Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-6458
Description:Multiple race conditions in the (1) virDomainBlockStats, (2) virDomainGetBlockInf, (3) qemuDomainBlockJobImpl, and (4) virDomainGetBlockIoTune functions in libvirt before 1.2.1 do not properly verify that the disk is attached, which allows remote read- only attackers to cause a denial of service (libvirtd crash) via the virDomainDetachDeviceFlags command.
Test IDs: 1.3.6.1.4.1.25623.1.0.702846   1.3.6.1.4.1.25623.1.1.4.2014.0318.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-6458
56186
http://secunia.com/advisories/56186
56446
http://secunia.com/advisories/56446
60895
http://secunia.com/advisories/60895
DSA-2846
http://www.debian.org/security/2014/dsa-2846
GLSA-201412-04
http://security.gentoo.org/glsa/glsa-201412-04.xml
RHSA-2014:0103
http://rhn.redhat.com/errata/RHSA-2014-0103.html
USN-2093-1
http://www.ubuntu.com/usn/USN-2093-1
http://libvirt.org/news.html
http://libvirt.org/news.html
https://bugzilla.redhat.com/show_bug.cgi?id=1043069
https://bugzilla.redhat.com/show_bug.cgi?id=1043069
openSUSE-SU-2014:0268
http://lists.opensuse.org/opensuse-updates/2014-02/msg00060.html
openSUSE-SU-2014:0270
http://lists.opensuse.org/opensuse-updates/2014-02/msg00062.html




© 1998-2025 E-Soft Inc. All rights reserved.