[El-errata] ELSA-2011-0919 Important: Oracle Linux 6 qemu-kvm security and bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Jul 5 20:41:50 PDT 2011


Oracle Linux Security Advisory ELSA-2011-0919

https://rhn.redhat.com/errata/RHSA-2011-0919.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
qemu-img-0.12.1.2-2.160.el6_1.2.x86_64.rpm
qemu-kvm-0.12.1.2-2.160.el6_1.2.x86_64.rpm
qemu-kvm-tools-0.12.1.2-2.160.el6_1.2.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/qemu-kvm-0.12.1.2-2.160.el6_1.2.src.rpm


Description of changes:

[qemu-kvm-0.12.1.2-2.160.el6_1.2]
- kvm-virtio-guard-against-negative-vq-notifies.patch [bz#717403]
- Resolves: bz#717403
  (qemu-kvm: OOB memory access caused by negative vq notifies [rhel-6.1.z])

[qemu-kvm-0.12.1.2-2.160.el6_1]
- kvm-Fix-phys-memory-client-pass-guest-physical-address-n.patch [bz#701771]
- kvm-virtio-prevent-indirect-descriptor-buffer-overflow.patch [bz#713592]
- Resolves: bz#701771
  (Fix phys memory client for vhost)
- Resolves: bz#713592
  (EMBARGOED CVE-2011-2212 virtqueue: too-large indirect descriptor 
buffer overflow [rhel-6.1.z])





More information about the El-errata mailing list