[ubuntu/vivid-proposed] qemu 2.1+dfsg-7ubuntu5 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Thu Dec 11 20:46:17 UTC 2014
qemu (2.1+dfsg-7ubuntu5) vivid; urgency=medium
* SECURITY UPDATE: code execution via savevm data
- debian/patches/CVE-2014-7840.patch: validate parameters in
arch_init.c.
- CVE-2014-7840
* SECURITY UPDATE: code execution via cirrus vga blit regions
(LP: #1400775)
- debian/patches/CVE-2014-8106.patch: properly validate blit regions in
hw/display/cirrus_vga.c.
- CVE-2014-8106
Date: Thu, 11 Dec 2014 14:11:52 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-7ubuntu5
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Thu, 11 Dec 2014 14:11:52 -0500
Source: qemu
Binary: qemu qemu-system qemu-system-common qemu-system-misc qemu-system-arm qemu-system-mips qemu-system-ppc qemu-system-sparc qemu-system-x86 qemu-user qemu-user-static qemu-user-binfmt qemu-utils qemu-guest-agent qemu-kvm qemu-system-aarch64
Architecture: source
Version: 2.1+dfsg-7ubuntu5
Distribution: vivid
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
qemu - fast processor emulator
qemu-guest-agent - Guest-side qemu-system agent
qemu-kvm - QEMU Full virtualization
qemu-system - QEMU full system emulation binaries
qemu-system-aarch64 - QEMU full system emulation binaries (aarch64)
qemu-system-arm - QEMU full system emulation binaries (arm)
qemu-system-common - QEMU full system emulation binaries (common files)
qemu-system-mips - QEMU full system emulation binaries (mips)
qemu-system-misc - QEMU full system emulation binaries (miscelaneous)
qemu-system-ppc - QEMU full system emulation binaries (ppc)
qemu-system-sparc - QEMU full system emulation binaries (sparc)
qemu-system-x86 - QEMU full system emulation binaries (x86)
qemu-user - QEMU user mode emulation binaries
qemu-user-binfmt - QEMU user mode binfmt registration for qemu-user
qemu-user-static - QEMU user mode emulation binaries (static version)
qemu-utils - QEMU utilities
Launchpad-Bugs-Fixed: 1400775
Changes:
qemu (2.1+dfsg-7ubuntu5) vivid; urgency=medium
.
* SECURITY UPDATE: code execution via savevm data
- debian/patches/CVE-2014-7840.patch: validate parameters in
arch_init.c.
- CVE-2014-7840
* SECURITY UPDATE: code execution via cirrus vga blit regions
(LP: #1400775)
- debian/patches/CVE-2014-8106.patch: properly validate blit regions in
hw/display/cirrus_vga.c.
- CVE-2014-8106
Checksums-Sha1:
bb456d730fd67e917bcd6ba8466de74db7507669 5783 qemu_2.1+dfsg-7ubuntu5.dsc
ce4be73d2cec2e12da8314a8acc6ede2ecfb8f48 97104 qemu_2.1+dfsg-7ubuntu5.debian.tar.xz
Checksums-Sha256:
5e312162f2748cffbc07b8d2ce4f931c321e5ea8253d7abecede553f5f2df364 5783 qemu_2.1+dfsg-7ubuntu5.dsc
ce14b1eb77c3b951fb5998c75a5dc8f0fbc6d591bb4a4d96821b7cef466c0cf7 97104 qemu_2.1+dfsg-7ubuntu5.debian.tar.xz
Files:
2334644c00f61c6919d98cb4714efa21 5783 otherosfs optional qemu_2.1+dfsg-7ubuntu5.dsc
25be1a5c59c7018923ceb88216950e8e 97104 otherosfs optional qemu_2.1+dfsg-7ubuntu5.debian.tar.xz
Original-Maintainer: Debian QEMU Team <pkg-qemu-devel at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
iQIcBAEBCgAGBQJUigGPAAoJEGVp2FWnRL6TFbAQAJgt0+Kihk5BiwYqAI84NQhh
9A17GxuYqjM+7/q840u9DxKQVBkvXH86450NIUF2N4afjqNgar1QSsh/8iPeUPv5
rsqZWbx4/SvdQOVKSVjTRxaMRJ54PqXS0IboJdLhNgpeZsmlm6UQTUizHsnKblWq
29t9Iq//9GrICeEvKXYj0J559iDR9Q4Hez1ZitRMJMG5nltuxyZ+MFMcQdeIE/DN
GSd/J4iKQ/sEdZitXQahACwvaVu8Ze2LiXvClAP+/ogRvN5+u1ksXmoDn6qbiFdk
Cr/TwYPeM4zPIOcIe33BIZRJwF7lvq9/+Tw3pBkyaLCEzh1mddy7ffWW8GdX9fsp
bWWh1YtiowqOuJI5wu5dEZQtFIWxrdak/wagfwK47YK6noMlXQpoI5wIc0hoSYR4
zH7bTVmdZZ+9yCYVg3jyQdTmz6iuLL4KwY8mDZaAj24EukKMK8zFzwhqx8NPOm7h
Dp1lgOU41F+vVf0iB524p5XQHK8sWL1aoVgGXRY8X9Zo0ott3wMP6HuDDwUa9L22
i8DfgGxMA5oZPBI/b/fRV5At+iOktdP5i6Ov9JA2bjdt7tFW3vSW3uQkLLVEIDdZ
wuuB+KwN1UShrWGDAKZQ0h1H+iTKQzXZ2kAjbePG6vfQ2BnGp4GCSes3f9ZV3imD
xEZ/nGR3YfzcHNPJeown
=K4Cp
-----END PGP SIGNATURE-----
More information about the Vivid-changes
mailing list