CVE 2021-4147
A flaw was found in the libvirt libxl driver. A malicious guest could continuously reboot itself and cause libvirtd on the host to deadlock or crash, resulting in a denial of service condition.
Related bugs and status
CVE-2021-4147 (Candidate) is related to these bugs:
Bug #1588576: libvirt apparmor profile blocks access to ceph config file if cluster name is not "ceph"
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1588576 | libvirt apparmor profile blocks access to ceph config file if cluster name is not "ceph" | libvirt (Ubuntu) | Medium | Fix Released |
Bug #1927519: Mitigate libvirt: error : unable to set AppArmor profile 'libvirt-<vm-uuid>' for '/usr/bin/kvm-spice': No such file or directory
Bug #1946869: Merge libvirt from Debian unstable for 22.04
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1946869 | Merge libvirt from Debian unstable for 22.04 | libvirt (Ubuntu) | Undecided | Fix Released |
Bug #2078664: [Debian] Medium CVE: CVE-2021-3631/CVE-2021-3667/.../CVE-2024-2494/CVE-2024-2496 libvirt : multiple CVEs
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
2078664 | [Debian] Medium CVE: CVE-2021-3631/CVE-2021-3667/.../CVE-2024-2494/CVE-2024-2496 libvirt : multiple CVEs | StarlingX | Undecided | Triaged |
See the
CVE page on Mitre.org
for more details.