Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:7958

Опубликовано: 15 нояб. 2022
Источник: rocky
Оценка: Low

Описание

Low: libguestfs security, bug fix, and enhancement update

The libguestfs packages contain a library used for accessing and modifying virtual machine disk images.

Security Fix(es):

  • libguestfs: Buffer overflow in get_keys leads to DoS (CVE-2022-2211)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 9.1 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
libguestfsx86_642.el9libguestfs-1.48.4-2.el9.x86_64.rpm
libguestfs-appliancex86_642.el9libguestfs-appliance-1.48.4-2.el9.x86_64.rpm
libguestfs-bash-completionnoarch2.el9libguestfs-bash-completion-1.48.4-2.el9.noarch.rpm
libguestfs-inspect-iconsnoarch2.el9libguestfs-inspect-icons-1.48.4-2.el9.noarch.rpm
libguestfs-rescuex86_642.el9libguestfs-rescue-1.48.4-2.el9.x86_64.rpm
libguestfs-rsyncx86_642.el9libguestfs-rsync-1.48.4-2.el9.x86_64.rpm
libguestfs-xfsx86_642.el9libguestfs-xfs-1.48.4-2.el9.x86_64.rpm
perl-Sys-Guestfsx86_642.el9perl-Sys-Guestfs-1.48.4-2.el9.x86_64.rpm
python3-libguestfsx86_642.el9python3-libguestfs-1.48.4-2.el9.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 3 года назад

A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching keys in the get_keys() function. This flaw leads to a denial of service, either by mistake or malicious actor.

CVSS3: 5.5
redhat
почти 3 года назад

A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching keys in the get_keys() function. This flaw leads to a denial of service, either by mistake or malicious actor.

CVSS3: 6.5
nvd
почти 3 года назад

A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching keys in the get_keys() function. This flaw leads to a denial of service, either by mistake or malicious actor.

CVSS3: 6.5
debian
почти 3 года назад

A vulnerability was found in libguestfs. This issue occurs while calcu ...

suse-cvrf
больше 2 лет назад

Security update for virt-v2v