Описание
Security update for virt-v2v
This update for virt-v2v fixes the following issues:
- CVE-2022-2211: Fixed buffer overflow in get_keys (bsc#1201064).
Список пакетов
SUSE Linux Enterprise Module for Server Applications 15 SP4
virt-v2v-1.44.2-150400.3.3.1
virt-v2v-bash-completion-1.44.2-150400.3.3.1
virt-v2v-man-pages-ja-1.44.2-150400.3.3.1
virt-v2v-man-pages-uk-1.44.2-150400.3.3.1
openSUSE Leap 15.4
virt-v2v-1.44.2-150400.3.3.1
virt-v2v-bash-completion-1.44.2-150400.3.3.1
virt-v2v-man-pages-ja-1.44.2-150400.3.3.1
virt-v2v-man-pages-uk-1.44.2-150400.3.3.1
Ссылки
- Link for SUSE-SU-2022:4308-1
- E-Mail link for SUSE-SU-2022:4308-1
- SUSE Security Ratings
- SUSE Bug 1201064
- SUSE CVE CVE-2022-2211 page
Описание
A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching keys in the get_keys() function. This flaw leads to a denial of service, either by mistake or malicious actor.
Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP4:virt-v2v-1.44.2-150400.3.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP4:virt-v2v-bash-completion-1.44.2-150400.3.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP4:virt-v2v-man-pages-ja-1.44.2-150400.3.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP4:virt-v2v-man-pages-uk-1.44.2-150400.3.3.1
Ссылки
- CVE-2022-2211
- SUSE Bug 1201064