Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

Fedora 34: FEDORA-2021-bc6ad65da0 Critical: Libvirt Insecure Label

fedora
Calendar Grey July 12, 2021
Dist Fedora Esm H88
The latest security report from Libvirt highlights vulnerabilities concerning faulty label creation and system instability issues impacting Fedora 34.
* CVE-2021-3631 libvirt: insecure sVirt label generation (bz #1977760) ---- * Crash in udev driver populate_vendor (bz #1966851) * Fix CAP_SETPCAP syslog warning (bz #1924218)

Summary

Libvirt is a C toolkit to interact with the virtualization capabilities

of recent versions of Linux (and other OSes). The main package includes

the libvirtd server exporting the virtualization support.

* CVE-2021-3631 libvirt: insecure sVirt label generation (bz #1977760) ---- *

Crash in udev driver populate_vendor (bz #1966851) * Fix CAP_SETPCAP syslog

warning (bz #1924218)

* Fri Jul 2 2021 Cole Robinson - 7.0.0-6

- CVE-2021-3631 libvirt: insecure sVirt label generation (bz #1977760)

* Tue Jun 29 2021 Cole Robinson - 7.0.0-5

- Crash in udev driver populate_vendor (bz #1966851)

- Fix CAP_SETPCAP syslog warning (bz #1924218)

[ 1 ] Bug #1977726 - CVE-2021-3631 libvirt: insecure sVirt label generation

https://bugzilla.redhat.com/show_bug.cgi?id=1977726

su -c 'dnf upgrade --advisory FEDORA-2021-bc6ad65da0' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 34
Version: 7.0.0
Release: 6.fc34
Summary: Library providing a simple virtualization API

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here