CVE-2013-4239
Published: 30 September 2013
The xenDaemonListDefinedDomains function in xen/xend_internal.c in libvirt 1.1.1 allows remote authenticated users to cause a denial of service (memory corruption and crash) via vectors involving the virConnectListDefinedDomains API function.
Notes
Author | Note |
---|---|
jdstrand | Ubuntu never had the original patch that cause this issue |
Priority
Status
Package | Release | Status |
---|---|---|
libvirt Launchpad, Ubuntu, Debian |
lucid |
Not vulnerable
|
precise |
Not vulnerable
|
|
quantal |
Not vulnerable
|
|
raring |
Not vulnerable
|
|
upstream |
Needs triage
|
|
Patches: Introduced by http://libvirt.org/git/?p=libvirt.git;a=commit;h=632180d1 break-fix: http://libvirt.org/git/?p=libvirt.git;a=commit;h=632180d1 http://libvirt.org/git/?p=libvirt.git;a=commit;h=0e671a16 |