Format: 1.8 Date: Tue, 12 Aug 2014 14:35:45 -0400 Source: qemu-kvm Binary: qemu-kvm qemu-common qemu-kvm-extras qemu-kvm-extras-static qemu-arm-static kvm qemu Architecture: powerpc Version: 0.12.3+noroms-0ubuntu9.24 Distribution: lucid Urgency: medium Maintainer: Ubuntu/powerpc Build Daemon Changed-By: Marc Deslauriers Description: kvm - dummy transitional pacakge from kvm to qemu-kvm qemu - dummy transitional pacakge from qemu to qemu-kvm qemu-arm-static - dummy transitional package for qemu-kvm-extras-static qemu-common - qemu common functionality (bios, documentation, etc) qemu-kvm - Full virtualization on i386 and amd64 hardware qemu-kvm-extras - fast processor emulator binaries for non-x86 architectures qemu-kvm-extras-static - static QEMU user mode emulation binaries Launchpad-Bugs-Fixed: 1322204 1322204 1322204 1322204 1322204 1322204 Changes: qemu-kvm (0.12.3+noroms-0ubuntu9.24) lucid-security; urgency=medium . * SECURITY UPDATE: denial of service and possible code exection via incorrect image format validation (LP: #1322204) - debian/patches/CVE-2014-0142.patch: validate extent_size header field in block/bochs.c, validate s->tracks in block/parallels.c, validate block size in block/vpc.c, backport function to qemu-common.h, backport DIV_ROUND_UP to osdep.h. - CVE-2014-0142 * SECURITY UPDATE: denial of service and possible code exection via incorrect image format validation (LP: #1322204) - debian/patches/CVE-2014-0143.patch: validate nb_sectors in block.c, validate catalog_size header field in block/bochs.c, prevent offsets_size integer overflow in block/cloop.c, fix catalog size integer overflow in block/parallels.c, validate new_l1_size in block/qcow2-cluster.c, use proper size in block/qcow2-refcount.c, check L1 snapshot table size in block/qcow2-snapshot.c, check active L1 table size in block/qcow2.c, define max size in block/qcow2.h. - CVE-2014-0143 * SECURITY UPDATE: denial of service and possible code exection via incorrect image format validation (LP: #1322204) - debian/patches/CVE-2014-0144.patch: validate block sizes and offsets in block/cloop.c, check offset in block/curl.c, validate size in block/qcow2-refcount.c, check number of snapshots in block/qcow2-snapshot.c, check sizes and offsets in block/qcow2.c, move structs to block/qcow2.h, check sizes in block/vdi.c, prevent overflows in block/vpc.c. - CVE-2014-0144 * SECURITY UPDATE: denial of service and possible code exection via incorrect image format validation (LP: #1322204) - debian/patches/CVE-2014-0145.patch: check chunk sizes in block/dmg.c, use correct size in block/qcow2-snapshot.c. - CVE-2014-0145 * SECURITY UPDATE: denial of service and possible code exection via incorrect image format validation (LP: #1322204) - debian/patches/CVE-2014-0146.patch: calculate offsets properly in block/qcow2.c. - CVE-2014-0146 * SECURITY UPDATE: denial of service and possible code exection via incorrect image format validation (LP: #1322204) - debian/patches/CVE-2014-0147.patch: use proper sizes in block/bochs.c. - CVE-2014-0147 * SECURITY UPDATE: multiple buffer overflows on invalid state load - debian/patches: added large number of upstream patches pulled from git tree. - CVE-2013-4148 - CVE-2013-4151 - CVE-2013-4530 - CVE-2013-4531 - CVE-2013-4533 - CVE-2013-4534 - CVE-2013-4537 - CVE-2013-4538 - CVE-2013-4539 - CVE-2013-4540 - CVE-2013-6399 - CVE-2014-0182 - CVE-2014-0222 - CVE-2014-0223 Checksums-Sha1: 1ac753e254c13d850c57575c422fa2b63f29983a 2887088 qemu-kvm_0.12.3+noroms-0ubuntu9.24_powerpc.deb 52c93ec0cbf213920dc6c2f2d5b030e606c13091 16077470 qemu-kvm-extras_0.12.3+noroms-0ubuntu9.24_powerpc.deb babdd314bc223d7dad2adfb9fa37b16c975fe732 16394 qemu_0.12.3+noroms-0ubuntu9.24_powerpc.deb 79fcb950c2f71ec216b58f780ea5a8beb0ec0564 16938 kvm_84+dfsg-0ubuntu16+0.12.3+noroms+0ubuntu9.24_powerpc.deb Checksums-Sha256: 0202f226b3cb4aaf1b6f11a29e1bcbb25bc8411c115270b019edf28659368099 2887088 qemu-kvm_0.12.3+noroms-0ubuntu9.24_powerpc.deb 1de66409327108c6a9f0535b90dd9339894168a10e5d8839e3de6df2b4d71515 16077470 qemu-kvm-extras_0.12.3+noroms-0ubuntu9.24_powerpc.deb bb475822c82bf7ea515206c766d1a3e6045311894e89eb4838c7d693f1c2a812 16394 qemu_0.12.3+noroms-0ubuntu9.24_powerpc.deb 8e8dc197a2888920e762f02864307daaa2ac34211eb97163c0dad30c111af3ea 16938 kvm_84+dfsg-0ubuntu16+0.12.3+noroms+0ubuntu9.24_powerpc.deb Files: bd2ed45c890412ad613151b50d934144 2887088 misc optional qemu-kvm_0.12.3+noroms-0ubuntu9.24_powerpc.deb 126f7dd3423d0f415080aa11fc58b836 16077470 misc optional qemu-kvm-extras_0.12.3+noroms-0ubuntu9.24_powerpc.deb c7f8d0ef1437a016718d52e6d5e28393 16394 metapackages optional qemu_0.12.3+noroms-0ubuntu9.24_powerpc.deb 0634d50f4c6ac2d12be90ab77efc48ed 16938 metapackages optional kvm_84+dfsg-0ubuntu16+0.12.3+noroms+0ubuntu9.24_powerpc.deb