ALSA-2022:8003

Source
https://errata.almalinux.org/9/ALSA-2022-8003.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2022:8003.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2022:8003
Related
Published
2022-11-15T00:00:00Z
Modified
2022-11-18T05:14:56Z
Summary
Low: libvirt security, bug fix, and enhancement update
Details

The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems.

The following packages have been upgraded to a later upstream version: libvirt (8.5.0). (BZ#2060313)

Security Fix(es):

  • libvirt: missing locking in nwfilterConnectNumOfNWFilters can lead to denial of service (CVE-2022-0897)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.

References

Affected packages

AlmaLinux:9 / libvirt

Package

Name
libvirt

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-client

Package

Name
libvirt-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon

Package

Name
libvirt-daemon

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-config-network

Package

Name
libvirt-daemon-config-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-config-nwfilter

Package

Name
libvirt-daemon-config-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-interface

Package

Name
libvirt-daemon-driver-interface

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-network

Package

Name
libvirt-daemon-driver-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-nodedev

Package

Name
libvirt-daemon-driver-nodedev

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-nwfilter

Package

Name
libvirt-daemon-driver-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-qemu

Package

Name
libvirt-daemon-driver-qemu

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-secret

Package

Name
libvirt-daemon-driver-secret

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage

Package

Name
libvirt-daemon-driver-storage

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-core

Package

Name
libvirt-daemon-driver-storage-core

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-disk

Package

Name
libvirt-daemon-driver-storage-disk

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-iscsi

Package

Name
libvirt-daemon-driver-storage-iscsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-logical

Package

Name
libvirt-daemon-driver-storage-logical

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-mpath

Package

Name
libvirt-daemon-driver-storage-mpath

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-rbd

Package

Name
libvirt-daemon-driver-storage-rbd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-scsi

Package

Name
libvirt-daemon-driver-storage-scsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-kvm

Package

Name
libvirt-daemon-kvm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-devel

Package

Name
libvirt-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-docs

Package

Name
libvirt-docs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-libs

Package

Name
libvirt-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-lock-sanlock

Package

Name
libvirt-lock-sanlock

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-nss

Package

Name
libvirt-nss

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1