RLSA-2022:7967
Moderate: qemu-kvm security, bug fix, and enhancement update
Topic
An update is available for qemu-kvm.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
Description
Kernel-based Virtual Machine (KVM) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm packages provide the user-space component for running virtual machines that use KVM.
The following packages have been upgraded to a later upstream version: qemu-kvm (7.0.0). (BZ#2064757)
Security Fix(es):
* QEMU: hcd-ehci: DMA reentrancy issue leads to use-after-free (CVE-2021-3750)
* QEMU: fdc: heap buffer overflow in DMA read data transfers (CVE-2021-3507)
* QEMU: intel-hda: segmentation fault due to stack overflow (CVE-2021-3611)
* QEMU: NULL pointer dereference in pci_write() in hw/acpi/pcihp.c (CVE-2021-4158)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Rocky Linux 9.1 Release Notes linked from the References section.
Rocky Linux 9
SRPMs
- qemu-kvm-17:7.0.0-13.el9.src.rpm
RPMs
- qemu-guest-agent-17:7.0.0-13.el9.aarch64.rpm
- qemu-guest-agent-17:7.0.0-13.el9.ppc64le.rpm
- qemu-guest-agent-17:7.0.0-13.el9.s390x.rpm
- qemu-guest-agent-17:7.0.0-13.el9.x86_64.rpm
- qemu-guest-agent-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-guest-agent-debuginfo-17:7.0.0-13.el9.ppc64le.rpm
- qemu-guest-agent-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-guest-agent-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-img-17:7.0.0-13.el9.aarch64.rpm
- qemu-img-17:7.0.0-13.el9.ppc64le.rpm
- qemu-img-17:7.0.0-13.el9.s390x.rpm
- qemu-img-17:7.0.0-13.el9.x86_64.rpm
- qemu-img-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-img-debuginfo-17:7.0.0-13.el9.ppc64le.rpm
- qemu-img-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-img-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-audio-pa-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-audio-pa-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-audio-pa-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-audio-pa-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-audio-pa-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-audio-pa-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-block-curl-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-block-curl-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-block-curl-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-block-curl-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-block-curl-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-block-curl-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-block-rbd-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-block-rbd-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-block-rbd-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-block-rbd-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-block-rbd-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-block-rbd-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-common-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-common-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-common-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-common-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-common-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-common-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-core-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-core-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-core-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-core-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-core-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-core-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-debugsource-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-debugsource-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-debugsource-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-display-virtio-gpu-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-ccw-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-display-virtio-gpu-ccw-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-display-virtio-gpu-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-display-virtio-gpu-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-gl-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-gl-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-display-virtio-gpu-gl-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-gl-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-gl-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-display-virtio-gpu-gl-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-gl-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-gl-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-gl-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-display-virtio-gpu-pci-gl-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-vga-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-vga-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-vga-gl-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-display-virtio-vga-gl-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-usb-host-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-usb-host-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-usb-host-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-usb-host-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-device-usb-host-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-device-usb-host-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-usb-redirect-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-device-usb-redirect-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-docs-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-docs-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-docs-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-tools-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-tools-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-tools-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-tools-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-kvm-tools-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-kvm-tools-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-ui-egl-headless-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-ui-egl-headless-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-ui-opengl-17:7.0.0-13.el9.x86_64.rpm
- qemu-kvm-ui-opengl-debuginfo-17:7.0.0-13.el9.x86_64.rpm
- qemu-pr-helper-17:7.0.0-13.el9.aarch64.rpm
- qemu-pr-helper-17:7.0.0-13.el9.s390x.rpm
- qemu-pr-helper-17:7.0.0-13.el9.x86_64.rpm
- qemu-pr-helper-debuginfo-17:7.0.0-13.el9.aarch64.rpm
- qemu-pr-helper-debuginfo-17:7.0.0-13.el9.s390x.rpm
- qemu-pr-helper-debuginfo-17:7.0.0-13.el9.x86_64.rpm
Issued: 11/15/2022
Type: Security
Severity: Moderate
Affected Product
- Rocky Linux 9
Fixes
- Red Hat - 1477099
- Red Hat - 1708300
- Red Hat - 1879437
- Red Hat - 1904267
- Red Hat - 1951118
- Red Hat - 1968509
- Red Hat - 1973784
- Red Hat - 1982600
- Red Hat - 1995710
- Red Hat - 1999073
- Red Hat - 2020993
- Red Hat - 2023977
- Red Hat - 2026955
- Red Hat - 2035002
- Red Hat - 2037612
- Red Hat - 2041823
- Red Hat - 2044162
- Red Hat - 2046029
- Red Hat - 2060839
- Red Hat - 2062809
- Red Hat - 2062813
- Red Hat - 2062817
- Red Hat - 2062819
- Red Hat - 2062828
- Red Hat - 2064500
- Red Hat - 2064530
- Red Hat - 2064757
- Red Hat - 2064771
- Red Hat - 2064782
- Red Hat - 2065398
- Red Hat - 2066824
- Red Hat - 2070804
- Red Hat - 2072379
- Red Hat - 2079347
- Red Hat - 2079938
- Red Hat - 2081022
- Red Hat - 2086262
- Red Hat - 2094252
- Red Hat - 2094270
- Red Hat - 2095608
- Red Hat - 2096143
- Red Hat - 2099541
- Red Hat - 2099934
- Red Hat - 2100106
- Red Hat - 2107466
- Red Hat - 2111994
- Red Hat - 2112303
- Red Hat - 2114060
- Red Hat - 2116876
- Red Hat - 2120275
CVEs
References
- No references