[SECURITY] Fedora 9 Update: kvm-65-15.fc9

updates at fedoraproject.org updates at fedoraproject.org
Wed Dec 24 18:40:58 UTC 2008


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-11705
2008-12-24 11:09:08
--------------------------------------------------------------------------------

Name        : kvm
Product     : Fedora 9
Version     : 65
Release     : 15.fc9
URL         : http://kvm.sf.net
Summary     : Kernel-based Virtual Machine
Description :
KVM (for Kernel-based Virtual Machine) is a full virtualization solution
for Linux on x86 hardware.

Using KVM, one can run multiple virtual machines running unmodified Linux
or Windows images. Each virtual machine has private virtualized hardware:
a network card, disk, graphics adapter, etc.

--------------------------------------------------------------------------------
Update Information:


--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec 22 2008 Glauber Costa <gcosta at redhat.com> - 65-15.fc9
- Fixed CVE 2008-2382.
* Thu Dec  4 2008 Glauber Costa <gcosta at redhat.com> - 65-14.fc9
- Fixed bug that corrupted gnome-panel #474702
* Tue Dec  2 2008 Glauber Costa <gcosta at redhat.com> - 65-12.fc9
- Properly set flags for interrupt return #464304
* Tue Nov 11 2008 Glauber Costa <gcosta at redhat.com> - 65-11.fc9
- Fix CVE-2008-4539 #448525
* Mon Oct 13 2008 Glauber Costa <gcosta at redhat.com> - 65-10.fc9
- Fix sysenter save in 64-bit hosts #457649
* Thu Aug 28 2008 Glauber Costa <gcosta at redhat.com> - 65-9.fc9
- there's already a 65-8 tag
* Thu Aug 28 2008 Glauber Costa <gcosta at redhat.com> - 65-8.fc9
- Fixes #459778
- Fixes #452355
* Tue May 27 2008 Glauber Costa <gcosta at redhat.com> - 65-7.fc9
- Fix the build
* Tue May 27 2008 Glauber Costa <gcosta at redhat.com> - 65-6.fc9
- Fix Cirrus heap overflow vulnerability (#448525)
* Fri May 23 2008 Daniel P. Berrange <berrange at redhat.com> - 65-5.fc9
- Put PTY in rawmode
* Tue May 20 2008 Mark McLoughlin <markmc at redhat.com> - 65-4.fc9
- Re-enable patch to fix -kernel with virtio/extboot drives (#444578)
* Fri May 16 2008 Glauber Costa <gcosta at redhat.com> - 65-3.fc9
- Fix problem with cirrus device that was breaking vnc connections (rhbz #446830)
* Tue Apr 29 2008 Mark McLoughlin <markmc at redhat.com> - 65-2
- Fix -kernel with virtio/extboot drives (#444578)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #477636 - CVE-2008-2382 qemu/kvm: remote DoS (infinite loop) via specially-crafted VNC message received by the domain
        https://bugzilla.redhat.com/show_bug.cgi?id=477636
  [ 2 ] Bug #466890 - CVE-2008-4539 kvm/qemu/xen: Incomplete upstream fix for CVE-2007-1320
        https://bugzilla.redhat.com/show_bug.cgi?id=466890
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update kvm' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------




More information about the package-announce mailing list