5.3
CVSSv3

CVE-2023-3750

Published: 24/07/2023 Updated: 11/02/2024
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 0

Vulnerability Summary

A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat libvirt -

redhat enterprise linux 9.0

Vendor Advisories

Synopsis Moderate: libvirt security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for libvirt is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated ...
Debian Bug report logs - #1041811 libvirt: CVE-2023-3750 Package: src:libvirt; Maintainer for src:libvirt is Debian Libvirt Maintainers <pkg-libvirt-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 23 Jul 2023 19:21:01 UTC Severity: important Tags: security, upstr ...
Description<!---->A flaw was found in libvirt The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread This issue could allow clients connecting to the read-only socket to crash the libvirt daemonA flaw was f ...