[ubuntu/focal-security] dpdk 19.11.1-0ubuntu1.1 (Accepted)
Leonidas S. Barbosa
leo.barbosa at canonical.com
Mon May 18 15:26:33 UTC 2020
dpdk (19.11.1-0ubuntu1.1) focal-security; urgency=medium
* SECURITY UPDATE: Integer overflow in vhost_user_set_log_base()
- d/p/0001-vhost-check-log-mmap-offset-and-size-overflow.patch: check
log mmap offset and size overflow in lib/librte_vhost/vhost_user.c.
- CVE-2020-10722
* SECURITY UPDATE: Int truncation in vhost_user_check_and_alloc_queue_pair()
- d/p/0002-vhost-fix-vring-index-check.patch: fix vring index check in
lib/librte_vhost/vhost_user.c.
- CVE-2020-10723
* SECURITY UPDATE: Missing inputs validation in Vhost-crypto
- d/p/0003-vhost-crypto-validate-keys-lengths.patch: validate keys
lengths in lib/librte_vhost/vhost_crypto.c.
- CVE-2020-10724
* SECURITY UPDATE: Malicious guest could cause segfault by sending
invalid Virtio descriptor
- d/p/0004-vhost-fix-translated-address-not-checked.patch: fix
translated address not checked in lib/librte_vhost/virtio_net.c.
- CVE-2020-10725
* SECURITY UPDATE: VHOST_USER_GET_INFLIGHT_FD message flooding to result
in a DOS
- d/p/0005-vhost-fix-potential-memory-space-leak.patch: fix potential
memory space leak in lib/librte_vhost/vhost_user.c.
- d/p/0006-vhost-fix-potential-fd-leak.patch: fix potential fd leak in
lib/librte_vhost/vhost_user.c.
- CVE-2020-10726
Date: 2020-05-12 14:55:18.652861+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/dpdk/19.11.1-0ubuntu1.1
-------------- next part --------------
Sorry, changesfile not available.
More information about the Focal-changes
mailing list