The qemuAgentCommand function in libvirt before 1.1.1, when a guest agent is not configured, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to agent based cpu (un)plug, as demonstrated by the virsh vcpucount foobar –guest command.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libvirt | Redhat | * | 1.1.0 (including) |
Libvirt | Redhat | 1.0.0 (including) | 1.0.0 (including) |
Libvirt | Redhat | 1.0.1 (including) | 1.0.1 (including) |
Libvirt | Redhat | 1.0.2 (including) | 1.0.2 (including) |
Libvirt | Redhat | 1.0.3 (including) | 1.0.3 (including) |
Libvirt | Redhat | 1.0.4 (including) | 1.0.4 (including) |
Libvirt | Redhat | 1.0.5 (including) | 1.0.5 (including) |
Libvirt | Redhat | 1.0.6 (including) | 1.0.6 (including) |
Libvirt | Ubuntu | upstream | * |