RHSA-2022:7967
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: qemu-kvm security, bug fix, and enhancement update
CVSS Metrics
- v3.1•HIGH•Score: 7.5CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Affected Systems
- redhat•qemu-guest-agent
< 17:7.0.0-13.el9
- redhat•qemu-guest-agent-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-img
< 17:7.0.0-13.el9
- redhat•qemu-img-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm
< 17:7.0.0-13.el9
- redhat•qemu-kvm-audio-pa
< 17:7.0.0-13.el9
- redhat•qemu-kvm-audio-pa-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-block-curl
< 17:7.0.0-13.el9
- redhat•qemu-kvm-block-curl-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-block-rbd
< 17:7.0.0-13.el9
- redhat•qemu-kvm-block-rbd-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-common
< 17:7.0.0-13.el9
- redhat•qemu-kvm-common-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-core
< 17:7.0.0-13.el9
- redhat•qemu-kvm-core-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-debugsource
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-ccw
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-ccw-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-gl
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-gl-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-pci
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-pci-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-pci-gl
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-gpu-pci-gl-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-vga
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-vga-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-vga-gl
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-display-virtio-vga-gl-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-usb-host
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-usb-host-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-usb-redirect
< 17:7.0.0-13.el9
- redhat•qemu-kvm-device-usb-redirect-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-docs
< 17:7.0.0-13.el9
- redhat•qemu-kvm-tests-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-tools
< 17:7.0.0-13.el9
- redhat•qemu-kvm-tools-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-ui-egl-headless
< 17:7.0.0-13.el9
- redhat•qemu-kvm-ui-egl-headless-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-kvm-ui-opengl
< 17:7.0.0-13.el9
- redhat•qemu-kvm-ui-opengl-debuginfo
< 17:7.0.0-13.el9
- redhat•qemu-pr-helper
< 17:7.0.0-13.el9
- redhat•qemu-pr-helper-debuginfo
< 17:7.0.0-13.el9
References (69)
- https://access.redhat.com/errata/RHSA-2022:7967
- https://access.redhat.com/security/updates/classification/#moderate
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/9.1_release_notes/index
- https://bugzilla.redhat.com/show_bug.cgi?id=1477099
- https://bugzilla.redhat.com/show_bug.cgi?id=1708300
- https://bugzilla.redhat.com/show_bug.cgi?id=1879437
- https://bugzilla.redhat.com/show_bug.cgi?id=1904267
- https://bugzilla.redhat.com/show_bug.cgi?id=1951118
- https://bugzilla.redhat.com/show_bug.cgi?id=1968509
- https://bugzilla.redhat.com/show_bug.cgi?id=1973784
- https://bugzilla.redhat.com/show_bug.cgi?id=1982600
- https://bugzilla.redhat.com/show_bug.cgi?id=1995710
- https://bugzilla.redhat.com/show_bug.cgi?id=1999073
- https://bugzilla.redhat.com/show_bug.cgi?id=2020993
- https://bugzilla.redhat.com/show_bug.cgi?id=2023977
- https://bugzilla.redhat.com/show_bug.cgi?id=2026955
- https://bugzilla.redhat.com/show_bug.cgi?id=2035002
- https://bugzilla.redhat.com/show_bug.cgi?id=2037612
- https://bugzilla.redhat.com/show_bug.cgi?id=2041823
- https://bugzilla.redhat.com/show_bug.cgi?id=2044162
- https://bugzilla.redhat.com/show_bug.cgi?id=2046029
- https://bugzilla.redhat.com/show_bug.cgi?id=2060839
- https://bugzilla.redhat.com/show_bug.cgi?id=2062809
- https://bugzilla.redhat.com/show_bug.cgi?id=2062813
- https://bugzilla.redhat.com/show_bug.cgi?id=2062817
- https://bugzilla.redhat.com/show_bug.cgi?id=2062819
- https://bugzilla.redhat.com/show_bug.cgi?id=2062828
- https://bugzilla.redhat.com/show_bug.cgi?id=2064500
- https://bugzilla.redhat.com/show_bug.cgi?id=2064530
- https://bugzilla.redhat.com/show_bug.cgi?id=2064757
- https://bugzilla.redhat.com/show_bug.cgi?id=2064771
- https://bugzilla.redhat.com/show_bug.cgi?id=2064782
- https://bugzilla.redhat.com/show_bug.cgi?id=2065398
- https://bugzilla.redhat.com/show_bug.cgi?id=2066824
- https://bugzilla.redhat.com/show_bug.cgi?id=2070804
- https://bugzilla.redhat.com/show_bug.cgi?id=2072379
- https://bugzilla.redhat.com/show_bug.cgi?id=2079347
- https://bugzilla.redhat.com/show_bug.cgi?id=2079938
- https://bugzilla.redhat.com/show_bug.cgi?id=2081022
- https://bugzilla.redhat.com/show_bug.cgi?id=2086262
- https://bugzilla.redhat.com/show_bug.cgi?id=2094252
- https://bugzilla.redhat.com/show_bug.cgi?id=2094270
- https://bugzilla.redhat.com/show_bug.cgi?id=2095608
- https://bugzilla.redhat.com/show_bug.cgi?id=2096143
- https://bugzilla.redhat.com/show_bug.cgi?id=2099541
- https://bugzilla.redhat.com/show_bug.cgi?id=2099934
- https://bugzilla.redhat.com/show_bug.cgi?id=2100106
- https://bugzilla.redhat.com/show_bug.cgi?id=2107466
- https://bugzilla.redhat.com/show_bug.cgi?id=2111994
- https://bugzilla.redhat.com/show_bug.cgi?id=2112303
- https://bugzilla.redhat.com/show_bug.cgi?id=2114060
- https://bugzilla.redhat.com/show_bug.cgi?id=2116876
- https://bugzilla.redhat.com/show_bug.cgi?id=2120275
- https://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_7967.json
- https://access.redhat.com/security/cve/CVE-2021-3507
- https://www.cve.org/CVERecord?id=CVE-2021-3507
- https://nvd.nist.gov/vuln/detail/CVE-2021-3507
- https://access.redhat.com/security/cve/CVE-2021-3611
- https://www.cve.org/CVERecord?id=CVE-2021-3611
- https://nvd.nist.gov/vuln/detail/CVE-2021-3611
- https://access.redhat.com/security/cve/CVE-2021-3750
- https://www.cve.org/CVERecord?id=CVE-2021-3750
- https://nvd.nist.gov/vuln/detail/CVE-2021-3750
- https://gitlab.com/qemu-project/qemu/-/issues/541
- https://gitlab.com/qemu-project/qemu/-/issues/556
- https://access.redhat.com/security/cve/CVE-2021-4158
- https://www.cve.org/CVERecord?id=CVE-2021-4158
- https://nvd.nist.gov/vuln/detail/CVE-2021-4158
- https://gitlab.com/qemu-project/qemu/-/issues/770