Libvirt Security Notice: LSN-2019-0009

QEMU agent denial of service

Lifecycle

Reported on: 20190502
Published on: 20190502
Fixed on: 20191212

Credits

Reported by: Tomáš Golembiovský
Patched by: Jonathon Jongsma

See also

Description

The libvirt code that communicates via the guest agent held the monitor job.

Impact

A malicious guest administrator can cause the libvirtd daemon to block any other operations with the guest.

Workaround

Remove the guest agent configuration from any virtual machine that is untrustworthy and reboot it

Affected product: libvirt

Branch: master

Broken in:
v0.9.10
v0.9.11
v0.9.12
v0.9.13
v0.10.0
v0.10.1
v0.10.2
v1.0.0
v1.0.1
v1.0.2
v1.0.3
v1.0.4
v1.0.5
v1.0.6
v1.1.0
v1.1.1
v1.1.2
v1.1.3
v1.1.4
v1.2.0
v1.2.1
v1.2.2
v1.2.3
v1.2.4
v1.2.5
v1.2.6
v1.2.7
v1.2.8
v1.2.9
v1.2.10
v1.2.11
v1.2.12
v1.2.13
v1.2.14
v1.2.15
v1.2.16
v1.2.17
v1.2.18
v1.2.19
v1.2.20
v1.2.21
v1.3.0
v1.3.1
v1.3.2
v1.3.3
v1.3.4
v1.3.5
v2.0.0
v2.1.0
v2.2.0
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.1.0
v3.2.0
v3.3.0
v3.4.0
v3.5.0
v3.6.0
v3.7.0
v3.8.0
v3.9.0
v3.10.0
v4.0.0
v4.1.0
v4.2.0
v4.3.0
v4.4.0
v4.5.0
v4.6.0
v4.7.0
v4.8.0
v4.9.0
v4.10.0
v5.0.0
v5.1.0
v5.2.0
v5.3.0
v5.4.0
v5.5.0
v5.6.0
v5.7.0
v5.8.0
v5.9.0
v5.10.0
v6.0.0
Fixed in:
v6.1.0
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:
e005c95f56fee9ed780be7f8db103d690bd34cbd
a663a860819287e041c3de672aad1d8543098ecc
0a9893121187c0c3f9807e9164366e1f6977619c
1cb8bc52c1035573a0c1a87f724a6c7dfee82f12
95f5ac9ae52455e9da47afc95fa31c9456ac27ae
d9605abed68af4b65c4e04386346a2fd372d7ab9
4cc90c2e62df653e909ad31fd810224bf8bcf913
d61f95cf6a6fbd564e104c168d325581acd9cd8d

Branch: v0.9.11-maint

Broken in:
v0.9.11.1
v0.9.11.2
v0.9.11.3
v0.9.11.4
v0.9.11.5
v0.9.11.6
v0.9.11.7
v0.9.11.8
v0.9.11.9
v0.9.11.10
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v0.9.12-maint

Broken in:
v0.9.12.1
v0.9.12.2
v0.9.12.3
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v0.10.2-maint

Broken in:
v0.10.2.1
v0.10.2.2
v0.10.2.3
v0.10.2.4
v0.10.2.5
v0.10.2.6
v0.10.2.7
v0.10.2.8
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.0.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.0.1-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.0.2-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.0.3-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.0.4-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.0.5-maint

Broken in:
v1.0.5.1
v1.0.5.2
v1.0.5.3
v1.0.5.4
v1.0.5.5
v1.0.5.6
v1.0.5.7
v1.0.5.8
v1.0.5.9
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.0.6-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.1.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.1.1-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.1.2-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.1.3-maint

Broken in:
v1.1.3.1
v1.1.3.2
v1.1.3.3
v1.1.3.4
v1.1.3.5
v1.1.3.6
v1.1.3.7
v1.1.3.8
v1.1.3.9
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.1.4-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.1-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.2-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.3-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.4-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.5-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.6-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.7-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.8-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.9-maint

Broken in:
v1.2.9.1
v1.2.9.2
v1.2.9.3
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.10-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.11-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.12-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.13-maint

Broken in:
v1.2.13.1
v1.2.13.2
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.14-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.15-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.16-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.17-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.18-maint

Broken in:
v1.2.18.1
v1.2.18.2
v1.2.18.3
v1.2.18.4
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.19-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.20-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.2.21-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.3.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.3.1-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.3.2-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.3.3-maint

Broken in:
v1.3.3.1
v1.3.3.2
v1.3.3.3
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.3.4-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v1.3.5-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v2.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v2.1-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v2.2-maint

Broken in:
v2.2.1
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v3.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v3.2-maint

Broken in:
v3.2.1
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v3.7-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.1-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.2-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.3-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.4-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.5-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.6-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.7-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.8-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.9-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v4.10-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v5.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v5.1-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v5.1.0-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v5.2-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Branch: v5.3-maint

Broken in:
Fixed in:
Broken by:
c160ce3316852a797d7b06b4ee101233866e69a9
Fixed by:

Alternative formats: [xml] [text]