Back to bug 2222210
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Mauro Matteo Cascella | 2023-07-12 09:26:00 UTC | CC | security-response-team | |
| Mauro Matteo Cascella | 2023-07-12 09:26:32 UTC | Blocks | 2222211 | |
| Mauro Matteo Cascella | 2023-07-12 09:27:10 UTC | Depends On | 2222212, 2222213 | |
| Mauro Matteo Cascella | 2023-07-12 09:28:20 UTC | Comment | 0 | updated |
| Peter Krempa | 2023-07-14 12:55:00 UTC | Depends On | 2221851 | |
| Mauro Matteo Cascella | 2023-07-18 09:53:24 UTC | Summary | EMBARGOED TRIAGE libvirt: virtqemud crash when run the pool-list and vol-info commands for a rbd pool | libvirt: virtqemud crash when run the pool-list and vol-info commands for a rbd pool |
| CC | libvirt-maint, virt-maint | |||
| Group | security, qe_staff | |||
| Mauro Matteo Cascella | 2023-07-18 15:26:40 UTC | Summary | libvirt: virtqemud crash when run the pool-list and vol-info commands for a rbd pool | libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service |
| Mauro Matteo Cascella | 2023-07-18 15:27:06 UTC | Summary | libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service | CVE-2023-3750 libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service |
| Alias | CVE-2023-3750 | |||
| Mauro Matteo Cascella | 2023-07-18 15:28:10 UTC | Comment | 0 | updated |
| Mauro Matteo Cascella | 2023-07-18 15:38:37 UTC | Depends On | 2223718 | |
| Mauro Matteo Cascella | 2023-07-18 16:11:11 UTC | Doc Text | A flaw was found in libvirt. The virStoragePoolObjListSearch function did not return a locked pool, as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. Clients connecting to the read-only socket could use this flaw to crash the libvirt daemon. | |
| Paige Jung | 2023-07-18 18:19:33 UTC | Doc Text | A flaw was found in libvirt. The virStoragePoolObjListSearch function did not return a locked pool, as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. Clients connecting to the read-only socket could use this flaw to crash the libvirt daemon. | A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon. |
Back to bug 2222210