ELSA-2023-12065

ELSA-2023-12065 - qemu security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-01-23

Description


[15:4.2.1-24.el7]
- Revert 'virtio-scsi: Send 'REPORTED LUNS CHANGED' sense data upon disk hotplug
events' (Mark Kanda) [Orabug: 34905939]

[15:4.2.1-23.el7]
- hw/display/ati_2d: Fix buffer overflow in ati_2d_blt (CVE-2021-3638) (Philippe Mathieu-Daude) [Orabug: 33930374] {CVE-2021-3638}
- tests/acpi: virt: update ACPI MADT and FADT binaries (Miguel Luis)
- acpi: arm/virt: madt: bump to revision 4 accordingly to ACPI 6.0 Errata A (Miguel Luis)
- acpi: arm/virt: madt: use build_append_int_noprefix() API to compose MADT table (Igor Mammedov)
- acpi: madt: arm/x86: use acpi_table_begin()/acpi_table_end() instead of build_header() (Igor Mammedov)
- hw/arm/virt-acpi-build:Remove dead assignment in build_madt() (Chen Qun)
- acpi: build_fadt: adapt FADT table names (Miguel Luis)
- acpi: fadt: support revision 6.0 of the ACPI specification (Miguel Luis)
- tests/acpi: virt: allow acpi MADT and FADT changes (Miguel Luis)
- Document CVE-2022-1050 and CVE-2022-3165 (Mark Kanda) [Orabug: 34132133] [Orabug: 34713999] {CVE-2022-1050} {CVE-2022-3165}
- hw/acpi/erst.c: Fix memory handling issues (Christian A. Ehrhardt) [Orabug: 34779472] {CVE-2022-4172}
- vhost-vdpa: fix assert !virtio_net_get_subqueue(nc)->async_tx.elem in virtio_net_reset (Si-Wei Liu)
- net/vhost-vdpa.c: Fix clang compilation failure (Peter Maydell)
- vhost-vdpa: allow passing opened vhostfd to vhost-vdpa (Si-Wei Liu)
- virtio-scsi: Send 'REPORTED LUNS CHANGED' sense data upon disk hotplug events (Venu Busireddy) [Orabug: 33649154]
- hw/acpi/aml-build: Improve scalability of PPTT generation (Yanan Wang)
- tests/data/acpi/virt: update empty file for PPTT (Miguel Luis)
- hw/arm/virt-acpi-build: Generate PPTT table (Yanan Wang)
- tests/data/acpi/virt: Add an empty expected file for PPTT (Yanan Wang)
- hw/acpi/aml-build: Add PPTT table (Andrew Jones)
- hw/acpi/aml-build: Add Processor hierarchy node structure (Yanan Wang)
- machine: Add SMP Sockets in CpuTopology (Babu Moger)
- bios-tables-test: generate table for virt/DBG2 (Miguel Luis)
- hw/arm/virt_acpi_build: Generate DBG2 table (Eric Auger)
- tests/acpi: Add void table for virt/DBG2 bios-tables-test (Eric Auger)
- tests/acpi: virt: update ACPI GTDT binaries (Miguel Luis) [Orabug: 34711916]
- acpi: arm/virt: build_gtdt: fix invalid 64-bit physical addresses (Miguel Luis) [Orabug: 34711916]
- tests/acpi: virt: allow acpi GTDT changes (Miguel Luis) [Orabug: 34711916]
- acpi: fix OEM ID/OEM Table ID padding (Igor Mammedov) [Orabug: 34711916]
- acpi: arm/virt: build_gtdt: use acpi_table_begin()/acpi_table_end() instead of build_header() (Igor Mammedov) [Orabug: 34711916]
- acpi: add helper routines to initialize ACPI tables (Igor Mammedov) [Orabug: 34711916]
- acpi: declare the default assignable value for the ACPI table header (Miguel Luis) [Orabug: 34711916]


Related CVEs


CVE-2022-3165
CVE-2022-4172
CVE-2021-3638
CVE-2022-1050

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) qemu-4.2.1-24.el7.src.rpm49c8599daf95e2ac81a31411ce817584-
ivshmem-tools-4.2.1-24.el7.aarch64.rpm51b80f3e5f6cafd4bef20bf3b5e3109c-
qemu-4.2.1-24.el7.aarch64.rpm68e18162b12a83a15266c00f6c045483-
qemu-block-gluster-4.2.1-24.el7.aarch64.rpmdc9a8d62116fe1ae413084775f251d6b-
qemu-block-iscsi-4.2.1-24.el7.aarch64.rpm4c950c08eb9330e06d63871c4e20a908-
qemu-block-rbd-4.2.1-24.el7.aarch64.rpm8e9dad74a00bcd3892b68468b6225739-
qemu-common-4.2.1-24.el7.aarch64.rpm8e940fd677bc3daad38fdcea0ac9444c-
qemu-img-4.2.1-24.el7.aarch64.rpm9e2570088be10bb9d1bff391c2ab0142-
qemu-kvm-4.2.1-24.el7.aarch64.rpm484c85045a78f09c45fca4e66507707a-
qemu-kvm-core-4.2.1-24.el7.aarch64.rpmd4e660eed7a70f998dc33a0485a51529-
qemu-system-aarch64-4.2.1-24.el7.aarch64.rpm16aef8d2a69c87d19324615607188735-
qemu-system-aarch64-core-4.2.1-24.el7.aarch64.rpm9bf7073cdfa1274df0e8ff65829ae85e-
Oracle Linux 7 (x86_64) qemu-4.2.1-24.el7.src.rpm49c8599daf95e2ac81a31411ce817584-
qemu-4.2.1-24.el7.x86_64.rpm2313544ba0b70b4216b34555f6b28b14-
qemu-block-gluster-4.2.1-24.el7.x86_64.rpm2be83c46e0a60b7d63cd7c3a71a329ed-
qemu-block-iscsi-4.2.1-24.el7.x86_64.rpm9e741847ff505784223b070df5ee6b17-
qemu-block-rbd-4.2.1-24.el7.x86_64.rpmfdc6124ed6a3b39e6582356d1412eedb-
qemu-common-4.2.1-24.el7.x86_64.rpm843dfc8f8b0c2a0d14f52959a26403bf-
qemu-img-4.2.1-24.el7.x86_64.rpmf3a9c8dbdf139640095412c9937d1805-
qemu-kvm-4.2.1-24.el7.x86_64.rpm176756ab6bd73451e49c03412676c9cb-
qemu-kvm-core-4.2.1-24.el7.x86_64.rpm108380f615f2790e2d554d45c8b38ea3-
qemu-system-x86-4.2.1-24.el7.x86_64.rpm0960ee0ea8c149b4f0f7504cb9308b77-
qemu-system-x86-core-4.2.1-24.el7.x86_64.rpmc00babf94039056266bdc070910b0344-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete