Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.871689
Categoría:Red Hat Local Security Checks
Título:RedHat Update for libguestfs and virt-p2v RHSA-2016:2576-02
Resumen:The remote host is missing an update for the 'libguestfs and virt-p2v'; package(s) announced via the referenced advisory.
Descripción:Summary:
The remote host is missing an update for the 'libguestfs and virt-p2v'
package(s) announced via the referenced advisory.

Vulnerability Insight:
The libguestfs packages contain a library,
which is used for accessing and modifying virtual machine (VM) disk images.

Virt-p2v is a tool for conversion of a physical server to a virtual guest.

The following packages have been upgraded to a newer upstream version:
libguestfs (1.32.7), virt-p2v (1.32.7). (BZ#1218766)

Security Fix(es):

* An integer conversion flaw was found in the way OCaml's String handled
its length. Certain operations on an excessively long String could trigger
a buffer overflow or result in an information leak. (CVE-2015-8869)

Note: The libguestfs packages in this advisory were rebuilt with a fixed
version of OCaml to address this issue.

Additional Changes:

For detailed information on changes in this release, see the Red Hat
Enterprise Linux 7.3 Release Notes linked from the References section.

Affected Software/OS:
libguestfs and virt-p2v on Red Hat Enterprise Linux Server (v. 7)

Solution:
Please Install the Updated Packages.

CVSS Score:
6.4

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2015-8869
BugTraq ID: 89318
http://www.securityfocus.com/bid/89318
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184507.html
https://security.gentoo.org/glsa/201702-15
http://www.openwall.com/lists/oss-security/2016/04/29/6
http://www.openwall.com/lists/oss-security/2016/04/29/1
RedHat Security Advisories: RHSA-2016:1296
https://access.redhat.com/errata/RHSA-2016:1296
RedHat Security Advisories: RHSA-2016:2576
http://rhn.redhat.com/errata/RHSA-2016-2576.html
RedHat Security Advisories: RHSA-2017:0564
http://rhn.redhat.com/errata/RHSA-2017-0564.html
RedHat Security Advisories: RHSA-2017:0565
http://rhn.redhat.com/errata/RHSA-2017-0565.html
SuSE Security Announcement: openSUSE-SU-2016:1335 (Google Search)
http://lists.opensuse.org/opensuse-updates/2016-05/msg00081.html
SuSE Security Announcement: openSUSE-SU-2016:2273 (Google Search)
http://lists.opensuse.org/opensuse-updates/2016-09/msg00037.html
CopyrightCopyright (C) 2016 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.