ALSA-2022:8003

Source
https://errata.almalinux.org/9/ALSA-2022-8003.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2022:8003.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2022:8003
Related
Published
2022-11-15T00:00:00Z
Modified
2022-11-18T05:14:56Z
Summary
Low: libvirt security, bug fix, and enhancement update
Details

The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems.

The following packages have been upgraded to a later upstream version: libvirt (8.5.0). (BZ#2060313)

Security Fix(es):

  • libvirt: missing locking in nwfilterConnectNumOfNWFilters can lead to denial of service (CVE-2022-0897)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.

References

Affected packages

AlmaLinux:9

libvirt

Package

Name
libvirt
Purl
pkg:rpm/almalinux/libvirt

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-client

Package

Name
libvirt-client
Purl
pkg:rpm/almalinux/libvirt-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon

Package

Name
libvirt-daemon
Purl
pkg:rpm/almalinux/libvirt-daemon

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-config-network

Package

Name
libvirt-daemon-config-network
Purl
pkg:rpm/almalinux/libvirt-daemon-config-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-config-nwfilter

Package

Name
libvirt-daemon-config-nwfilter
Purl
pkg:rpm/almalinux/libvirt-daemon-config-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-interface

Package

Name
libvirt-daemon-driver-interface
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-interface

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-network

Package

Name
libvirt-daemon-driver-network
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-nodedev

Package

Name
libvirt-daemon-driver-nodedev
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-nodedev

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-nwfilter

Package

Name
libvirt-daemon-driver-nwfilter
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-qemu

Package

Name
libvirt-daemon-driver-qemu
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-qemu

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-secret

Package

Name
libvirt-daemon-driver-secret
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-secret

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage

Package

Name
libvirt-daemon-driver-storage
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage-core

Package

Name
libvirt-daemon-driver-storage-core
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-core

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage-disk

Package

Name
libvirt-daemon-driver-storage-disk
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-disk

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage-iscsi

Package

Name
libvirt-daemon-driver-storage-iscsi
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-iscsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage-logical

Package

Name
libvirt-daemon-driver-storage-logical
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-logical

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage-mpath

Package

Name
libvirt-daemon-driver-storage-mpath
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-mpath

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage-rbd

Package

Name
libvirt-daemon-driver-storage-rbd
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-rbd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-driver-storage-scsi

Package

Name
libvirt-daemon-driver-storage-scsi
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-scsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-daemon-kvm

Package

Name
libvirt-daemon-kvm
Purl
pkg:rpm/almalinux/libvirt-daemon-kvm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-devel

Package

Name
libvirt-devel
Purl
pkg:rpm/almalinux/libvirt-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-docs

Package

Name
libvirt-docs
Purl
pkg:rpm/almalinux/libvirt-docs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-libs

Package

Name
libvirt-libs
Purl
pkg:rpm/almalinux/libvirt-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-lock-sanlock

Package

Name
libvirt-lock-sanlock
Purl
pkg:rpm/almalinux/libvirt-lock-sanlock

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

libvirt-nss

Package

Name
libvirt-nss
Purl
pkg:rpm/almalinux/libvirt-nss

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1