Lucene search

K
oraclelinuxOracleLinuxELSA-2024-4757
HistoryJul 23, 2024 - 12:00 a.m.

libvirt security update

2024-07-2300:00:00
linux.oracle.com
1
libvirt update
version 10.0.0-6.6.0.1
vmx
qemu
cve-2024-4418

CVSS3

6.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7

Confidence

Low

EPSS

0

Percentile

16.3%

[10.0.0-6.6.0.1]

  • Set SOURCE_DATE_EPOCH from changelog [Orabug: 32019554]
    [10.0.0-6.6.el9_4]
  • vmx: Do not require DVS Port ID (RHEL-45520)
  • vmx: Do not require all ID data for VMWare Distributed Switch (RHEL-46595)
    [10.0.0-6.5.el9_4]
  • qemu: Fix migration with disabled vmx-* CPU features (RHEL-44984)
    [10.0.0-6.4.el9_4]
  • rpc: ensure temporary GSource is removed from client event loop (CVE-2024-4418)

CVSS3

6.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7

Confidence

Low

EPSS

0

Percentile

16.3%