#VU62737 Improper locking in libvirt - CVE-2021-4147
Published: May 3, 2022
libvirt
libvirt.org
Description
The vulnerability allows a local user to perform a denial of service attack (DoS) on the target system.
The vulnerability exists due to double-locking error in the libvirt libxl driver in libxl/libxl_domain.c. A malicious guest can continuously reboot itself and cause libvirtd on the host to deadlock or crash, resulting in a denial of service condition