Headline
Red Hat Security Advisory 2023-3715-01
Red Hat Security Advisory 2023-3715-01 - The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. Issues addressed include a memory leak vulnerability.
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
=====================================================================
Red Hat Security Advisory
Synopsis: Moderate: libvirt security update
Advisory ID: RHSA-2023:3715-01
Product: Red Hat Enterprise Linux
Advisory URL: https://access.redhat.com/errata/RHSA-2023:3715
Issue date: 2023-06-21
CVE Names: CVE-2023-2700
=====================================================================
- Summary:
An update for libvirt is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact
of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE link(s) in the References section.
- Relevant releases/architectures:
Red Hat Enterprise Linux AppStream (v. 9) - aarch64, ppc64le, s390x, x86_64
Red Hat Enterprise Linux CRB (v. 9) - aarch64, ppc64le, s390x, x86_64
- Description:
The libvirt library contains a C API for managing and interacting with the
virtualization capabilities of Linux and other operating systems. In
addition, libvirt provides tools for remote management of virtualized
systems.
Security Fix(es):
- libvirt: Memory leak in virPCIVirtualFunctionList cleanup (CVE-2023-2700)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.
- Solution:
For details on how to apply this update, which includes the changes
described in this advisory, refer to:
https://access.redhat.com/articles/11258
After installing the updated packages, libvirtd will be restarted
automatically.
- Bugs fixed (https://bugzilla.redhat.com/):
2203653 - CVE-2023-2700 libvirt: Memory leak in virPCIVirtualFunctionList cleanup
- Package List:
Red Hat Enterprise Linux AppStream (v. 9):
Source:
libvirt-9.0.0-10.2.el9_2.src.rpm
aarch64:
libvirt-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-client-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-client-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-config-network-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-config-nwfilter-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-interface-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-network-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-nodedev-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-nwfilter-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-qemu-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-qemu-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-secret-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-core-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-disk-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-iscsi-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-logical-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-mpath-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-rbd-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-scsi-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-kvm-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-libs-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-lock-sanlock-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-nss-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
ppc64le:
libvirt-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-client-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-client-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-config-network-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-config-nwfilter-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-interface-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-network-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-nodedev-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-nwfilter-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-secret-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-core-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-disk-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-iscsi-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-logical-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-mpath-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-rbd-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-scsi-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-libs-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-nss-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
s390x:
libvirt-9.0.0-10.2.el9_2.s390x.rpm
libvirt-client-9.0.0-10.2.el9_2.s390x.rpm
libvirt-client-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-config-network-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-config-nwfilter-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-interface-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-network-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-nodedev-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-nwfilter-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-qemu-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-qemu-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-secret-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-core-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-disk-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-iscsi-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-logical-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-mpath-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-rbd-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-scsi-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-kvm-9.0.0-10.2.el9_2.s390x.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.s390x.rpm
libvirt-libs-9.0.0-10.2.el9_2.s390x.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-lock-sanlock-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-nss-9.0.0-10.2.el9_2.s390x.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
x86_64:
libvirt-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-client-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-client-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-config-network-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-config-nwfilter-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-interface-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-network-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-nodedev-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-nwfilter-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-qemu-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-qemu-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-secret-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-core-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-disk-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-iscsi-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-logical-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-mpath-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-rbd-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-scsi-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-kvm-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-libs-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-lock-sanlock-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-nss-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
Red Hat Enterprise Linux CRB (v. 9):
aarch64:
libvirt-client-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-client-qemu-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-qemu-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-devel-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-docs-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-lock-sanlock-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-lock-sanlock-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.aarch64.rpm
ppc64le:
libvirt-client-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-devel-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-docs-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.ppc64le.rpm
s390x:
libvirt-client-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-client-qemu-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-qemu-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.s390x.rpm
libvirt-devel-9.0.0-10.2.el9_2.s390x.rpm
libvirt-docs-9.0.0-10.2.el9_2.s390x.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-lock-sanlock-9.0.0-10.2.el9_2.s390x.rpm
libvirt-lock-sanlock-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.s390x.rpm
x86_64:
libvirt-client-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-client-qemu-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-interface-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-network-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-nodedev-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-nwfilter-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-qemu-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-secret-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-core-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-disk-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-iscsi-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-logical-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-mpath-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-rbd-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-daemon-driver-storage-scsi-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-debugsource-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-devel-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-docs-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-libs-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-lock-sanlock-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-lock-sanlock-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-nss-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
libvirt-wireshark-debuginfo-9.0.0-10.2.el9_2.x86_64.rpm
These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/
- References:
https://access.redhat.com/security/cve/CVE-2023-2700
https://access.redhat.com/security/updates/classification/#moderate
- Contact:
The Red Hat security contact is [email protected]. More contact
details at https://access.redhat.com/security/team/contact/
Copyright 2023 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=e+7D
-----END PGP SIGNATURE-----
–
RHSA-announce mailing list
[email protected]
https://listman.redhat.com/mailman/listinfo/rhsa-announce
Related news
Red Hat Security Advisory 2023-4664-01 - OpenShift Virtualization is Red Hat's virtualization solution designed for Red Hat OpenShift Container Platform. This advisory contains OpenShift Virtualization 4.13.3 images. Issues addressed include a denial of service vulnerability.
Red Hat OpenShift Virtualization release 4.13.3 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-41723: A flaw was found in golang. A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number of requests. * CVE-2023-3089: A compliance problem was found in the Red Hat OpenShift Con...
Red Hat Security Advisory 2023-4226-01 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container images for Red Hat OpenShift Container Platform 4.13.6.
Red Hat OpenShift Container Platform release 4.13.6 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13. Red Hat Product Security has rated this update as having a security impact of [impact]. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-41723: A flaw was found in golang. A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number...
Red Hat Security Advisory 2023-4091-01 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container images for Red Hat OpenShift Container Platform 4.13.5. Issues addressed include a denial of service vulnerability.
Red Hat OpenShift Container Platform release 4.13.5 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-41717: A flaw was found in the net/http library of the golang package. This flaw allows an attacker to cause excessive memory growth in a Go server accepting HTTP/2 requests. HTTP/2 server c...
Red Hat Security Advisory 2023-3925-01 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container images for Red Hat OpenShift Container Platform 4.12.23.
Red Hat OpenShift Container Platform release 4.12.23 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.12. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2023-3089: A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that, when FIPS mode was enabled, not all of the cryptographic modules in use were FIPS-...
Ubuntu Security Notice 6126-1 - It was discovered that libvirt incorrectly handled the nwfilter driver. A local attacker could possibly use this issue to cause libvirt to crash, resulting in a denial of service. This issue only affected Ubuntu 22.04 LTS. It was discovered that libvirt incorrectly handled queries for the SR-IOV PCI device capabilities. A local attacker could possibly use this issue to cause libvirt to consume resources, leading to a denial of service.
A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory leak caused by a failure to free the virPCIVirtualFunction array within the parent struct's g_autoptr cleanup.