oss-sec mailing list archives

CVE request: libvirt: error reporting in libvirtd is not thread safe


From: Petr Matousek <pmatouse () redhat com>
Date: Mon, 4 Apr 2011 10:40:36 -0400 (EDT)

"It has been found that when several libvirtd threads are
reporting errors at the same time, the errors can get mixed
or corrupted, potentially leading to a libvirtd crash (DoS)."

Reference:
https://bugzilla.redhat.com/show_bug.cgi?id=693391
https://www.redhat.com/archives/libvir-list/2011-March/msg01087.html

Thanks,
--
Petr Matousek / Red Hat Security Response Team


Current thread: