ELBA-2024-12463

ELBA-2024-12463 - qemu bug fix update

Type:BUG
Severity:NA
Release Date:2024-06-27

Description


[4.2.1-34.el7]
- multifd: fix the multifd initialization (Elena Ufimtseva) [Orabug: 36598610]
- hw/scsi/scsi-generic: Fix io_timeout property not applying (Lorenz Brun) [Orabug: 36604206]
- scsi: make io_timeout configurable (Hannes Reinecke) [Orabug: 36604206]
- target/i386/monitor: synchronize cpu state for lapic info (Dongli Zhang) [Orabug: 36607762]

[4.2.1-32.el7]
- Document CVEs as fixed (Mark Kanda) [Orabug: 36455470] [Orabug: 36455480] [Orabug: 36455529] [Orabug: 36455489] [Orabug: 36455500] [Orabug: 36455512] [Orabug: 36455520] {CVE-2023-4135} {CVE-2023-3255} {CVE-2023-6683} {CVE-2023-40360} {CVE-2023-42467} {CVE-2024-26327} {CVE-2024-24474}
- hw/pvrdma: Protect against buggy or malicious guest driver (Yuval Shaia) [Orabug: 35250119] {CVE-2023-1544}
- hw/pflash_cfi01: allow smaller backing devices in postload_update_cb() (Mark Kanda) [Orabug: 36378764]
- hw/block/pflash: Check return value of blk_pwrite() (Mansour Ahmadi) [Orabug: 36378764]
- net: Update MemReentrancyGuard for NIC (Akihiko Odaki) [Orabug: 36421467] {CVE-2023-3019}
- net: Provide MemReentrancyGuard * to qemu_new_nic() (Akihiko Odaki) [Orabug: 36421467] {CVE-2023-3019}
- lsi53c895a: disable reentrancy detection for MMIO region, too (Thomas Huth) [Orabug: 36425307] {CVE-2021-3750}
- memory: stricter checks prior to unsetting engaged_in_io (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- async: avoid use-after-free on re-entrancy guard (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- apic: disable reentrancy detection for apic-msi (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- raven: disable reentrancy detection for iomem (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- bcm2835_property: disable reentrancy detection for iomem (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- lsi53c895a: disable reentrancy detection for script RAM (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- hw: replace most qemu_bh_new calls with qemu_bh_new_guarded (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- checkpatch: add qemu_bh_new/aio_bh_new checks (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- async: Add an optional reentrancy guard to the BH API (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- memory: prevent dma-reentracy issues (Alexander Bulekov) [Orabug: 36425307] {CVE-2021-3750}
- util/async: add a human-readable name to BHs for debugging (Stefan Hajnoczi) [Orabug: 36425307] {CVE-2021-3750}
- io: remove io watch if TLS channel is closed during handshake (Daniel Berrange) [Orabug: 35595204] {CVE-2023-3354}
- tests/qtest: ahci-test: add test exposing reset issue with pending callback (Fiona Ebner) [Orabug: 36327659] {CVE-2023-5088}
- hw/ide: reset: cancel async DMA operation before resetting state (Fiona Ebner) [Orabug: 36327659] {CVE-2023-5088}
- accel/tcg: fix race in cpu_exec_step_atomic (bug 1863025) (Alex Bennee) [Orabug: 36327651] {CVE-2020-24165}
- physmem: add missing memory barrier (Paolo Bonzini) [Orabug: 35886091]
- qemu-coroutine-lock: add smp_mb__after_rmw() (Paolo Bonzini) [Orabug: 35886091]
- aio-wait: switch to smp_mb__after_rmw() (Paolo Bonzini) [Orabug: 35886091]
- edu: add smp_mb__after_rmw() (Paolo Bonzini) [Orabug: 35886091]
- qemu-thread-win32: cleanup, fix, document QemuEvent (Paolo Bonzini) [Orabug: 35886091]
- qemu-thread-posix: cleanup, fix, document QemuEvent (Paolo Bonzini) [Orabug: 35886091]
- qatomic: add smp_mb__before/after_rmw() (Paolo Bonzini) [Orabug: 35886091]
- aio_wait_kick: add missing memory barrier (Emanuele Giuseppe Esposito) [Orabug: 35886091]
- hw/smbios: Fix core count in type4 (Zhao Liu) [Orabug: 35876036]
- hw/smbios: Fix thread count in type4 (Zhao Liu) [Orabug: 35876036]
- hw/smbios: Fix smbios_smp_sockets caculation (Zhao Liu) [Orabug: 35876036]
- machine: Add helpers to get cores/threads per socket (Zhao Liu) [Orabug: 35876036]
- machine: move dies from X86MachineState to CpuTopology (Paolo Bonzini) [Orabug: 35876036]
- machine: move SMP initialization from vl.c (Paolo Bonzini) [Orabug: 35876036]
- machine: move UP defaults to class_base_init (Paolo Bonzini) [Orabug: 35876036]




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) qemu-4.2.1-34.el7.src.rpm7045551750c99d140716854e4916cfe1-ol7_aarch64_latest
qemu-4.2.1-34.el7.src.rpm7045551750c99d140716854e4916cfe1-ol7_aarch64_optional_latest
qemu-4.2.1-34.el7.src.rpm7045551750c99d140716854e4916cfe1-ol7_aarch64_u9_patch
ivshmem-tools-4.2.1-34.el7.aarch64.rpm70ebe13a987c26c1bdb2bed9bdce0537-ol7_aarch64_latest
ivshmem-tools-4.2.1-34.el7.aarch64.rpm70ebe13a987c26c1bdb2bed9bdce0537-ol7_aarch64_u9_patch
qemu-4.2.1-34.el7.aarch64.rpm0337ae6c1005e785ddf6240dfcc565ff-ol7_aarch64_latest
qemu-4.2.1-34.el7.aarch64.rpm0337ae6c1005e785ddf6240dfcc565ff-ol7_aarch64_u9_patch
qemu-block-gluster-4.2.1-34.el7.aarch64.rpm383ef250d1e996ef1d9f8e3b16cdd39d-ol7_aarch64_latest
qemu-block-gluster-4.2.1-34.el7.aarch64.rpm383ef250d1e996ef1d9f8e3b16cdd39d-ol7_aarch64_u9_patch
qemu-block-iscsi-4.2.1-34.el7.aarch64.rpm210c2fd6023788bfa1e8a632f7408fb9-ol7_aarch64_latest
qemu-block-iscsi-4.2.1-34.el7.aarch64.rpm210c2fd6023788bfa1e8a632f7408fb9-ol7_aarch64_u9_patch
qemu-block-rbd-4.2.1-34.el7.aarch64.rpm7be5849d42771a8f0c9da7af0b6561d0-ol7_aarch64_latest
qemu-block-rbd-4.2.1-34.el7.aarch64.rpm7be5849d42771a8f0c9da7af0b6561d0-ol7_aarch64_u9_patch
qemu-common-4.2.1-34.el7.aarch64.rpm3d51432c17ba0b0c2dd7175e2c8f718b-ol7_aarch64_latest
qemu-common-4.2.1-34.el7.aarch64.rpm3d51432c17ba0b0c2dd7175e2c8f718b-ol7_aarch64_u9_patch
qemu-img-4.2.1-34.el7.aarch64.rpmcbffe8c80c17a182a49baa41b41ee1a3-ol7_aarch64_latest
qemu-img-4.2.1-34.el7.aarch64.rpmcbffe8c80c17a182a49baa41b41ee1a3-ol7_aarch64_u9_patch
qemu-kvm-4.2.1-34.el7.aarch64.rpm414fc59320b84ab9bb9a9209270f4bd1-ol7_aarch64_latest
qemu-kvm-4.2.1-34.el7.aarch64.rpm414fc59320b84ab9bb9a9209270f4bd1-ol7_aarch64_u9_patch
qemu-kvm-core-4.2.1-34.el7.aarch64.rpmd8b5b7d06fed652b1412462129f008a6-ol7_aarch64_latest
qemu-kvm-core-4.2.1-34.el7.aarch64.rpmd8b5b7d06fed652b1412462129f008a6-ol7_aarch64_u9_patch
qemu-system-aarch64-4.2.1-34.el7.aarch64.rpm935fe11347915940b233e5c522548b8f-ol7_aarch64_latest
qemu-system-aarch64-4.2.1-34.el7.aarch64.rpm935fe11347915940b233e5c522548b8f-ol7_aarch64_u9_patch
qemu-system-aarch64-core-4.2.1-34.el7.aarch64.rpmce9d1c2e29488cae6135c0932fdffe29-ol7_aarch64_latest
qemu-system-aarch64-core-4.2.1-34.el7.aarch64.rpmce9d1c2e29488cae6135c0932fdffe29-ol7_aarch64_u9_patch
Oracle Linux 7 (x86_64) qemu-4.2.1-34.el7.src.rpm7045551750c99d140716854e4916cfe1-ol7_x86_64_kvm_utils
qemu-4.2.1-34.el7.x86_64.rpm84be8ef957655be6fd22085b14ad51e4-ol7_x86_64_kvm_utils
qemu-block-gluster-4.2.1-34.el7.x86_64.rpm1d8f8074b127c3d05d1ec980510e1c9e-ol7_x86_64_kvm_utils
qemu-block-iscsi-4.2.1-34.el7.x86_64.rpm8379fdce16e954abb248dc3e9aaca727-ol7_x86_64_kvm_utils
qemu-block-rbd-4.2.1-34.el7.x86_64.rpmd3b5b94695bbf58782a44fc13fb67e64-ol7_x86_64_kvm_utils
qemu-common-4.2.1-34.el7.x86_64.rpmf780f9587eab99cc742eb8fba8a47c07-ol7_x86_64_kvm_utils
qemu-img-4.2.1-34.el7.x86_64.rpm2c68009b8cb907eedb90cafca2d1e64c-ol7_x86_64_kvm_utils
qemu-kvm-4.2.1-34.el7.x86_64.rpm3859a40106d25f634eb5f51409b1cf22-ol7_x86_64_kvm_utils
qemu-kvm-core-4.2.1-34.el7.x86_64.rpm58536048f041b355293cd0fe97f603ef-ol7_x86_64_kvm_utils



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete