VDB
RHSA-2010%3A0440
RHSA-2010%3A0440
PUBLISHED
An updated rhev-hypervisor package that fixes two security issues and several bugs is now available. The Red Hat Security Response Team has rated this update as having important security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Enterprise Virtualization Hypervisor 5 | ||
| rhev |
Exploit Intelligence
- A TLS server using a vendored fork of the Go TLS stack that has renegotation indication extension forcibly disabled. (github-poc)
- https://access.redhat.com/errata/RHSA-2010:0440 (circl)
- http://www.redhat.com/security/updates/classification/#important (circl)
- https://bugzilla.redhat.com/show_bug.cgi?id=533125 (circl)
- https://bugzilla.redhat.com/show_bug.cgi?id=570924 (circl)
- https://security.access.redhat.com/data/csaf/v2/advisories/2010/rhsa-2010_0440.json (circl)
Timeline
- May 25, 2010 CVE Published
- Nov 21, 2025 CVE Updated
- Apr 12, 2026 Distribution Patch
- Apr 12, 2026 Distribution Patch
- Apr 12, 2026 Security Advisory
- Apr 29, 2026 Security Advisory
- Apr 29, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2010:0440 advisory
- http://www.redhat.com/security/updates/classification/#important url
- https://bugzilla.redhat.com/show_bug.cgi?id=533125 url
- https://bugzilla.redhat.com/show_bug.cgi?id=570924 url
- https://security.access.redhat.com/data/csaf/v2/advisories/2010/rhsa-2010_0440.json advisory