redhat libvirt CVE-2021-3559 in Red Hat and NetApp Products
Published on May 24, 2021

product logo product logo
A flaw was found in libvirt in the virConnectListAllNodeDevices API in versions before 7.0.0. It only affects hosts with a PCI device and driver that supports mediated devices (e.g., GRID driver). This flaw could be used by an unprivileged client with a read-only connection to crash the libvirt daemon by executing the 'nodedev-list' virsh command. The highest threat from this vulnerability is to system availability.

NVD

Weakness Type

What is a Buffer Overflow Vulnerability?

The software performs operations on a memory buffer, but it can read from or write to a memory location that is outside of the intended boundary of the buffer.

CVE-2021-3559 has been classified to as a Buffer Overflow vulnerability or weakness.


Products Associated with CVE-2021-3559

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-3559 are published in these products:

 
 

Exploit Probability

EPSS
0.37%
Percentile
58.25%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.