{"id":"CVE-2013-4154","details":"The qemuAgentCommand function in libvirt before 1.1.1, when a guest agent is not configured, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to \"agent based cpu (un)plug,\" as demonstrated by the \"virsh vcpucount foobar --guest\" command.","modified":"2026-04-10T03:42:55.098793Z","published":"2013-09-30T21:55:09Z","related":["openSUSE-SU-2024:10209-1"],"references":[{"type":"EVIDENCE","url":"https://bugzilla.redhat.com/show_bug.cgi?id=984821"},{"type":"FIX","url":"http://openwall.com/lists/oss-security/2013/07/19/12"},{"type":"FIX","url":"https://bugzilla.redhat.com/show_bug.cgi?id=986386"},{"type":"WEB","url":"http://libvirt.org/git/?p=libvirt.git%3Ba=commitdiff%3Bh=96518d4316b711c72205117f8d5c967d5127bbb6"},{"type":"WEB","url":"http://libvirt.org/news.html"}],"schema_version":"1.7.5"}