Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 40: FEDORA-2024-ee96e0c470 Critical: Libvirt Event Loop Update

fedora
Calendar Grey June 11, 2024
Dist Fedora Esm H88
The latest Fedora libvirt revision addresses critical crash problems and memory leaks, incorporating necessary security updates to ensure user protection.
Fix crash in event loop (CVE-2024-4418) Fix leak of GSource object Fix leak of udev object reference

Summary

Libvirt is a C toolkit to interact with the virtualization capabilities

of recent versions of Linux (and other OSes). The main package includes

the libvirtd server exporting the virtualization support.

Update Information:

Fix crash in event loop (CVE-2024-4418) Fix leak of GSource object Fix leak of udev object reference

Change Log

References


[ 1 ] Bug #2278616 - CVE-2024-4418 libvirt: stack use-after-free in virNetClientIOEventLoop() https://bugzilla.redhat.com/show_bug.cgi?id=2278616

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-ee96e0c470' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: libvirt
Product: Fedora 40
Version: 10.1.0
Release: 2.fc40
Summary: Library providing a simple virtualization API

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here