Comments

4 Comments
karma

Works as expected

@kparal sorry for the incorrect change in karma. It looks like I can't undo it now. Opened https://bugzilla.redhat.com/show_bug.cgi?id=2217885 to track this.

karma

I'm hitting this bug on Fedora 38: https://bugzilla.redhat.com/show_bug.cgi?id=2167302

Had to downgrade to libvirt 8.10.0, since libvirt 9.0.0 (up to but excluding 9.1.0) is affected. Should I open an extra BZ for Fedora? Would love to get the upgrade to 9.1

BZ#2174208 CVE-2023-1018 libtpms: tpm2: TCG TPM2.0 implementations vulnerable to memory corruption [fedora-all]
BZ#2174322 CVE-2023-1017 libtpms: tpm: TCG TPM2.0 implementations vulnerable to memory corruption [fedora-all]