ELSA-2020-5576

ELSA-2020-5576 - qemu security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2020-03-17

Description


[15:3.1.0-7.el7]
- qemu-img: Add --target-is-zero to convert (David Edmondson)

[15:3.1.0-6.el7]
- qemu.spec: Remove 'BuildRequires: kernel' (Karl Heubaum) [Orabug: 30858754]
- target/i386: add support for MSR_IA32_TSX_CTRL (Paolo Bonzini) [Orabug: 30652327]
- iscsi: Cap block count from GET LBA STATUS (CVE-2020-1711) (Felipe Franciosi) [Orabug: 30807256] {CVE-2020-1711}
- scsi: lsi: exit infinite loop while executing script (CVE-2019-12068) (Paolo Bonzini) [Orabug: 30351703] {CVE-2019-12068}
- lsi: use enum type for s->waiting (Sven Schnelle) {CVE-2019-12068}
- json: Fix % handling when not interpolating (Christophe Fergeau) [Orabug: 30640103]
- qemu.spec: enable have_curl in spec (Dongli Zhang) [Orabug: 30640103]
- Fix heap overflow in ip_reass on big packet input (Samuel Thibault) [Orabug: 30229916] {CVE-2019-14378}
- Make poll_control_msr default 1 (Mark Kanda)
- Remove redundant check for host support of halt polling (Mark Kanda) [Orabug: 30240121]
- Enable '-Werror' compiler flag (Mark Kanda) [Orabug: 30213025]
- qemu-submodule-init: Add Git submodule init script (Karl Heubaum) [Orabug: 30729551]


Related CVEs


CVE-2020-1711
CVE-2019-14378
CVE-2019-12068

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) qemu-3.1.0-7.el7.src.rpm06b7434eccbdcca21be084a10752b380-
qemu-3.1.0-7.el7.x86_64.rpm913c268cfccae1184c8b7454e8145ab9-
qemu-block-gluster-3.1.0-7.el7.x86_64.rpm23d73ef1ab341179ce6249b070cc1a40-
qemu-block-iscsi-3.1.0-7.el7.x86_64.rpmfc8ac42b474aa29800c710516e55ac1f-
qemu-block-rbd-3.1.0-7.el7.x86_64.rpmd125f0045cf6f123a904222ece86825b-
qemu-common-3.1.0-7.el7.x86_64.rpm1b8b23c367ddbe6e06e6b28b5051df9e-
qemu-img-3.1.0-7.el7.x86_64.rpmdea8db09457cc5c61c8e30fabd366ee4-
qemu-kvm-3.1.0-7.el7.x86_64.rpm4fdf9f185997ff57fbba61cfb16e93e4-
qemu-kvm-core-3.1.0-7.el7.x86_64.rpmf02c9c9a842d2f7b5d1df360bd70f7e9-
qemu-system-x86-3.1.0-7.el7.x86_64.rpm9912e46c6088c88793b55df2b2aed800-
qemu-system-x86-core-3.1.0-7.el7.x86_64.rpm12910d78e51917849e2e0c72e21c2e47-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete