oVirt
Open source virtualization management platform for KVM infrastructure
A virtualization manager coasting on backports, with releases years apart
◆Recent moves
- 7mo ago
4.5.7 lands after a two-year gap with accumulated fixes
The first release in roughly two years, bundling NVRAM save/restore logic changes, CA generation as a non-root user, Keycloak empty-group handling, and database cleanup after materialized view removal. Its content is unremarkable; its timing is the signal.
View source ↗ - 2y ago
oVirt Engine 4.5.3.11
A single backport excluding shared disks when iterating during VM import from a storage domain. One fix, nothing else.
View source ↗ - 2y ago
4.5.6 fixes CVE-2024-0822 in GWT session creation
Disables execution of CreateUserSession from GWT code to close CVE-2024-0822, alongside a kernel cmdline quoting fix and restoration of the grafana.db SELinux context after engine-restore. The security fix is the reason to take this release.
View source ↗ - 2y ago
4.5.3.10 backports the GWT session security fix
Carries the CreateUserSession fix back to the 4.5.3 stream along with a fix to fail properly when getVolumeInfo fails during OVF read. Exists so deployments pinned to 4.5.3 are not left exposed.
View source ↗ - 2y ago
4.5.5 clears OVF import, template and image removal bugs
The broadest fix release in the window: internal OVF reading now also looks for InstanceID, NPEs during OVA import are fixed, RemoveImage execution is corrected, template name length checks fixed, and user-role entity search repaired. Import and template handling dominate, which is where this engine's bugs cluster.
View source ↗ - 2y ago
build: ovirt-engine-4.5.3.9
A build tag whose entire body is a sign-off line. No described change.
View source ↗