2.1
CVSSv2

CVE-2013-0241

Published: 13/02/2013 Updated: 07/11/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The QXL display driver in QXL Virtual GPU 0.1.0 allows local users to cause a denial of service (guest crash or hang) via a SPICE connection that prevents other threads from obtaining the qemu_mutex mutex. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

qxl graphics driver project xf86-video-qxl 0.1.0

canonical ubuntu linux 11.10

canonical ubuntu linux 12.04

redhat enterprise linux desktop 6.0

redhat enterprise linux server 6.0

redhat enterprise linux workstation 6.0

Vendor Advisories

Debian Bug report logs - #699396 CVE-2013-0241 - qxl: synchronous io guest DoS Package: xserver-xorg-video-qxl; Maintainer for xserver-xorg-video-qxl is Debian X Strike Force <debian-x@listsdebianorg>; Source for xserver-xorg-video-qxl is src:xserver-xorg-video-qxl (PTS, buildd, popcon) Reported by: Luciano Bello <lucia ...
Guests using the QXL graphics driver could be caused to hang or crash ...