libvirt 3.0.0-4+deb9u4 source package in Debian

Changelog

libvirt (3.0.0-4+deb9u4) stretch-security; urgency=medium

  * Fix CVEs related to privilege escalations on R/O connections.
    - CVE-2019-10161:
      CVE-2019-10161-api-disallow-virDomainSaveImageGetXMLDesc-.patch
    - CVE-2019-10167:
      api-disallow-virConnectGetDomainCapabilities-on-read-only.patch
  * cpu_map: Define md-clear CPUID bit.
    CVE-2018-12126, CVE-2018-12127, CVE-2018-12130, CVE-2019-11091
  * Add spec-ctrl and ibpb CPU features and ibrs CPU models.
    CVE-2017-5753, CVE-2017-5715
  * Add ssbd CPU feature.
    CVE-2018-3639

 -- Guido Günther <email address hidden>  Wed, 12 Jun 2019 10:13:38 +0200

Upload details

Uploaded by:
Debian Libvirt Maintainers
Uploaded to:
Stretch
Original maintainer:
Debian Libvirt Maintainers
Architectures:
any all
Section:
devel
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Stretch release main devel

Builds

Downloads

File Size SHA-256 Checksum
libvirt_3.0.0-4+deb9u4.dsc 4.0 KiB 17293a40d410d31103e6b8b092479170c000b7656d7f9a232ca1ea9a185c04d9
libvirt_3.0.0.orig.tar.xz 13.2 MiB 9d9d26b70e13b1b2dfde5789ed52fc4528289a37e0f158418e9746263b37175e
libvirt_3.0.0-4+deb9u4.debian.tar.xz 74.5 KiB 3009f7b00009f3908453d0ddb98ea22e7d49985d60fb14281e88880160e2c85d

No changes file available.

Binary packages built by this source