CVE-2013-4292

medium

Description

libvirt 1.1.0 and 1.1.1 allows local users to cause a denial of service (memory consumption) via a large number of domain migrate parameters in certain RPC calls in (1) daemon/remote.c and (2) remote/remote_driver.c.

References

http://www.mail-archive.com/libvir-list%40redhat.com/msg83332.html

http://security.gentoo.org/glsa/glsa-201412-04.xml

http://secunia.com/advisories/60895

http://libvirt.org/news.html

Details

Source: Mitre, NVD

Published: 2013-09-30

Risk Information

CVSS v2

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:P

Severity: Low

CVSS v3

Base Score: 6.5

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium