Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.871787
Category:Red Hat Local Security Checks
Title:RedHat Update for libguestfs RHSA-2017:0564-01
Summary:The remote host is missing an update for the 'libguestfs'; package(s) announced via the referenced advisory.
Description:Summary:
The remote host is missing an update for the 'libguestfs'
package(s) announced via the referenced advisory.

Vulnerability Insight:
The libguestfs packages contain a library,
which is used for accessing and modifying virtual machine (VM) disk images.

Security Fix(es):

* An integer conversion flaw was found in the way OCaml's String handled
its length. Certain operations on an excessively long String could trigger
a buffer overflow or result in an information leak. (CVE-2015-8869)

Note: The libguestfs packages in this advisory were rebuilt with a fixed
version of OCaml to address this issue.

Additional Changes:

For detailed information on changes in this release, see the Red Hat
Enterprise Linux 6.9 Release Notes and Red Hat Enterprise Linux 6.9
Technical Notes linked from the References section.

Affected Software/OS:
libguestfs on Red Hat Enterprise Linux Desktop (v. 6),
Red Hat Enterprise Linux Server (v. 6),
Red Hat Enterprise Linux Workstation (v. 6)

Solution:
Please Install the Updated Packages.

CVSS Score:
6.4

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2015-8869
BugTraq ID: 89318
http://www.securityfocus.com/bid/89318
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184507.html
https://security.gentoo.org/glsa/201702-15
http://www.openwall.com/lists/oss-security/2016/04/29/6
http://www.openwall.com/lists/oss-security/2016/04/29/1
RedHat Security Advisories: RHSA-2016:1296
https://access.redhat.com/errata/RHSA-2016:1296
RedHat Security Advisories: RHSA-2016:2576
http://rhn.redhat.com/errata/RHSA-2016-2576.html
RedHat Security Advisories: RHSA-2017:0564
http://rhn.redhat.com/errata/RHSA-2017-0564.html
RedHat Security Advisories: RHSA-2017:0565
http://rhn.redhat.com/errata/RHSA-2017-0565.html
SuSE Security Announcement: openSUSE-SU-2016:1335 (Google Search)
http://lists.opensuse.org/opensuse-updates/2016-05/msg00081.html
SuSE Security Announcement: openSUSE-SU-2016:2273 (Google Search)
http://lists.opensuse.org/opensuse-updates/2016-09/msg00037.html
CopyrightCopyright (C) 2017 Greenbone Networks GmbH

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2024 E-Soft Inc. All rights reserved.