First published: Wed May 25 2016(Updated: )
The qemu implementation in libvirt before 1.3.0 and Xen allows local guest OS users to cause a denial of service (host disk consumption) by writing to stdout or stderr.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Libvirt | <=1.2.21 | |
Xen xen-unstable |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3672 has a high severity rating due to its potential to cause denial of service attacks through host disk consumption.
To fix CVE-2014-3672, upgrade libvirt to version 1.3.0 or later, as this version contains the necessary patches.
CVE-2014-3672 affects libvirt versions prior to 1.3.0 and certain versions of Xen.
CVE-2014-3672 is a local denial of service vulnerability that allows guest OS users to consume host disk space.
CVE-2014-3672 can be exploited by local users on the guest operating system.