Package "libvirt-clients-qemu-hwe"
| Name: |
libvirt-clients-qemu-hwe
|
Description: |
virtualization library - clients (QEMU specific)
|
| Latest version: |
12.0.0-1ubuntu5.5 |
| Release: |
resolute (26.04) |
| Level: |
security |
| Repository: |
universe |
| Head package: |
libvirt-hwe |
| Homepage: |
https://libvirt.org/ |
Links
Download "libvirt-clients-qemu-hwe"
Other versions of "libvirt-clients-qemu-hwe" in Resolute
Changelog
|
libvirt-hwe (12.0.0-1ubuntu5.5) resolute-security; urgency=medium
* SECURITY UPDATE: Privileged arbitrary command execution in network driver.
- debian/patches/CVE-2026-61477-1.patch: Reject line breaks in DNS TXT
record values in src/conf/network_conf.c
- debian/patches/CVE-2026-61477-2.patch: Reject line breaks in DNS SRV
domain and target in src/conf/network_conf.c
- debian/patches/CVE-2026-61477-3.patch: Reject line breaks before
writing dnsmasq DNS config in src/network/bridge_driver.c
- debian/patches/CVE-2026-61477-4.patch: Add negative tests that feed
XML numeric character references into the DNS TXT value and SRV
domain/target attributes.
- CVE-2026-61477
* SECURITY UPDATE: Denial of service in XML parsing
- debian/patches/CVE-2026-61478.patch: Fix crash searching for XML context
string on errors in src/util/virxml.c
- CVE-2026-61478
* SECURITY UPDATE: Privilege escalation in Virtual TPM
- debian/patches/CVE-2026-63622.patch: Do not follow symlinks in
src/util/virfile.c
- CVE-2026-63622
* SECURITY UPDATE: Information disclosure in image cloning/conversion
- debian/patches/CVE-2026-63623.patch: Create images with a private umask
during qemu-img create/convert in src/storage/storage_util.c
- CVE-2026-63623
* SECURITY UPDATE: integer overflow in NodeGetFreePages RPC handler
- debian/patches/CVE-2026-18917.patch: remote: Fix integer overflow in RPC
handler for virNodeGetFreePages in src/remote/remote_daemon_dispatch.c.
- CVE-2026-18917
* SECURITY UPDATE: symlink-following flaw
- debian/patches/CVE-2026-77159.patch: qemu: tpm: Avoid following symlinks
when chown'ing log file in src/qemu/qemu_tpm.c.
- CVE-2026-77159
-- Marc Deslauriers Wed, 23 Sep 2026 14:46:22 -0400
|
| CVE-2026-61477 |
An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline characters from DNS TXT recor |
| CVE-2026-63622 |
A flaw was found in libvirt. A local attacker, specifically a process running as the confined `swtpm` user, could exploit a symlink-following vulnera |
| CVE-2026-63623 |
A flaw was found in libvirt. During storage volume clone or convert operations, newly created volume images were temporarily world-readable. This was |
| CVE-2026-18917 |
A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow vulnerability in the NodeGetFreePages RPC handler. This fla |
| CVE-2026-77159 |
A symlink-following flaw was found in libvirt's qemuTPMEmulatorPrepareHost() function. The function uses a path-based chown() on the swtpm logfile wi |
|
About
-
Send Feedback to @ubuntu_updates