In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade Oracle:8
libvirt-lock-sanlock
to version 0:5.7.0-32.module+el8.5.0+20482+a450964e or higher.
This issue was patched in ELSA-2022-9172
.
Note: Versions mentioned in the description apply only to the upstream libvirt-lock-sanlock
package and not the libvirt-lock-sanlock
package as distributed by Oracle
.
See How to fix?
for Oracle:8
relevant fixed versions and status.
slirp.c in libslirp through 4.3.1 has a buffer over-read because it tries to read a certain amount of header data even if that exceeds the total packet length.