CVE-2021-4147

MEDIUM

libvirt - Denial of Service via Guest Reboot Deadlock

Title source: llm
STIX 2.1

Description

A flaw was found in the libvirt libxl driver. A malicious guest could continuously reboot itself and cause libvirtd on the host to deadlock or crash, resulting in a denial of service condition.

References (3)

Core 3

Scores

CVSS v3 6.5
EPSS 0.0008
EPSS Percentile 23.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

Details

CWE
CWE-667
Status published
Products (3)
fedoraproject/fedora 35
netapp/ontap_select_deploy_administration_utility
redhat/libvirt < 2.33.0
Published Mar 25, 2022
Tracked Since Feb 18, 2026