Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2018-0030

Опубликовано: 04 янв. 2018
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2018-0030: libvirt security update (IMPORTANT)

[0.10.2-62.0.1.el6_9.1]

  • Replace docs/et.png in tarball with blank image

[0.10.2-62.el6_9.1]

  • util: Implement virFileReadHeaderFD (CVE-2017-5715)
  • util: add virFileReadHeaderQuiet wrapper around virFileReadHeaderFD (CVE-2017-5715)
  • util: introduce virHostCPUGetMicrocodeVersion (CVE-2017-5715)
  • conf: include x86 microcode version in virsh capabiltiies (CVE-2017-5715)
  • cpu: add CPU features and model for indirect branch prediction protection (CVE-2017-5715)

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

libvirt

0.10.2-62.0.1.el6_9.1

libvirt-client

0.10.2-62.0.1.el6_9.1

libvirt-devel

0.10.2-62.0.1.el6_9.1

libvirt-lock-sanlock

0.10.2-62.0.1.el6_9.1

libvirt-python

0.10.2-62.0.1.el6_9.1

Oracle Linux i686

libvirt

0.10.2-62.0.1.el6_9.1

libvirt-client

0.10.2-62.0.1.el6_9.1

libvirt-devel

0.10.2-62.0.1.el6_9.1

libvirt-python

0.10.2-62.0.1.el6_9.1

Связанные CVE

Связанные уязвимости

CVSS3: 5.6
ubuntu
больше 7 лет назад

Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

CVSS3: 5.6
redhat
больше 7 лет назад

Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

CVSS3: 5.6
nvd
больше 7 лет назад

Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

CVSS3: 5.6
debian
больше 7 лет назад

Systems with microprocessors utilizing speculative execution and indir ...

suse-cvrf
почти 7 лет назад

Security update for kernel-firmware