ELSA-2023-12835

ELSA-2023-12835 - qemu security update

Type:SECURITY
Severity:MODERATE
Release Date:2023-09-22

Description


[15:4.2.1-28.el7]
- virtio-crypto: verify src&dst buffer length for sym request (Zhenwei Pi) [Orabug: 35724113] {CVE-2023-3180}
- hw/scsi/lsi53c895a: Fix reentrancy issues in the LSI controller (CVE-2023-0330) (Thomas Huth) [Orabug: 35724112] {CVE-2023-0330}
- kvm: Atomic memslot updates (David Hildenbrand) [Orabug: 35719844]
- KVM: keep track of running ioctls (Emanuele Giuseppe Esposito) [Orabug: 35719844]
- accel: introduce accelerator blocker API (Emanuele Giuseppe Esposito) [Orabug: 35719844]
- KVM: Use a big lock to replace per-kml slots_lock (Peter Xu) [Orabug: 35719844]
- pcie: don't set link state active if the slot is empty (Laurent Vivier) [Orabug: 35707933]
- vhost-vdpa: do not cleanup the vdpa/vhost-net structures if peer nic is present (Ani Sinha) [Orabug: 35662850] {CVE-2023-3301}


Related CVEs


CVE-2023-0330
CVE-2023-3180
CVE-2023-3301

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) qemu-4.2.1-28.el7.src.rpm26a7af0f6082f0df7874bcdf04707c0c-ol7_aarch64_latest
qemu-4.2.1-28.el7.src.rpm26a7af0f6082f0df7874bcdf04707c0c-ol7_aarch64_optional_latest
qemu-4.2.1-28.el7.src.rpm26a7af0f6082f0df7874bcdf04707c0c-ol7_aarch64_u9_patch
ivshmem-tools-4.2.1-28.el7.aarch64.rpm859168f3c7735477b171a42b089eaf2d-ol7_aarch64_latest
ivshmem-tools-4.2.1-28.el7.aarch64.rpm859168f3c7735477b171a42b089eaf2d-ol7_aarch64_u9_patch
qemu-4.2.1-28.el7.aarch64.rpm189789da5226eb902ec1141caa435d7a-ol7_aarch64_latest
qemu-4.2.1-28.el7.aarch64.rpm189789da5226eb902ec1141caa435d7a-ol7_aarch64_u9_patch
qemu-block-gluster-4.2.1-28.el7.aarch64.rpm01d2bd2ba259922d47d0139ce9c655ef-ol7_aarch64_latest
qemu-block-gluster-4.2.1-28.el7.aarch64.rpm01d2bd2ba259922d47d0139ce9c655ef-ol7_aarch64_u9_patch
qemu-block-iscsi-4.2.1-28.el7.aarch64.rpmb11d53b2ebe0eb8ebe9d0bda3a1d8254-ol7_aarch64_latest
qemu-block-iscsi-4.2.1-28.el7.aarch64.rpmb11d53b2ebe0eb8ebe9d0bda3a1d8254-ol7_aarch64_u9_patch
qemu-block-rbd-4.2.1-28.el7.aarch64.rpmf0ce188994f90b199fa92d629cb2468f-ol7_aarch64_latest
qemu-block-rbd-4.2.1-28.el7.aarch64.rpmf0ce188994f90b199fa92d629cb2468f-ol7_aarch64_u9_patch
qemu-common-4.2.1-28.el7.aarch64.rpma8b87bd7be27702cb128a509380c84f6-ol7_aarch64_latest
qemu-common-4.2.1-28.el7.aarch64.rpma8b87bd7be27702cb128a509380c84f6-ol7_aarch64_u9_patch
qemu-img-4.2.1-28.el7.aarch64.rpma44e806148a5298982b0e1480a91b158-ol7_aarch64_latest
qemu-img-4.2.1-28.el7.aarch64.rpma44e806148a5298982b0e1480a91b158-ol7_aarch64_u9_patch
qemu-kvm-4.2.1-28.el7.aarch64.rpm2496b93a571b98b539280b0fd660d0f1-ol7_aarch64_latest
qemu-kvm-4.2.1-28.el7.aarch64.rpm2496b93a571b98b539280b0fd660d0f1-ol7_aarch64_u9_patch
qemu-kvm-core-4.2.1-28.el7.aarch64.rpm7e54d994fc0b8969981743c9121f4c02-ol7_aarch64_latest
qemu-kvm-core-4.2.1-28.el7.aarch64.rpm7e54d994fc0b8969981743c9121f4c02-ol7_aarch64_u9_patch
qemu-system-aarch64-4.2.1-28.el7.aarch64.rpmb580941d80efb5b7caf2f28825e83444-ol7_aarch64_latest
qemu-system-aarch64-4.2.1-28.el7.aarch64.rpmb580941d80efb5b7caf2f28825e83444-ol7_aarch64_u9_patch
qemu-system-aarch64-core-4.2.1-28.el7.aarch64.rpmdd8a9ca07a2378967103b67a1cfc3dd5-ol7_aarch64_latest
qemu-system-aarch64-core-4.2.1-28.el7.aarch64.rpmdd8a9ca07a2378967103b67a1cfc3dd5-ol7_aarch64_u9_patch
Oracle Linux 7 (x86_64) qemu-4.2.1-28.el7.src.rpm26a7af0f6082f0df7874bcdf04707c0c-ol7_x86_64_kvm_utils
qemu-4.2.1-28.el7.x86_64.rpm6a0a52185cce206169797eb7cdc6f7e9-ol7_x86_64_kvm_utils
qemu-block-gluster-4.2.1-28.el7.x86_64.rpm3492cd559d710731d7abc65cd92478dc-ol7_x86_64_kvm_utils
qemu-block-iscsi-4.2.1-28.el7.x86_64.rpmcf1556fb6f5b9d9895bb0ca3cc668742-ol7_x86_64_kvm_utils
qemu-block-rbd-4.2.1-28.el7.x86_64.rpm4f45d9762c0290f20cfe4845e0e15a15-ol7_x86_64_kvm_utils
qemu-common-4.2.1-28.el7.x86_64.rpm93f9004d408bd8bacd3dde4a737d291a-ol7_x86_64_kvm_utils
qemu-img-4.2.1-28.el7.x86_64.rpmef7878234789e1ab934544b78de8f84c-ol7_x86_64_kvm_utils
qemu-kvm-4.2.1-28.el7.x86_64.rpmb37dad8bcea752b97a16f952569d9a39-ol7_x86_64_kvm_utils
qemu-kvm-core-4.2.1-28.el7.x86_64.rpm4566676be0b40ba0f00b71e2c2b322f9-ol7_x86_64_kvm_utils



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete