CVE-2022-0897
published 2022-03-25CVE-2022-0897: A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the driver->nwfilters mutex before iterating…
PriorityP422medium4.3CVSS 3.1
AVNACLPRLUINSUCNINAL
EPSS
1.02%
59.7th percentile
A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the driver->nwfilters mutex before iterating over virNWFilterObj instances. There was no protection to stop another thread from concurrently modifying the driver->nwfilters object. This flaw allows a malicious, unprivileged user to exploit this issue via libvirt's API virConnectNumOfNWFilters to crash the network filter management daemon (libvirtd/virtnwfilterd).
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libvirt | < libvirt 8.2.0-1 (bookworm) | libvirt 8.2.0-1 (bookworm) |
| redhat | libvirt | <= 1.1.1 | — |
| redhat | libvirt | — | — |
| redhat | libvirt | >= 0 < 7.0.0-3+deb11u3 | 7.0.0-3+deb11u3 |
| redhat | libvirt | >= 0 < 8.2.0-1 | 8.2.0-1 |
| redhat | libvirt | >= 0 < 8.2.0-1 | 8.2.0-1 |
| redhat | libvirt | >= 0 < 8.2.0-1 | 8.2.0-1 |
| redhat | libvirt | >= 0 < 4.0.0-1ubuntu8.21 | 4.0.0-1ubuntu8.21 |
| redhat | libvirt | >= 0 < 6.0.0-0ubuntu8.16 | 6.0.0-0ubuntu8.16 |
| redhat | libvirt | >= 0 < 8.0.0-1ubuntu7.5 | 8.0.0-1ubuntu7.5 |
CVSS provenance
nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv6.7MEDIUM
vendor_ubuntu6.7MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
libvirt vulnerabilities
osv·2023-05-31·CVSS 4.3
CVE-2022-0897 [MEDIUM] libvirt vulnerabilities
libvirt vulnerabilities
It was discovered that libvirt incorrectly handled the nwfilter driver. A
local attacker could possibly use this issue to cause libvirt to crash,
resulting in a denial of service. This issue only affected Ubuntu 22.04
LTS. (CVE-2022-0897)
It was discovered that libvirt incorrectly handled queries for the SR-IOV
PCI device capabilities. A local attacker could possibly use this issue to
cause libvirt to consume resources, leading to a denial of service.
(CVE-2023-2700)
OSV
libvirt vulnerabilities
osv·2022-05-02·CVSS 6.7
CVE-2021-3667 [MEDIUM] libvirt vulnerabilities
libvirt vulnerabilities
It was discovered that libvirt incorrectly handled certain locking
operations. A local attacker could possibly use this issue to cause libvirt
to stop accepting connections, resulting in a denial of service. This issue
only affected Ubuntu 20.04 LTS. (CVE-2021-3667)
It was discovered that libvirt incorrectly handled threads during shutdown.
A local attacker could possibly use this issue to cause libvirt to crash,
resulting in a denial of service. This issue only affected Ubuntu 18.04 LTS
and Ubuntu 20.04 LTS. (CVE-2021-3975)
It was discovered that libvirt incorrectly handled the libxl driver. An
attacker inside a guest could possibly use this issue to cause libvirtd
to crash or stop responding, resulting in a denial of service. This issue
only affected Ubuntu 18.
GHSA
GHSA-4r2g-j5rc-7wqf: A flaw was found in the libvirt nwfilter driver
ghsa_unreviewed·2022-03-26
CVE-2022-0897 [MEDIUM] CWE-667 GHSA-4r2g-j5rc-7wqf: A flaw was found in the libvirt nwfilter driver
A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the `driver->nwfilters` mutex before iterating over virNWFilterObj instances. There was no protection to stop another thread from concurrently modifying the `driver->nwfilters` object. This flaw allows a malicious, unprivileged user to exploit this issue via libvirt’s API virConnectNumOfNWFilters to crash the network filter management daemon (libvirtd/virtnwfilterd).
OSV
CVE-2022-0897: A flaw was found in the libvirt nwfilter driver
osv·2022-03-25·CVSS 4.3
CVE-2022-0897 [MEDIUM] CVE-2022-0897: A flaw was found in the libvirt nwfilter driver
A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the driver->nwfilters mutex before iterating over virNWFilterObj instances. There was no protection to stop another thread from concurrently modifying the driver->nwfilters object. This flaw allows a malicious, unprivileged user to exploit this issue via libvirt's API virConnectNumOfNWFilters to crash the network filter management daemon (libvirtd/virtnwfilterd).
Ubuntu
libvirt vulnerabilities
vendor_ubuntu·2023-05-31·CVSS 4.3
CVE-2022-0897 [MEDIUM] libvirt vulnerabilities
Title: libvirt vulnerabilities
Summary: Several security issues were fixed in libvirt.
It was discovered that libvirt incorrectly handled the nwfilter driver. A
local attacker could possibly use this issue to cause libvirt to crash,
resulting in a denial of service. This issue only affected Ubuntu 22.04
LTS. (CVE-2022-0897)
It was discovered that libvirt incorrectly handled queries for the SR-IOV
PCI device capabilities. A local attacker could possibly use this issue to
cause libvirt to consume resources, leading to a denial of service.
(CVE-2023-2700)
Instructions: After a standard system update you need to reboot your computer to make all
the necessary changes.
Ubuntu
libvirt vulnerabilities
vendor_ubuntu·2022-05-02·CVSS 6.7
CVE-2021-3631 [MEDIUM] libvirt vulnerabilities
Title: libvirt vulnerabilities
Summary: Several security issues were fixed in libvirt.
It was discovered that libvirt incorrectly handled certain locking
operations. A local attacker could possibly use this issue to cause libvirt
to stop accepting connections, resulting in a denial of service. This issue
only affected Ubuntu 20.04 LTS. (CVE-2021-3667)
It was discovered that libvirt incorrectly handled threads during shutdown.
A local attacker could possibly use this issue to cause libvirt to crash,
resulting in a denial of service. This issue only affected Ubuntu 18.04 LTS
and Ubuntu 20.04 LTS. (CVE-2021-3975)
It was discovered that libvirt incorrectly handled the libxl driver. An
attacker inside a guest could possibly use this issue to cause libvirtd
to crash or stop responding, resul
Red Hat
libvirt: missing locking in nwfilterConnectNumOfNWFilters can lead to denial of service
vendor_redhat·2022-03-17·CVSS 4.3
CVE-2022-0897 [MEDIUM] CWE-667 libvirt: missing locking in nwfilterConnectNumOfNWFilters can lead to denial of service
libvirt: missing locking in nwfilterConnectNumOfNWFilters can lead to denial of service
A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the driver->nwfilters mutex before iterating over virNWFilterObj instances. There was no protection to stop another thread from concurrently modifying the driver->nwfilters object. This flaw allows a malicious, unprivileged user to exploit this issue via libvirt's API virConnectNumOfNWFilters to crash the network filter management daemon (libvirtd/virtnwfilterd).
A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the driver->nwfilters mutex before iterating over virNWFilterObj instances. There was no protection to stop another thread
Debian
CVE-2022-0897: libvirt - A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFi...
vendor_debian·2022·CVSS 4.3
CVE-2022-0897 [MEDIUM] CVE-2022-0897: libvirt - A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFi...
A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the driver->nwfilters mutex before iterating over virNWFilterObj instances. There was no protection to stop another thread from concurrently modifying the driver->nwfilters object. This flaw allows a malicious, unprivileged user to exploit this issue via libvirt's API virConnectNumOfNWFilters to crash the network filter management daemon (libvirtd/virtnwfilterd).
Scope: local
bookworm: resolved (fixed in 8.2.0-1)
bullseye: resolved (fixed in 7.0.0-3+deb11u3)
forky: resolved (fixed in 8.2.0-1)
sid: resolved (fixed in 8.2.0-1)
trixie: resolved (fixed in 8.2.0-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=2063883https://lists.debian.org/debian-lts-announce/2024/04/msg00000.htmlhttps://security.gentoo.org/glsa/202210-06https://bugzilla.redhat.com/show_bug.cgi?id=2063883https://lists.debian.org/debian-lts-announce/2024/04/msg00000.htmlhttps://security.gentoo.org/glsa/202210-06
2022-03-25
Published