{"id":"CVE-2013-4153","details":"Double free vulnerability in the qemuAgentGetVCPUs function in qemu/qemu_agent.c in libvirt 1.0.6 through 1.1.0 allows remote attackers to cause a denial of service (daemon crash) via a cpu count request, as demonstrated by the \"virsh vcpucount dom --guest\" command.","modified":"2026-04-10T03:43:21.802496Z","published":"2013-09-30T21:55:09Z","related":["openSUSE-SU-2024:10209-1"],"references":[{"type":"EVIDENCE","url":"https://bugzilla.redhat.com/show_bug.cgi?id=984821"},{"type":"FIX","url":"http://openwall.com/lists/oss-security/2013/07/19/11"},{"type":"FIX","url":"https://bugzilla.redhat.com/show_bug.cgi?id=986383"},{"type":"WEB","url":"http://libvirt.org/git/?p=libvirt.git%3Ba=commitdiff%3Bh=dfc692350a04a70b4ca65667c30869b3bfdaf034"},{"type":"WEB","url":"http://libvirt.org/news.html"}],"schema_version":"1.7.5"}