CVE-2013-2218

Redhat Libvirt - Resource Management Error

Title source: rule
STIX 2.1

Description

Double free vulnerability in the virConnectListAllInterfaces method in interface/interface_backend_netcf.c in libvirt 1.0.6 allows remote attackers to cause a denial of service (libvirtd crash) via a filtering flag that causes an interface to be skipped, as demonstrated by the "virsh iface-list --inactive" command.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Daniel P. Berrange · textdoslinux
https://www.exploit-db.com/exploits/38622

References (4)

Core 4
Core References
Various Sources x_refsource_confirm
http://libvirt.org/news.html
Patch mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2013/07/01/6

Scores

EPSS 0.1081
EPSS Percentile 93.4%

Details

CWE
CWE-399
Status published
Products (1)
redhat/libvirt 1.0.6
Published Sep 30, 2013
Tracked Since Feb 18, 2026