Lucene search

K
redhatRedHatRHSA-2024:0404
HistoryJan 24, 2024 - 2:40 p.m.

(RHSA-2024:0404) Important: virt:rhel and virt-devel:rhel security update

2024-01-2414:40:17
access.redhat.com
15
kvm rhel virtualization qemu security buffer overflow ntfs-3g cve.

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.8%

Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.

Security Fix(es):

  • QEMU: VNC: improper I/O watch removal in TLS handshake can lead to remote unauthenticated denial of service (CVE-2023-3354)

  • QEMU: hcd-ehci: DMA reentrancy issue leads to use-after-free (CVE-2021-3750)

  • QEMU: e1000e: heap use-after-free in e1000e_write_packet_to_guest() (CVE-2023-3019)

  • NTFS-3G: buffer overflow issue in NTFS-3G can cause code execution via crafted metadata in an NTFS image (CVE-2022-40284)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

OSVersionArchitecturePackageVersionFilename
RedHatanyaarch64libguestfs-devel< 1.44.0-5.module+el8.6.0+14480+c0a3aa0flibguestfs-devel-1.44.0-5.module+el8.6.0+14480+c0a3aa0f.aarch64.rpm
RedHatanyppc64lesupermin< 5.2.1-1.module+el8.6.0+14480+c0a3aa0fsupermin-5.2.1-1.module+el8.6.0+14480+c0a3aa0f.ppc64le.rpm
RedHatanys390xlibvirt-wireshark-debuginfo< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-wireshark-debuginfo-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.s390x.rpm
RedHatanys390xlibvirt-daemon-driver-storage-iscsi-direct< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-daemon-driver-storage-iscsi-direct-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.s390x.rpm
RedHatanyx86_64libvirt-daemon-driver-storage-disk-debuginfo< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-daemon-driver-storage-disk-debuginfo-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.x86_64.rpm
RedHatanyaarch64libvirt-daemon-driver-nodedev< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-daemon-driver-nodedev-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.aarch64.rpm
RedHatanyx86_64libnbd-debuginfo< 1.6.0-5.module+el8.6.0+14480+c0a3aa0flibnbd-debuginfo-1.6.0-5.module+el8.6.0+14480+c0a3aa0f.x86_64.rpm
RedHatanyppc64lelibvirt-client-debuginfo< 8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3libvirt-client-debuginfo-8.0.0-5.10.module+el8.6.0+18949+ba4ca8a3.ppc64le.rpm
RedHatanyaarch64libguestfs-java< 1.44.0-5.module+el8.6.0+14480+c0a3aa0flibguestfs-java-1.44.0-5.module+el8.6.0+14480+c0a3aa0f.aarch64.rpm
RedHatanys390xqemu-kvm-block-rbd-debuginfo< 6.2.0-11.module+el8.6.0+20793+2184cc28.11qemu-kvm-block-rbd-debuginfo-6.2.0-11.module+el8.6.0+20793+2184cc28.11.s390x.rpm
Rows per page:
1-10 of 9151