UbuntuUpdates.org

Bugs fixes in "qemu"

Origin Bug number Title Date fixed
CVE CVE-2020-13754 hw/pci/msix.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access via a crafted address in an msi-x mmio operation. 2020-08-21
Launchpad 1890154 [UBUNTU 20.04] Secure Execution: Unable to start Qemu with \ 2020-08-21
Launchpad 1883984 QEMU S/390x sqxbr (128-bit IEEE 754 square root) crashes qemu-system-s390x 2020-08-21
Launchpad 1891877 Further stabilize qemu in Focal by updating to 4.2.1 stable release 2020-08-21
Launchpad 1891203 arm64 - services not running that should be - missing capabilities 2020-08-21
CVE CVE-2020-13754 hw/pci/msix.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access via a crafted address in an msi-x mmio operation. 2020-08-21
Launchpad 1890154 [UBUNTU 20.04] Secure Execution: Unable to start Qemu with \ 2020-08-21
Launchpad 1883984 QEMU S/390x sqxbr (128-bit IEEE 754 square root) crashes qemu-system-s390x 2020-08-21
Launchpad 1891877 Further stabilize qemu in Focal by updating to 4.2.1 stable release 2020-08-21
Launchpad 1891203 arm64 - services not running that should be - missing capabilities 2020-08-21
CVE CVE-2020-15863 hw/net/xgmac.c in the XGMAC Ethernet controller in QEMU before 07-20-2020 has a buffer overflow. This occurs during packet transmission and affects t 2020-08-20
CVE CVE-2020-13765 rom_copy() in hw/core/loader.c in QEMU 4.1.0 does not validate the relationship between two addresses, which allows attackers to trigger an invalid m 2020-08-20
CVE CVE-2020-13754 hw/pci/msix.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access via a crafted address in an msi-x mmio operation. 2020-08-20
CVE CVE-2020-13659 address_space_map in exec.c in QEMU 4.2.0 can trigger a NULL pointer dereference related to BounceBuffer. 2020-08-20
CVE CVE-2020-13362 In QEMU 5.0.0 and earlier, megasas_lookup_frame in hw/scsi/megasas.c has an out-of-bounds read via a crafted reply_queue_head field from a guest OS u 2020-08-20
CVE CVE-2020-13361 In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trig 2020-08-20
CVE CVE-2020-13253 sd_wp_addr in hw/sd/sd.c in QEMU 4.2.0 uses an unvalidated address, which leads to an out-of-bounds read during sdhci_write() operations. A guest OS 2020-08-20
CVE CVE-2020-16092 In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This issue affects the e1000e and vmxnet3 network devices. A 2020-08-20
CVE CVE-2020-15863 hw/net/xgmac.c in the XGMAC Ethernet controller in QEMU before 07-20-2020 has a buffer overflow. This occurs during packet transmission and affects t 2020-08-20
CVE CVE-2020-14415 division by zero in oss_write() in audio/ossaudio.c 2020-08-20



About   -   Send Feedback to @ubuntu_updates