USN-6734-1: libvirt vulnerabilities
Alexander Kuznetsov discovered that libvirt incorrectly handled certain API calls. An attacker could possibly use this issue to cause libvirt to crash, resulting in a denial of service. (CVE-2024-1441) It was discovered that libvirt incorrectly handled certain RPC library API calls. An attacker could possibly use this issue to cause libvirt to crash, resulting in a denial of service. (CVE-2024-2494) It was discovered that libvirt incorrectly handled detaching certain host interfaces. An attacker could possibly use this issue to cause libvirt to crash, resulting in a denial of service. (CVE-2024-2496)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6734-1?
The vulnerability USN-6734-1 has a high severity level due to its potential for causing a denial of service.
How do I fix USN-6734-1?
To fix USN-6734-1, upgrade to the patched versions of libvirt-daemon, libvirt-daemon-system, and libvirt0 as specified in the advisory.
Which versions of Ubuntu are affected by USN-6734-1?
USN-6734-1 affects Ubuntu versions 23.10, 22.04, and 20.04 with specific libvirt versions.
What is the impact of the vulnerability USN-6734-1?
The impact of USN-6734-1 includes the potential for attackers to exploit the vulnerability resulting in a crash of libvirt services.
Who discovered the vulnerability USN-6734-1?
The vulnerability USN-6734-1 was discovered by Alexander Kuznetsov.