6.3
CVSSv3

CVE-2021-3631

Published: 02/03/2022 Updated: 01/04/2024
CVSS v2 Base Score: 3.3 | Impact Score: 4.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 6.3 | Impact Score: 5.2 | Exploitability Score: 1
VMScore: 294
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

It exists that libvirt incorrectly handled the libxl driver. An attacker inside a guest could possibly use this issue to cause libvirtd to crash or stop responding, resulting in a denial of service. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, and Ubuntu 21.10. (CVE-2021-4147)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat libvirt

redhat enterprise linux 8.0

redhat openshift container platform 4.8

netapp ontap select deploy administration utility -

Vendor Advisories

Debian Bug report logs - #990709 libvirt: CVE-2021-3631 Package: src:libvirt; Maintainer for src:libvirt is Debian Libvirt Maintainers <pkg-libvirt-maintainers@listsaliothdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Mon, 5 Jul 2021 09:57:01 UTC Severity: important Tags: security, upstream F ...
Several security issues were fixed in libvirt ...
A security issue was found in libvirt before version 750 while it generates SELinux MCS category pairs for VMs' dynamic labels This flaw allows one exploited guest to access files labeled for another guest, resulting in the breaking out of sVirt confinement ...