Updated libvirt packages fix security vulnerability: insecure sVirt label generation (CVE-2021-3631). References: . MGASA-2021-0399 - Updated libvirt packages fix security vulnerability Publication date: 14 Aug 2021 URL: https://advisories.mageia.org/MGASA-2021-0399.html Type: security Affected Mageia releases: 8 CVE: CVE-2021-3631 Updated libvirt packages fix security vulnerability: insecure sVirt label generation (CVE-2021-3631). References: - https://bugs.mageia.org/show_bug.cgi?id=29252 - https://lists.fedoraproject.org/archives/list/
* CVE-2021-3631 libvirt: insecure sVirt label generation (bz #1977760) ---- * Crash in udev driver populate_vendor (bz #1966851) * Fix CAP_SETPCAP syslog warning (bz #1924218). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-bc6ad65da0 2021-07-13 01:14:25.022322 --------------------------------------------------------------------------------Name : libvirt Product : Fedora 34 Version : 7.0.0 Release : 6.fc34 URL : https://libvirt.org/ Summary : Library providing a simple virtualization API Description : Libvirt is a C toolkit to interact with the virtualization capabilities of recent versions of Linux (and other OSes). The main package includes the libvirtd server exporting the virtualization support. --------------------------------------------------------------------------------Update Information: * CVE-2021-3631 libvirt: insecure sVirt label generation (bz #1977760) ---- * Crash in udev driver populate_vendor (bz #1966851) * Fix CAP_SETPCAP syslog warning (bz #1924218) --------------------------------------------------------------------------------ChangeLog: * Fri Jul 2 2021 Cole Robinson - 7.0.0-6 - CVE-2021-3631 libvirt: insecure sVirt label generation (bz #1977760) * Tue Jun 29 2021 Cole Robinson - 7.0.0-5 - Crash in udev driver populate_vendor (bz #1966851) - Fix CAP_SETPCAP syslog warning (bz #1924218) --------------------------------------------------------------------------------References: [ 1 ] Bug #1977726 - CVE-2021-3631 libvirt: insecure sVirt label generation https://bugzilla.redhat.com/show_bug.cgi?id=1977726 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-bc6ad65da0' at the command line. For more information, refer to the dnf documentation availableat https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.