Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:4624-1

Опубликовано: 01 дек. 2023
Источник: suse-cvrf

Описание

Security update for kubevirt, virt-api-container, virt-controller-container, virt-exportproxy-container, virt-exportserver-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator-container, virt-pr-helper-container

This update for kubevirt, virt-api-container, virt-controller-container, virt-exportproxy-container, virt-exportserver-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator-container, virt-pr-helper-container fixes the following issues:

Update to version 1.1.0

Update to version 1.0.1

Список пакетов

SUSE Linux Enterprise Micro 5.5
kubevirt-manifests-1.1.0-150500.8.6.1
kubevirt-virtctl-1.1.0-150500.8.6.1
SUSE Linux Enterprise Module for Containers 15 SP5
kubevirt-manifests-1.1.0-150500.8.6.1
kubevirt-virtctl-1.1.0-150500.8.6.1
openSUSE Leap 15.5
kubevirt-container-disk-1.1.0-150500.8.6.1
kubevirt-manifests-1.1.0-150500.8.6.1
kubevirt-tests-1.1.0-150500.8.6.1
kubevirt-virt-api-1.1.0-150500.8.6.1
kubevirt-virt-controller-1.1.0-150500.8.6.1
kubevirt-virt-exportproxy-1.1.0-150500.8.6.1
kubevirt-virt-exportserver-1.1.0-150500.8.6.1
kubevirt-virt-handler-1.1.0-150500.8.6.1
kubevirt-virt-launcher-1.1.0-150500.8.6.1
kubevirt-virt-operator-1.1.0-150500.8.6.1
kubevirt-virtctl-1.1.0-150500.8.6.1
obs-service-kubevirt_containers_meta-1.1.0-150500.8.6.1

Описание

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.


Затронутые продукты
SUSE Linux Enterprise Micro 5.5:kubevirt-manifests-1.1.0-150500.8.6.1
SUSE Linux Enterprise Micro 5.5:kubevirt-virtctl-1.1.0-150500.8.6.1
SUSE Linux Enterprise Module for Containers 15 SP5:kubevirt-manifests-1.1.0-150500.8.6.1
SUSE Linux Enterprise Module for Containers 15 SP5:kubevirt-virtctl-1.1.0-150500.8.6.1

Ссылки