{"id":"RHSA-2021:2736","summary":"Red Hat Security Advisory: Red Hat Virtualization Host security and bug fix update [ovirt-4.4.7]","modified":"2026-02-20T10:03:30Z","published":"2024-09-16T05:55:24Z","upstream":["CVE-2021-32399","CVE-2021-33034","CVE-2021-33909","CVE-2021-33910","CVE-2021-3447"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2021:2736"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#important"},{"type":"ARTICLE","url":"https://access.redhat.com/security/vulnerabilities/RHSB-2021-006"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1883793"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1939349"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1955415"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1957242"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1958145"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1961305"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1970273"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1970887"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1970970"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1976005"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1976095"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1976118"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1976146"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1976148"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_2736.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-3447"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-3447"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-3447"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-32399"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1970807"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-32399"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-32399"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-33034"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-33034"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-33034"},{"type":"ARTICLE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=5c4c8c9544099bb9043a10a5318130a943e32fc3"},{"type":"ARTICLE","url":"https://sites.google.com/view/syzscope/kasan-use-after-free-read-in-hci_send_acl"},{"type":"ARTICLE","url":"https://syzkaller.appspot.com/bug?id=2e1943a94647f7732dd6fc60368642d6e8dc91b1"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-33909"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-33909"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-33909"},{"type":"ARTICLE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8cae8cd89f05f6de223d63e6d15e31c8ba9cf53b"},{"type":"ARTICLE","url":"https://www.openwall.com/lists/oss-security/2021/07/20/1"},{"type":"ARTICLE","url":"https://www.qualys.com/2021/07/20/cve-2021-33909/sequoia-local-privilege-escalation-linux.txt"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-33910"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-33910"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-33910"},{"type":"ARTICLE","url":"https://www.qualys.com/2021/07/20/cve-2021-33910/denial-of-service-systemd.txt"}],"affected":[{"package":{"name":"redhat-virtualization-host","ecosystem":"Red Hat:rhev_hypervisor:4.4::el8","purl":"pkg:rpm/redhat/redhat-virtualization-host"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.4.7-20210715.1.el8_4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2021:2736.json"}},{"package":{"name":"redhat-virtualization-host-image-update","ecosystem":"Red Hat:rhev_hypervisor:4.4::el8","purl":"pkg:rpm/redhat/redhat-virtualization-host-image-update"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.4.7-20210715.1.el8_4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2021:2736.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}