ZeroHour

CVE-2019-3840

PoC ×3
CVSS 3.0
6.3 medium
EPSS
1%p73
Published
()
Modified
Description

A NULL pointer dereference flaw was discovered in libvirt before version 5.0.0 in the way it gets interface information through the QEMU agent. An attacker in a guest VM can use this flaw to crash libvirtd and cause a denial of service.

Vendors
redhatopensuse
Products
libvirt, leap
Weakness
CWE-476
Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.