[ubuntu/jammy-security] qemu 1:6.2+dfsg-2ubuntu6.22 (Accepted)

Evan Caville evan.caville at canonical.com
Tue Aug 13 04:41:26 UTC 2024


qemu (1:6.2+dfsg-2ubuntu6.22) jammy-security; urgency=medium

  * SECURITY UPDATE: null dereference
    - debian/patches/CVE-2023-6683-1.patch: Check size before
      populating info->types data
    - debian/patches/CVE-2023-6683-2.patch: Check clipboard types
      for if a callback needs to be set
    - CVE-2023-6683
  * SECURITY UPDATE: stack based buffer overflow
    - debian/patches/CVE-2023-6693.patch: Correctly copy vnet header 
      when flushing TX
    - CVE-2023-6693
  * SECURITY UPDATE: integer underflow
    - debian/patches/CVE-2024-24474.patch: Restrict non-DMA transfer 
      length to that of available data
    - CVE-2024-24474

Date: 2024-08-08 06:19:09.875204+00:00
Changed-By: Bruce Cable <bruce.cable at canonical.com>
Signed-By: Evan Caville <evan.caville at canonical.com>
https://launchpad.net/ubuntu/+source/qemu/1:6.2+dfsg-2ubuntu6.22
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list