{"id":"ALSA-2023:6409","summary":"Moderate: libvirt security, bug fix, and enhancement update","details":"The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems.\n\nThe following packages have been upgraded to a later upstream version: libvirt (9.5.0). (BZ#2175785)\n\nSecurity Fix(es):\n\n* libvirt: improper locking in virStoragePoolObjListSearch may lead to denial of service (CVE-2023-3750)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.","modified":"2026-01-30T02:17:51.077437Z","published":"2023-11-07T00:00:00Z","related":["CVE-2023-3750"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2023:6409"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-3750"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2222210"},{"type":"ADVISORY","url":"https://errata.almalinux.org/9/ALSA-2023-6409.html"}],"affected":[{"package":{"name":"libvirt","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-client","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-client"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-client-qemu","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-client-qemu"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-common","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-config-network","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-config-network"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-config-nwfilter","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-config-nwfilter"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-interface","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-interface"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-network","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-network"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-nodedev","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-nodedev"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-nwfilter","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-nwfilter"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-qemu","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-qemu"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-secret","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-secret"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage-core","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage-core"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage-disk","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage-disk"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage-iscsi","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage-iscsi"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage-logical","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage-logical"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage-mpath","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage-mpath"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage-rbd","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage-rbd"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-driver-storage-scsi","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-driver-storage-scsi"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-kvm","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-kvm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-lock","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-lock"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-log","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-log"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-plugin-lockd","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-plugin-lockd"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-plugin-sanlock","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-plugin-sanlock"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-daemon-proxy","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-daemon-proxy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-devel","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-docs","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-docs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-libs","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-libs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}},{"package":{"name":"libvirt-nss","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libvirt-nss"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.5.0-7.el9_3.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6409.json"}}],"schema_version":"1.7.3"}