Lucene search

K
redhatRedHatRHSA-2023:4799
HistoryAug 29, 2023 - 7:22 a.m.

(RHSA-2023:4799) Moderate: virt:rhel and virt-devel:rhel security and bug fix update

2023-08-2907:22:43
access.redhat.com
23
libvirt
security fix
bug fix
virt:rhel
virt-devel:rhel
memory leak
virtio-scsi
linux

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

0.0004 Low

EPSS

Percentile

5.1%

Libvirt is a C toolkit to interact with the virtualization capabilities of recent versions of Linux (and other OSes).

Security Fix(es):

  • libvirt: Memory leak in virPCIVirtualFunctionList cleanup (CVE-2023-2700)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • “No bootable device” with OS boot disk interface VirtIO-SCSI and with more than 9 VirtIO disks. (BZ#2228486)
OSVersionArchitecturePackageVersionFilename
RedHatanyppc64leqemu-kvm-block-curl< 6.2.0-11.module+el8.6.0+18167+43cf40f3.8qemu-kvm-block-curl-6.2.0-11.module+el8.6.0+18167+43cf40f3.8.ppc64le.rpm
RedHatanyx86_64netcf-libs< 0.2.8-12.module+el8.6.0+14480+c0a3aa0fnetcf-libs-0.2.8-12.module+el8.6.0+14480+c0a3aa0f.x86_64.rpm
RedHatanyaarch64libvirt-daemon-driver-storage-iscsi-debuginfo< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-daemon-driver-storage-iscsi-debuginfo-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.aarch64.rpm
RedHatanyppc64lelibvirt-daemon-kvm< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-daemon-kvm-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.ppc64le.rpm
RedHatanys390xhivex-debuginfo< 1.3.18-23.module+el8.6.0+14480+c0a3aa0fhivex-debuginfo-1.3.18-23.module+el8.6.0+14480+c0a3aa0f.s390x.rpm
RedHatanyppc64lenbdkit-debuginfo< 1.24.0-4.module+el8.6.0+14480+c0a3aa0fnbdkit-debuginfo-1.24.0-4.module+el8.6.0+14480+c0a3aa0f.ppc64le.rpm
RedHatanys390xswtpm-tools-pkcs11< 0.7.0-3.20211109gitb79fd91.module+el8.6.0+16156+d5629340swtpm-tools-pkcs11-0.7.0-3.20211109gitb79fd91.module+el8.6.0+16156+d5629340.s390x.rpm
RedHatanyppc64leruby-libguestfs-debuginfo< 1.44.0-5.module+el8.6.0+14480+c0a3aa0fruby-libguestfs-debuginfo-1.44.0-5.module+el8.6.0+14480+c0a3aa0f.ppc64le.rpm
RedHatanyi686libnbd-debuginfo< 1.6.0-5.module+el8.6.0+14480+c0a3aa0flibnbd-debuginfo-1.6.0-5.module+el8.6.0+14480+c0a3aa0f.i686.rpm
RedHatanyi686libvirt-daemon-driver-storage-scsi< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-daemon-driver-storage-scsi-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.i686.rpm
Rows per page:
1-10 of 9151

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

0.0004 Low

EPSS

Percentile

5.1%