-
Tue Aug 02 2016 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-105.el7_2.7
- kvm-block-iscsi-avoid-potential-overflow-of-acb-task-cdb.patch [bz#1358996]
- Resolves: bz#1358996
(CVE-2016-5126 qemu-kvm: Qemu: block: iscsi: buffer overflow in iscsi_aio_ioctl [rhel-7.2.z])
-
Wed Jul 27 2016 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-105.el7_2.6
- kvm-virtio-error-out-if-guest-exceeds-virtqueue-size.patch [bz#1359728]
- Resolves: bz#1359728
(EMBARGOED CVE-2016-5403 qemu-kvm: Qemu: virtio: unbounded memory allocation on host via guest leading to DoS [rhel-7.2.z])
-
Fri Jul 01 2016 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-105.el7_2.5
- kvm-vga-add-sr_vbe-register-set.patch [bz#1347527]
- Resolves: bz#1347527
(Regression from CVE-2016-3712: windows installer fails to start)
-
Tue May 03 2016 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-105.el7_2.4
- kvm-vga-Remove-some-should-be-done-in-BIOS-comments.patch [bz#1331412]
- kvm-vga-fix-banked-access-bounds-checking-CVE-2016-3710.patch [bz#1331412]
- kvm-vga-add-vbe_enabled-helper.patch [bz#1331412]
- kvm-vga-factor-out-vga-register-setup.patch [bz#1331412]
- kvm-vga-update-vga-register-setup-on-vbe-changes.patch [bz#1331412]
- kvm-vga-make-sure-vga-register-setup-for-vbe-stays-intac.patch [bz#1331412]
- Resolves: bz#1331412
(EMBARGOED CVE-2016-3710 qemu-kvm: qemu: incorrect banked access bounds checking in vga module [rhel-7.2.z])
-
Thu Jan 21 2016 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-105.el7_2.3
- kvm-fw_cfg-add-check-to-validate-current-entry-value-CVE.patch [bz#1298047]
- Resolves: bz#1298047
(CVE-2016-1714 qemu-kvm: Qemu: nvram: OOB r/w access in processing firmware configurations [rhel-7.2.z])
-
Wed Jan 20 2016 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-105.el7_2.2
- kvm-raw-posix-Fix-.bdrv_co_get_block_status-for-unaligne.patch [bz#1298828]
- Resolves: bz#1298828
([abrt] qemu-img: get_block_status(): qemu-img killed by SIGABRT)
-
Tue Nov 17 2015 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-105.el7_2.1
- kvm-rbd-make-qemu-s-cache-setting-override-any-ceph-sett.patch [bz#1279389]
- kvm-rbd-fix-ceph-settings-precedence.patch [bz#1279389]
- Resolves: bz#1279389
(ceph.conf properties override qemu's command-line properties)
-
Fri Oct 16 2015 Jeff E. Nelson <jen@redhat.com> - 1.5.3-105.el7
- kvm-qtest-ide-test-disable-flush-test.patch [bz#1270341]
- Resolves: bz#1270341
(qemu-kvm build failure race condition in tests/ide-test)
-
Wed Sep 23 2015 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-104.el7
- kvm-qemu-iotests-Filter-qemu-io-output-in-025.patch [bz#1170974]
- Resolves: bz#1170974
(test case 025 of qemu-iotests fail for raw with qemu-kvm-1.5.3-83.el7.x86_64)
-
Thu Sep 10 2015 Miroslav Rezanina <mrezanin@redhat.com> - 1.5.3-103.el7
- kvm-Drop-superfluous-conditionals-around-g_strdup.patch [bz#1218919]
- kvm-util-Drop-superfluous-conditionals-around-g_free.patch [bz#1218919]
- kvm-util-Fuse-g_malloc-memset-into-g_new0.patch [bz#1218919]
- kvm-util-uri-uri_new-can-t-fail-drop-dead-error-handling.patch [bz#1218919]
- kvm-util-uri-realloc2n-can-t-fail-drop-dead-error-handli.patch [bz#1218919]
- kvm-util-uri-URI-member-path-can-be-null-compare-more-ca.patch [bz#1218919]
- kvm-util-uri-Add-overflow-check-to-rfc3986_parse_port.patch [bz#1218919]
- Resolves: bz#1218919
(Coverity-detected defect: buffer overrun at uri.c:2035)