ALSA-2022:7968
Dashboard / Vulnerabilities / ALSA-2022:7968
Summary: Low: virt-v2v security, bug fix, and enhancement update
Details: The virt-v2v package provides a tool for converting virtual machines to use the KVM (Kernel-based Virtual Machine) hypervisor or AlmaLinux Enterprise Virtualization. The tool modifies both the virtual machine image and its associated libvirt metadata. Also, virt-v2v can configure a guest to use VirtIO drivers if possible. Security Fix(es): * libguestfs: Buffer overflow in get_keys leads to DoS (CVE-2022-2211) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
References: https://access.redhat.com/errata/RHSA-2022:7968, https://access.redhat.com/security/cve/CVE-2022-2211, https://bugzilla.redhat.com/2100862, https://errata.almalinux.org/9/ALSA-2022-7968.html
Affected packages
Package
Name: virt-v2v
Purl: pkg:rpm/almalinux/virt-v2v
Affected ranges
Type: ECOSYSTEM
Events:
