[Forgot Password]
Login  Register Subscribe

24436

 
 

131815

 
 

115228

 
 

909

 
 

90122

 
 

140

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2018:2462 -- centos 7 qemu-img qemu-kvm

ID: oval:org.secpod.oval:def:204870Date: (C)2018-08-22   (M)2018-10-15
Class: PATCHFamily: unix




Kernel-based Virtual Machine is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm packages provide the user-space component for running virtual machines that use KVM. Security Fix: * QEMU: slirp: heap buffer overflow while reassembling fragmented datagrams * QEMU: i386: multiboot OOB access while loading kernel image For more details about the security issue, including the impact, a CVSS score, and other related information, refer to the CVE page listed in the References section. Red Hat would like to thank Jskz - Zero Day Initiative for reporting CVE-2018-11806 and Cyrille Chatras and CERT-CC for reporting CVE-2018-7550. Bug Fix: * Previously, live migrating a Windows guest in some cases caused the guest to become unresponsive. This update ensures that Real-time Clock interrupts are not missed, which prevents the problem from occurring

Platform:
CentOS 7
Product:
qemu-img
qemu-kvm
Reference:
CESA-2018:2462
CVE-2018-7550
CVE-2018-11806
CVE    2
CVE-2018-7550
CVE-2018-11806
CPE    4
cpe:/a:kvm_group:qemu-kvm
cpe:/a:kvm_group:qemu-img
cpe:/a:qemu:qemu:-
cpe:/o:centos:centos:7
...

© SecPod Technologies