Mangelnde Prüfung von Zertifikaten in libvirt
ID: | FEDORA-2017-b5cdad4163 |
Distribution: | Fedora |
Plattformen: | Fedora 26 |
Datum: | Mi, 3. Januar 2018, 23:32 |
Referenzen: | http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1000256 |
Applikationen: | libvirt |
Originalnachricht |
|
-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-b5cdad4163 2018-01-03 19:35:07.430181 -------------------------------------------------------------------------------- Name : libvirt Product : Fedora 26 Version : 3.2.1 Release : 7.fc26 URL : http://libvirt.org/ Summary : Library providing a simple virtualization API Description : Libvirt is a C toolkit to interact with the virtualization capabilities of recent versions of Linux (and other OSes). The main package includes the libvirtd server exporting the virtualization support. -------------------------------------------------------------------------------- Update Information: * CVE-2017-1000256: libvirt: TLS certificate verification disabled for clients (bz #1503687) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1503658 - CVE-2017-1000256 libvirt: TLS certificate verification disabled for clients https://bugzilla.redhat.com/show_bug.cgi?id=1503658 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade libvirt' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org |