Format: 1.8 Date: Tue, 11 Aug 2020 14:48:43 -0400 Source: qemu Binary: qemu qemu-system qemu-block-extra qemu-system-common qemu-system-misc qemu-system-arm qemu-system-mips qemu-system-ppc qemu-system-sparc qemu-system-x86 qemu-user qemu-user-static qemu-user-binfmt qemu-utils qemu-guest-agent qemu-kvm qemu-system-aarch64 qemu-system-s390x Architecture: arm64 arm64_translations Version: 1:2.5+dfsg-5ubuntu10.45 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: qemu - fast processor emulator qemu-block-extra - extra block backend modules for qemu-system and qemu-utils qemu-guest-agent - Guest-side qemu-system agent qemu-kvm - QEMU Full virtualization qemu-system - QEMU full system emulation binaries qemu-system-aarch64 - QEMU full system emulation binaries (aarch64) qemu-system-arm - QEMU full system emulation binaries (arm) qemu-system-common - QEMU full system emulation binaries (common files) qemu-system-mips - QEMU full system emulation binaries (mips) qemu-system-misc - QEMU full system emulation binaries (miscelaneous) qemu-system-ppc - QEMU full system emulation binaries (ppc) qemu-system-s390x - QEMU full system emulation binaries (s390x) qemu-system-sparc - QEMU full system emulation binaries (sparc) qemu-system-x86 - QEMU full system emulation binaries (x86) qemu-user - QEMU user mode emulation binaries qemu-user-binfmt - QEMU user mode binfmt registration for qemu-user qemu-user-static - QEMU user mode emulation binaries (static version) qemu-utils - QEMU utilities Changes: qemu (1:2.5+dfsg-5ubuntu10.45) xenial-security; urgency=medium . * SECURITY UPDATE: out-of-bounds read and write in sm501 - debian/patches/CVE-2020-12829-pre0.patch: fix hardware cursor. - debian/patches/CVE-2020-12829-pre1.patch: use values from the pitch register for 2D operations. - debian/patches/CVE-2020-12829-pre2.patch: implement negated destination raster operation mode. - debian/patches/CVE-2020-12829-pre3.patch: log unimplemented raster operation modes. - debian/patches/CVE-2020-12829-pre4.patch: fix support for non-zero frame buffer start address. - debian/patches/CVE-2020-12829-pre5.patch: set updated region dirty after 2D operation. - debian/patches/CVE-2020-12829-pre6.patch: adjust endianness of pixel value in rectangle fill. - debian/patches/CVE-2020-12829-pre7.patch: convert printf + abort to qemu_log_mask. - debian/patches/CVE-2020-12829-pre8.patch: shorten long variable names in sm501_2d_operation. - debian/patches/CVE-2020-12829-pre9.patch: use BIT(x) macro to shorten constant. - debian/patches/CVE-2020-12829-pre10.patch: clean up local variables in sm501_2d_operation. - debian/patches/CVE-2020-12829.patch: replace hand written implementation with pixman where possible. - debian/patches/CVE-2020-12829-2.patch: optimize small overlapping blits. - debian/patches/CVE-2020-12829-3.patch: fix bounds checks. - debian/patches/CVE-2020-12829-4.patch: drop unneded variable. - debian/patches/CVE-2020-12829-5.patch: do not allow guest to set invalid format. - debian/patches/CVE-2020-12829-6.patch: introduce variable for commonly used value for better readability. - debian/patches/CVE-2020-12829-7.patch: fix and optimize overlap check. - CVE-2020-12829 * SECURITY UPDATE: out-of-bounds read during sdhci_write() operations - debian/patches/CVE-2020-13253.patch: do not switch to ReceivingData if address is invalid in hw/sd/sd.c. - CVE-2020-13253 * SECURITY UPDATE: out-of-bounds access during es1370_write() operation - debian/patches/CVE-2020-13361.patch: check total frame count against current frame in hw/audio/es1370.c. - CVE-2020-13361 * SECURITY UPDATE: out-of-bounds read via crafted reply_queue_head - debian/patches/CVE-2020-13362-1.patch: use unsigned type for reply_queue_head and check index in hw/scsi/megasas.c. - debian/patches/CVE-2020-13362-2.patch: avoid NULL pointer dereference in hw/scsi/megasas.c. - debian/patches/CVE-2020-13362-3.patch: use unsigned type for positive numeric fields in hw/scsi/megasas.c. - CVE-2020-13362 * SECURITY UPDATE: NULL pointer dereference related to BounceBuffer - debian/patches/CVE-2020-13659.patch: set map length to zero when returning NULL in exec.c, include/exec/memory.h. - CVE-2020-13659 * SECURITY UPDATE: out-of-bounds access via msi-x mmio operation - debian/patches/CVE-2020-13754-1.patch: revert accepting mismatching sizes in memory_region_access_valid in memory.c. - debian/patches/CVE-2020-13754-2.patch: accept byte and word access to core ACPI registers in hw/acpi/core.c. - CVE-2020-13754 * SECURITY UPDATE: invalid memory copy operation via rom_copy - debian/patches/CVE-2020-13765.patch: add extra check to hw/core/loader.c. - CVE-2020-13765 * SECURITY UPDATE: buffer overflow in XGMAC Ethernet controller - debian/patches/CVE-2020-15863.patch: check bounds in hw/net/xgmac.c. - CVE-2020-15863 Checksums-Sha1: c1729d09b828d98c11a1825f4a908df9ea8ce411 81182 qemu-block-extra-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 3586a3b0719c8064f3cbca1f239461f62ef1475e 28736 qemu-block-extra_2.5+dfsg-5ubuntu10.45_arm64.deb cf756bdee39e10966499b1d85e291c2c11f509be 307676 qemu-guest-agent-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb c73562f3ea7b7c306ac7dce4fe751878ed51a236 114682 qemu-guest-agent_2.5+dfsg-5ubuntu10.45_arm64.deb 4c09507c9d14203b6560a8d40e4b947ec476b113 6488 qemu-kvm_2.5+dfsg-5ubuntu10.45_arm64.deb 5433543bfc3cf709fc7e2d0d834e8ead3b6a6fea 4884 qemu-system-aarch64_2.5+dfsg-5ubuntu10.45_arm64.deb 99705ba37edda798197e1b45dad11d9c75050884 11746778 qemu-system-arm-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 4f14112abc8bf978f43ed17a45294a95b41bcf15 2026524 qemu-system-arm_2.5+dfsg-5ubuntu10.45_arm64.deb 82d7c71b58f64b70cb10efbcbb1ce36d1342f704 53564 qemu-system-common-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 1cb5457d87ab927f6689a61b5805454133dbd4e4 279370 qemu-system-common_2.5+dfsg-5ubuntu10.45_arm64.deb 1ff366d46ff1bb006cba497ebe07f9e073725a15 21760502 qemu-system-mips-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb cc4a2d617802451fd1c087aaaacbeb9afec56563 2376552 qemu-system-mips_2.5+dfsg-5ubuntu10.45_arm64.deb 4df1aedb7ab339b5226adeb2e4158ca801607f2e 47791608 qemu-system-misc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 4d386bf881bfe9008f145a8fe2b52a7a5dd7865a 4257918 qemu-system-misc_2.5+dfsg-5ubuntu10.45_arm64.deb 5be4ab57c27a314d11285ed9b4fa970c796a3247 16762020 qemu-system-ppc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 1114d1db967718f6fe8fc6f98e8bc6d0a1291725 2434134 qemu-system-ppc_2.5+dfsg-5ubuntu10.45_arm64.deb 785ba7e155999a87b4feed61a354efc80872598b 7670934 qemu-system-sparc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 7439c7d37513e6e1eb83eb637fce27405072abc9 1536250 qemu-system-sparc_2.5+dfsg-5ubuntu10.45_arm64.deb 09d1c7af96078d136421542871c252bc1cd3aa51 10602014 qemu-system-x86-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 40504cb0b5036aa0c4bcb1ddcf173e7f2e98470c 1768536 qemu-system-x86_2.5+dfsg-5ubuntu10.45_arm64.deb 58cefded4301c002c2e580170e6e24cd0e82e266 6122 qemu-system_2.5+dfsg-5ubuntu10.45_arm64.deb 83d7bc3acbf56323d8f25420bfea67ddb325d7f0 2630 qemu-user-binfmt_2.5+dfsg-5ubuntu10.45_arm64.deb 87f0d5059d56b4f8a73efd2c2f35c1ab6285dbc9 28204966 qemu-user-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 9cb31a6be2228a356b6103b23e8348cf8339c040 31512224 qemu-user-static-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 6e4dbf3f1ed07a531577c00dc601f7f3e079e546 5749584 qemu-user-static_2.5+dfsg-5ubuntu10.45_arm64.deb 116762d51bd34b1719fe6dd28d487ca3364278ff 4103530 qemu-user_2.5+dfsg-5ubuntu10.45_arm64.deb 95c722feebb88f2a687bd7d6248b73aa83862ffb 1889614 qemu-utils-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 8befa022640e0b9bcc5341c24b9949cc6cdbf5dd 465604 qemu-utils_2.5+dfsg-5ubuntu10.45_arm64.deb 2f22c1e832440c4ade44bebf9bb560ce5eaa47ec 83076 qemu_2.5+dfsg-5ubuntu10.45_arm64.deb 63684127d8d4501f8a5cb853c2cf792f40eb30a0 2700 qemu_2.5+dfsg-5ubuntu10.45_arm64_translations.tar.gz Checksums-Sha256: 1fcacd375fcbb6fcbdfa190e94cd0a054f7b863e5b682e83f738bafbf1a40331 81182 qemu-block-extra-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb b618027f7b4b8b180c7a6637fef3bdf545d80b9cb3043e8b70d10948d11539b4 28736 qemu-block-extra_2.5+dfsg-5ubuntu10.45_arm64.deb 9060a0f9a3e6fb2c9f9c3561ebcd006c441ce5fa24eb17fe32cbc3cdb295a130 307676 qemu-guest-agent-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 077f35874c3f6044591bd87b9e795c350ec08e4b29c366bb91865d177890b127 114682 qemu-guest-agent_2.5+dfsg-5ubuntu10.45_arm64.deb e2f744490880eccb1f4126fabb7dd587aa8754f193cc7f0663dbbdc44220c896 6488 qemu-kvm_2.5+dfsg-5ubuntu10.45_arm64.deb ac9453636d5c7b3f3f6774618259290407846166a2e01f2c2611f07349bcb178 4884 qemu-system-aarch64_2.5+dfsg-5ubuntu10.45_arm64.deb ee4b40d5de24e945754dfde2d0d53de8fc0e21da31f62cc787e1bf32f7f615db 11746778 qemu-system-arm-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 462d3e3559c4a9107b93b519c5b7aefc2aa6cb5c91b189709e02201205051bd1 2026524 qemu-system-arm_2.5+dfsg-5ubuntu10.45_arm64.deb bcf9b0a5ea8966ab8182e690212d393d2dd950aefc59c8eeec74d3e8e340bac3 53564 qemu-system-common-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 096f7eefb9ebbaba28d8f8adfc9a42465cba4fb2b87f8c14f61c78ded0df47c5 279370 qemu-system-common_2.5+dfsg-5ubuntu10.45_arm64.deb b5e95f02259800294d2729d90b32607f86ad6f40fbbf19fb82d6fae5bd70c1cc 21760502 qemu-system-mips-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb d0ccc3c1098a8f650767e8343341dbb5a20d3a3895792d8a691c7d68a78ac711 2376552 qemu-system-mips_2.5+dfsg-5ubuntu10.45_arm64.deb 211aa032ecf9416dfe89fedd29061d784593dfebc263d42685956668bd99c331 47791608 qemu-system-misc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 3aa8b7b2199c47614f96089755fc0f11fa96b2131422b7e1dde0105ee6e2fc18 4257918 qemu-system-misc_2.5+dfsg-5ubuntu10.45_arm64.deb a10c9fd59096dcbd4157c5b40dfb04f2b91d4cfb4c94cdf86c4e074f802142fa 16762020 qemu-system-ppc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 0ea76dfaabe0287c961c2591eee04af0c7c2286123992722f32d434a2c3fa140 2434134 qemu-system-ppc_2.5+dfsg-5ubuntu10.45_arm64.deb 06ac48761ef0fb7de5c5d3c24007eafb0f616e087a75550a34ccf522839025c4 7670934 qemu-system-sparc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb c615434711017601df229bf403d704a9cb3ce3a1e5d8aa167329d9a239f3e806 1536250 qemu-system-sparc_2.5+dfsg-5ubuntu10.45_arm64.deb a094b3ff6b53f360d715c1e66feafdf44bae9e313a92e9561c7582242a3ae102 10602014 qemu-system-x86-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 6322a54e022a3c46eac5ece289a452b3a09bb9b25dd437b6dc7c58d2e3dcf6b4 1768536 qemu-system-x86_2.5+dfsg-5ubuntu10.45_arm64.deb fa96e902d808831dee650521004e093d0c08d8a50c2be36b8f65dcfcf948575e 6122 qemu-system_2.5+dfsg-5ubuntu10.45_arm64.deb f5e02ae81be05269d2da82cb5b70d2f4e237da11600671f08c5801f972821149 2630 qemu-user-binfmt_2.5+dfsg-5ubuntu10.45_arm64.deb e7a1457d6e54c41f70a00477865a43a7d76e55084a0914ba5dbb2f870f337888 28204966 qemu-user-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 63d041b442bbfa24f73367546d46d1c0ccfb6e66edce2dbcdc8bb7f9472f84ec 31512224 qemu-user-static-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 765d336eeed85f7bd8b7b4d44d32dcc053fd110a582f1487d7231bcfcdbed12e 5749584 qemu-user-static_2.5+dfsg-5ubuntu10.45_arm64.deb 0508f5f9212db4392cb33d79206aee199d5444da4cccfac1b293dea0cc3b82c2 4103530 qemu-user_2.5+dfsg-5ubuntu10.45_arm64.deb c713244896bf45cc10fbb85d5cc35c33706017cf8ae2deb4e05edd4d2c95b7db 1889614 qemu-utils-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 63a85620d7076f000b45cb4a15c1a8f520c96f1fb2a77b6b87dc0929b2953d7f 465604 qemu-utils_2.5+dfsg-5ubuntu10.45_arm64.deb f8831e9d262a784fb7541dbe204d3af823b2ce7139b435cceef8fba627a8e128 83076 qemu_2.5+dfsg-5ubuntu10.45_arm64.deb 2b54243b1546e87156244ad313d9563f2c402f88ef6bc1a81e013be2ed57dd6c 2700 qemu_2.5+dfsg-5ubuntu10.45_arm64_translations.tar.gz Files: 7a13c4b4ec2578289689a12691ab9264 81182 otherosfs extra qemu-block-extra-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 2dfa5124a21bd0a6e5356dd411a15cc6 28736 otherosfs optional qemu-block-extra_2.5+dfsg-5ubuntu10.45_arm64.deb 635c98cc4c19c50b71994b3100a2b279 307676 otherosfs extra qemu-guest-agent-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb ffc9b4c6d6d47991ae0e44dfb5f233e2 114682 otherosfs optional qemu-guest-agent_2.5+dfsg-5ubuntu10.45_arm64.deb 62a0e90bbeea92e500a21d84d90fdb5c 6488 otherosfs optional qemu-kvm_2.5+dfsg-5ubuntu10.45_arm64.deb c51d1dff9e22159262253be996df0872 4884 otherosfs optional qemu-system-aarch64_2.5+dfsg-5ubuntu10.45_arm64.deb c0c43311e2cdfcd17cf5427b322f9048 11746778 otherosfs extra qemu-system-arm-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb e25aecc104d28e470c2427c04043f506 2026524 otherosfs optional qemu-system-arm_2.5+dfsg-5ubuntu10.45_arm64.deb 6c47e9199b2b3778fa5503160f4b87b0 53564 otherosfs extra qemu-system-common-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 5a2671d2f0e74a17faf93402e13de448 279370 otherosfs optional qemu-system-common_2.5+dfsg-5ubuntu10.45_arm64.deb 8a553aa4014547c59580423adc75b49a 21760502 otherosfs extra qemu-system-mips-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb b1144447ea7526cb3e960d7acb273c90 2376552 otherosfs optional qemu-system-mips_2.5+dfsg-5ubuntu10.45_arm64.deb a2fa051dde5494584a16c6299d74d81b 47791608 otherosfs extra qemu-system-misc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 32bfe082d07c91e60ac78301df007d66 4257918 otherosfs optional qemu-system-misc_2.5+dfsg-5ubuntu10.45_arm64.deb 6b94807fc300e4e7e582c85babd7420a 16762020 otherosfs extra qemu-system-ppc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb a1de63bc00b6594cf706e1a1d62d766b 2434134 otherosfs optional qemu-system-ppc_2.5+dfsg-5ubuntu10.45_arm64.deb 0f6f487255b5a7f26437a4464dac3254 7670934 otherosfs extra qemu-system-sparc-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb cc7b400f81b33d207d05b72d1c1708d5 1536250 otherosfs optional qemu-system-sparc_2.5+dfsg-5ubuntu10.45_arm64.deb fa79f75a6269b7b2a2c43d12a150dab0 10602014 otherosfs extra qemu-system-x86-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb efd1f8d94de56c5bbd70dd5ce1a5eaa1 1768536 otherosfs optional qemu-system-x86_2.5+dfsg-5ubuntu10.45_arm64.deb d4dc3e5296bd85e34611e1707002efd8 6122 otherosfs optional qemu-system_2.5+dfsg-5ubuntu10.45_arm64.deb b2a9ede8942da5312ac4f5f82c83f1d6 2630 otherosfs optional qemu-user-binfmt_2.5+dfsg-5ubuntu10.45_arm64.deb ac9f521ef545cc8e5df8b2289eedf016 28204966 otherosfs extra qemu-user-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 90d071db8913169c1aa229919bad50a0 31512224 otherosfs extra qemu-user-static-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 9dcd832cde85057b299e38850d917928 5749584 otherosfs optional qemu-user-static_2.5+dfsg-5ubuntu10.45_arm64.deb 038e86de28e6c3a448a469928f8c35d0 4103530 otherosfs optional qemu-user_2.5+dfsg-5ubuntu10.45_arm64.deb 14c7c935f2d7deef4ecf9f321617f810 1889614 otherosfs extra qemu-utils-dbgsym_2.5+dfsg-5ubuntu10.45_arm64.ddeb 5f95e8b079b3d21c62629c2e21a4379c 465604 otherosfs optional qemu-utils_2.5+dfsg-5ubuntu10.45_arm64.deb 4c7420780a789cbbb8604c320ec6fa99 83076 otherosfs optional qemu_2.5+dfsg-5ubuntu10.45_arm64.deb a166e598eac56ac9237ca7758744d9d0 2700 raw-translations - qemu_2.5+dfsg-5ubuntu10.45_arm64_translations.tar.gz Original-Maintainer: Debian QEMU Team