-
Thu Jun 20 2019 EL Errata <el-errata_ww@oracle.com> - 4.5.0-10.0.1
- added librbd1 as dependency (Keshav Sharma)
-
Tue Jun 18 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.12
- api: disallow virDomainSaveImageGetXMLDesc on read-only connections (CVE-2019-10161)
- api: disallow virDomainManagedSaveDefineXML on read-only connections (CVE-2019-10166)
- api: disallow virConnectGetDomainCapabilities on read-only connections (CVE-2019-10167)
- api: disallow virConnect*HypervisorCPU on read-only connections (CVE-2019-10168)
-
Wed Jun 05 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.11
- virfile: added GPFS as shared fs (rhbz#1715867)
-
Thu May 16 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.10
- virnwfilterbindingobj: Introduce and use virNWFilterBindingObjStealDef (rhbz#1702173)
- admin: reject clients unless their UID matches the current UID (CVE-2019-10132)
- locking: restrict sockets to mode 0600 (CVE-2019-10132)
- logging: restrict sockets to mode 0600 (CVE-2019-10132)
-
Tue Apr 16 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.9
- qemu: Don't cache microcode version (CVE-2018-12127, CVE-2018-12126, CVE-2018-12130)
-
Wed Apr 10 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.8
- cpu_x86: Do not cache microcode version (CVE-2018-12126, CVE-2018-12127, CVE-2018-12130)
- cputest: Add data for Intel(R) Xeon(R) CPU E3-1225 v5 (CVE-2018-12126, CVE-2018-12127, CVE-2018-12130)
- cpu_map: Define md-clear CPUID bit (CVE-2018-12126, CVE-2018-12127, CVE-2018-12130)
-
Tue Mar 26 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.7
- cputest: Add data for Intel(R) Xeon(R) CPU E5-2630 v4 (rhbz#1687515)
- cputest: Add data for Intel(R) Core(TM) i7-7600U (rhbz#1687515)
- cputest: Add data for Intel(R) Xeon(R) CPU E7540 (rhbz#1687515)
- cputest: Add data for Intel(R) Xeon(R) CPU E5-2650 (rhbz#1687515)
- cputest: Add data for Intel(R) Core(TM) i7-8700 (rhbz#1687515)
- cpu_x86: Separate signature parsing from x86ModelParse (rhbz#1687515)
- cpu_x86: Add x86ModelCopySignatures helper (rhbz#1687515)
- cpu_x86: Store CPU signature in an array (rhbz#1687515)
- cpu_x86: Allow multiple signatures for a CPU model (rhbz#1687515)
- cpu_map: Add hex representation of signatures (rhbz#1687515)
- cpu_map: Add more signatures for Conroe CPU model (rhbz#1687515)
- cpu_map: Add more signatures for Penryn CPU model (rhbz#1687515)
- cpu_map: Add more signatures for Nehalem CPU models (rhbz#1687515)
- cpu_map: Add more signatures for Westmere CPU model (rhbz#1687515)
- cpu_map: Add more signatures for SandyBridge CPU models (rhbz#1687515)
- cpu_map: Add more signatures for IvyBridge CPU models (rhbz#1687515)
- cpu_map: Add more signatures for Haswell CPU models (rhbz#1687515)
- cpu_map: Add more signatures for Broadwell CPU models (rhbz#1687515)
- cpu_map: Add more signatures for Skylake-Client CPU models (rhbz#1687515)
- cpu: Don't access invalid memory in virCPUx86Translate (rhbz#1687515)
- cpu_x86: Log decoded CPU model and signatures (rhbz#1687515)
- util: Modify virStorageFileGetSCSIKey return (rhbz#1687715)
- storage: Rework virStorageBackendSCSISerial (rhbz#1687715)
- util: Introduce virStorageFileGetNPIVKey (rhbz#1687715)
- storage: Fetch a unique key for vHBA/NPIV LUNs (rhbz#1687715)
-
Thu Feb 21 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.6
- RHEL: spec: Require new enough librbd1 (rhbz#1679569)
-
Wed Feb 20 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.5
- virfile: Detect ceph as shared FS (rhbz#1672178)
- util: Don't overflow in virRandomBits (rhbz#1667329)
- virrandom: Avoid undefined behaviour in virRandomBits (rhbz#1667329)
-
Thu Jan 10 2019 Jiri Denemark <jdenemar@redhat.com> - 4.5.0-10.el7_6.4
- qemu: Fix post-copy migration on the source (rhbz#1654732)
- RHEL: cpu_map: Mark arch-facilities feature as non-migratable (rhbz#1664793)