ELSA-2011-0919

ELSA-2011-0919 - qemu-kvm security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2011-07-05

Description



[qemu-kvm-0.12.1.2-2.160.el6_1.2]
- kvm-virtio-guard-against-negative-vq-notifies.patch [bz#717403]
- Resolves: bz#717403
(qemu-kvm: OOB memory access caused by negative vq notifies [rhel-6.1.z])

[qemu-kvm-0.12.1.2-2.160.el6_1]
- kvm-Fix-phys-memory-client-pass-guest-physical-address-n.patch [bz#701771]
- kvm-virtio-prevent-indirect-descriptor-buffer-overflow.patch [bz#713592]
- Resolves: bz#701771
(Fix phys memory client for vhost)
- Resolves: bz#713592
(EMBARGOED CVE-2011-2212 virtqueue: too-large indirect descriptor buffer overflow [rhel-6.1.z])


Related CVEs


CVE-2011-2212
CVE-2011-2512

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (x86_64) qemu-kvm-0.12.1.2-2.160.el6_1.2.src.rpmb6285c258be5c74a0bea23540040b960ELSA-2020-4056
qemu-img-0.12.1.2-2.160.el6_1.2.x86_64.rpmd7f983cfda33d4e4caa77542f2f9e542ELSA-2020-4056
qemu-kvm-0.12.1.2-2.160.el6_1.2.x86_64.rpmde19d1eba33e41820bfe756efa503287ELSA-2020-4056
qemu-kvm-tools-0.12.1.2-2.160.el6_1.2.x86_64.rpm9e661dc91fd28cc735a2f5adae65ef28ELSA-2020-4056



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete