First published: Fri Jul 19 2013(Updated: )
If users haven't configured guest agent then qemuAgentCommand() will dereference a NULL 'mon' pointer. A remote user able to issue commands to libvirt daemon could use this flaw to crash libvirtd. References: <a class="bz_bug_link bz_status_CLOSED bz_closed bz_public " title="CLOSED ERRATA - Crash of libvirtd without guest agent configuration" href="show_bug.cgi?id=984821">https://bugzilla.redhat.com/show_bug.cgi?id=984821</a> <a href="https://www.redhat.com/archives/libvir-list/2013-July/msg00992.html">https://www.redhat.com/archives/libvir-list/2013-July/msg00992.html</a> Acknowledgements: This issue was discovered by Alex Jia of Red Hat.
Affected Software | Affected Version | How to fix |
---|---|---|
Libvirt |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-986386 is considered moderate, as it allows a remote user to crash the libvirtd service.
To fix REDHAT-BUG-986386, ensure that the guest agent is properly configured to avoid NULL pointer dereferencing.
Users of Red Hat libvirt without a configured guest agent are affected by REDHAT-BUG-986386.
An attacker could issue commands to the libvirt daemon and potentially crash libvirtd due to this vulnerability.
Currently, the best workaround for REDHAT-BUG-986386 is to disable remote command access to the libvirt daemon until it is properly patched.