Package ivshmem-tools: Information

    Binary package: ivshmem-tools
    Version: 2.5.1.1-alt0.M70C.5
    Architecture: i586
    Build time:  Oct 9, 2017, 11:37 AM in the task #188849
    Source package: qemu
    Category: Emulators
    Report package bug
    License: GPL/LGPL/BSD
    Summary: Client and server for QEMU ivshmem device
    Description: 
    This package provides client and server tools for QEMU's ivshmem device.



    Last changed


    Sept. 26, 2017 Vladimir D. Seleznev 2.5.1.1-alt0.M70C.5
    - Fixes:
      + CVE-2017-13672: vga: OOB read access during display update
      + CVE-2017-8380: scsi: off-by-one error in megasas_mmio_wri allows remote
        attackers to have unspecified impact via unknown vectors
      + CVE-2017-12809: ide: flushing of empty CDROM drives leads to NULL dereference
      + CVE-2017-10664: qemu-nbd: server breaks with SIGPIPE upon client abort
    Sept. 14, 2017 Vladimir D. Seleznev 2.5.1.1-alt0.M70C.4
    - Fixes:
      + CVE-2017-9374 usb: ehci host memory leakage during hotunplug
      + CVE-2017-9375 usb: xhci infinite recursive call via xhci_kick_ep
      + CVE-2017-9373 ide: ahci host memory leakage during hotunplug
      + CVE-2017-9503 scsi: null pointer dereference while processing megasas command
      + CVE-2017-9330 usb: ohci: infinite loop due to incorrect return value
      + CVE-2017-8379 input: host memory lekage via keyboard
      + CVE-2017-8309 audio: memory leak by repeatedly starting and stopping audio capture
      + CVE-2017-8112 scsi: vmw_pvscsi: infinite loop in pvscsi_log2
      + CVE-2017-8284 user-to-root privesc inside VM via bad translation caching
      + CVE-2017-7718 display: cirrus: OOB read access issue
      + CVE-2015-8345 net: eepro100: infinite loop in processing command block list