UBUNTU-CVE-2022-2211

Source
https://ubuntu.com/security/CVE-2022-2211
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2022/UBUNTU-CVE-2022-2211.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2022-2211
Related
Published
2022-07-12T21:15:00Z
Modified
2024-10-15T14:09:45Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching keys in the get_keys() function. This flaw leads to a denial of service, either by mistake or malicious actor.

References

Affected packages

Ubuntu:Pro:16.04:LTS / libguestfs

Package

Name
libguestfs
Purl
pkg:deb/ubuntu/libguestfs?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:1.*

1:1.28.12-1ubuntu2
1:1.28.12-1ubuntu3
1:1.30.6-1ubuntu1
1:1.30.6-1ubuntu2
1:1.32.2-3ubuntu1
1:1.32.2-4ubuntu1
1:1.32.2-4ubuntu2
1:1.32.2-4ubuntu2.2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / libguestfs

Package

Name
libguestfs
Purl
pkg:deb/ubuntu/libguestfs?arch=src?distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:1.*

1:1.34.6-7ubuntu1
1:1.36.10-1ubuntu2
1:1.36.10-1ubuntu3
1:1.36.11-1ubuntu1
1:1.36.13-1ubuntu2
1:1.36.13-1ubuntu3
1:1.36.13-1ubuntu3.1
1:1.36.13-1ubuntu3.2
1:1.36.13-1ubuntu3.3

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / libguestfs

Package

Name
libguestfs
Purl
pkg:deb/ubuntu/libguestfs?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:1.*

1:1.40.2-2ubuntu6
1:1.40.2-2ubuntu8
1:1.40.2-7ubuntu3
1:1.40.2-7ubuntu4
1:1.40.2-7ubuntu5

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / guestfs-tools

Package

Name
guestfs-tools
Purl
pkg:deb/ubuntu/guestfs-tools?arch=src?distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.46.1-4ubuntu2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / libguestfs

Package

Name
libguestfs
Purl
pkg:deb/ubuntu/libguestfs?arch=src?distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.46.2-10ubuntu3

Affected versions

1:1.*

1:1.44.1-1ubuntu6
1:1.44.1-1ubuntu9
1:1.44.1-1ubuntu10
1:1.44.1-1ubuntu11
1:1.46.2-10ubuntu2

Ecosystem specific

{
    "availability": "No subscription required",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "gir1.2-guestfs-1.0"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "golang-guestfs-dev"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "guestfish"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "guestfish-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "guestfsd"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "guestfsd-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "guestmount"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "guestmount-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-dev"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-gfs2"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-gobject-1.0-0"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-gobject-1.0-0-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-gobject-dev"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-hfsplus"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-java"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-java-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-jfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-nilfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-ocaml"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-ocaml-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-ocaml-dev"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-perl"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-perl-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-reiserfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-rescue"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-rsync"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-tools"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-tools-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-xfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs-zfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs0"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "libguestfs0-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "lua-guestfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "lua-guestfs-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "php-guestfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "php-guestfs-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "python3-guestfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "python3-guestfs-dbgsym"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "ruby-guestfs"
        },
        {
            "binary_version": "1:1.46.2-10ubuntu3",
            "binary_name": "ruby-guestfs-dbgsym"
        }
    ]
}

Ubuntu:24.10 / guestfs-tools

Package

Name
guestfs-tools
Purl
pkg:deb/ubuntu/guestfs-tools?arch=src?distro=oracular

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.52.0-2ubuntu5
1.52.0-2ubuntu6
1.52.0-2ubuntu7
1.52.0-3ubuntu1
1.52.0-3ubuntu2
1.52.0-4ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.04:LTS / guestfs-tools

Package

Name
guestfs-tools
Purl
pkg:deb/ubuntu/guestfs-tools?arch=src?distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.50.1-4ubuntu1
1.52.0-1ubuntu1
1.52.0-2ubuntu1
1.52.0-2ubuntu4
1.52.0-2ubuntu5

Ecosystem specific

{
    "ubuntu_priority": "medium"
}