]> rtime.felk.cvut.cz Git - coffee/buildroot.git/commit
qemu: security bump to version 2.8.1.1
authorPeter Korsgaard <peter@korsgaard.com>
Wed, 4 Oct 2017 07:13:57 +0000 (09:13 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Thu, 5 Oct 2017 20:33:30 +0000 (22:33 +0200)
commitaf0f2d2bbcaca9000e62b5388f4c3cd8e700c6ff
tree5b2e5f4eb5a71a4afcef3832f82412ba0983d920
parent56b0b5134dfe9e956f4b688a6ad8f3ec3ce4ce82
qemu: security bump to version 2.8.1.1

Fixes the following security issues and adds a number of other bigfixes:

2.8.1: Changelog:
https://lists.gnu.org/archive/html/qemu-devel/2017-03/msg06332.html

CVE-2017-2615 - display: cirrus: oob access while doing bitblt copy backward
mode

CVE-2017-2620 - display: cirrus: out-of-bounds access issue while in
cirrus_bitblt_cputovideo

CVE-2017-2630 - nbd: oob stack write in client routine drop_sync

2.8.1.1 Changelog:
https://lists.gnu.org/archive/html/qemu-devel/2017-04/msg03460.html

CVE-2017-7471 - 9p: virtfs allows guest to change filesystem attributes on
host

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/qemu/qemu.hash
package/qemu/qemu.mk