ELSA-2019-4640

ELSA-2019-4640 - qemu security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2019-05-14

Description


[15:3.1.0-3.el7]
- x86: Document CVE-2018-12126 CVE-2018-12130 CVE-2018-12127 CVE-2019-11091 as
fixed (Mark Kanda) [Orabug: 29744956] {CVE-2018-12126} {CVE-2018-12127}
{CVE-2018-12130} {CVE-2019-11091}

[15:3.1.0-2.el7]
- x86: Add mds feature (Karl Heubaum)
- e1000: Never increment the RX undersize count register (Chris Kenna)
- qemu.spec: audioflags set but never passed to configure script (Liam Merwick) [Orabug: 29715562]
- parfait: deal with parfait returning non-zero return value (Liam Merwick) [Orabug: 29715548]
- parfait: use nproc to choose default number of threads (Liam Merwick) [Orabug: 29715548]
- parfait: provide option to upload results (Liam Merwick) [Orabug: 29715548]
- parfait: disable misaligned-access check (Liam Merwick) [Orabug: 29715548]
- Document CVE-2019-8934 and CVE-2019-5008 as fixed (Mark Kanda) [Orabug: 29715605] {CVE-2019-5008} {CVE-2019-8934}
- device_tree.c: Don't use load_image() (Peter Maydell) [Orabug: 29715527] {CVE-2018-20815}
- slirp: check sscanf result when emulating ident (William Bowling) [Orabug: 29715525] {CVE-2019-9824}
- i2c-ddc: fix oob read (Gerd Hoffmann) [Orabug: 29715520] {CVE-2019-3812}
- scsi-generic: avoid possible out-of-bounds access to r->buf (Paolo Bonzini) [Orabug: 29259700] {CVE-2019-6501}
- slirp: check data length while emulating ident function (Prasad J Pandit) [Orabug: 29715755] {CVE-2019-6778}


Related CVEs


CVE-2018-12126
CVE-2018-12130
CVE-2018-18438
CVE-2018-19665
CVE-2018-20815
CVE-2019-3812
CVE-2018-12127
CVE-2019-6501
CVE-2019-6778
CVE-2019-8934
CVE-2019-9824
CVE-2019-11091
CVE-2018-20123

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) qemu-3.1.0-3.el7.src.rpme9fd1e1483cecf3ff76d4bd0518ebfd7ec998cf9faf78792060d25086d1a9c36ELBA-2023-24511ol7_aarch64_latest
ivshmem-tools-3.1.0-3.el7.aarch64.rpma855ca32d9467bc92f31cf21990d36c337a9f4c5bb931185d68127cb2c4d42aeELBA-2024-12732ol7_aarch64_latest
qemu-3.1.0-3.el7.aarch64.rpm34fafe0343007313d69cfeddb7d3894b734b8d1eabd469310fd37073c81d1066ELBA-2023-24511ol7_aarch64_latest
qemu-block-gluster-3.1.0-3.el7.aarch64.rpmbc7cb3e5e38391e9801708c4364366f103f552238f683d2f159a04f448be94e2ELBA-2024-12732ol7_aarch64_latest
qemu-block-iscsi-3.1.0-3.el7.aarch64.rpm4c8a4c59968174606ef33e57084317d94a157765fa9b881d9906e38d362f4254ELBA-2024-12732ol7_aarch64_latest
qemu-block-rbd-3.1.0-3.el7.aarch64.rpmf1539a90e1d3a7717549ce44e57956b6c59441b6c4737b1af9cb71e5c10086a9ELBA-2024-12732ol7_aarch64_latest
qemu-common-3.1.0-3.el7.aarch64.rpm5f1d86235aa364895c4b2a96a4e8704091b0928a89dcd08bd52e1a4a6e146863ELBA-2023-24511ol7_aarch64_latest
qemu-img-3.1.0-3.el7.aarch64.rpm7866f44cb6822b1ffab27c8c68f28f533b540c3b515e85c679e416bb966bded0ELBA-2024-12732ol7_aarch64_latest
qemu-kvm-3.1.0-3.el7.aarch64.rpm50cfbb08c2a2d5bb67f0ac22113061325eaa6c3c901d5d43c8de7b9b7f19c180ELBA-2024-12732ol7_aarch64_latest
qemu-kvm-core-3.1.0-3.el7.aarch64.rpm042c21dc81f21cbfab669671db03d6704b6a948da7166e18f167219a57ef8e32ELBA-2024-12732ol7_aarch64_latest
qemu-system-aarch64-3.1.0-3.el7.aarch64.rpma02e1deca58a0f3ca7317164915f2ee3388a71824e6f4336ca075a4f269b0b9fELBA-2024-12732ol7_aarch64_latest
qemu-system-aarch64-core-3.1.0-3.el7.aarch64.rpm418cae4fc2a6d8c60c9bc6d106d3d94a4d6867c9c79cd443cd8a08249267cb86ELBA-2024-12732ol7_aarch64_latest
Oracle Linux 7 (x86_64) qemu-3.1.0-3.el7.src.rpme9fd1e1483cecf3ff76d4bd0518ebfd7ec998cf9faf78792060d25086d1a9c36ELBA-2023-24511ol7_x86_64_kvm_utils
qemu-3.1.0-3.el7.x86_64.rpmc75390fb5d973763e1fd27d891757342eee648f34867c8cf61acfd5fb73c1f96ELBA-2023-24511ol7_x86_64_kvm_utils
qemu-block-gluster-3.1.0-3.el7.x86_64.rpm1bcfc1e38bad7e92e70c97c01218e47bb1903da3d3124107f627980d79d3b3fdELBA-2024-12732ol7_x86_64_kvm_utils
qemu-block-iscsi-3.1.0-3.el7.x86_64.rpme9e7cb4a4cc7a5ccc1e0c0601643f2893818bbcd1f8c4aed6f33e08891be9123ELBA-2024-12732ol7_x86_64_kvm_utils
qemu-block-rbd-3.1.0-3.el7.x86_64.rpm2fd33ee8b5b8a32366460f7ab0f47473dfed7f98e3e1992396975baba86104feELBA-2024-12732ol7_x86_64_kvm_utils
qemu-common-3.1.0-3.el7.x86_64.rpm596856a279fd02f3e49d1004b420a970591221b5aa155c924e1429b029824abaELBA-2023-24511ol7_x86_64_kvm_utils
qemu-img-3.1.0-3.el7.x86_64.rpmab7dbcf9800ab7537aa674ce25ef3ce01ef131548654213ccc43b616bca964ebELBA-2024-12732ol7_x86_64_kvm_utils
qemu-kvm-3.1.0-3.el7.x86_64.rpma4ae7ebf7f41c74e94c1ea34c4e7fbef3cdffd6109ccc410bf44050a787860d0ELBA-2024-12732ol7_x86_64_kvm_utils
qemu-kvm-core-3.1.0-3.el7.x86_64.rpm721a68c3b44ae8bd25d93769d8e7b77d2d69aaaa78db2c09f701b162563afc21ELBA-2024-12732ol7_x86_64_kvm_utils



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete