CVE-2013-5651
published 2013-09-30CVE-2013-5651: The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and…
PriorityP419medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.26%
81.0th percentile
The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a crafted bitmap, as demonstrated by a large nodeset value to numatune.
Affected
111 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libvirt | < libvirt 1.1.2~rc1-1 (bookworm) | libvirt 1.1.2~rc1-1 (bookworm) |
| redhat | libvirt | <= 1.1.1 | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
| redhat | libvirt | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
vendor_ubuntu4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libvirt vulnerabilities
vendor_ubuntu·2013-09-18·CVSS 4.0
CVE-2013-4296 [MEDIUM] libvirt vulnerabilities
Title: libvirt vulnerabilities
Summary: Several security issues were fixed in libvirt.
It was discovered that libvirt used the pkcheck tool in an unsafe manner. A
local attacker could possibly use this flaw to bypass polkit
authentication. In Ubuntu, libvirt polkit authentication is not enabled by
default. (CVE-2013-4311)
It was discovered that libvirt incorrectly handled certain memory stats
requests. A remote attacker could use this issue to cause libvirt to
crash, resulting in a denial of service. This issue only affected Ubuntu
12.04 LTS, Ubuntu 12.10, and Ubuntu 13.04. (CVE-2013-4296)
It was discovered that libvirt incorrectly handled certain bitmap
operations. A remote attacker could use this issue to cause libvirt to
crash, resulting in a denial of service. This issue only affec
Red Hat
libvirt: virBitmapParse out-of-bounds read access
vendor_redhat·2013-08-29·CVSS 5.0
CVE-2013-5651 [MEDIUM] CWE-125 libvirt: virBitmapParse out-of-bounds read access
libvirt: virBitmapParse out-of-bounds read access
The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a crafted bitmap, as demonstrated by a large nodeset value to numatune.
Statement: Not vulnerable.
This issue did not affect the versions of libvirt package as shipped with Red Hat Enterprise Linux 5 and 6.
Package: libvirt (Red Hat Enterprise Linux 5) - Not affected
Package: libvirt (Red Hat Enterprise Linux 6) - Not affected
Package: libvirt (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2013-5651: libvirt - The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows c...
vendor_debian·2013·CVSS 5.0
CVE-2013-5651 [MEDIUM] CVE-2013-5651: libvirt - The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows c...
The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a crafted bitmap, as demonstrated by a large nodeset value to numatune.
Scope: local
bookworm: resolved (fixed in 1.1.2~rc1-1)
bullseye: resolved (fixed in 1.1.2~rc1-1)
forky: resolved (fixed in 1.1.2~rc1-1)
sid: resolved (fixed in 1.1.2~rc1-1)
trixie: resolved (fixed in 1.1.2~rc1-1)
GHSA
GHSA-h748-q5cc-5mv7: The virBitmapParse function in util/virbitmap
ghsa_unreviewed·2022-05-17
CVE-2013-5651 [MEDIUM] CWE-119 GHSA-h748-q5cc-5mv7: The virBitmapParse function in util/virbitmap
The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a crafted bitmap, as demonstrated by a large nodeset value to numatune.
OSV
CVE-2013-5651: The virBitmapParse function in util/virbitmap
osv·2013-09-30·CVSS 5.0
CVE-2013-5651 [MEDIUM] CVE-2013-5651: The virBitmapParse function in util/virbitmap
The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a crafted bitmap, as demonstrated by a large nodeset value to numatune.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-4297 CVE-2013-4291 CVE-2013-5651 libvirt: various flaws [fedora-all]
bugzilla·2013-09-10·CVSS 6.9
CVE-2013-4297 [MEDIUM] CVE-2013-4297 CVE-2013-4291 CVE-2013-5651 libvirt: various flaws [fedora-all]
CVE-2013-4297 CVE-2013-4291 CVE-2013-5651 libvirt: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue aff
Bugzilla
CVE-2013-5651 libvirt: virBitmapParse out-of-bounds read access
bugzilla·2013-09-10·CVSS 5.0
CVE-2013-5651 [MEDIUM] CVE-2013-5651 libvirt: virBitmapParse out-of-bounds read access
CVE-2013-5651 libvirt: virBitmapParse out-of-bounds read access
The virBitmapParse function was calling virBitmapIsSet() function that requires the caller to check the bounds of the bitmap without checking them. This resulted into crashes when parsing a bitmap string that was exceeding the bounds used as argument.
Introduced by:
http://libvirt.org/git/?p=libvirt.git;a=commit;h=0fc89098a68f0f6962de8be4fc03ddd960ffbf08
Upstream fix:
http://libvirt.org/git/?p=libvirt.git;a=commit;h=47b9127e883677a0d60d767030a147450e919a
Discussion:
Statement:
Not vulnerable.
This issue did not affect the versions of libvirt package as shipped with Red Hat Enterprise Linux 5 and 6.
---
Created libvirt tracking bugs for this issue:
Affects: fedora-all [bug 1006511]
---
libvirt-1.0.5.6-2.fc19 has bee
http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=47b9127e883677a0d60d767030a147450e919a25http://libvirt.org/news.htmlhttp://lists.opensuse.org/opensuse-updates/2013-10/msg00024.htmlhttp://secunia.com/advisories/60895http://security.gentoo.org/glsa/glsa-201412-04.xmlhttp://www.openwall.com/lists/oss-security/2013/08/30/1http://www.ubuntu.com/usn/USN-1954-1https://bugzilla.redhat.com/show_bug.cgi?id=997367http://libvirt.org/git/?p=libvirt.git%3Ba=commit%3Bh=47b9127e883677a0d60d767030a147450e919a25http://libvirt.org/news.htmlhttp://lists.opensuse.org/opensuse-updates/2013-10/msg00024.htmlhttp://secunia.com/advisories/60895http://security.gentoo.org/glsa/glsa-201412-04.xmlhttp://www.openwall.com/lists/oss-security/2013/08/30/1http://www.ubuntu.com/usn/USN-1954-1https://bugzilla.redhat.com/show_bug.cgi?id=997367
2013-09-30
Published