Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The remoteClientFreeFunc function in daemon/remote.c in libvirt before 1.1.3, when ACLs are used, does not set an identity, which causes event handler removal to be denied and remote attackers to cause a denial of service (use-after-free and crash) by registering an event handler and then closing the connection.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Red Hat libvirt 远程拒绝服务漏洞
Vulnerability Description
Red Hat libvirt是美国红帽(Red Hat)公司的一个用于实现Linux虚拟化功能的Linux API,它支持各种Hypervisor,包括Xen和KVM,以及QEMU和用于其他操作系统的一些虚拟产品。 Red Hat libvirt 1.1.3之前版本的daemon/remote.c文件中的‘remoteClientFreeFunc’函数中存在安全漏洞,该漏洞源于程序使用ACLs时没有设置身份。远程攻击者可通过创建事件处理程序并关闭连接利用该漏洞造成拒绝服务(释放后重用和崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A