<security-notice xmlns="http://security.libvirt.org/xmlns/security-notice/1.0">
  <id>2021-0003</id>

  <summary>Denial of service by malicious guest in the libxl driver</summary>

  <description>
<![CDATA[Possible deadlock when the guest is being shut down]]>
  </description>

  <impact>
<![CDATA[A malicious guest could continuously reboot itself and cause libvirtd
         on the host to deadlock or crash, resulting in a denial of service condition.]]>
  </impact>

  <workaround>
<![CDATA[None.]]>
  </workaround>

  <credits>
    <reporter>
      <name>Jim Fehlig</name>
      <email>jfehlig@suse.com</email>
    </reporter>
    <patcher>
      <name>Jim Fehlig</name>
      <email>jfehlig@suse.com</email>
    </patcher>
  </credits>

  <lifecycle>
    <reported>20211123</reported>
    <published>20211202</published>
    <fixed>20211202</fixed>
  </lifecycle>

  <reference>
    <advisory type="CVE" id="2021-4147"/>
  </reference>

  <product name="libvirt">
    <repository>libvirt.git</repository>
    <branch>
      <name>master</name>
      <tag state="fixed">v8.0.0</tag>
      <change state="fixed">5c5df5310f72be4878a71ace47074c54e0d1a27d</change>
    </branch>
  </product>

</security-notice>
