ELSA-2020-1208

ELSA-2020-1208 - qemu-kvm security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2020-04-10

Description


[1.5.3-173.el7_8.1]
- kvm-util-add-slirp_fmt-helpers.patch [bz#1798970]
- kvm-tcp_emu-fix-unsafe-snprintf-usages.patch [bz#1798970]
- Resolves: bz#1798970
(CVE-2020-8608 qemu-kvm: QEMU: Slirp: potential OOB access due to unsafe snprintf() usages [rhel-7.8.z])


Related CVEs


CVE-2020-8608

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) qemu-kvm-1.5.3-173.el7_8.1.src.rpm5e77db3638211248241bd43df8cb7f4d78f1c2a32798e6b87270f89ea311142eELBA-2024-12732ol7_x86_64_latest
qemu-kvm-1.5.3-173.el7_8.1.src.rpm5e77db3638211248241bd43df8cb7f4d78f1c2a32798e6b87270f89ea311142eELBA-2024-12732ol7_x86_64_u8_patch
qemu-img-1.5.3-173.el7_8.1.x86_64.rpmce59b575ace08d6fd3275cf630454939fe6d633c945aab651aa89a32eee9e4edELBA-2024-12732ol7_x86_64_latest
qemu-img-1.5.3-173.el7_8.1.x86_64.rpmce59b575ace08d6fd3275cf630454939fe6d633c945aab651aa89a32eee9e4edELBA-2024-12732ol7_x86_64_u8_patch
qemu-kvm-1.5.3-173.el7_8.1.x86_64.rpm60cf17f795c5ce92c85df20616461249be11ac0412b02a4a839c57a1417db8f2ELBA-2024-12732ol7_x86_64_latest
qemu-kvm-1.5.3-173.el7_8.1.x86_64.rpm60cf17f795c5ce92c85df20616461249be11ac0412b02a4a839c57a1417db8f2ELBA-2024-12732ol7_x86_64_u8_patch
qemu-kvm-common-1.5.3-173.el7_8.1.x86_64.rpma4be2f63b71cc605a4516bd4bc9e78d880a4a3e7c94b6f2a5b0b508522c0dd2dELBA-2022-4639ol7_x86_64_latest
qemu-kvm-common-1.5.3-173.el7_8.1.x86_64.rpma4be2f63b71cc605a4516bd4bc9e78d880a4a3e7c94b6f2a5b0b508522c0dd2dELBA-2022-4639ol7_x86_64_u8_patch
qemu-kvm-tools-1.5.3-173.el7_8.1.x86_64.rpm4bea7b8e2d2ccb064dd5a4c70bd226047b4d3d0609b2acf3bc9c78ba8e4c07ccELBA-2022-4639ol7_x86_64_latest
qemu-kvm-tools-1.5.3-173.el7_8.1.x86_64.rpm4bea7b8e2d2ccb064dd5a4c70bd226047b4d3d0609b2acf3bc9c78ba8e4c07ccELBA-2022-4639ol7_x86_64_u8_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete