Double free vulnerability in the qemuAgentGetVCPUs function in qemu/qemu_agent.c in libvirt 1.0.6 through 1.1.0 allows remote attackers to cause a denial of service (daemon crash) via a cpu count request, as demonstrated by the virsh vcpucount dom –guest command.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libvirt | Redhat | 1.0.6 (including) | 1.0.6 (including) |
Libvirt | Redhat | 1.1.0 (including) | 1.1.0 (including) |
Libvirt | Ubuntu | upstream | * |