RHSA-2018:2462-01 -- Redhat qemu-kvmID: oval:org.secpod.oval:def:502351 | Date: (C)2018-08-17 (M)2024-02-06 |
Class: PATCH | Family: unix |
Kernel-based Virtual Machine is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm packages provide the user-space component for running virtual machines that use KVM. Security Fix: * QEMU: slirp: heap buffer overflow while reassembling fragmented datagrams * QEMU: i386: multiboot OOB access while loading kernel image For more details about the security issue, including the impact, a CVSS score, and other related information, refer to the CVE page listed in the References section. Red Hat would like to thank Jskz - Zero Day Initiative for reporting CVE-2018-11806 and Cyrille Chatras and CERT-CC for reporting CVE-2018-7550. Bug Fix: * Previously, live migrating a Windows guest in some cases caused the guest to become unresponsive. This update ensures that Real-time Clock interrupts are not missed, which prevents the problem from occurring
Platform: |
Red Hat Enterprise Linux 7 |