Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-5238

Опубликовано: 22 дек. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-5238: virt:ol and virt-devel:rhel security update (LOW)

qemu-kvm [4.2.0-59.el8_5]

  • kvm-hw-scsi-scsi-disk-MODE_PAGE_ALLS-not-allowed-in-MODE.patch [bz#2025605]
  • kvm-e1000-fix-tx-re-entrancy-problem.patch [bz#2025011]
  • Resolves: bz#2025605 (CVE-2021-3930 virt:rhel/qemu-kvm: QEMU: off-by-one error in mode_sense_page() in hw/scsi/scsi-disk.c [rhel-8.5.0.z])
  • Resolves: bz#2025011 (CVE-2021-20257 virt:rhel/qemu-kvm: QEMU: net: e1000: infinite loop while processing transmit descriptors [rhel-8.5.0.z])

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module virt:ol is enabled

hivex

1.3.18-21.module+el8.5.0+20363+3abb8f5b

hivex-devel

1.3.18-21.module+el8.5.0+20363+3abb8f5b

libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-bash-completion

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-benchmarking

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-gfs2

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-gobject

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-gobject-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-inspect-icons

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-java

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-java-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-javadoc

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-man-pages-ja

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-man-pages-uk

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-rescue

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-rsync

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-tools

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-tools-c

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-winsupport

8.2-1.module+el8.3.0+7860+a7792d29

libguestfs-xfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libiscsi

1.18.0-8.module+el8.3.0+7860+a7792d29

libiscsi-devel

1.18.0-8.module+el8.3.0+7860+a7792d29

libiscsi-utils

1.18.0-8.module+el8.3.0+7860+a7792d29

libnbd

1.2.2-1.module+el8.3.0+7860+a7792d29

libnbd-devel

1.2.2-1.module+el8.3.0+7860+a7792d29

libvirt

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-admin

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-bash-completion

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-client

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-config-network

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-config-nwfilter

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-interface

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-network

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-nodedev

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-nwfilter

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-qemu

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-secret

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-core

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-disk

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-gluster

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-iscsi

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-iscsi-direct

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-logical

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-mpath

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-rbd

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-driver-storage-scsi

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-daemon-kvm

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-dbus

1.3.0-2.module+el8.3.0+7860+a7792d29

libvirt-devel

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-docs

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-libs

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-lock-sanlock

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

libvirt-nss

6.0.0-37.0.1.module+el8.5.0+20363+3abb8f5b

lua-guestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

nbdfuse

1.2.2-1.module+el8.3.0+7860+a7792d29

nbdkit

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-bash-completion

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-basic-filters

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-basic-plugins

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-curl-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-devel

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-example-plugins

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-gzip-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-linuxdisk-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-python-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-server

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-ssh-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-xz-filter

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

netcf

0.2.8-12.module+el8.3.0+7860+a7792d29

netcf-devel

0.2.8-12.module+el8.3.0+7860+a7792d29

netcf-libs

0.2.8-12.module+el8.3.0+7860+a7792d29

ocaml-libnbd

1.2.2-1.module+el8.3.0+7860+a7792d29

ocaml-libnbd-devel

1.2.2-1.module+el8.3.0+7860+a7792d29

perl-Sys-Guestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

perl-Sys-Virt

6.0.0-1.module+el8.3.0+7860+a7792d29

perl-hivex

1.3.18-21.module+el8.5.0+20363+3abb8f5b

python3-hivex

1.3.18-21.module+el8.5.0+20363+3abb8f5b

python3-libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

python3-libnbd

1.2.2-1.module+el8.3.0+7860+a7792d29

python3-libvirt

6.0.0-1.module+el8.3.0+7860+a7792d29

qemu-guest-agent

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-img

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-curl

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-iscsi

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-rbd

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-ssh

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-common

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-core

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

ruby-hivex

1.3.18-21.module+el8.5.0+20363+3abb8f5b

ruby-libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

supermin

5.1.19-10.module+el8.3.0+7860+a7792d29

supermin-devel

5.1.19-10.module+el8.3.0+7860+a7792d29

virt-dib

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

Module virt-devel:ol is enabled

ocaml-hivex

1.3.18-21.module+el8.5.0+20363+3abb8f5b

ocaml-hivex-devel

1.3.18-21.module+el8.5.0+20363+3abb8f5b

ocaml-libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

ocaml-libguestfs-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

qemu-kvm-tests

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

Oracle Linux x86_64

Module virt:ol is enabled

hivex

1.3.18-21.module+el8.5.0+20365+3abb8f5b

hivex-devel

1.3.18-21.module+el8.5.0+20365+3abb8f5b

libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-bash-completion

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-benchmarking

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-gfs2

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-gobject

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-gobject-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-inspect-icons

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-java

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-java-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-javadoc

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-man-pages-ja

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-man-pages-uk

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-rescue

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-rsync

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-tools

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-tools-c

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libguestfs-winsupport

8.2-1.module+el8.3.0+7860+a7792d29

libguestfs-xfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

libiscsi

1.18.0-8.module+el8.3.0+7860+a7792d29

libiscsi-devel

1.18.0-8.module+el8.3.0+7860+a7792d29

libiscsi-utils

1.18.0-8.module+el8.3.0+7860+a7792d29

libnbd

1.2.2-1.module+el8.3.0+7860+a7792d29

libnbd-devel

1.2.2-1.module+el8.3.0+7860+a7792d29

libvirt

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-admin

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-bash-completion

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-client

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-config-network

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-config-nwfilter

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-interface

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-network

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-nodedev

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-nwfilter

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-qemu

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-secret

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-core

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-disk

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-gluster

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-iscsi

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-iscsi-direct

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-logical

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-mpath

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-rbd

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-driver-storage-scsi

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-daemon-kvm

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-dbus

1.3.0-2.module+el8.3.0+7860+a7792d29

libvirt-devel

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-docs

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-libs

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-lock-sanlock

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

libvirt-nss

6.0.0-37.0.1.module+el8.5.0+20365+3abb8f5b

lua-guestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

nbdfuse

1.2.2-1.module+el8.3.0+7860+a7792d29

nbdkit

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-bash-completion

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-basic-filters

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-basic-plugins

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-curl-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-devel

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-example-plugins

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-gzip-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-linuxdisk-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-python-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-server

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-ssh-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-vddk-plugin

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

nbdkit-xz-filter

1.16.2-4.0.1.module+el8.3.0+7860+a7792d29

netcf

0.2.8-12.module+el8.3.0+7860+a7792d29

netcf-devel

0.2.8-12.module+el8.3.0+7860+a7792d29

netcf-libs

0.2.8-12.module+el8.3.0+7860+a7792d29

ocaml-libnbd

1.2.2-1.module+el8.3.0+7860+a7792d29

ocaml-libnbd-devel

1.2.2-1.module+el8.3.0+7860+a7792d29

perl-Sys-Guestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

perl-Sys-Virt

6.0.0-1.module+el8.3.0+7860+a7792d29

perl-hivex

1.3.18-21.module+el8.5.0+20365+3abb8f5b

python3-hivex

1.3.18-21.module+el8.5.0+20365+3abb8f5b

python3-libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

python3-libnbd

1.2.2-1.module+el8.3.0+7860+a7792d29

python3-libvirt

6.0.0-1.module+el8.3.0+7860+a7792d29

qemu-guest-agent

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-img

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-curl

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-gluster

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-iscsi

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-rbd

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-block-ssh

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-common

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

qemu-kvm-core

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

ruby-hivex

1.3.18-21.module+el8.5.0+20365+3abb8f5b

ruby-libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

seabios

1.13.0-2.module+el8.3.0+7860+a7792d29

seabios-bin

1.13.0-2.module+el8.3.0+7860+a7792d29

seavgabios-bin

1.13.0-2.module+el8.3.0+7860+a7792d29

sgabios

0.20170427git-3.module+el8.3.0+7860+a7792d29

sgabios-bin

0.20170427git-3.module+el8.3.0+7860+a7792d29

supermin

5.1.19-10.module+el8.3.0+7860+a7792d29

supermin-devel

5.1.19-10.module+el8.3.0+7860+a7792d29

virt-dib

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

virt-v2v

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

Module virt-devel:ol is enabled

ocaml-hivex

1.3.18-21.module+el8.5.0+20365+3abb8f5b

ocaml-hivex-devel

1.3.18-21.module+el8.5.0+20365+3abb8f5b

ocaml-libguestfs

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

ocaml-libguestfs-devel

1.40.2-28.0.1.module+el8.5.0+20363+3abb8f5b

qemu-kvm-tests

4.2.0-59.module+el8.5.0+20460+2eddfbf5.1

Связанные CVE

Связанные уязвимости

rocky
больше 3 лет назад

Low: virt:rhel and virt-devel:rhel security update

oracle-oval
больше 3 лет назад

ELSA-2021-9638: qemu security update (IMPORTANT)

CVSS3: 6.5
ubuntu
больше 3 лет назад

An off-by-one error was found in the SCSI device emulation in QEMU. It could occur while processing MODE SELECT commands in mode_sense_page() if the 'page' argument was set to MODE_PAGE_ALLS (0x3f). A malicious guest could use this flaw to potentially crash QEMU, resulting in a denial of service condition.

CVSS3: 3.2
redhat
больше 4 лет назад

An off-by-one error was found in the SCSI device emulation in QEMU. It could occur while processing MODE SELECT commands in mode_sense_page() if the 'page' argument was set to MODE_PAGE_ALLS (0x3f). A malicious guest could use this flaw to potentially crash QEMU, resulting in a denial of service condition.

CVSS3: 6.5
nvd
больше 3 лет назад

An off-by-one error was found in the SCSI device emulation in QEMU. It could occur while processing MODE SELECT commands in mode_sense_page() if the 'page' argument was set to MODE_PAGE_ALLS (0x3f). A malicious guest could use this flaw to potentially crash QEMU, resulting in a denial of service condition.