ELSA-2021-0347

ELSA-2021-0347 - qemu-kvm security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2021-02-03

Description


[1.5.3-175.el7_9.3]
- kvm-Suppress-prototype-warning-for-nss-headers.patch [bz#1884997]
- Resolves: bz#1884997
(qemu-kvm FTBFS on rhel7.9)

[1.5.3-175.el7_9.2]
- kvm-hw-net-vmxnet_tx_pkt-fix-assertion-failure-in-vmxnet.patch [bz#1860960]
- kvm-hw-core-loader-Fix-possible-crash-in-rom_copy.patch [bz#1842923]
- Resolves: bz#1842923
(CVE-2020-13765 qemu-kvm: QEMU: loader: OOB access while loading registered ROM may lead to code execution [rhel-7.9.z])
- Resolves: bz#1860960
(CVE-2020-16092 qemu-kvm: QEMU: reachable assertion failure in net_tx_pkt_add_raw_fragment() in hw/net/net_tx_pkt.c [rhel-7.9.z])


Related CVEs


CVE-2020-13765
CVE-2020-16092

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) qemu-kvm-1.5.3-175.el7_9.3.src.rpme06a534b86fc6bce30ec42586cd8e998ELBA-2021-9161
qemu-img-1.5.3-175.el7_9.3.x86_64.rpm11a556ac5790002bfeea4be2b47c12dcELBA-2021-9161
qemu-kvm-1.5.3-175.el7_9.3.x86_64.rpm581967085eb19fa670a118dadaadb460ELBA-2021-9161
qemu-kvm-common-1.5.3-175.el7_9.3.x86_64.rpm087aef915e435b04142af52b1555e61f-
qemu-kvm-tools-1.5.3-175.el7_9.3.x86_64.rpm3cf5b1005c00241f6d15a015dacc3625-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete