Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
For details on how to apply this update, which includes the changes
described in this advisory, refer to:
https://access.redhat.com/articles/11258
After installing this update, shut down all running virtual machines. Once
all virtual machines have shut down, start them again for this update to
take effect.
Kernel-based Virtual Machine (KVM) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. The qemu-kvm packages provide the
user-space component for running virtual machines using KVM.
Security Fix(es):
* An integer overflow flaw and an out-of-bounds read flaw were found in the
way QEMU's VGA emulator set certain VGA registers while in VBE mode. A
privileged guest user could use this flaw to crash the QEMU process
instance. (CVE-2016-3712)
* An infinite loop flaw was found in the way QEMU's e1000 NIC emulation
implementation processed data using transmit or receive descriptors under
certain conditions. A privileged user inside a guest could use this flaw to
crash the QEMU instance. (CVE-2016-1981)
Red Hat would like to thank Zuozhi Fzz (Alibaba Inc.) for reporting
CVE-2016-3712.
Additional Changes:
For detailed information on changes in this release, see the Red Hat
Enterprise Linux 7.3 Release Notes linked from the References section.
https://access.redhat.com/security/cve/CVE-2016-1981 https://access.redhat.com/security/cve/CVE-2016-3712 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/Red_Hat_Enterprise_Linux/7/html/7.3_Release_Notes/index.html
Red Hat Enterprise Linux Client (v. 7):
Source:
qemu-kvm-1.5.3-126.el7.src.rpm
x86_64:
qemu-img-1.5.3-126.el7.x86_64.rpm
qemu-kvm-1.5.3-126.el7.x86_64.rpm
qemu-kvm-common-1.5.3-126.el7.x86_64.rpm
qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm
qemu-kvm-tools-1.5.3-126.el7.x86_64.rpm
Red Hat Enterprise Linux ComputeNode Optional (v. 7):
Source:
qemu-kvm-1.5.3-126.el7.src.rpm
x86_64:
qemu-img-1.5.3-126.el7.x86_64.rpm
qemu-kvm-1.5.3-126.el7.x86_64.rpm
qemu-kvm-common-1.5.3-126.el7.x86_64.rpm
qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm
qemu-kvm-tools-1.5.3-126.el7.x86_64.rpm
Red Hat Enterprise Linux Server (v. 7):
Source:
qemu-kvm-1.5.3-126.el7.src.rpm
ppc64:
qemu-img-1.5.3-126.el7.ppc64.rpm
qemu-kvm-debuginfo-1.5.3-126.el7.ppc64.rpm
ppc64le:
qemu-img-1.5.3-126.el7.ppc64le.rpm
qemu-kvm-debuginfo-1.5.3-126.el7.ppc64le.rpm
x86_64:
qemu-img-1.5.3-126.el7.x86_64.rpm
qemu-kvm-1.5.3-126.el7.x86_64.rpm
qemu-kvm-common-1.5.3-126.el7.x86_64.rpm
qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm
qemu-kvm-tools-1.5.3-126.el7.x86_64.rpm
Red Hat Enterprise Linux Workstation (v. 7):
Source:
qemu-kvm-1.5.3-126.el7.src.rpm
x86_64:
qemu-img-1.5.3-126.el7.x86_64.rpm
qemu-kvm-1.5.3-126.el7.x86_64.rpm
qemu-kvm-common-1.5.3-126.el7.x86_64.rpm
qemu-kvm-debuginfo-1.5.3-126.el7.x86_64.rpm
Read the Full Advisory
An update for qemu-kvm is now available for Red Hat Enterprise Linux 7.Red Hat Product Security has rated this update as having a security impactof Moderate. A Common Vulnerability Scoring System (CVSS) base score, whichgives a detailed severity rating, is available for each vulnerability fromthe CVE link(s) in the References section.
Red Hat Enterprise Linux Client (v. 7) - x86_64
Red Hat Enterprise Linux ComputeNode Optional (v. 7) - x86_64
Red Hat Enterprise Linux Server (v. 7) - ppc64, ppc64le, x86_64
Red Hat Enterprise Linux Workstation (v. 7) - x86_64
1156635 - Libvirt is confused that qemu-kvm exposes 'block-job-cancel' but not 'block-stream'
1177318 - Guest using rbd based image as disk failed to start when sandbox was enabled
1252757 - [RHEL-7.2-qmu-kvm] Package is 100% lost when ping from host to Win2012r2 guest with 64000 size
1256741 - "CapsLock" will work as "" when boot a guest with usb-kbd
1265427 - contents of MSR_TSC_AUX are not migrated
1268345 - posix_fallocate emulation on NFS fails with Bad file descriptor if fd is opened O_WRONLY
1268879 - Camera stops work after remote-viewer re-connection [qemu-kvm]
1269738 - Vlan table display repeat four times in qmp when queues=4
1272523 - qemu-kvm build failure race condition in tests/ide-test
1276036 - Crash on QMP input exceeding limits
1277248 - ceph.conf properties override qemu's command-line properties
1283116 - [abrt] qemu-img: get_block_status(): qemu-img killed by SIGABRT
1298570 - CVE-2016-1981 Qemu: net: e1000 infinite loop in start_xmit and e1000_receive_iov routines
1299116 - qemu-img created VMDK images lead to "Not a supported disk format (sparse VMDK version too old)"
1299250 - qemu-img created VMDK images are unbootable
1312289 - "qemu-kvm: /builddir/build/BUILD/qemu-1.5.3/hw/scsi/virtio-scsi.c:533: virtio_scsi_push_event: Assertion `event == 0' failed" after hotplug 20 virtio-scsi disks then hotunplug them
Get the latest Linux and open source security news straight to your inbox.