ALSA-2022:8003

Source
https://errata.almalinux.org/9/ALSA-2022-8003.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2022:8003.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2022:8003
Related
Published
2022-11-15T00:00:00Z
Modified
2022-11-18T05:14:56Z
Summary
Low: libvirt security, bug fix, and enhancement update
Details

The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems.

The following packages have been upgraded to a later upstream version: libvirt (8.5.0). (BZ#2060313)

Security Fix(es):

  • libvirt: missing locking in nwfilterConnectNumOfNWFilters can lead to denial of service (CVE-2022-0897)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.

References

Affected packages

AlmaLinux:9 / libvirt

Package

Name
libvirt
Purl
pkg:rpm/almalinux/libvirt

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-client

Package

Name
libvirt-client
Purl
pkg:rpm/almalinux/libvirt-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon

Package

Name
libvirt-daemon
Purl
pkg:rpm/almalinux/libvirt-daemon

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-config-network

Package

Name
libvirt-daemon-config-network
Purl
pkg:rpm/almalinux/libvirt-daemon-config-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-config-nwfilter

Package

Name
libvirt-daemon-config-nwfilter
Purl
pkg:rpm/almalinux/libvirt-daemon-config-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-interface

Package

Name
libvirt-daemon-driver-interface
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-interface

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-network

Package

Name
libvirt-daemon-driver-network
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-nodedev

Package

Name
libvirt-daemon-driver-nodedev
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-nodedev

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-nwfilter

Package

Name
libvirt-daemon-driver-nwfilter
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-qemu

Package

Name
libvirt-daemon-driver-qemu
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-qemu

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-secret

Package

Name
libvirt-daemon-driver-secret
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-secret

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage

Package

Name
libvirt-daemon-driver-storage
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-core

Package

Name
libvirt-daemon-driver-storage-core
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-core

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-disk

Package

Name
libvirt-daemon-driver-storage-disk
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-disk

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-iscsi

Package

Name
libvirt-daemon-driver-storage-iscsi
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-iscsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-logical

Package

Name
libvirt-daemon-driver-storage-logical
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-logical

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-mpath

Package

Name
libvirt-daemon-driver-storage-mpath
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-mpath

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-rbd

Package

Name
libvirt-daemon-driver-storage-rbd
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-rbd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-driver-storage-scsi

Package

Name
libvirt-daemon-driver-storage-scsi
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-scsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-daemon-kvm

Package

Name
libvirt-daemon-kvm
Purl
pkg:rpm/almalinux/libvirt-daemon-kvm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-devel

Package

Name
libvirt-devel
Purl
pkg:rpm/almalinux/libvirt-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-docs

Package

Name
libvirt-docs
Purl
pkg:rpm/almalinux/libvirt-docs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-libs

Package

Name
libvirt-libs
Purl
pkg:rpm/almalinux/libvirt-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-lock-sanlock

Package

Name
libvirt-lock-sanlock
Purl
pkg:rpm/almalinux/libvirt-lock-sanlock

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1

AlmaLinux:9 / libvirt-nss

Package

Name
libvirt-nss
Purl
pkg:rpm/almalinux/libvirt-nss

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.5.0-7.el9_1