Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2013-0127

Опубликовано: 11 янв. 2013
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2013-0127: libvirt security and bug fix update (LOW)

[0.8.2-29.0.1.el5]

  • Replaced docs/et.png in tarball
  • remove virshtest from test cases to fix failure in mock build root

[libvirt-0.8.2-29.el5]

  • Coverity pointed out an use after free in the fix for 816601 (rhbz#772848)

[libvirt-0.8.2-28.el5]

  • qemu: Rollback on used USB devices (rhbz#816601)
  • qemu: Don't delete USB device on failed qemuPrepareHostdevUSBDevices (rhbz#816601)

[libvirt-0.8.2-27.el5]

  • qemu: Delete USB devices used by domain on stop (rhbz#816601)

[libvirt-0.8.2-26.el5]

  • Fix off-by-1 in virFileAbsPath. (rhbz#680289)
  • Fix autostart flag when loading running domains (rhbz#675319)
  • node_device: Avoid null dereference on error (rhbz#772848)
  • util: Avoid null deref on qcowXGetBackingStore (rhbz#772848)
  • docs: Improve virsh domxml-*-native command docs (rhbz#783001)
  • Clarify the purpose of domxml-from-native (rhbz#783001)
  • qemu: Add return value check (rhbz#772821)
  • storage: Avoid mishandling backing store > 2GB (rhbz#772821)
  • util: Avoid PATH_MAX-sized array (rhbz#816601)
  • qemu: Keep list of USB devices attached to domains (rhbz#816601)
  • qemu: Don't leak temporary list of USB devices (rhbz#816601)
  • usb: Create functions to search usb device accurately (rhbz#816601)
  • qemu: Call usb search function for hostdev initialization and hotplug (rhbz#816601)
  • usb: Fix crash when failing to attach a second usb device (rhbz#816601)

Обновленные пакеты

Oracle Linux 5

Oracle Linux ia64

libvirt

0.8.2-29.0.1.el5

libvirt-devel

0.8.2-29.0.1.el5

libvirt-python

0.8.2-29.0.1.el5

Oracle Linux x86_64

libvirt

0.8.2-29.0.1.el5

libvirt-devel

0.8.2-29.0.1.el5

libvirt-python

0.8.2-29.0.1.el5

Oracle Linux i386

libvirt

0.8.2-29.0.1.el5

libvirt-devel

0.8.2-29.0.1.el5

libvirt-python

0.8.2-29.0.1.el5

Связанные CVE

Связанные уязвимости

ubuntu
около 13 лет назад

libvirt, possibly before 0.9.12, does not properly assign USB devices to virtual machines when multiple devices have the same vendor and product ID, which might cause the wrong device to be associated with a guest and might allow local users to access unintended USB devices.

redhat
больше 13 лет назад

libvirt, possibly before 0.9.12, does not properly assign USB devices to virtual machines when multiple devices have the same vendor and product ID, which might cause the wrong device to be associated with a guest and might allow local users to access unintended USB devices.

nvd
около 13 лет назад

libvirt, possibly before 0.9.12, does not properly assign USB devices to virtual machines when multiple devices have the same vendor and product ID, which might cause the wrong device to be associated with a guest and might allow local users to access unintended USB devices.

debian
около 13 лет назад

libvirt, possibly before 0.9.12, does not properly assign USB devices ...

github
больше 3 лет назад

libvirt, possibly before 0.9.12, does not properly assign USB devices to virtual machines when multiple devices have the same vendor and product ID, which might cause the wrong device to be associated with a guest and might allow local users to access unintended USB devices.