Site icon API Security Blog

ROS-20240423-02

Vulnerability of g_new0() function of Libvirt virtualization management library is related to incorrect checking of negative array length before memory allocation. checking for negative array length before allocating memory. Exploitation of the vulnerability could allow an attacker to cause a denial of service Vulnerability in Libvirt virtualization management library is related to null pointer dereferencing of the of the udevConnectListAllInterfaces() function. Exploitation of the vulnerability could allow an attacker acting remotely, while disconnecting a host interface, to simultaneously collect a list of interfaces via the virConnectListAllInterfaces API, which would crash the Libvirt…Read More

Exit mobile version