Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-3464

Опубликовано: 14 нояб. 2019
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2019-3464: virt-manager security, bug fix, and enhancement update (LOW)

[2.2.1-2.0.1]

  • Add OL release support to virt-install for OL KVM guest creation [Orabug: 26135782]

[2.2.1-2]

  • man: virt-install: Fix a couple of launchSecurity related typos (rhbz#1741846)

[2.2.1-1]

  • Rebased to virt-manager-2.2.1 (rhbz#1726535)
  • The rebase also fixes the following bugs: rhbz#1727881, rhbz#1724287, rhbz#1727811
  • spec: add gtksourceview3 dependency introduced by upstream (rhbz#1722820)
  • guest: fix warning message when machine type is changed for secure boot (rhbz#1727811)

[2.2.0-2]

  • xmleditor: Handle gtksourceview3 as well as gtksourceview4 (rhbz#1722820)
  • xmleditor: Fix the gtksource version checking (rhbz#1722820)
  • spec: add gtksourceview3 dependency introduced by upstream (rhbz#1722820)

[2.2.0-1]

  • Rebased to virt-manager-2.2.0 (rhbz#1721001)
  • The rebase also fixes the following bugs: rhbz#1718065, rhbz#1714304, rhbz#1709857, rhbz#1707379, rhbz#1700354 rhbz#1692489, rhbz#1690687, rhbz#1690685, rhbz#1683609, rhbz#1679018 rhbz#1677019, rhbz#1671599, rhbz#1667025, rhbz#1666597, rhbz#1663430 rhbz#1661867, rhbz#1660467, rhbz#1660123, rhbz#1659354, rhbz#1658511 rhbz#1648939, rhbz#1599139, rhbz#1508147, rhbz#1501608
  • spec: add build dependencies that are now required for build (rhbz#1721001)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

virt-install

2.2.1-2.0.1.el8

virt-manager-common

2.2.1-2.0.1.el8

Oracle Linux x86_64

virt-install

2.2.1-2.0.1.el8

virt-manager

2.2.1-2.0.1.el8

virt-manager-common

2.2.1-2.0.1.el8

Связанные CVE

Связанные уязвимости

CVSS3: 3.2
ubuntu
больше 6 лет назад

Virt-install(1) utility used to provision new virtual machines has introduced an option '--unattended' to create VMs without user interaction. This option accepts guest VM password as command line arguments, thus leaking them to others users on the system via process listing. It was introduced recently in the virt-manager v2.2.0 release.

CVSS3: 2.8
redhat
больше 6 лет назад

Virt-install(1) utility used to provision new virtual machines has introduced an option '--unattended' to create VMs without user interaction. This option accepts guest VM password as command line arguments, thus leaking them to others users on the system via process listing. It was introduced recently in the virt-manager v2.2.0 release.

CVSS3: 3.2
nvd
больше 6 лет назад

Virt-install(1) utility used to provision new virtual machines has introduced an option '--unattended' to create VMs without user interaction. This option accepts guest VM password as command line arguments, thus leaking them to others users on the system via process listing. It was introduced recently in the virt-manager v2.2.0 release.

CVSS3: 3.2
debian
больше 6 лет назад

Virt-install(1) utility used to provision new virtual machines has int ...

CVSS3: 3.3
github
больше 3 лет назад

Virt-install(1) utility used to provision new virtual machines has introduced an option '--unattended' to create VMs without user interaction. This option accepts guest VM password as command line arguments, thus leaking them to others users on the system via process listing. It was introduced recently in the virt-manager v2.2.0 release.