Scientific Linux alert SLSA-2020:0366-1 (qemu-kvm)
From: | Farhan Ahmed <fahmed@fnal.gov> | |
To: | scientific-linux-errata@listserv.fnal.gov | |
Subject: | Security ERRATA Important: qemu-kvm on SL7.x x86_64 | |
Date: | Wed, 05 Feb 2020 13:48:46 -0000 | |
Message-ID: | <20200205134846.21706.9917@slpackages.fnal.gov> |
Synopsis: Important: qemu-kvm security, bug fix, and enhancement update Advisory ID: SLSA-2020:0366-1 Issue Date: 2020-02-05 CVE Numbers: None -- Security Fix(es): * hw: TSX Transaction Asynchronous Abort (TAA) (CVE-2019-11135) * QEMU: slirp: heap buffer overflow during packet reassembly (CVE-2019-14378) -- SL7 x86_64 qemu-img-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-common-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-debuginfo-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-tools-1.5.3-167.el7_7.4.x86_64.rpm - Scientific Linux Development Team