Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-0170
Description:Use-after-free vulnerability in the virNetMessageFree function in rpc/virnetserverclient.c in libvirt 1.0.x before 1.0.2, 0.10.2 before 0.10.2.3, 0.9.11 before 0.9.11.9, and 0.9.6 before 0.9.6.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by triggering certain errors during an RPC connection, which causes a message to be freed without being removed from the message queue.
Test IDs: 1.3.6.1.4.1.25623.1.0.850395   1.3.6.1.4.1.25623.1.1.4.2013.0320.1   1.3.6.1.4.1.25623.1.0.865324   1.3.6.1.4.1.25623.1.0.881583   1.3.6.1.4.1.25623.1.0.850428   1.3.6.1.4.1.25623.1.0.123741   1.3.6.1.4.1.25623.1.0.870895  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-0170
1028047
http://www.securitytracker.com/id/1028047
52001
http://secunia.com/advisories/52001
52003
http://secunia.com/advisories/52003
57578
http://www.securityfocus.com/bid/57578
89644
http://osvdb.org/89644
FEDORA-2013-1626
http://lists.fedoraproject.org/pipermail/package-announce/2013-February/098398.html
FEDORA-2013-1642
http://lists.fedoraproject.org/pipermail/package-announce/2013-February/098370.html
FEDORA-2013-1644
http://lists.fedoraproject.org/pipermail/package-announce/2013-February/098326.html
RHSA-2013:0199
http://rhn.redhat.com/errata/RHSA-2013-0199.html
SUSE-SU-2013:0320
http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00016.html
USN-1708-1
http://www.ubuntu.com/usn/USN-1708-1
http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=46532e3e8ed5f5a736a02f67d6c805492f9ca720
http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=46532e3e8ed5f5a736a02f67d6c805492f9ca720
http://libvirt.org/news.html
http://libvirt.org/news.html
http://wiki.libvirt.org/page/Maintenance_Releases
http://wiki.libvirt.org/page/Maintenance_Releases
https://bugzilla.redhat.com/show_bug.cgi?id=893450
https://bugzilla.redhat.com/show_bug.cgi?id=893450
libvirt-virnetmessagefree-code-exec(81552)
https://exchange.xforce.ibmcloud.com/vulnerabilities/81552
openSUSE-SU-2013:0274
http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00001.html
openSUSE-SU-2013:0275
http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00002.html




© 1998-2025 E-Soft Inc. All rights reserved.