Oracle Linux 6166 Published by

A qemu-kvm security update has been released for Oracle Linux 6.



El-errata: ELSA-2020-4056 Important: Oracle Linux 6 qemu-kvm security update


Oracle Linux Security Advisory ELSA-2020-4056

  http://linux.oracle.com/errata/ELSA-2020-4056.html

The following updated rpms for Oracle Linux 6 have been uploaded to the
Unbreakable Linux Network:

i386:
qemu-guest-agent-0.12.1.2-2.506.el6_10.8.i686.rpm

x86_64:
qemu-guest-agent-0.12.1.2-2.506.el6_10.8.x86_64.rpm
qemu-img-0.12.1.2-2.506.el6_10.8.x86_64.rpm
qemu-kvm-0.12.1.2-2.506.el6_10.8.x86_64.rpm
qemu-kvm-tools-0.12.1.2-2.506.el6_10.8.x86_64.rpm

SRPMS:
  http://oss.oracle.com/ol6/SRPMS-updates/qemu-kvm-0.12.1.2-2.506.el6_10.8.src.rpm


Description of changes:

[0.12.1.2-2.506.el6_10.8]
- kvm-qemu-kvm-QEMU-usb-check-RNDIS-message-length.patch [bz#1869684]
- kvm-qemu-kvm-QEMU-usb-fix-setup_len-init-CVE-2020-14364.patch [bz#1869684]
- Resolves: bz#1869684
(CVE-2020-14364 qemu-kvm: QEMU: usb: out-of-bounds r/w access issue
while processing usb packets [rhel-6.10.z])