SUSE-SU-2023:2356-1

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 02 Jun 2023, 11:36
Last modified:04 Feb 2026, 04:37

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

02 Jun 2023, 11:36
Published
Vulnerability first disclosed
04 Feb 2026, 04:37
Last Modified
Vulnerability information updated

Description

Security update for libvirt This update for libvirt fixes the following issues: - CVE-2023-2700: Fixed a memory leak that could be triggered by repeatedly querying an SR-IOV PCI device's capabilities (bsc#1211390). Non-security fixes: - Fixed a potential crash during driver cleanup (bsc#1209861). - Added Apparmor support for SUSE edk2 firmware paths (boo#1208567). - Fixed lxc container initialization with systemd and hybrid groups (boo#1183247). - Added the option to specify the virtual CPU address size in bits for qemu (bsc#1199583).

Affected Systems

  • opensuselibvirt&distro=openSUSE Leap 15.4

    < 8.0.0-150400.7.6.1

  • opensuselibvirt&distro=openSUSE Leap Micro 5.3

    < 8.0.0-150400.7.6.1

  • suselibvirt&distro=SUSE Linux Enterprise Micro 5.3

    < 8.0.0-150400.7.6.1

  • suselibvirt&distro=SUSE Linux Enterprise Micro 5.4

    < 8.0.0-150400.7.6.1

  • suselibvirt&distro=SUSE Linux Enterprise Module for Basesystem 15 SP4

    < 8.0.0-150400.7.6.1

  • suselibvirt&distro=SUSE Linux Enterprise Module for Server Applications 15 SP4

    < 8.0.0-150400.7.6.1

References (7)