Oracle Errata System
Oracle Linux
5.3
2021-09-09T12:48:26
ELSA-2017-0352: qemu-kvm security update (IMPORTANT)
Oracle Linux 6
[0.12.1.2-2.491.el6_8.7]
- kvm-cirrus-fix-patterncopy-checks.patch [bz#1420486 bz#1420488]
- kvm-Revert-cirrus-allow-zero-source-pitch-in-pattern-fil.patch [bz#1420486 bz#1420488]
- kvm-cirrus-add-blit_is_unsafe-call-to-cirrus_bitblt_cput.patch [bz#1420486 bz#1420488]
- Resolves: bz#1420486
(EMBARGOED CVE-2017-2620 qemu-kvm: Qemu: display: cirrus: potential arbitrary code execution via cirrus_bitblt_cputovideo [rhel-6.8.z])
- Resolves: bz#1420488
(EMBARGOED CVE-2017-2620 qemu-kvm-rhev: Qemu: display: cirrus: potential arbitrary code execution via cirrus_bitblt_cputovideo [rhel-6.8.z])
IMPORTANT
Copyright 2017 Oracle, Inc.
CVE-2017-2620
qemu-kvm-tools
qemu-img
qemu-guest-agent
qemu-kvm
oraclelinux-release
72f97b74ec551f03
^6
x86_64
2:0.12.1.2-2.491.el6_8.7
i686