Linux Compatible

  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter

Advertisement


Latest News

[ Windows | Linux | Apple ]

· Linux Mint Debian Edition Released
· iPod Shuffle 4th Generation Teardown
· New version of Windows Storage Server due by the end of September
· Ubuntu 10.10 beta review
· Budget Sub-$150 Solid State Drive Round-up
· 7-Zip 9.16 Beta released
· CompatDB Updates 09/08/10
· Tech Report back-to-school 2010 system guide
· Firefox 4.0 Beta 5 released
· New typo3-src packages for Debian

Upcoming News

· Memonex Race R310 16GB Flash Drive Review @ OCC
· TRENDnet TEW-691GR 450Mbps WiFi-N Router @ Benchmark Reviews
· Cooler Master HAF 912 Review @ OCC
· Corsair H70 Self-Contained Liquid CPU Cooler @ Techgage.com
· Fedora Weekly News 242
· REVIEW: PNY GTX 460 XLR8 1GB @ PureOverclock
· Seagate FreeAgent Go 500Gb Portable Hard Drive @ TestFreaks
· ANNOUNCE: GENIUS 1.0.10 the "Back in Cali" release
· Meld 1.3.3 released
· DeepCool Gamer Storm Heatsink Review

Linux Compatibility

· Acer Aspire Timelinex 5820tg
· Notebook GX620
· IBM Thinkpad R50e
· BricsCAD for Linux
· Sil 3512 - Silicon Image Serial ATA (SATA) controller
· AverMedia AVerTV Volar Black HD (A850)
· SyncMaster B1930 monitor
· ATI Radeon 9600 Pro
· Compaq Presario CQ40
· Aspire 5741

New Forum Topics

· Ballistics..........
by: danleff
on: 2010-09-06 06:49
1 replies, 218 views

· Warhammer 40k Chaos Gate on XP - help?
by: Nateski
on: 2010-09-03 14:13
113 replies, 96482 views

· Need for Speed II: SE problem with Windows XP
by: nullphobiamaddy
on: 2010-08-31 18:46
5 replies, 20647 views

· mouse stops working once windows xp loads...help
by: cole1434
on: 2010-08-30 05:28
6 replies, 1302 views

· Dungeon Keeper 2 on vista
by: littlecengiz
on: 2010-08-26 08:47
1 replies, 1218 views

News Channels

· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS

What's New

Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » December 2009 » USN-863-1: QEMU vulnerability

USN-863-1: QEMU vulnerability

Posted by: Bob on: 12/03/2009 10:15 PM [ Print | 0 comment(s) ]

A new QEMU vulnerability update is available for Ubuntu Linux. Here the announcement:




Ubuntu Security Notice USN-863-1 December 03, 2009
qemu-kvm vulnerability
https://launchpad.net/bugs/458521
===========================================================

A security issue affects the following Ubuntu releases:

Ubuntu 9.10

This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.

The problem can be corrected by upgrading your system to the
following package versions:

Ubuntu 9.10:
qemu-kvm 0.11.0-0ubuntu6.3

After a standard system upgrade you need to restart any QEMU guests to
effect the necessary changes.

Details follow:

It was discovered that QEMU did not properly setup the virtio networking
features available to its guests. A remote attacker could exploit this to
crash QEMU guests which use virtio networking on Linux kernels earlier
than 2.6.26.


Updated packages for Ubuntu 9.10:

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/q/qemu-kvm/qemu-kvm_0.11.0-0ubuntu6.3.diff.gz
Size/MD5: 48984 14fa43af0ed17b918c50803f91b1480d
http://security.ubuntu.com/ubuntu/pool/main/q/qemu-kvm/qemu-kvm_0.11.0-0ubuntu6.3.dsc
Size/MD5: 1377 18f25eed2408085a81ad70f39d74a835
http://security.ubuntu.com/ubuntu/pool/main/q/qemu-kvm/qemu-kvm_0.11.0.orig.tar.gz
Size/MD5: 4382897 440837a062967102a68e634d57eaf719

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/pool/main/q/qemu-kvm/kvm_84+dfsg-0ubuntu16+0.11.0+0ubuntu6.3_amd64.deb
Size/MD5: 9106 b15b1b8a62f13822a3932abd54a5f924
http://security.ubuntu.com/ubuntu/pool/main/q/qemu-kvm/qemu-kvm_0.11.0-0ubuntu6.3_amd64.deb
Size/MD5: 2813520 49b26fe83d6c4a5c9befd6716a3431a9
http://security.ubuntu.com/ubuntu/pool/universe/q/qemu-kvm/qemu-arm-static_0.11.0-0ubuntu6.3_amd64.deb
Size/MD5: 636074 d9f0b9d5ff621c8b56b9fca53c0ae5d2
http://security.ubuntu.com/ubuntu/pool/universe/q/qemu-kvm/qemu-kvm-extras_0.11.0-0ubuntu6.3_amd64.deb
Size/MD5: 15469258 dd6a9beb5c7d51b43785df232a3a3c40
http://security.ubuntu.com/ubuntu/pool/universe/q/qemu-kvm/qemu_0.11.0-0ubuntu6.3_amd64.deb
Size/MD5: 8560 2bb181fcf769aafd08d26aa531bb24a4

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/pool/main/q/qemu-kvm/kvm_84+dfsg-0ubuntu16+0.11.0+0ubuntu6.3_i386.deb
Size/MD5: 9104 0a0a8a786ad29625fe5aa3de79c5cd98
http://security.ubuntu.com/ubuntu/pool/main/q/qemu-kvm/qemu-kvm_0.11.0-0ubuntu6.3_i386.deb
Size/MD5: 2592100 3023e22d5e6b3ff51fcf3641cd039e93
http://security.ubuntu.com/ubuntu/pool/universe/q/qemu-kvm/qemu-arm-static_0.11.0-0ubuntu6.3_i386.deb
Size/MD5: 558556 5d369da01ec40b1d79b7e015d9982302
http://security.ubuntu.com/ubuntu/pool/universe/q/qemu-kvm/qemu-kvm-extras_0.11.0-0ubuntu6.3_i386.deb
Size/MD5: 13984728 5464f6de725b919cdb4bd7252d221016
http://security.ubuntu.com/ubuntu/pool/universe/q/qemu-kvm/qemu_0.11.0-0ubuntu6.3_i386.deb
Size/MD5: 8562 3e34c884aff529f95a2975cdb08b2723

lpia architecture (Low Power Intel Architecture):

http://ports.ubuntu.com/pool/main/q/qemu-kvm/kvm_84+dfsg-0ubuntu16+0.11.0+0ubuntu6.3_lpia.deb
Size/MD5: 9104 156a8ede19f2d65929e73f119415f1b7
http://ports.ubuntu.com/pool/main/q/qemu-kvm/qemu-kvm_0.11.0-0ubuntu6.3_lpia.deb
Size/MD5: 2621316 02b4e9168fdacc9ab8955de557c64a7d
http://ports.ubuntu.com/pool/universe/q/qemu-kvm/qemu-arm-static_0.11.0-0ubuntu6.3_lpia.deb
Size/MD5: 578522 eb5a953dc2d59c2893656467bc879c25
http://ports.ubuntu.com/pool/universe/q/qemu-kvm/qemu-kvm-extras_0.11.0-0ubuntu6.3_lpia.deb
Size/MD5: 14110238 ee2d23ca2c7d25f37e5cb4d315730ad4
http://ports.ubuntu.com/pool/universe/q/qemu-kvm/qemu_0.11.0-0ubuntu6.3_lpia.deb
Size/MD5: 8560 7c2df17d8e67444172c9093c28a01d71



--eAbsdosE1cNLO4uF
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEARECAAYFAksYGQAACgkQW0JvuRdL8BrNQACfScCAdIfUNm2VtSPcMCN2MEIj
kxcAn03InrjpFS+mosKgV7LWqtBa0WOG
=W7sT
-----END PGP SIGNATURE-----


Bookmark and Share

« DSA 1945-1: New gforge packages fix denial of service · DSA 1946-1: New belpic packages fix cryptographic weakness »

Linux Compatible » News » December 2009 » USN-863-1: QEMU vulnerability
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2010 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition