First published: Thu Jul 11 2019(Updated: )
The Advanced Virtualization module provides the user-space component for running virtual machines that use KVM in environments managed by Red Hat products.<br>Security Fix(es):<br><li> libvirt: arbitrary file read/exec via virDomainSaveImageGetXMLDesc API (CVE-2019-10161)</li> <li> libvirt: virDomainManagedSaveDefineXML API exposed to readonly clients (CVE-2019-10166)</li> <li> libvirt: arbitrary command execution via virConnectGetDomainCapabilities API (CVE-2019-10167)</li> <li> libvirt: arbitrary command execution via virConnectBaselineHypervisorCPU and virConnectCompareHypervisorCPU APIs (CVE-2019-10168)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/libguestfs | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-winsupport | <8.0-2.module+el8.0.0 | 8.0-2.module+el8.0.0 |
redhat/libiscsi | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libssh2 | <1.8.0-7.module+el8.0.0 | 1.8.0-7.module+el8.0.0 |
redhat/libvirt | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-dbus | <1.3.0-1.module+el8.0.0 | 1.3.0-1.module+el8.0.0 |
redhat/libvirt-python | <5.0.0-3.module+el8.0.0 | 5.0.0-3.module+el8.0.0 |
redhat/nbdkit | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/netcf | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/qemu-kvm | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/seabios | <1.12.0-1.module+el8.0.0 | 1.12.0-1.module+el8.0.0 |
redhat/sgabios | <0.20170427git-2.module+el8.0.0 | 0.20170427git-2.module+el8.0.0 |
redhat/supermin | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/libguestfs-bash-completion | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-inspect-icons | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-javadoc | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-man-pages-ja | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-man-pages-uk | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-tools | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/nbdkit-bash-completion | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/seabios-bin | <1.12.0-1.module+el8.0.0 | 1.12.0-1.module+el8.0.0 |
redhat/seavgabios-bin | <1.12.0-1.module+el8.0.0 | 1.12.0-1.module+el8.0.0 |
redhat/sgabios-bin | <0.20170427git-2.module+el8.0.0 | 0.20170427git-2.module+el8.0.0 |
redhat/hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/hivex-debugsource | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/hivex-devel | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/libguestfs-benchmarking | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-benchmarking-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-debugsource | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-devel | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-gfs2 | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-gobject | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-gobject-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-gobject-devel | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-java | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-java-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-java-devel | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-rescue | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-rsync | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-tools-c | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-tools-c-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libguestfs-xfs | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/libiscsi-debuginfo | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-debugsource | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-devel | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-utils | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libiscsi-utils-debuginfo | <1.18.0-6.module+el8.0.0 | 1.18.0-6.module+el8.0.0 |
redhat/libssh2-debuginfo | <1.8.0-7.module+el8.0.0 | 1.8.0-7.module+el8.0.0 |
redhat/libssh2-debugsource | <1.8.0-7.module+el8.0.0 | 1.8.0-7.module+el8.0.0 |
redhat/libvirt-admin | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-admin-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-bash-completion | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-client | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-client-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-config-network | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-config-nwfilter | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-interface | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-interface-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-network | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-network-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-nodedev | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-nodedev-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-nwfilter | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-nwfilter-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-qemu | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-qemu-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-secret | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-secret-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-core | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-core-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-disk | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-disk-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-gluster | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-gluster-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-iscsi | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-iscsi-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-iscsi-direct | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-iscsi-direct-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-logical | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-logical-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-mpath | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-mpath-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-rbd | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-rbd-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-scsi | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-driver-storage-scsi-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-daemon-kvm | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-dbus-debuginfo | <1.3.0-1.module+el8.0.0 | 1.3.0-1.module+el8.0.0 |
redhat/libvirt-dbus-debugsource | <1.3.0-1.module+el8.0.0 | 1.3.0-1.module+el8.0.0 |
redhat/libvirt-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-debugsource | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-devel | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-docs | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-libs | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-libs-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-lock-sanlock | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-lock-sanlock-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-nss | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-nss-debuginfo | <5.0.0-7.2.module+el8.0.0 | 5.0.0-7.2.module+el8.0.0 |
redhat/libvirt-python-debugsource | <5.0.0-3.module+el8.0.0 | 5.0.0-3.module+el8.0.0 |
redhat/lua-guestfs | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/lua-guestfs-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/nbdkit-basic-plugins | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-basic-plugins-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-debugsource | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-devel | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-example-plugins | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-example-plugins-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-gzip | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-gzip-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-python-common | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-python3 | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-python3-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-vddk | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-vddk-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-xz | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/nbdkit-plugin-xz-debuginfo | <1.4.2-4.module+el8.0.0 | 1.4.2-4.module+el8.0.0 |
redhat/netcf-debuginfo | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-debugsource | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-devel | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-libs | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/netcf-libs-debuginfo | <0.2.8-10.module+el8.0.0 | 0.2.8-10.module+el8.0.0 |
redhat/perl-hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/perl-hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/python3-hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/python3-hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/python3-libguestfs | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/python3-libguestfs-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/python3-libvirt | <5.0.0-3.module+el8.0.0 | 5.0.0-3.module+el8.0.0 |
redhat/python3-libvirt-debuginfo | <5.0.0-3.module+el8.0.0 | 5.0.0-3.module+el8.0.0 |
redhat/qemu-guest-agent | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-guest-agent-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-img | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-img-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-curl | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-curl-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-gluster | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-gluster-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-iscsi | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-iscsi-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-rbd | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-rbd-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-ssh | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-block-ssh-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-common | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-common-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-core | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-core-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-debuginfo | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/qemu-kvm-debugsource | <3.1.0-20.module+el8.0.0 | 3.1.0-20.module+el8.0.0 |
redhat/ruby-hivex | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/ruby-hivex-debuginfo | <1.3.15-6.module+el8.0.0 | 1.3.15-6.module+el8.0.0 |
redhat/ruby-libguestfs | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/ruby-libguestfs-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/supermin-debuginfo | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/supermin-debugsource | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/supermin-devel | <5.1.19-8.module+el8.0.0 | 5.1.19-8.module+el8.0.0 |
redhat/virt-dib | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/virt-dib-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/virt-p2v-maker | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/virt-v2v | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
redhat/virt-v2v-debuginfo | <1.40.2-1.module+el8.0.0 | 1.40.2-1.module+el8.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.