code not present) raring_libvirt: not-affected (code not present) devel_libvirt: released (1.1.1-0ubuntu8)