Description
Double free vulnerability in the virConnectListAllInterfaces method in interface/interface_backend_netcf.c in libvirt 1.0.6 allows remote attackers to cause a denial of service (libvirtd crash) via a filtering flag that causes an interface to be skipped, as demonstrated by the "virsh iface-list --inactive" command.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Daniel P. Berrange · textdoslinux
https://www.exploit-db.com/exploits/38622
References (4)
Core 4
Core References
Exploit x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=980112
Various Sources x_refsource_confirm
http://libvirt.org/news.html
Patch mailing-list
x_refsource_mlist
http://www.openwall.com/lists/oss-security/2013/07/01/6
Various Sources x_refsource_confirm
http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=244e0b8cf15ca2ef48d82058e728656e6c4bad11
Scores
EPSS
0.1081
EPSS Percentile
93.4%
Details
CWE
CWE-399
Status
published
Products (1)
redhat/libvirt
1.0.6
Published
Sep 30, 2013
Tracked Since
Feb 18, 2026