Advisory Published

RHSA-2019:1762: Important: virt:8.0.0 security update

First published: Thu Jul 11 2019(Updated: )

The Advanced Virtualization module provides the user-space component for running virtual machines that use KVM in environments managed by Red Hat products.<br>Security Fix(es):<br><li> libvirt: arbitrary file read/exec via virDomainSaveImageGetXMLDesc API (CVE-2019-10161)</li> <li> libvirt: virDomainManagedSaveDefineXML API exposed to readonly clients (CVE-2019-10166)</li> <li> libvirt: arbitrary command execution via virConnectGetDomainCapabilities API (CVE-2019-10167)</li> <li> libvirt: arbitrary command execution via virConnectBaselineHypervisorCPU and virConnectCompareHypervisorCPU APIs (CVE-2019-10168)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected SoftwareAffected VersionHow to fix
redhat/hivex<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/libguestfs<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-winsupport<8.0-2.module+el8.0.0
8.0-2.module+el8.0.0
redhat/libiscsi<1.18.0-6.module+el8.0.0
1.18.0-6.module+el8.0.0
redhat/libssh2<1.8.0-7.module+el8.0.0
1.8.0-7.module+el8.0.0
redhat/libvirt<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-dbus<1.3.0-1.module+el8.0.0
1.3.0-1.module+el8.0.0
redhat/libvirt-python<5.0.0-3.module+el8.0.0
5.0.0-3.module+el8.0.0
redhat/nbdkit<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/netcf<0.2.8-10.module+el8.0.0
0.2.8-10.module+el8.0.0
redhat/qemu-kvm<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/seabios<1.12.0-1.module+el8.0.0
1.12.0-1.module+el8.0.0
redhat/sgabios<0.20170427git-2.module+el8.0.0
0.20170427git-2.module+el8.0.0
redhat/supermin<5.1.19-8.module+el8.0.0
5.1.19-8.module+el8.0.0
redhat/libguestfs-bash-completion<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-inspect-icons<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-javadoc<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-man-pages-ja<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-man-pages-uk<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-tools<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/nbdkit-bash-completion<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/seabios-bin<1.12.0-1.module+el8.0.0
1.12.0-1.module+el8.0.0
redhat/seavgabios-bin<1.12.0-1.module+el8.0.0
1.12.0-1.module+el8.0.0
redhat/sgabios-bin<0.20170427git-2.module+el8.0.0
0.20170427git-2.module+el8.0.0
redhat/hivex-debuginfo<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/hivex-debugsource<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/hivex-devel<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/libguestfs-benchmarking<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-benchmarking-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-debugsource<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-devel<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-gfs2<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-gobject<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-gobject-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-gobject-devel<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-java<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-java-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-java-devel<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-rescue<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-rsync<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-tools-c<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-tools-c-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libguestfs-xfs<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/libiscsi-debuginfo<1.18.0-6.module+el8.0.0
1.18.0-6.module+el8.0.0
redhat/libiscsi-debugsource<1.18.0-6.module+el8.0.0
1.18.0-6.module+el8.0.0
redhat/libiscsi-devel<1.18.0-6.module+el8.0.0
1.18.0-6.module+el8.0.0
redhat/libiscsi-utils<1.18.0-6.module+el8.0.0
1.18.0-6.module+el8.0.0
redhat/libiscsi-utils-debuginfo<1.18.0-6.module+el8.0.0
1.18.0-6.module+el8.0.0
redhat/libssh2-debuginfo<1.8.0-7.module+el8.0.0
1.8.0-7.module+el8.0.0
redhat/libssh2-debugsource<1.8.0-7.module+el8.0.0
1.8.0-7.module+el8.0.0
redhat/libvirt-admin<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-admin-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-bash-completion<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-client<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-client-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-config-network<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-config-nwfilter<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-interface<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-interface-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-network<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-network-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-nodedev<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-nodedev-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-nwfilter<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-nwfilter-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-qemu<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-qemu-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-secret<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-secret-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-core<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-core-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-disk<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-disk-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-gluster<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-gluster-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-iscsi<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-iscsi-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-iscsi-direct<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-iscsi-direct-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-logical<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-logical-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-mpath<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-mpath-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-rbd<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-rbd-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-scsi<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-driver-storage-scsi-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-daemon-kvm<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-dbus-debuginfo<1.3.0-1.module+el8.0.0
1.3.0-1.module+el8.0.0
redhat/libvirt-dbus-debugsource<1.3.0-1.module+el8.0.0
1.3.0-1.module+el8.0.0
redhat/libvirt-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-debugsource<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-devel<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-docs<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-libs<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-libs-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-lock-sanlock<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-lock-sanlock-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-nss<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-nss-debuginfo<5.0.0-7.2.module+el8.0.0
5.0.0-7.2.module+el8.0.0
redhat/libvirt-python-debugsource<5.0.0-3.module+el8.0.0
5.0.0-3.module+el8.0.0
redhat/lua-guestfs<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/lua-guestfs-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/nbdkit-basic-plugins<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-basic-plugins-debuginfo<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-debuginfo<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-debugsource<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-devel<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-example-plugins<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-example-plugins-debuginfo<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-gzip<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-gzip-debuginfo<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-python-common<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-python3<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-python3-debuginfo<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-vddk<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-vddk-debuginfo<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-xz<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/nbdkit-plugin-xz-debuginfo<1.4.2-4.module+el8.0.0
1.4.2-4.module+el8.0.0
redhat/netcf-debuginfo<0.2.8-10.module+el8.0.0
0.2.8-10.module+el8.0.0
redhat/netcf-debugsource<0.2.8-10.module+el8.0.0
0.2.8-10.module+el8.0.0
redhat/netcf-devel<0.2.8-10.module+el8.0.0
0.2.8-10.module+el8.0.0
redhat/netcf-libs<0.2.8-10.module+el8.0.0
0.2.8-10.module+el8.0.0
redhat/netcf-libs-debuginfo<0.2.8-10.module+el8.0.0
0.2.8-10.module+el8.0.0
redhat/perl-hivex<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/perl-hivex-debuginfo<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/python3-hivex<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/python3-hivex-debuginfo<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/python3-libguestfs<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/python3-libguestfs-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/python3-libvirt<5.0.0-3.module+el8.0.0
5.0.0-3.module+el8.0.0
redhat/python3-libvirt-debuginfo<5.0.0-3.module+el8.0.0
5.0.0-3.module+el8.0.0
redhat/qemu-guest-agent<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-guest-agent-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-img<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-img-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-curl<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-curl-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-gluster<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-gluster-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-iscsi<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-iscsi-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-rbd<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-rbd-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-ssh<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-block-ssh-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-common<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-common-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-core<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-core-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-debuginfo<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/qemu-kvm-debugsource<3.1.0-20.module+el8.0.0
3.1.0-20.module+el8.0.0
redhat/ruby-hivex<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/ruby-hivex-debuginfo<1.3.15-6.module+el8.0.0
1.3.15-6.module+el8.0.0
redhat/ruby-libguestfs<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/ruby-libguestfs-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/supermin-debuginfo<5.1.19-8.module+el8.0.0
5.1.19-8.module+el8.0.0
redhat/supermin-debugsource<5.1.19-8.module+el8.0.0
5.1.19-8.module+el8.0.0
redhat/supermin-devel<5.1.19-8.module+el8.0.0
5.1.19-8.module+el8.0.0
redhat/virt-dib<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/virt-dib-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/virt-p2v-maker<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/virt-v2v<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0
redhat/virt-v2v-debuginfo<1.40.2-1.module+el8.0.0
1.40.2-1.module+el8.0.0

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203