~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
Candidate: CVE-2013-4292
PublicDate: 2013-09-30
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4292
 http://www.mail-archive.com/libvir-list@redhat.com/msg83332.html
Description:
 libvirt 1.1.0 and 1.1.1 allows local users to cause a denial of service
 (memory consumption) via a large number of domain migrate parameters in
 certain RPC calls in (1) daemon/remote.c and (2) remote/remote_driver.c.
Ubuntu-Description:
Notes:
 jdstrand> introduced in 1.1.0
Bugs:
 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=721325
Priority: medium
Discovered-by:
Assigned-to:

Patches_libvirt:
upstream_libvirt: needs-triage
lucid_libvirt: not-affected
precise_libvirt: not-affected
quantal_libvirt: not-affected
raring_libvirt: not-affected (1.0.2-0ubuntu11.13.04.2)
devel_libvirt: released (1.1.1-0ubuntu5)