First published: Thu Aug 19 2021(Updated: )
The redhat-virtualization-host packages provide the Red Hat Virtualization Host.<br>These packages include redhat-release-virtualization-host, ovirt-node, and<br>rhev-hypervisor. Red Hat Virtualization Hosts (RHVH) are installed using a<br>special build of Red Hat Enterprise Linux with only the packages required to<br>host virtual machines. RHVH features a Cockpit user interface for monitoring the host's resources and performing administrative tasks.<br>Security Fix(es):<br><li> edk2: remote buffer overflow in IScsiHexToBin function in NetworkPkg/IScsiDxe ()</li> <li> kernel: Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks (CVE-2021-22543)</li> <li> kernel: race condition in net/can/bcm.c leads to local privilege escalation (CVE-2021-3609)</li> <li> sssd: shell command injection in sssctl (CVE-2021-3621)</li> <li> kernel: out-of-bounds write in xt_compat_target_from_user() in net/netfilter/x_tables.c (CVE-2021-22555)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.<br>Bug Fix(es):<br><li> Rebase package(s) to version: 1.2.23</li> Highlights, important fixes, or notable enhancements: <br><li> imgbase should not copy the selinux binary policy file (BZ# 1979624) (BZ#1989397)</li> <li> RHV-H has been rebased on Red Hat Enterprise Linux 8.4 Batch #2. (BZ#1975177)</li>
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/imgbased | <1.2.23-1.el8e | 1.2.23-1.el8e |
redhat/redhat-release-virtualization-host | <4.4.7-4.el8e | 4.4.7-4.el8e |
redhat/python3-imgbased | <1.2.23-1.el8e | 1.2.23-1.el8e |
redhat/redhat-virtualization-host-image-update-placeholder | <4.4.7-4.el8e | 4.4.7-4.el8e |
redhat/redhat-virtualization-host | <4.4.7-20210804.0.el8_4 | 4.4.7-20210804.0.el8_4 |
redhat/redhat-virtualization-host-image-update | <4.4.7-20210804.0.el8_4 | 4.4.7-20210804.0.el8_4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.