ELSA-2012-0050

ELSA-2012-0050 - qemu-kvm security, bug fix, and enhancement update

Type:SECURITY
Impact:IMPORTANT
Release Date:2012-01-23

Description


[qemu-kvm-0.12.1.2-2.209.el6_2.4]
- kvm-e1000-prevent-buffer-overflow-when-processing-legacy.patch [bz#772081]
- Resolves: bz#772081
(EMBARGOED CVE-2012-0029 qemu-kvm: e1000: process_tx_desc legacy mode packets heap overflow [rhel-6.2.z])

[qemu-kvm-0.12.1.2-2.209.el6_2.3]
- kvm-Revert-virtio-blk-refuse-SG_IO-requests-with-scsi-of.patch [for bz#767721]
- kvm-virtio-blk-refuse-SG_IO-requests-with-scsi-off-v2.patch [bz#767721]
- CVE: CVE-2011-4127
- Resolves: bz#767721
(qemu-kvm: virtio-blk: refuse SG_IO requests with scsi=off (CVE-2011-4127 mitigation) [rhel-6.2.z])

[qemu-kvm-0.12.1.2-2.209.el6_2.2]
- kvm-virtio-blk-refuse-SG_IO-requests-with-scsi-off.patch [bz#752375]
- CVE: CVE-2011-4127
- Resolves: bz#767721
(EMBARGOED qemu-kvm: virtio-blk: refuse SG_IO requests with scsi=off (CVE-2011-4127 mitigation) [rhel-6.3])
- Resolves: bz#767906
(qemu-kvm should be built with full relro and PIE support)


Related CVEs


CVE-2012-0029

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 6 (x86_64) qemu-kvm-0.12.1.2-2.209.el6_2.4.src.rpm7808e2e8449b61e724ef3c0936d2b78cbfaed079583bcb116564a0a0533182a2ELSA-2020-4056ol6_u2_x86_64_patch
qemu-kvm-0.12.1.2-2.209.el6_2.4.src.rpm7808e2e8449b61e724ef3c0936d2b78cbfaed079583bcb116564a0a0533182a2ELSA-2020-4056ol6_x86_64_latest_archive
qemu-img-0.12.1.2-2.209.el6_2.4.x86_64.rpme25ff01e76454c9a590396a2897eda525db10cb769949dddd064bd0a8a9bb261ELSA-2020-4056ol6_u2_x86_64_patch
qemu-img-0.12.1.2-2.209.el6_2.4.x86_64.rpme25ff01e76454c9a590396a2897eda525db10cb769949dddd064bd0a8a9bb261ELSA-2020-4056ol6_x86_64_latest_archive
qemu-kvm-0.12.1.2-2.209.el6_2.4.x86_64.rpmecea4bae2e01ee3549f149865ac02e1f42d634175761d82eb73856db4a6b260aELSA-2020-4056ol6_u2_x86_64_patch
qemu-kvm-0.12.1.2-2.209.el6_2.4.x86_64.rpmecea4bae2e01ee3549f149865ac02e1f42d634175761d82eb73856db4a6b260aELSA-2020-4056ol6_x86_64_latest_archive
qemu-kvm-tools-0.12.1.2-2.209.el6_2.4.x86_64.rpm76c6a721bed35ba84b3d83dcd0f726cfacfadf4090e4a5b89a9ad79f614bd573ELSA-2020-4056ol6_u2_x86_64_patch
qemu-kvm-tools-0.12.1.2-2.209.el6_2.4.x86_64.rpm76c6a721bed35ba84b3d83dcd0f726cfacfadf4090e4a5b89a9ad79f614bd573ELSA-2020-4056ol6_x86_64_latest_archive



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete