Publishing details

Changelog

libvirt (1.2.8-0ubuntu9~ubuntu14.04.1~ppa1) trusty; urgency=medium

  * No-change backport to trusty

libvirt (1.2.8-0ubuntu9) utopic; urgency=medium

  * libvirt-qemu apparmor template: add /sys/firmware/devicetree/** r
    (LP: #1374554)

libvirt (1.2.8-0ubuntu8) utopic; urgency=medium

  * libvirt-bin.postinst: fix syntax error (s/if/fi/)

libvirt (1.2.8-0ubuntu7) utopic; urgency=medium

  * libvirt-bin.postinst: check for confiles whichhave been removed rather
    than fail package install (LP: #1375910)

libvirt (1.2.8-0ubuntu6) utopic; urgency=medium

  * SECURITY UPDATE: denial of service or information disclosure via
    virDomainGetBlockIoTune
    - debian/patches/CVE-2014-3633.patch: use correct definition when
      looking up disk in src/qemu/qemu_driver.c.
    - CVE-2014-3633

libvirt (1.2.8-0ubuntu5) utopic; urgency=medium

  * debian/apparmor/libvirt-lxc (sync with container-base with lxc):
    - remove bare 'signal' and 'ptrace' rules (base abstraction covers most
      of what we need)
    - allow signal (receive) peer=/usr/sbin/libvirtd
    - allow ptrace peer=@{profile_name}
    - deny mount options=(ro, remount, silent) -> /
    - allow mount fstype=hugetlbfs
    - shuffle a couple of rules around to make it easier to diff with lxc
      policy
  * debian/apparmor/TEMPLATE.lxc (sync with lxc-default):
    - use attach_disconnected and mediate_deleted
    - deny mount fstype=devpts,

libvirt (1.2.8-0ubuntu4) utopic; urgency=medium

  * debian/apparmor/usr.sbin.libvirtd: allow 'network netlink'

libvirt (1.2.8-0ubuntu3) utopic; urgency=medium

  * 9033-apparmor-use-TEMPLATE.qemu-for-kvm.patch - fix failure to start
    KVM vms.

libvirt (1.2.8-0ubuntu2) utopic; urgency=low

  * d/p/ubuntu-xend-probe.patch:
    Update patch correctly and re-enable it. It seems like it only was
    half updated and then disabled without reasons.
  * d/p/ubuntu-libxl-Implement-basic-video-device-selection.patch:
    Re-activate adapted patch. Some pieces made it into upstream as a
    bug fix. The rest is still needed to allow selecing an alternate
    graphics device for Xen HVM guests.
  * d/p/ubuntu-libxl-Fix-up-VRAM-to-minimum-requirements.patch:
    Re-activate unchanged patch (for some reason dropped when moving
    to 1.2.6).
    This one is a bit of a work-around mainly for virt-manager which sets
    gfx memory to values below the minimum requirement for Xen. And the
    UI does not allow to change that. This patch just goes for the minimum
    in that case.

libvirt (1.2.8-0ubuntu1) utopic; urgency=medium

  [ Chuck Short ]
  * New upstream release:  (LP: #1367422)
    + Dropped:
      - debian/patches/ovs-delete-port-if-exists-while-adding-new-one
    + Refreshed:
      - debian/patches/add-cgmanager-support.patch
      - debian/patches/storage-default-permission-mode-to-0711

  [ Serge Hallyn ]
  * d/apparmor
    - install TEMPLATE.qemu and TEMPLATE.lxc
    - add libvirt-lxc abstraction, add permissions to it needed for
      a ubuntu container to start.
    - libvirt-qemu - add qemu-bridge-helper policy from upstream
    - libvirt-qemu - add qemu-microblaze allows from upstream
    - edit lxc.conf to enable apparmor by default  (LP: #914716)
      (LP: #1008393) (LP: #1088295)
  * d/apparmor/libvirt-qemu: add /dev/shm as path to spice.* nodes
    for systemd case.  (LP: #1365163)
  * d/p/9030-create-socket-dir - create session socket dir if
    needed  (Should be replaced eventually by the upstream fix)
  * d/p/9032-lxc-allow-no-security-driver: don't fail if apparmor
    driver is not available (else the qa-regression-tests fail with
    skip_apparmor)

libvirt (1.2.6-0ubuntu6) utopic; urgency=medium

  * debian/apparmor/usr.sbin.libvirtd: update for abstract socket mediation
    (LP: #1362199)
  * debian/apparmor/libvirt-qemu: allow 'r' on @{PROC}/sys/kernel/cap_last_cap
  * debian/control: Suggests apparmor >= 2.8.96~2541-0ubuntu4~

libvirt (1.2.6-0ubuntu5) utopic; urgency=medium

  * cgroups-ignore-systemd-failure - fix incoming migration failures when
    systemd-shim is installed.
  * ovs-delete-port-if-exists-while-adding-new-one - cherrypick commit 33445ce
    from upstream (LP: #1343262)

libvirt (1.2.6-0ubuntu4) utopic; urgency=high

  * No change rebuild against gnutls28.

libvirt (1.2.6-0ubuntu3) utopic; urgency=medium

  * debian/apparmor/usr.sbin.libvirtd - add cap-sys-resource to fully
    fix (LP: #1276719)

libvirt (1.2.6-0ubuntu2) utopic; urgency=medium

  * Rebuild against libparted2.

libvirt (1.2.6-0ubuntu1) utopic; urgency=medium

  * New upstream release:
    + Dropped:
     - debian/patches/virt-aa-helper-vhost.patch
     - debian/patches/libxl-Implement-basic-video-device-selection.patch
     - debian/patches/libxl-Fix-up-VRAM-to-minimum-requirements.patch
    + debian/rules: Include packaging version in the log file. (LP: #1335221)

libvirt (1.2.5-0ubuntu6) utopic; urgency=low

  * libxl: Refresh patch(es) to allow the choice between Cirrus and
    VGA for Xen HVM guests.
    - d/p/libxl-Implement-basic-video-device-selection.patch [v4]
    - d/p/libxl-Fix-up-VRAM-to-minimum-requirements.patch

libvirt (1.2.5-0ubuntu5) utopic; urgency=low

  * debian/apparmor/usr.sbin.libvirtd: allow libvirtd to run
    libxl-save-helper (required for save restore through libxl).
    (LP: #1334195)

libvirt (1.2.5-0ubuntu4) utopic; urgency=low

  * debian/apparmor/usr.sbin.libvirtd: allow pygrub to be run
    (LP: #1326003)

libvirt (1.2.5-0ubuntu3) utopic; urgency=medium

  * d/p/virt-aa-helper-vhost.patch: allow access to /dev/vhost-net if domain
    needs it (LP: #1322568)

libvirt (1.2.5-0ubuntu2) utopic; urgency=medium

  * implement cgmanager support (LP: #1322677)
    - debian/control: build-dep on libcgmanager-dev, depend on cgmanager
    - d/p/add-cgmanager-support.patch

libvirt (1.2.5-0ubuntu1) utopic; urgency=medium

  [ Chuck Short ]
  * New upstream version:
    + Rediffed:
      - d/p/ubuntu-xend-probe.patch
    + Dropped:
      - d/p/libxl-Check-for-control_d-string-to-decide-about-dom.patch
      - d/p/libxl-do-not-use-virdomain-id.patch
      - d/p/libxl-set-disk-format-for-cdrom.patch
      - d/p/libxl-set-vfb0-data-in-build-config.patch
      - d/p/libxl-support-sexpr-in-native-to-XML-conversion.patch
      - d/p/patch-qemuMonitorTextGetMigrationStatus-to-intercept.patch
      - d/p/accomodate-new-qemu-migration-status-setup.patch
      - d/p/9025-apparmor-allow-access-to-filesystem-mounts
      - d/p/add-a-mutex-to-serialize-updates-to-fw.patch
      - d/p/arm-cpu-baseline.patch
    + debian/control: Add ebtables, iptables, and qemu-utils as a build dependency.

  [ Serge Hallyn ]
  * d/p/ubuntu-skip-virstoragetest: skip a test that hangs in buildds.
  * d/apparmor/TEMPLATE: replace libvirt-qemu with libvirt-driver to match
    upstream commit 43c030f.

libvirt (1.2.2-0ubuntu13.2) utopic; urgency=medium

  * debian/apparmor/libvirt-qemu: add device-tree access for ppc
    (LP: #1321365)
 -- Nobuto MURATA <email address hidden>   Sat, 04 Oct 2014 02:05:44 +0900

Available diffs

Builds

Built packages

Package files