Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Date: Tue, 7 Mar 2017 18:48:22 -0000 Reply-To: scientific-linux-users@ Sender: Security Errata for Scientific LinuxFrom: Pat Riehecky Subject: Security ERRATA Important: kvm on SL5.x x86_64 MIME-Version: 1.0 Message-ID: <20170307184822.25460.9476@slpackages.fnal.gov> Synopsis: Important: kvm security update Advisory ID: SLSA-2017:0454-1 Issue Date: 2017-03-07 CVE Numbers: CVE-2017-2615 CVE-2017-2620 -- Security Fix(es): * Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue. It could occur while copying VGA data via bitblt copy in backward mode. A privileged user inside a guest could use this flaw to crash the QEMU process resulting in DoS or potentially execute arbitrary code on the host with privileges of QEMU process on the host. (CVE-2017-2615) * Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to an out-of-bounds access issue. The issue could occur while copying VGA data in cirrus_bitblt_cputovideo. A privileged user inside guest could use this flaw to crash the QEMU process OR potentially execute arbitrary code on host with privileges of the QEMU process. (CVE-2017-2620) -- SL5 x86_64 kmod-kvm-83-277.el5_11.x86_64.rpm kmod-kvm-debug-83-277.el5_11.x86_64.rpm kvm-83-277.el5_11.x86_64.rpm kvm-debuginfo-83-277.el5_11.x86_64.rpm kvm-qemu-img-83-277.el5_11.x86_64.rpm kvm-tools-83-277.el5_11.x86_64.rpm - Scientific Linux Development Team