Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Red Hat Enterprise Linux 7 RHSA-2016:2585-02 Moderate qemu-kvm Flaws

red hat
Calendar Grey November 3, 2016
Scroller Redhat
Red Hat has issued an advisory on crucial updates for qemu-kvm, addressing key vulnerabilities and bugs to boost security and stability in virtualized environments
An update for qemu-kvm is now available for Red Hat Enterprise Linux 7

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

After installing this update, shut down all running virtual machines. Once all virtual machines have shut down, start them again for this update to take effect.

Summary

Kernel-based Virtual Machine (KVM) is a full virtualization solution for Linux on AMD64 and Intel 64 systems. The qemu-kvm packages provide the user-space component for running virtual machines using KVM.
Security Fix(es):
* An integer overflow flaw and an out-of-bounds read flaw were found in the way QEMU's VGA emulator set certain VGA registers while in VBE mode. A privileged guest user could use this flaw to crash the QEMU process instance. (CVE-2016-3712)
* An infinite loop flaw was found in the way QEMU's e1000 NIC emulation implementation processed data using transmit or receive descriptors under certain conditions. A privileged user inside a guest could use this flaw to crash the QEMU instance. (CVE-2016-1981)
Red Hat would like to thank Zuozhi Fzz (Alibaba Inc.) for reporting CVE-2016-3712.
Additional Changes:
For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.3 Release Notes linked from the References section.

References

https://access.redhat.com/security/cve/CVE-2016-1981 https://access.redhat.com/security/cve/CVE-2016-3712 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/Red_Hat_Enterprise_Linux/7/html/7.3_Release_Notes/index.html

Package List

Red Hat Enterprise Linux Client (v. 7):
Source: qemu-kvm-1.5.3-126.el7.src.rpm
x86_64: qemu-img-1.5.3-126.el7.x86_64.rpm qemu-kvm-1.5.3-126.el7.x86_64.rpm qemu-kvm-common-1.5.3-126.el7.x86_64.rpm qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm qemu-kvm-tools-1.5.3-126.el7.x86_64.rpm
Red Hat Enterprise Linux ComputeNode Optional (v. 7):
Source: qemu-kvm-1.5.3-126.el7.src.rpm
x86_64: qemu-img-1.5.3-126.el7.x86_64.rpm qemu-kvm-1.5.3-126.el7.x86_64.rpm qemu-kvm-common-1.5.3-126.el7.x86_64.rpm qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm qemu-kvm-tools-1.5.3-126.el7.x86_64.rpm
Red Hat Enterprise Linux Server (v. 7):
Source: qemu-kvm-1.5.3-126.el7.src.rpm
ppc64: qemu-img-1.5.3-126.el7.ppc64.rpm qemu-kvm-debuginfo-1.5.3-126.el7.ppc64.rpm
ppc64le: qemu-img-1.5.3-126.el7.ppc64le.rpm qemu-kvm-debuginfo-1.5.3-126.el7.ppc64le.rpm
x86_64: qemu-img-1.5.3-126.el7.x86_64.rpm qemu-kvm-1.5.3-126.el7.x86_64.rpm qemu-kvm-common-1.5.3-126.el7.x86_64.rpm qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm qemu-kvm-tools-1.5.3-126.el7.x86_64.rpm
Red Hat Enterprise Linux Workstation (v. 7):
Source: qemu-kvm-1.5.3-126.el7.src.rpm
x86_64: qemu-img-1.5.3-126.el7.x86_64.rpm qemu-kvm-1.5.3-126.el7.x86_64.rpm qemu-kvm-common-1.5.3-126.el7.x86_64.rpm qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm

Read the Full Advisory


Advisory ID: RHSA-2016:2585-02
Product: Red Hat Enterprise Linux
Issue date: 2016-11-03

Topic

An update for qemu-kvm is now available for Red Hat Enterprise Linux 7.Red Hat Product Security has rated this update as having a security impactof Moderate. A Common Vulnerability Scoring System (CVSS) base score, whichgives a detailed severity rating, is available for each vulnerability fromthe CVE link(s) in the References section.

Relevant Releases Architectures

Red Hat Enterprise Linux Client (v. 7) - x86_64

Red Hat Enterprise Linux ComputeNode Optional (v. 7) - x86_64

Red Hat Enterprise Linux Server (v. 7) - ppc64, ppc64le, x86_64

Red Hat Enterprise Linux Workstation (v. 7) - x86_64

Bugs Fixed

1156635 - Libvirt is confused that qemu-kvm exposes 'block-job-cancel' but not 'block-stream'

1177318 - Guest using rbd based image as disk failed to start when sandbox was enabled

1252757 - [RHEL-7.2-qmu-kvm] Package is 100% lost when ping from host to Win2012r2 guest with 64000 size

1256741 - "CapsLock" will work as "" when boot a guest with usb-kbd

1265427 - contents of MSR_TSC_AUX are not migrated

1268345 - posix_fallocate emulation on NFS fails with Bad file descriptor if fd is opened O_WRONLY

1268879 - Camera stops work after remote-viewer re-connection [qemu-kvm]

1269738 - Vlan table display repeat four times in qmp when queues=4

1272523 - qemu-kvm build failure race condition in tests/ide-test

1276036 - Crash on QMP input exceeding limits

1277248 - ceph.conf properties override qemu's command-line properties

1283116 - [abrt] qemu-img: get_block_status(): qemu-img killed by SIGABRT

1298570 - CVE-2016-1981 Qemu: net: e1000 infinite loop in start_xmit and e1000_receive_iov routines

1299116 - qemu-img created VMDK images lead to "Not a supported disk format (sparse VMDK version too old)"

1299250 - qemu-img created VMDK images are unbootable

1312289 - "qemu-kvm: /builddir/build/BUILD/qemu-1.5.3/hw/scsi/virtio-scsi.c:533: virtio_scsi_push_event: Assertion `event == 0' failed" after hotplug 20 virtio-scsi disks then hotunplug them

Read the Full Advisory

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.