← back
CVE-2019-3840

CVE-2019-3840

CVSS 5.8 MEDIUMEPSS 1.5%CWE-476
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.8EPSS 1.5%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
27 Mar 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A NULL pointer dereference flaw was discovered in libvirt before version 5.0.0 in the way it gets interface information through the QEMU agent. An attacker in a guest VM can use this flaw to crash libvirtd and cause a denial of service.
CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:C/C:N/I:N/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →