First published: Fri Jan 24 2014(Updated: )
Multiple race conditions in the (1) virDomainBlockStats, (2) virDomainGetBlockInf, (3) qemuDomainBlockJobImpl, and (4) virDomainGetBlockIoTune functions in libvirt before 1.2.1 do not properly verify that the disk is attached, which allows remote read-only attackers to cause a denial of service (libvirtd crash) via the virDomainDetachDeviceFlags command.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | <=1.2.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.0.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.0.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.0.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.0.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.0.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.0.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.7 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.8 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.1.9 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.2.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.2.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.2.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.2.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.3.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.3.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.3.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.3.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.4.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.4.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.4.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.4.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.4.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.4.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.4.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.5.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.5.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.6.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.6.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.6.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.6.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.6.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.6.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.7.7 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.7 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.8.8 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.6.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.6.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.6.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.7 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.8 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.9 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.10 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.7 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.11.8 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.12 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.9.13 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.7 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =0.10.2.8 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.5.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.5.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.5.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.5.4 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.5.5 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.5.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.0.6 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.1.0 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.1.1 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.1.2 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.1.3 | |
Red Hat Libvirt-daemon-driver-storage-iscsi-direct | =1.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6458 has been classified with a moderate severity level due to its potential to cause a denial of service.
To resolve CVE-2013-6458, upgrade libvirt to version 1.2.1 or later.
CVE-2013-6458 affects multiple versions of Red Hat Libvirt prior to 1.2.1.
The implications of CVE-2013-6458 include the possibility of remote read-only attackers causing a denial of service.
CVE-2013-6458 impacts the virDomainBlockStats, virDomainGetBlockInf, qemuDomainBlockJobImpl, and virDomainGetBlockIoTune functions.