stable

qemu-2.4.1-6.fc23

FEDORA-2016-42778e8c82 created by crobinso 10 years ago for Fedora 23
  • CVE-2015-8745: vmxnet3: don't assert reading registers in bar0 (bz #1295442)
  • CVE-2015-8567: net: vmxnet3: host memory leakage (bz #1289818)
  • CVE-2016-1922: i386: avoid null pointer dereference (bz #1292766)
  • CVE-2015-8613: buffer overflow in megasas_ctrl_get_info (bz #1284008)
  • CVE-2015-8701: Buffer overflow in tx_consume in rocker.c (bz #1293720)
  • CVE-2015-8743: ne2000: OOB memory access in ioport r/w functions (bz #1294787)
  • CVE-2016-1568: Use-after-free vulnerability in ahci (bz #1297023)
  • Fix modules.d/kvm.conf example syntax (bz #1298823)

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2016-42778e8c82

This update has been submitted for testing by crobinso.

10 years ago

This update has been pushed to testing.

10 years ago
User Icon cserpentis commented & provided feedback 10 years ago
karma

works for me

User Icon besser82 commented & provided feedback 10 years ago
karma

Works great! LGTM =)

This update has been submitted for stable by bodhi.

10 years ago
User Icon mastaiza provided feedback 10 years ago
karma

This update has been pushed to stable.

10 years ago
User Icon vinumoses commented & provided feedback 10 years ago
karma

Works for me...


Please log in to add feedback.

Metadata
Type
security
Karma
4
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
disabled
Dates
submitted
10 years ago
in testing
10 years ago
in stable
10 years ago
BZ#1264929 CVE-2015-8743 Qemu: net: ne2000: OOB memory access in ioport r/w functions
0
0
BZ#1270876 CVE-2015-8745 Qemu: net: vmxnet3: reading IMR registers leads to a crash via assert(2) call
0
0
BZ#1283934 CVE-2016-1922 Qemu: i386: null pointer dereference in vapic_write()
0
0
BZ#1284008 CVE-2015-8613 Qemu: scsi: stack based buffer overflow in megasas_ctrl_get_info
0
0
BZ#1286971 CVE-2015-8701 Qemu: net: rocker: stack buffer overflow(off-by-one) in tx_consume routine
0
0
BZ#1288532 CVE-2016-1568 Qemu: ide: ahci use-after-free vulnerability in aio port commands
0
0
BZ#1289816 CVE-2015-8568 CVE-2015-8567 Qemu: net: vmxnet3: host memory leakage
0
0
BZ#1289818 CVE-2015-8567 CVE-2015-8568 Qemu: net: vmxnet3: host memory leakage [fedora-all]
0
0
BZ#1292766 CVE-2016-1922 qemu: Null pointer dereference in vapic_write() [fedora-all]
0
0
BZ#1293720 CVE-2015-8701 qemu: Buffer overflow in tx_consume in rocker.c [fedora-all]
0
0
BZ#1294787 CVE-2015-8743 Qemu: net: ne2000: OOB memory access in ioport r/w functions [fedora-all]
0
0
BZ#1295442 CVE-2015-8745 qemu: Support reading IMR registers on bar0 [fedora-all]
0
0
BZ#1297023 CVE-2016-1568 qemu: Use-after-free vulnerability in ahci [fedora-all]
0
0
BZ#1298823 Wrong commented out syntax in kvm.conf
0
0

Automated Test Results