Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service
Published Jul 24, 2023
6.5
MEDIUMCVSS 3.1
EPSS 0.76%
Description
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
Affected products
No data.
- n/a
- 9.0
No data.
Red Hat Enterprise Linux 9
libvirt-0:9.5.0-7.el9_3
Fixed · RHSA-2023:6409
Red Hat Enterprise Linux 6
libvirt
Not affected
Red Hat Enterprise Linux 7
libvirt
Not affected
Red Hat Enterprise Linux 8
virt:rhel/libvirt
Not affected
Red Hat Enterprise Linux 8 Advanced Virtualization
virt:av/libvirt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 9 | libvirt-0:9.5.0-7.el9_3 | Fixed | RHSA-2023:6409 |
| Red Hat Enterprise Linux 6 | libvirt | Not affected | n/a |
| Red Hat Enterprise Linux 7 | libvirt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | virt:rhel/libvirt | Not affected | n/a |
| Red Hat Enterprise Linux 8 Advanced Virtualization | virt:av/libvirt | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The versions of `libvirt` as shipped with Red Hat Enterprise Linux 6, 7, and 8 are not affected by this flaw, as they did not include the unlocking refactor that introduced the bug (upstream commit 0c4b391e2a9).
References (7)
- https://access.redhat.com/errata/RHSA-2023:6409 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2023-3750 vdb-entryx_refsource_REDHATVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2222210 issue-trackingx_refsource_REDHATIssue TrackingVendor Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-44385 Advisory
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EVK6JKP36CHE7YAFDJNPNLTW4OWJJ7TQ/
- https://nvd.nist.gov/vuln/detail/CVE-2023-3750
- https://www.cve.org/CVERecord?id=CVE-2023-3750
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/errata/RHSA-2023:6409 | vendor-advisoryx_refsource_REDHAT | |
| https://access.redhat.com/security/cve/CVE-2023-3750 | vdb-entryx_refsource_REDHATVendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2222210 | issue-trackingx_refsource_REDHATIssue TrackingVendor Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-44385 | Advisory | |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EVK6JKP36CHE7YAFDJNPNLTW4OWJJ7TQ/ | ||
| https://nvd.nist.gov/vuln/detail/CVE-2023-3750 | ||
| https://www.cve.org/CVERecord?id=CVE-2023-3750 |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
GitHub
No data