First published: Thu Jun 20 2019(Updated: )
The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems.<br>Security Fix(es):<br><li> libvirt: arbitrary file read/exec via virDomainSaveImageGetXMLDesc API (CVE-2019-10161)</li> <li> libvirt: virDomainManagedSaveDefineXML API exposed to readonly clients (CVE-2019-10166)</li> <li> libvirt: arbitrary command execution via virConnectGetDomainCapabilities API (CVE-2019-10167)</li> <li> libvirt: arbitrary command execution via virConnectBaselineHypervisorCPU and virConnectCompareHypervisorCPU APIs (CVE-2019-10168)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/libguestfs | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-winsupport | <8.0-2.module+el8.0.0 | 8.0-2.module+el8.0.0 |
redhat/libiscsi | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libssh2 | <1.8.0-7.module+el8.0.0 | 1.8.0-7.module+el8.0.0 |
redhat/libvirt | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-dbus | <1.2.0-2.module+el8.0.0 | 1.2.0-2.module+el8.0.0 |
redhat/libvirt-python | <4.5.0-1.module+el8.0.0 | 4.5.0-1.module+el8.0.0 |
redhat/nbdkit | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/netcf | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/qemu-kvm | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/seabios | <1.11.1-3.module+el8.0.0 | 1.11.1-3.module+el8.0.0 |
redhat/sgabios | <0.20170427git-2.module+el8.0.0 | 0.20170427git-2.module+el8.0.0 |
redhat/supermin | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/libguestfs-bash-completion | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-inspect-icons | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-javadoc | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-man-pages-ja | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-man-pages-uk | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-tools | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/nbdkit-bash-completion | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/seabios-bin | <1.11.1-3.module+el8.0.0 | 1.11.1-3.module+el8.0.0 |
redhat/seavgabios-bin | <1.11.1-3.module+el8.0.0 | 1.11.1-3.module+el8.0.0 |
redhat/sgabios-bin | <0.20170427git-2.module+el8.0.0 | 0.20170427git-2.module+el8.0.0 |
redhat/hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/hivex-debugsource | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/hivex-devel | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/libguestfs-benchmarking | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-benchmarking-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-debugsource | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-devel | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-gfs2 | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-gobject | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-gobject-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-gobject-devel | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-java | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-java-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-java-devel | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-rescue | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-rsync | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-tools-c | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-tools-c-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libguestfs-xfs | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/libiscsi-debuginfo | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-debugsource | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-devel | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-utils | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-utils-debuginfo | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libssh2-debuginfo | <1.8.0-7.module+el8.0.0 | 1.8.0-7.module+el8.0.0 |
redhat/libssh2-debugsource | <1.8.0-7.module+el8.0.0 | 1.8.0-7.module+el8.0.0 |
redhat/libvirt-admin | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-admin-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-bash-completion | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-client | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-client-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-config-network | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-config-nwfilter | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-interface | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-interface-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-network | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-network-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-nodedev | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-nodedev-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-nwfilter | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-nwfilter-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-qemu | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-qemu-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-secret | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-secret-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-core | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-core-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-disk | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-disk-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-gluster | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-gluster-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-iscsi | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-iscsi-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-logical | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-logical-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-mpath | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-mpath-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-rbd | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-rbd-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-scsi | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-scsi-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-daemon-kvm | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-dbus-debuginfo | <1.2.0-2.module+el8.0.0 | 1.2.0-2.module+el8.0.0 |
redhat/libvirt-dbus-debugsource | <1.2.0-2.module+el8.0.0 | 1.2.0-2.module+el8.0.0 |
redhat/libvirt-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-debugsource | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-devel | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-docs | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-libs | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-libs-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-lock-sanlock | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-lock-sanlock-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-nss | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-nss-debuginfo | <4.5.0-23.3.module+el8.0.0 | 4.5.0-23.3.module+el8.0.0 |
redhat/libvirt-python-debugsource | <4.5.0-1.module+el8.0.0 | 4.5.0-1.module+el8.0.0 |
redhat/lua-guestfs | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/lua-guestfs-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/nbdkit-basic-plugins | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-basic-plugins-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-debugsource | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-devel | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-example-plugins | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-example-plugins-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-gzip | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-gzip-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-python-common | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-python3 | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-python3-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-vddk | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-vddk-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-xz | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-xz-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/netcf-debuginfo | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-debugsource | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-devel | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-libs | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-libs-debuginfo | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/perl-hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/perl-hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/python3-hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/python3-hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/python3-libguestfs | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/python3-libguestfs-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/python3-libvirt | <4.5.0-1.module+el8.0.0 | 4.5.0-1.module+el8.0.0 |
redhat/python3-libvirt-debuginfo | <4.5.0-1.module+el8.0.0 | 4.5.0-1.module+el8.0.0 |
redhat/qemu-guest-agent | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-guest-agent-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-img | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-img-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-curl | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-curl-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-gluster | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-gluster-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-iscsi | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-iscsi-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-rbd | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-rbd-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-ssh | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-block-ssh-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-common | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-common-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-core | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-core-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-debuginfo | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/qemu-kvm-debugsource | <2.12.0-64.module+el8.0.0 | 2.12.0-64.module+el8.0.0 |
redhat/ruby-hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/ruby-hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/ruby-libguestfs | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/ruby-libguestfs-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/supermin-debuginfo | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/supermin-debugsource | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/supermin-devel | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/virt-dib | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/virt-dib-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/virt-p2v-maker | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/virt-v2v | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
redhat/virt-v2v-debuginfo | <1.38.4-10.1.module+el8.0.0 | 1.38.4-10.1.module+el8.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.