UbuntuUpdates.org

Package "libvirt"

Name: libvirt

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Programs for the libvirt library
  • Virtualization daemon
  • Libvirt daemon configuration files (default network)
  • Libvirt daemon configuration files (default network filters)

Latest version: 9.0.0-2ubuntu1.2
Release: lunar (23.04)
Level: updates
Repository: main

Links



Other versions of "libvirt" in Lunar

Repository Area Version
base main 9.0.0-2ubuntu1
base universe 9.0.0-2ubuntu1
security main 9.0.0-2ubuntu1.2
security universe 9.0.0-2ubuntu1.2
updates universe 9.0.0-2ubuntu1.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 9.0.0-2ubuntu1.2 2023-07-26 18:06:55 UTC

  libvirt (9.0.0-2ubuntu1.2) lunar-security; urgency=medium

  * SECURITY UPDATE: denial of service via improper locking
    - debian/patches/CVE-2023-3750.patch: fix returning of locked objects
      from virStoragePoolObjListSearch in src/conf/virstorageobj.c.
    - CVE-2023-3750

 -- Marc Deslauriers <email address hidden> Tue, 25 Jul 2023 09:11:54 -0400

Source diff to previous version
CVE-2023-3750 A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and de

Version: 9.0.0-2ubuntu1.1 2023-05-31 14:07:11 UTC

  libvirt (9.0.0-2ubuntu1.1) lunar-security; urgency=medium

  * SECURITY UPDATE: DoS via memleak in SR-IOV PCI device capabilities
    - debian/patches/CVE-2023-2700.patch: resolve leak in
      virPCIVirtualFunctionList cleanup in src/util/virpci.c.
    - CVE-2023-2700

 -- Marc Deslauriers <email address hidden> Fri, 26 May 2023 10:05:18 -0400

CVE-2023-2700 A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory



About   -   Send Feedback to @ubuntu_updates