ELSA-2024-12701

ELSA-2024-12701 - ovirt-engine security update

Type:SECURITY
Impact:MODERATE
Release Date:2024-09-30

Description


[4.4.10.7-1.0.33]
- Fix external providers properties observability

[4.4.10.7-1.0.32]
- Upgrade bundled frontend dependency of jquery-ui

[4.4.10.7-1.0.31]
- Allow enrolling certificates in non-responsive state and Extend the lifetime of non-web certificates

[4.4.10.7-1.0.30]
- Fix network exception handling and fencing flow logic.

[4.4.10.7-1.0.29]
- Fixing the manage events form email display

[4.4.10.7-1.0.28]
- Remove taa-no from Secure Skylake Server

[4.4.10.7-1.0.27]
- Updating the jquery to 3.6.0

[4.4.10.7-1.0.26]
- Check locale for path traversal character

[4.4.10.7-1.0.25]
- Hide the icons directory from listable directories

[4.4.10.7-1.0.24]
- Fixed the packing of ova where ovf length was changed after encoding

[4.4.10.7-1.0.23]
- Fixed the issue of renewing vm-console-proxy and ovn certificates during engine-setup

[4.4.10.7-1.0.22]
- Fix the engine url for vmconsole to use https protocol

[4.4.10.7-1.0.21]
- Fix classpath for SecureByteArrayOutputStream after apache-sshd-2.9 update

[4.4.10.7-1.0.20]
- Wait for loop device to be available

[4.4.10.7-1.0.19]
- Clean old nvram file on vm emulator update to uefi secure boot

[4.4.10.7-1.0.18]
- Added support to use postgresql-jdbc-42.2.14-1 and spring framework 5.3.19
- Cleanup the spec file to remove unneeded or commented lines

[4.4.10.7-1.0.17]
- Stopping the ovirt-engine-dwh service and setting the DwhCurrentlyRunning to 0 when changing password encryption from md5 to scram-sha-256.

[4.4.10.7-1.0.16]
- Included the condition of origin as NULL while inserting the data in vm_ovf_generations table

[4.4.10.7-1.0.15]
- Fix to parse both uppercase and camelcase instanceID in OvfReader

[4.4.10.7-1.0.14]
- Back Port from upstream 4.5 - https://gerrit.ovirt.org/c/ovirt-engine/+/116317/

[4.4.10.7-1.0.13]
- Remove movirt as it is deprecated upstream

[4.4.10.7-1.0.12]
- Changing the password ecryption type in postgres from md5 to scram-sha-256

[4.4.10.7-1.0.11]
- Add NumOfPciExpressPorts as configurable attribute

[4.4.10.7-1.0.10]
- Forward port - Support for Windows 11 and Windows Server 2022

[4.4.10.7-1.0.9]
- Forward port from 4.3.6.6-1.0.16, added Skylake-Server-noTSX-IBRS and Cascadelake-Server-noTSX CPU Types

[4.4.10.7-1.0.8]
- Forward Port - Fix qxl video

[4.4.10.7-1.0.7]
- Forward Port - Fix NPE during ova import operation

[4.4.10.7-1.0.6]
- Forward Port from 4.3 - Handle ova when origin is null and storage disk is block

[4.4.10.7-1.0.5]
- Forward Port from 4.3 - Remove unnecessary name length restriction for templates.

[4.4.10.7-1.0.4]
- Port forward - Add hsts response header to httpd conf

[4.4.10.7-1.0.3]
- Remove memory limit

[4.4.10.7-1.0.2]
- Fix OS detection

[4.4.10.7]
- Bump version to 4.4.10.7

[4.4.10.6]
- Bump version to 4.4.10.6

[4.4.10.5]
- Bump version to 4.4.10.5

[4.4.10.4]
- Bump version to 4.4.10.4

[4.4.10.3]
- Bump version to 4.4.10.3

[4.4.10.2]
- Bump version to 4.4.10.2

[4.4.10.1]
- Bump version to 4.4.10.1

[4.4.10]
- Bump version to 4.4.10

[4.4.9.2]
- Bump version to 4.4.9.2

[4.4.9.1]
- Bump version to 4.4.9.1

[4.4.9]
- Bump version to 4.4.9

[4.4.8.4]
- Bump version to 4.4.8.4

[4.4.8.3]
- Bump version to 4.4.8.3

[4.4.8.2]
- Bump version to 4.4.8.2

[4.4.8.1]
- Bump version to 4.4.8.1

[4.4.8]
- Bump version to 4.4.8

[4.4.7.6]
- Bump version to 4.4.7.6

[4.4.7.5]
- Bump version to 4.4.7.5

[4.4.7.4]
- Bump version to 4.4.7.4

[4.4.7.3]
- Bump version to 4.4.7.3

[4.4.7.2]
- Bump version to 4.4.7.2

[4.4.7.1]
- Bump version to 4.4.7.1

[4.4.7]
- Bump version to 4.4.7

[4.4.6.6]
- Bump version to 4.4.6.6

[4.4.6.5]
- Bump version to 4.4.6.5

[4.4.6.4]
- Bump version to 4.4.6.4

[4.4.6.3]
- Bump version to 4.4.6.3

[4.4.6.2]
- Bump version to 4.4.6.2

[4.4.6.1]
- Bump version to 4.4.6.1

[4.4.6]
- Bump version to 4.4.6

[4.4.5.8]
- Bump version to 4.4.5.8

[4.4.5.7]
- Bump version to 4.4.5.7

[4.4.5.6]
- Bump version to 4.4.5.6

[4.4.5.5]
- Bump version to 4.4.5.5

[4.4.5.4]
- Bump version to 4.4.5.4

[4.4.5.3]
- Bump version to 4.4.5.3

[4.4.5.2]
- Bump version to 4.4.5.2

[4.4.5.1]
- Bump version to 4.4.5.1

[4.4.5]
- Bump version to 4.4.5

[4.4.4.5]
- Bump version to 4.4.4.5

[4.4.4.4]
- Bump version to 4.4.4.4

[4.4.4.3]
- Bump version to 4.4.4.3

[4.4.4.2]
- Bump version to 4.4.4.2

[4.4.4.1]
- Bump version to 4.4.4.1

[4.4.4]
- Bump version to 4.4.4

[4.4.3.11]
- Bump version to 4.4.3.11

[4.4.3.10]
- Bump version to 4.4.3.10

[4.4.3.9]
- Bump version to 4.4.3.9

[4.4.3.8]
- Bump version to 4.4.3.8

[4.4.3.7]
- Bump version to 4.4.3.7

[4.4.3.6]
- Bump version to 4.4.3.6

[4.4.3.5]
- Bump version to 4.4.3.5

[4.4.3.4]
- Bump version to 4.4.3.4

[4.4.3.3]
- Bump version to 4.4.3.3

[4.4.3.2]
- Bump version to 4.4.3.2

[4.4.3.1]
- Bump version to 4.4.3.1

[4.4.3]
- Bump version to 4.4.3

[4.4.2.2]
- Bump version to 4.4.2.2

[4.4.2.1]
- Bump version to 4.4.2.1

[4.4.2]
- Bump version to 4.4.2

[4.4.1.8]
- Bump version to 4.4.1.8

[4.4.1.7]
- Bump version to 4.4.1.7

[4.4.1.6]
- Bump version to 4.4.1.6

[4.4.1.5]
- Bump version to 4.4.1.5

[4.4.1.4]
- Bump version to 4.4.1.4

[4.4.1.3]
- Bump version to 4.4.1.3

[4.4.1.2]
- Bump version to 4.4.1.2

[4.4.1.1]
- Bump version to 4.4.1.1

[4.4.1]
- Bump version to 4.4.1

[4.4.0.3]
- Bump version to 4.4.0.3

[4.4.0.2]
- Bump version to 4.4.0.2

[4.4.0.1]
- Bump version to 4.4.0.1

[4.4.0]
- Bump version to 4.4.0

[4.3.2.1]
- Bump version to 4.3.2.1

[4.3.2]
- Bump version to 4.3.2

[4.3.1.1]
- Bump version to 4.3.1.1

[4.3.1]
- Bump version to 4.3.1

[4.3.0.4]
- Bump version to 4.3.0.4

[4.3.0.3]
- Bump version to 4.3.0.3

[4.3.0.2]
- Bump version to 4.3.0.2

[4.3.0.1]
- Bump version to 4.3.0.1

[4.3.0]
- Bump version to 4.3.0

[4.2.8.2]
- Bump version to 4.2.8.2

[4.2.8.1]
- Bump version to 4.2.8.1

[4.2.8]
- Bump version to 4.2.8

[4.2.7.3]
- Bump version to 4.2.7.3

[4.2.7.2]
- Bump version to 4.2.7.2

[4.2.7.1]
- Bump version to 4.2.7.1

[4.2.7]
- Bump version to 4.2.7

[4.2.6.4]
- Bump version to 4.2.6.4

[4.2.6.3]
- Bump version to 4.2.6.3

[4.2.6.2]
- Bump version to 4.2.6.2

[4.2.6.1]
- Bump version to 4.2.6.1

[4.2.6]
- Bump version to 4.2.6

[4.2.5.2]
- Bump version to 4.2.5.2

[4.2.5.1]
- Bump version to 4.2.5.1

[4.2.5]
- Bump version to 4.2.5

[4.2.4.5]
- Bump version to 4.2.4.5

[4.2.4.4]
- Bump version to 4.2.4.4

[4.2.4.3]
- Bump version to 4.2.4.3

[4.2.4.2]
- Bump version to 4.2.4.2

[4.2.4.1]
- Bump version to 4.2.4.1

[4.2.4]
- Bump version to 4.2.4

[4.2.3.3]
- Bump version to 4.2.3.3

[4.2.3.2]
- Bump version to 4.2.3.2

[4.2.3.1]
- Bump version to 4.2.3.1

[4.2.3]
- Bump version to 4.2.3

[4.2.2.6]
- Bump version to 4.2.2.6

[4.2.2.5]
- Bump version to 4.2.2.5

[4.2.2.4]
- Bump version to 4.2.2.4

[4.2.2.3]
- Bump version to 4.2.2.3

[4.2.2.2]
- Bump version to 4.2.2.2

[4.2.2.1]
- Bump version to 4.2.2.1

[4.2.2]
- Bump version to 4.2.2

[4.2.1.4]
- Bump version to 4.2.1.4

[4.2.1.3]
- Bump version to 4.2.1.3

[4.2.1.2]
- Bump version to 4.2.1.2

[4.2.1.1]
- Bump version to 4.2.1.1

[4.2.1]
- Bump version to 4.2.1

[4.2.0.2]
- Bump version to 4.2.0.2

[4.2.0.1]
- Bump version to 4.2.0.1

[4.2.0]
- Bump version to 4.2.0

[4.1.0]
- Add dependency for ovirt-engine-dashboard.
- Bump version to 4.1.0

[4.0.0]
- Bump version to 4.0.0
- Dropped Fedora < 22 and EL < 7 support

[3.6.0]
- Update dependencies and removed legacy provides / requires

[3.3.0-1]
- Bump version to 3.3.0

[3.2.0-1]
- Bump version to 3.2.0

[3.1.0-3]
- Removed image uploader, iso uploader, and log collector from this
git repo. The are now in their own respective ovirt.org git
repos. BZ#803240.

[3.1.0-2]
- The ovirt-engine spec file did not previously contain a BuildRequires
statement for the maven package. As a result in mock environments the
build failed with an error when attempting to call the 'mvn' binary -
BZ#807761.

[3.1.0-1]
- Adjust code for Jboss AS 7.1

[3.1.0-1]
- Moved all hard coded paths to macros

[3.1.0-1]
- Initial build
- Cloned from RHEVM spec file


Related CVEs


CVE-2024-7259

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) ovirt-engine-4.4.10.7-1.0.33.el8.src.rpm82e06b9fa7bab29509fd2d083fb7f1b075f0177e798d7236629ad5eaacae7a61-ol8_x86_64_ovirt44
ovirt-engine-4.4.10.7-1.0.33.el8.noarch.rpmc7a2ef738504006627bc019bf30a3378ffdb582187dbad364fdb73b0462705df-ol8_x86_64_ovirt44
ovirt-engine-backend-4.4.10.7-1.0.33.el8.noarch.rpm43a9fbb1b16060a605250d64c441d55d00f5f27435db261bcf4c3ca4ac6720a9-ol8_x86_64_ovirt44
ovirt-engine-dbscripts-4.4.10.7-1.0.33.el8.noarch.rpm38822ce2a7b4c5e7a199a688496195a82bc612e6fe50ee0324fdd3b2f9f3a60d-ol8_x86_64_ovirt44
ovirt-engine-health-check-bundler-4.4.10.7-1.0.33.el8.noarch.rpma97404ee3ff7dfb60e380a93c36770faa5469d9b18c0ff6faa443b3c549fc313-ol8_x86_64_ovirt44
ovirt-engine-restapi-4.4.10.7-1.0.33.el8.noarch.rpm1de577dd2884ca913b2cc76933cf59e00ed99be3fceec5e05a54863ca054a27f-ol8_x86_64_ovirt44
ovirt-engine-setup-4.4.10.7-1.0.33.el8.noarch.rpm254a7fddf383dae9977c8e727c86d8f52fa385850b9936c7d6a65ffe6d7a44a4-ol8_x86_64_ovirt44
ovirt-engine-setup-base-4.4.10.7-1.0.33.el8.noarch.rpm5b4aff4dac2d0c9310b257461e781118b9e5b31091c7b2487d96aeb3761b655f-ol8_x86_64_ovirt44
ovirt-engine-setup-plugin-cinderlib-4.4.10.7-1.0.33.el8.noarch.rpm4414b7c495c724cbff568887d2f337e8234fb5fcd6cbfeea4243151929160453-ol8_x86_64_ovirt44
ovirt-engine-setup-plugin-imageio-4.4.10.7-1.0.33.el8.noarch.rpm0e621d4923b54731443585691544c82be49aaa57a70022d86a372afb94814414-ol8_x86_64_ovirt44
ovirt-engine-setup-plugin-ovirt-engine-4.4.10.7-1.0.33.el8.noarch.rpm3f393df5442c95117fe6357fb1e85bb85672c72dfdb6021a69f36374a1226dda-ol8_x86_64_ovirt44
ovirt-engine-setup-plugin-ovirt-engine-common-4.4.10.7-1.0.33.el8.noarch.rpmd13248e070d1516a828eae5e109e53d733652ecd0b8f336ed11a00f38f55db1c-ol8_x86_64_ovirt44
ovirt-engine-setup-plugin-vmconsole-proxy-helper-4.4.10.7-1.0.33.el8.noarch.rpm96d8f978a5d06d88c3c96a6b53d8908a70b4534da6a07597cab483c6611e220e-ol8_x86_64_ovirt44
ovirt-engine-setup-plugin-websocket-proxy-4.4.10.7-1.0.33.el8.noarch.rpm31ee3b1503cda4df68e85496b103cf9d62309302545dc9b8590e0cfb132a86fb-ol8_x86_64_ovirt44
ovirt-engine-tools-4.4.10.7-1.0.33.el8.noarch.rpm8f9ea86383e45ed2034db10ef57f66fcb8b9ae8f5bd7b8894e571b3c5036f98a-ol8_x86_64_ovirt44
ovirt-engine-tools-backup-4.4.10.7-1.0.33.el8.noarch.rpm9a5b7b0cbc0454cfd6087c4621ccd0fda1f10dc4127652b5f7d764e0b24316f6-ol8_x86_64_ovirt44
ovirt-engine-vmconsole-proxy-helper-4.4.10.7-1.0.33.el8.noarch.rpm1a409b3b8eae31f7f99016fd63aa5cb1bb0b3ec273e2cf0d2725bfd369c09cca-ol8_x86_64_ovirt44
ovirt-engine-webadmin-portal-4.4.10.7-1.0.33.el8.noarch.rpm27fb4718578f5a6eb66e56497d261201a3645fd9eeda0f21d22dace271e0fc19-ol8_x86_64_ovirt44
ovirt-engine-websocket-proxy-4.4.10.7-1.0.33.el8.noarch.rpm025a2a2a53e2e32f84184eda54b4a0615d6b56c8c1ff45b23f4e32b2b7e8de1e-ol8_x86_64_ovirt44
python3-ovirt-engine-lib-4.4.10.7-1.0.33.el8.noarch.rpm6460b92b5e5bd1f07c394b988d0f1895ba29051ce06d5495d2e4cb54528cff8e-ol8_x86_64_ovirt44



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete