CVE-2021-3559: Buffer Overflow

Published May 19, 2021
·
Updated

A flaw was found in libvirt in the virConnectListAllNodeDevices API in versions before 7.0.0. It only affects hosts with a PCI device and driver that supports mediated devices (e.g., GRID driver). This flaw could be used by an unprivileged client with a read-only connection to crash the libvirt daemon by executing the 'nodedev-list' virsh command. The highest threat from this vulnerability is to system availability.

Other sources

The virsh nodedev-list command may cause libvirt to crash on hosts with GRID driver installed. The flaw exists in the virConnectListAllNodeDevices API. This issue could be used by an unprivileged user with a read-only connection to perform a denial of service attack by leveraging the virConnectListAllNodeDevices API via nodedev-list.

Fixed upstream in libvirt-v7.0.0: https://gitlab.com/libvirt/libvirt/-/commit/4c4d0e2da07b5a035b26a0ff13ec27070f7c7b1a

Red Hat

Affected Software

3 affected componentsFixes available
redhat/libvirt<7.0.0
7.0.0
redhat libvirt>=6.10.0<7.0.0
NetApp ONTAP Select Deploy administration utility

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade redhat/libvirt to a version that resolves this vulnerability.

    Fixed in 7.0.0
  2. Upgrade

    Upgrade libvirt to a version that resolves this vulnerability.

    Fixed in 7.0.0
  3. Compensating control

    Mitigate by preventing unprivileged read-only clients from invoking virsh 'nodedev-list' (which uses the virConnectListAllNodeDevices API) on hosts with mediated-device-capable PCI drivers (e.g., GRID).

  4. Operational

    If the libvirt daemon may have crashed, restart/verify the libvirt daemon after upgrading to libvirt 7.0.0 (especially on hosts with a GRID driver installed).

Event History

May 24, 2021
CVE Published
via MITRE·11:55 AM
Data Sourced
via MITRE·11:55 AM
DescriptionWeakness
Data Sourced
via NVD·12:15 PM
RemedyDescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the vulnerability ID of this flaw in libvirt?

The vulnerability ID of this flaw in libvirt is CVE-2021-3559.

2

What is the affected software?

The affected software includes Redhat Libvirt and NetApp ONTAP Select Deploy administration utility.

3

What is the severity of CVE-2021-3559?

The severity of CVE-2021-3559 is medium (CVSS score: 6.5).

4

How does CVE-2021-3559 affect hosts with a PCI device and driver?

CVE-2021-3559 only affects hosts with a PCI device and driver that supports mediated devices (e.g., GRID driver).

5

How can an unprivileged client exploit CVE-2021-3559?

An unprivileged client with a read-only connection can use CVE-2021-3559 to crash the libvirt daemon.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203