{"schema_version":"1.7.5","id":"CVE-2014-8131","published":"2015-01-06T15:59:04Z","modified":"2026-04-10T03:44:04.484654Z","related":["openSUSE-SU-2024:10209-1"],"details":"The qemu implementation of virConnectGetAllDomainStats in libvirt before 1.2.11 does not properly handle locks when a domain is skipped due to ACL restrictions, which allows a remote authenticated users to cause a denial of service (deadlock or segmentation fault and crash) via a request to access the users does not have privileges to access.","references":[{"type":"ADVISORY","url":"http://security.libvirt.org/2014/0008.html"},{"type":"WEB","url":"http://lists.opensuse.org/opensuse-updates/2015-01/msg00005.html"}]}