ALSA-2023:6409

Source
https://errata.almalinux.org/9/ALSA-2023-6409.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2023:6409
Related
Published
2023-11-07T00:00:00Z
Modified
2023-11-14T12:11:42Z
Summary
Moderate: libvirt security, bug fix, and enhancement update
Details

The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems.

The following packages have been upgraded to a later upstream version: libvirt (9.5.0). (BZ#2175785)

Security Fix(es):

  • libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service (CVE-2023-3750)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.

References

Affected packages

AlmaLinux:9 / libvirt

Package

Name
libvirt
Purl
pkg:rpm/almalinux/libvirt

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-client

Package

Name
libvirt-client
Purl
pkg:rpm/almalinux/libvirt-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-client-qemu

Package

Name
libvirt-client-qemu
Purl
pkg:rpm/almalinux/libvirt-client-qemu

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon

Package

Name
libvirt-daemon
Purl
pkg:rpm/almalinux/libvirt-daemon

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-common

Package

Name
libvirt-daemon-common
Purl
pkg:rpm/almalinux/libvirt-daemon-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-config-network

Package

Name
libvirt-daemon-config-network
Purl
pkg:rpm/almalinux/libvirt-daemon-config-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-config-nwfilter

Package

Name
libvirt-daemon-config-nwfilter
Purl
pkg:rpm/almalinux/libvirt-daemon-config-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-interface

Package

Name
libvirt-daemon-driver-interface
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-interface

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-network

Package

Name
libvirt-daemon-driver-network
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-network

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-nodedev

Package

Name
libvirt-daemon-driver-nodedev
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-nodedev

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-nwfilter

Package

Name
libvirt-daemon-driver-nwfilter
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-nwfilter

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-qemu

Package

Name
libvirt-daemon-driver-qemu
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-qemu

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-secret

Package

Name
libvirt-daemon-driver-secret
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-secret

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage

Package

Name
libvirt-daemon-driver-storage
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage-core

Package

Name
libvirt-daemon-driver-storage-core
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-core

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage-disk

Package

Name
libvirt-daemon-driver-storage-disk
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-disk

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage-iscsi

Package

Name
libvirt-daemon-driver-storage-iscsi
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-iscsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage-logical

Package

Name
libvirt-daemon-driver-storage-logical
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-logical

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage-mpath

Package

Name
libvirt-daemon-driver-storage-mpath
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-mpath

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage-rbd

Package

Name
libvirt-daemon-driver-storage-rbd
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-rbd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-driver-storage-scsi

Package

Name
libvirt-daemon-driver-storage-scsi
Purl
pkg:rpm/almalinux/libvirt-daemon-driver-storage-scsi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-kvm

Package

Name
libvirt-daemon-kvm
Purl
pkg:rpm/almalinux/libvirt-daemon-kvm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-lock

Package

Name
libvirt-daemon-lock
Purl
pkg:rpm/almalinux/libvirt-daemon-lock

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-log

Package

Name
libvirt-daemon-log
Purl
pkg:rpm/almalinux/libvirt-daemon-log

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-plugin-lockd

Package

Name
libvirt-daemon-plugin-lockd
Purl
pkg:rpm/almalinux/libvirt-daemon-plugin-lockd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-plugin-sanlock

Package

Name
libvirt-daemon-plugin-sanlock
Purl
pkg:rpm/almalinux/libvirt-daemon-plugin-sanlock

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-daemon-proxy

Package

Name
libvirt-daemon-proxy
Purl
pkg:rpm/almalinux/libvirt-daemon-proxy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-devel

Package

Name
libvirt-devel
Purl
pkg:rpm/almalinux/libvirt-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-docs

Package

Name
libvirt-docs
Purl
pkg:rpm/almalinux/libvirt-docs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-libs

Package

Name
libvirt-libs
Purl
pkg:rpm/almalinux/libvirt-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1

AlmaLinux:9 / libvirt-nss

Package

Name
libvirt-nss
Purl
pkg:rpm/almalinux/libvirt-nss

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.5.0-7.el9_3.alma.1