ELSA-2023-12368 -- Oracle qemuID: oval:org.secpod.oval:def:1506628 | Date: (C)2023-07-17 (M)2024-04-25 |
Class: PATCH | Family: unix |
[15:4.2.1-26.el7] - migration: check magic value for deciding the mapping of channels [Orabug: 34735462] - io: Add support for MSG_PEEK for socket channel [Orabug: 34735462] - migration: Move channel setup out of postcopy_try_recover [Orabug: 34735462] - vdpa: commit all host notifier MRs in a single MR transaction [Orabug: 35252234] - vhost: configure all host notifiers in a single MR transaction [Orabug: 35252234] - vhost: simplify vhost_dev_enable_notifiers [Orabug: 35252234] - pcie: Do not update hotplugged device power in RUN_STATE_INMIGRATE state [Orabug: 35055290] - qga/win32: Use rundll for VSS installation [Orabug: 35206108] {CVE-2023-0664} - qga/win32: Remove change action from MSI installer [Orabug: 35206108] {CVE-2023-0664} - hw/display/qxl: Assert memory slot fits in preallocated MemoryRegion [Orabug: 34846087] {CVE-2022-4144} - hw/display/qxl: Avoid buffer overrun in qxl_phys2virt [Orabug: 34846087] {CVE-2022-4144} - hw/display/qxl: Pass requested buffer size to qxl_phys2virt [Orabug: 34846087] {CVE-2022-4144} - hw/display/qxl: Document qxl_phys2virt [Orabug: 34846087] {CVE-2022-4144} - hw/display/qxl: Have qxl_log_command Return early if no log_cmd handler [Orabug: 34846087] {CVE-2022-4144} - virtio-blk: On restart, process queued requests in the proper context [Orabug: 35060530] - virtio-blk: Refactor the code that processes queued requests [Orabug: 35060530] - hw/intc/ioapic: Update KVM routes before redelivering IRQ, on RTE update [Orabug: 35219223] - modules: load modules from /var/run/qemu/ directory firstly [Orabug: 34867783] - qemu.spec: Add post-install script for block storage modules [Orabug: 34867783] - qemu.spec: Enable "-module-upgrades" for OL7 [Orabug: 34867783] - module: increase dirs array size by one [Orabug: 34867783] - modules: load modules from versioned /var/run dir [Orabug: 34867783] - blockjob: Fix crash with IOthread when block commit after snapshot [Orabug: 35118668]