ELSA-2017-0987

ELSA-2017-0987 - qemu-kvm security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2017-04-18

Description


[1.5.3-126.el7_3.6]
- kvm-fix-cirrus_vga-fix-OOB-read-case-qemu-Segmentation-f.patch [bz#1430059]
- kvm-cirrus-vnc-zap-bitblit-support-from-console-code.patch [bz#1430059]
- kvm-cirrus-add-option-to-disable-blitter.patch [bz#1430059]
- kvm-cirrus-fix-cirrus_invalidate_region.patch [bz#1430059]
- kvm-cirrus-stop-passing-around-dst-pointers-in-the-blitt.patch [bz#1430059]
- kvm-cirrus-stop-passing-around-src-pointers-in-the-blitt.patch [bz#1430059]
- kvm-cirrus-fix-off-by-one-in-cirrus_bitblt_rop_bkwd_tran.patch [bz#1430059]
- Resolves: bz#1430059
(CVE-2016-9603 qemu-kvm: Qemu: cirrus: heap buffer overflow via vnc connection [rhel-7.3.z])


Related CVEs


CVE-2016-9603

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) qemu-kvm-1.5.3-126.el7_3.6.src.rpmb720a68908a438458ba22b43a676d6e2ELBA-2021-9161
qemu-img-1.5.3-126.el7_3.6.x86_64.rpm6dfb876163635d8addc5fea44f8fe1f7ELBA-2021-9161
qemu-kvm-1.5.3-126.el7_3.6.x86_64.rpm2b2f79294b2490a257730af059d6d392ELBA-2021-9161
qemu-kvm-common-1.5.3-126.el7_3.6.x86_64.rpm4aa150185bcf0362b16e0a0e52359f02ELSA-2021-0347
qemu-kvm-tools-1.5.3-126.el7_3.6.x86_64.rpm4487a89210f951112dd87258bdb3452fELSA-2021-0347



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete