| From: |
| Pat Riehecky <riehecky@fnal.gov> |
| To: |
| "SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV"
<SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV> |
| Subject: |
| Security ERRATA Moderate: xorg-x11-drv-qxl on SL6.x i386/x86_64 |
| Date: |
| Fri, 1 Feb 2013 09:47:25 -0600 |
| Message-ID: |
| <510BE38D.4080506@fnal.gov> |
| Archive-link: |
| Article, Thread
|
Synopsis: Moderate: xorg-x11-drv-qxl security update
Issue Date: 2013-01-31
CVE Numbers: CVE-2013-0241
--
A flaw was found in the way the host's qemu-kvm qxl driver and the guest's
X.Org qxl driver interacted when a SPICE connection terminated. A user
able to
initiate a SPICE connection to a guest could use this flaw to make the guest
temporarily unavailable or, potentially (if the sysctl
kernel.softlockup_panic
variable was set to "1" in the guest), crash the guest. (CVE-2013-0241)
All running X.Org server instances using the qxl driver must be
restarted for
this update to take effect.
--
SL6
x86_64
xorg-x11-drv-qxl-0.0.14-14.el6_3.x86_64.rpm
xorg-x11-drv-qxl-debuginfo-0.0.14-14.el6_3.x86_64.rpm
i386
xorg-x11-drv-qxl-0.0.14-14.el6_3.i686.rpm
xorg-x11-drv-qxl-debuginfo-0.0.14-14.el6_3.i686.rpm
- Scientific Linux Development Team
(
Log in to post comments)