CVE-2023-3750
published 2023-07-24CVE-2023-3750: A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of…
PriorityP423medium5.3CVSS 3.1
AVNACHPRLUINSUCNINAH
EPSS
0.62%
45.8th percentile
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libvirt | < libvirt 9.0.0-4+deb12u1 (bookworm) | libvirt 9.0.0-4+deb12u1 (bookworm) |
| msrc | azl3_libvirt_7.10.0-5_on_azure_linux_3.0 | — | — |
| msrc | azure_linux_3.0_arm | — | — |
| msrc | azure_linux_3.0_x64 | — | — |
| redhat | enterprise_linux | — | — |
| redhat | libvirt | >= 0 < 9.0.0-4+deb12u1 | 9.0.0-4+deb12u1 |
| redhat | libvirt | >= 0 < 9.6.0-1 | 9.6.0-1 |
| redhat | libvirt | >= 0 < 9.6.0-1 | 9.6.0-1 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.3MEDIUM
vendor_redhat8.2HIGH
vendor_debian6.5MEDIUM
vendor_msrc5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libvirt vulnerability
vendor_ubuntu·2023-07-26
CVE-2023-3750 libvirt vulnerability
Title: libvirt vulnerability
Summary: libvirt could be made to stop responding or crash if it received specially
crafted commands.
It wad discovered that libvirt incorrectly handled locking when processing
certain requests. A local attacker could possibly use this issue to cause
libvirt to stop responding or crash, resulting in a denial of service.
Instructions: After a standard system update you need to reboot your computer to make all
the necessary changes.
Red Hat
libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service
vendor_redhat·2023-07-18·CVSS 6.5
CVE-2023-3750 [MEDIUM] CWE-667 libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service
libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
Statement: The versions of `libvirt` as shipped with Red Hat Enterpr
Microsoft
Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service
vendor_msrc·2023-07-11·CVSS 5.3
CVE-2023-3750 [MEDIUM] CWE-667 Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service
Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediation: CBL-Mariner R
Red Hat
QEMU: hcd-ehci: DMA reentrancy issue (incomplete fix for CVE-2021-3750)
vendor_redhat·2023-05-12·CVSS 8.2
CVE-2023-2680 [HIGH] CWE-416 QEMU: hcd-ehci: DMA reentrancy issue (incomplete fix for CVE-2021-3750)
QEMU: hcd-ehci: DMA reentrancy issue (incomplete fix for CVE-2021-3750)
This CVE exists because of an incomplete fix for CVE-2021-3750. More specifically, the qemu-kvm package as released for Red Hat Enterprise Linux 9.1 via RHSA-2022:7967 included a version of qemu-kvm that was actually missing the fix for CVE-2021-3750.
This CVE exists because of an incomplete fix for CVE-2021-3750. More specifically, the qemu-kvm package as released for Red Hat Enterprise Linux 9.1 via RHSA-2022:7967 included a version of qemu-kvm that was actually missing the fix for CVE-2021-3750.
Statement: A user who installs or updates to Red Hat Enterprise Linux 9.1 would be vulnerable to the CVE-2021-3750, even if it was declared fixed in the following advisory:
https://access.redhat.com/errata/RHSA-2022:7967
Debian
CVE-2023-3750: libvirt - A flaw was found in libvirt. The virStoragePoolObjListSearch function does not r...
vendor_debian·2023·CVSS 6.5
CVE-2023-3750 [MEDIUM] CVE-2023-3750: libvirt - A flaw was found in libvirt. The virStoragePoolObjListSearch function does not r...
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
Scope: local
bookworm: resolved (fixed in 9.0.0-4+deb12u1)
bullseye: resolved
forky: resolved (fixed in 9.6.0-1)
sid: resolved (fixed in 9.6.0-1)
trixie: resolved (fixed in 9.6.0-1)
GHSA
GHSA-35p2-9fg3-f2p2: A flaw was found in libvirt
ghsa_unreviewed·2023-07-24
CVE-2023-3750 [MEDIUM] CWE-667 GHSA-35p2-9fg3-f2p2: A flaw was found in libvirt
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
OSV
CVE-2023-3750: A flaw was found in libvirt
osv·2023-07-24·CVSS 5.3
CVE-2023-3750 [MEDIUM] CVE-2023-3750: A flaw was found in libvirt
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://access.redhat.com/errata/RHSA-2023:6409https://access.redhat.com/security/cve/CVE-2023-3750https://bugzilla.redhat.com/show_bug.cgi?id=2222210https://access.redhat.com/errata/RHSA-2023:6409https://access.redhat.com/security/cve/CVE-2023-3750https://bugzilla.redhat.com/show_bug.cgi?id=2222210https://lists.fedoraproject.org/archives/list/[email protected]/message/EVK6JKP36CHE7YAFDJNPNLTW4OWJJ7TQ/
2023-07-24
Published