shield
Security update for qemu
SUSE-SLE-Module-Basesystem-15-2018-1866
This update for qemu fixes the following issues: This security issue was fixed: - CVE-2018-12617: qmp_guest_file_read had an integer overflow that could have been exploited by sending a crafted QMP command (including guest-file-read with a large count value) to the agent via the listening socket causing DoS (bsc#1098735) These non-security issues were fixed: - Allow kvm group access to /dev/sev (bsc#1102604). - Fix for the value used for reduced_phys_bits. Please update the reduced_phys_bits value used on the commandline or in libvirt XML to the value 1 (explicitly set now in QEMU code). (bsc#1103628) - Fix (again) the qemu guest agent udev rule file, which got unfixed in a series of unfortunate events (bsc#1094898 and now bsc#1105279)
-
Release DateSep 10 2018
-
References
-
Typesecurity
-
Severitymoderate
cloud_download Downloads
Basesystem Module 15 s390x
-
Packagesqemu
Machine emulator and virtualizerqemu-tools2.11.2-9.9.1 lock src
Tools for QEMU2.11.2-9.9.1 lock rpm
Basesystem Module 15 ppc64le
-
Packagesqemu
Machine emulator and virtualizerqemu-tools2.11.2-9.9.1 lock src
Tools for QEMU2.11.2-9.9.1 lock rpm
Basesystem Module 15 x86_64
-
Packagesqemu
Machine emulator and virtualizerqemu-tools2.11.2-9.9.1 lock src
Tools for QEMU2.11.2-9.9.1 lock rpm
Basesystem Module 15 aarch64
-
Packagesqemu
Machine emulator and virtualizerqemu-tools2.11.2-9.9.1 lock src
Tools for QEMU2.11.2-9.9.1 lock rpm