Synopsis:          Important: qemu-kvm security, bug fix, and enhancement update
Advisory ID:       SLSA-2020:0366-1
Issue Date:        2020-02-05
CVE Numbers:       None
--

Security Fix(es):

* hw: TSX Transaction Asynchronous Abort (TAA) (CVE-2019-11135)

* QEMU: slirp: heap buffer overflow during packet reassembly
(CVE-2019-14378)
--

SL7
  x86_64
    qemu-img-1.5.3-167.el7_7.4.x86_64.rpm
    qemu-kvm-1.5.3-167.el7_7.4.x86_64.rpm
    qemu-kvm-common-1.5.3-167.el7_7.4.x86_64.rpm
    qemu-kvm-debuginfo-1.5.3-167.el7_7.4.x86_64.rpm
    qemu-kvm-tools-1.5.3-167.el7_7.4.x86_64.rpm

- Scientific Linux Development Team

SciLinux: SLSA-2020-0366-1 Important: qemu-kvm on SL7.x x86_64

hw: TSX Transaction Asynchronous Abort (TAA) (CVE-2019-11135) * QEMU: slirp: heap buffer overflow during packet reassembly (CVE-2019-14378) SL7 x86_64 qemu-img-1.5.3-167.el7_7.4.x8...

Summary

Important: qemu-kvm security, bug fix, and enhancement update



Security Fixes

* hw: TSX Transaction Asynchronous Abort (TAA) (CVE-2019-11135)
* QEMU: slirp: heap buffer overflow during packet reassembly (CVE-2019-14378)
SL7 x86_64 qemu-img-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-common-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-debuginfo-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-tools-1.5.3-167.el7_7.4.x86_64.rpm
- Scientific Linux Development Team

Severity
Advisory ID: SLSA-2020:0366-1
Issued Date: : 2020-02-05
CVE Numbers: None

Related News