oss-sec mailing list archives

Re: CVE request: libvirt: error reporting in libvirtd is not thread safe


From: Josh Bressers <bressers () redhat com>
Date: Mon, 4 Apr 2011 13:34:28 -0400 (EDT)

----- Original Message -----
"It has been found that when several libvirtd threads are
reporting errors at the same time, the errors can get mixed
or corrupted, potentially leading to a libvirtd crash (DoS)."

Reference:
https://bugzilla.redhat.com/show_bug.cgi?id=693391
https://www.redhat.com/archives/libvir-list/2011-March/msg01087.html


Please use CVE-2011-1486.

Thanks.

-- 
    JB


Current thread: