Format: 1.8 Date: Wed, 14 Feb 2018 14:19:31 -0500 Source: qemu Binary: qemu qemu-system qemu-block-extra qemu-system-common qemu-system-misc qemu-system-arm qemu-system-mips qemu-system-ppc qemu-system-sparc qemu-system-x86 qemu-user qemu-user-static qemu-user-binfmt qemu-utils qemu-guest-agent qemu-kvm qemu-system-aarch64 qemu-system-s390x Architecture: armhf armhf_translations Version: 1:2.10+dfsg-0ubuntu3.5 Distribution: artful Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: qemu - fast processor emulator qemu-block-extra - extra block backend modules for qemu-system and qemu-utils qemu-guest-agent - Guest-side qemu-system agent qemu-kvm - QEMU Full virtualization qemu-system - QEMU full system emulation binaries qemu-system-aarch64 - QEMU full system emulation binaries (aarch64) qemu-system-arm - QEMU full system emulation binaries (arm) qemu-system-common - QEMU full system emulation binaries (common files) qemu-system-mips - QEMU full system emulation binaries (mips) qemu-system-misc - QEMU full system emulation binaries (miscellaneous) qemu-system-ppc - QEMU full system emulation binaries (ppc) qemu-system-s390x - QEMU full system emulation binaries (s390x) qemu-system-sparc - QEMU full system emulation binaries (sparc) qemu-system-x86 - QEMU full system emulation binaries (x86) qemu-user - QEMU user mode emulation binaries qemu-user-binfmt - QEMU user mode binfmt registration for qemu-user qemu-user-static - QEMU user mode emulation binaries (static version) qemu-utils - QEMU utilities Changes: qemu (1:2.10+dfsg-0ubuntu3.5) artful-security; urgency=medium . * SECURITY UPDATE: DoS via out-of-bounds read in VGA driver - debian/patches/CVE-2017-13672-2.patch: handle cirrus vbe mode wraparounds in hw/display/vga.c. - debian/patches/CVE-2017-13672-3.patch: fix region checks in wraparound case in hw/display/vga.c. - CVE-2017-13672 * SECURITY UPDATE: information disclosure via race in 9pfs - debian/patches/CVE-2017-15038.patch: use g_malloc0 to allocate space for xattr in hw/9pfs/9p.c. - CVE-2017-15038 * SECURITY UPDATE: long export name overflow in NBD server - debian/patches/CVE-2017-15118.patch: check length in nbd/server.c. - CVE-2017-15118 * SECURITY UPDATE: DoS via large option request in NBD server - debian/patches/CVE-2017-15119.patch: reject options larger than 32M in nbd/server.c. - CVE-2017-15119 * SECURITY UPDATE: DoS via unbounded memory allocation in VNC server - debian/patches/CVE-2017-15124-pre1.patch: remove 'sync' parameter from vnc_update_client in ui/vnc.c. - debian/patches/CVE-2017-15124-pre2.patch: remove unreachable code in vnc_update_client in ui/vnc.c. - debian/patches/CVE-2017-15124-pre3.patch: remove redundant indentation in vnc_client_update in ui/vnc.c. - debian/patches/CVE-2017-15124-pre4.patch: avoid pointless VNC updates if framebuffer isn't dirty in ui/vnc.c. - debian/patches/CVE-2017-15124-pre5.patch: introduce enum to track VNC client framebuffer update request state in ui/vnc.*. - debian/patches/CVE-2017-15124-pre6.patch: correctly reset framebuffer update state after processing dirty regions in ui/vnc.c. - debian/patches/CVE-2017-15124-pre7.patch: refactor code for determining if an update should be sent to the client in ui/vnc.c. - debian/patches/CVE-2017-15124-pre8.patch: track how much decoded data we consumed when doing SASL encoding in ui/vnc-auth-sasl.c, ui/vnc-auth-sasl.h. - debian/patches/CVE-2017-15124-1.patch: fix VNC client throttling when audio capture is active in ui/vnc.*. - debian/patches/CVE-2017-15124-2.patch: fix VNC client throttling when forced update is requested in ui/vnc-auth-sasl.c, ui/vnc-jobs.c, ui/vnc.*. - debian/patches/CVE-2017-15124-3.patch: place a hard cap on VNC server output buffer size in ui/vnc.c. - CVE-2017-15124 * SECURITY UPDATE: memory leak in websocket GSource - debian/patches/CVE-2017-15268.patch: monitor encoutput buffer size from websocket GSource in io/channel-websock.c. - CVE-2017-15268 * SECURITY UPDATE: DoS in cirrus driver - debian/patches/CVE-2017-15289.patch: fix oob access in mode4and5 write functions in hw/display/cirrus_vga.c. - CVE-2017-15289 * SECURITY UPDATE: out-of-bounds access in ps2 driver - debian/patches/CVE-2017-16845.patch: check PS2Queue pointers in post_load routine in hw/input/ps2.c. - CVE-2017-16845 * SECURITY UPDATE: DoS in Virtio Vring implementation - debian/patches/CVE-2017-17381.patch: check VirtQueue Vring object is set in hw/virtio/virtio.c. - CVE-2017-17381 * SECURITY UPDATE: DoS in VGA driver - debian/patches/CVE-2018-5683.patch: check the validation of memory addr when draw text in hw/display/vga.c. - CVE-2018-5683 Checksums-Sha1: 5293c3129360dc5360b56133e1ad5395f7c433dc 124566 qemu-block-extra-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 4452f89f5f4158489e3cb53c6264e87cffc37a5d 37730 qemu-block-extra_2.10+dfsg-0ubuntu3.5_armhf.deb c5e3d9a8c2cf62fa0b171be6941c2c6550ea6150 806516 qemu-guest-agent-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 0b021a757baaeedd6465b46154fb79e66c20328a 200760 qemu-guest-agent_2.10+dfsg-0ubuntu3.5_armhf.deb 381c04ab80cc9efb78bc511f6899bd10bd6a4470 12516 qemu-kvm_2.10+dfsg-0ubuntu3.5_armhf.deb 4d0cb3162fa39e5737368cddae495b9009a67527 28746592 qemu-system-arm-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 2ac96a7fb67b6b005c35ba18903886461488f1c2 3027780 qemu-system-arm_2.10+dfsg-0ubuntu3.5_armhf.deb d110cdffcdb3172b59fe8cf05296b25250557cf9 45946 qemu-system-common-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 2536d7422fce322e59ea13dbb86c3f9c01f2a516 398968 qemu-system-common_2.10+dfsg-0ubuntu3.5_armhf.deb 24d03a2b7cbcd03ad7d4629af9adb38aaa04294a 48141382 qemu-system-mips-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb da2d980c86b18a086086f3f70ab0e1b389f8bf41 3581114 qemu-system-mips_2.10+dfsg-0ubuntu3.5_armhf.deb a4e05865c1ff13730795716b52adb7be50f30fd0 109891316 qemu-system-misc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 0c37f844ca1c71ffea5f4fd32229033c38e99c9c 8170958 qemu-system-misc_2.10+dfsg-0ubuntu3.5_armhf.deb 840d58d555ad208274c100d0679d477957faa70a 37728446 qemu-system-ppc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 0837efbb5f1c4115526c9a9b166b8d36ac0f4d05 3562870 qemu-system-ppc_2.10+dfsg-0ubuntu3.5_armhf.deb e789113c34666e0f00a5529d61bfeddc30cd0c72 9109626 qemu-system-s390x-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 992ca81f03c9066a8b14c741ea9e38980fd67955 1644054 qemu-system-s390x_2.10+dfsg-0ubuntu3.5_armhf.deb 22bf351d9df4bf53db8053fc2f0266fb208ad8d6 18157062 qemu-system-sparc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 77cea95cb5365a49285623fa8bc919f532347098 2310190 qemu-system-sparc_2.10+dfsg-0ubuntu3.5_armhf.deb 7fa06e8917213a55e006ada22a599703408c333e 25289934 qemu-system-x86-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 041794086a1a477f1d2b66d03e96ee469f94a9c1 2696320 qemu-system-x86_2.10+dfsg-0ubuntu3.5_armhf.deb 5f27b02e59effe4eb0033b1aa4a6107c9dfc4f2a 12164 qemu-system_2.10+dfsg-0ubuntu3.5_armhf.deb ab5cad735beb4c961aae1b0167eb86c47cf38abd 2630 qemu-user-binfmt_2.10+dfsg-0ubuntu3.5_armhf.deb a54ad4a5ca921787b9a2b06da7add5fdb6d56f32 69237200 qemu-user-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 0d0c54af011f5c0e73b83ac3b00611b4f1f28fc8 78144486 qemu-user-static-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 3cfbb9030a160ae96f6e811d6594897d1513f7b1 7261100 qemu-user-static_2.10+dfsg-0ubuntu3.5_armhf.deb f1e8f0035d5f4d3b01ca755170e1a8c86ba57f33 5465182 qemu-user_2.10+dfsg-0ubuntu3.5_armhf.deb 9a50b1be8bd0803b41dc817436b28b25b1af5ac1 7570160 qemu-utils-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 10ebf71472b5443ae9c8b5d994feb70bb3c12077 722226 qemu-utils_2.10+dfsg-0ubuntu3.5_armhf.deb bfd77fa6f2fbaf05134eadf22f3756f57a9e741d 22160 qemu_2.10+dfsg-0ubuntu3.5_armhf.buildinfo 72f887511cbc57aa7a193652f9d09dbcb1034284 105048 qemu_2.10+dfsg-0ubuntu3.5_armhf.deb df7c50400a89b6a73d3876817027cb9ef9b65df1 3287 qemu_2.10+dfsg-0ubuntu3.5_armhf_translations.tar.gz Checksums-Sha256: 57e62946871d38a115fbbab2ea8712a08db59343c31e92c0cf9438c4daddebcb 124566 qemu-block-extra-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 258c507871837a0f2ffb639b8bffd8dd396f461df874fd68d06c46b30e6b6535 37730 qemu-block-extra_2.10+dfsg-0ubuntu3.5_armhf.deb c66e96f055b5dea9e0d6a6f705ecfe5d7ffe99f83744e726279d9647f4961d06 806516 qemu-guest-agent-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 1447169da469d2fa763887c5a3c02d60ed07e3d0ec2814d21b9de5a980b14307 200760 qemu-guest-agent_2.10+dfsg-0ubuntu3.5_armhf.deb 39a9685c2f0e23cd4d9f800f4c635ea2b26600512193408add4afc8925525e83 12516 qemu-kvm_2.10+dfsg-0ubuntu3.5_armhf.deb 6821d4e429b87447ed0a3d9ce35e7c29fb179f181e71b659c7efd38cf6c046d6 28746592 qemu-system-arm-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 60da3f413352f69a67316cfdc6774dde62068b7ca22451084b410c3e4ead93aa 3027780 qemu-system-arm_2.10+dfsg-0ubuntu3.5_armhf.deb 3d394048ba8c24e3832c83257f06faae2ad3b49a7cd771fa64afbea31a8102f6 45946 qemu-system-common-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 2a263fe34ae5d2d4f83764e245e39b985d5edcf99488257708da04bfaf4076fc 398968 qemu-system-common_2.10+dfsg-0ubuntu3.5_armhf.deb 193d32a686f1f8cfb818722771a7cedf6c72b765ac60cb2547c14f0b04610993 48141382 qemu-system-mips-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 401889621d1d0fa4bcf3b8926320cfadfb45a0b7488069f41fb055f71cb14fcb 3581114 qemu-system-mips_2.10+dfsg-0ubuntu3.5_armhf.deb f6982a77d4b9b440484d64ad0f8b1130c9d95ede089f273a7fbbc2a5340b49ad 109891316 qemu-system-misc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 78a13a7da80a8c8affb2ca9f22da315aa2111435bf2a5b819720184670509fde 8170958 qemu-system-misc_2.10+dfsg-0ubuntu3.5_armhf.deb 3b40fd4d5641e3536f7df2785dad81364a4f2a96fbc8ab21a9ff78561ac97b68 37728446 qemu-system-ppc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb f40a4a7cb171f23f25e2d0379a78a491d0fc6276f246f403b2dfe5fd5cfa6c8e 3562870 qemu-system-ppc_2.10+dfsg-0ubuntu3.5_armhf.deb f51dda9d959785714ddb51a046c3a00776ec6ea5f79a51bc761c1a100334fb34 9109626 qemu-system-s390x-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb ee86c338f3fcc4da5f27a37ef9fb96932b26713f5a02307a8a97d3363866c2b8 1644054 qemu-system-s390x_2.10+dfsg-0ubuntu3.5_armhf.deb 8dbaab19a88893eed7316cc8f21be5217c1e69d39ed52b77af82ecedcba5298b 18157062 qemu-system-sparc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb eff4ec83305ea877ba24f87f9cbd8af37a3785465c2d368509708dc7da5baecb 2310190 qemu-system-sparc_2.10+dfsg-0ubuntu3.5_armhf.deb 9368767b930dc220ef21f796d3a0d57cdc8d655d7a1f008af10b00b4526d0f55 25289934 qemu-system-x86-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 82dd418ba74de83fdbe9a96d4e63ead217898da33be7194e25d60972286f8d9e 2696320 qemu-system-x86_2.10+dfsg-0ubuntu3.5_armhf.deb faade279ca4bc6c49bf7b88dca546cc71c0c31e3d9619655fad86d7cbae6311b 12164 qemu-system_2.10+dfsg-0ubuntu3.5_armhf.deb 746ed041e5de3f5778e2915a6fc0793779a4b85889fee9b5d2c2c6502b740f39 2630 qemu-user-binfmt_2.10+dfsg-0ubuntu3.5_armhf.deb c03cead59da2d0942d52689a18f83f8b3906c3ab2ad61c46422a6172c8380a3e 69237200 qemu-user-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 51aedeb5836d55ed47eb532cfc418338b97c7247ae37003ea80e6f11bacb98d2 78144486 qemu-user-static-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 9239c17afb5dfa465a022a3e1591e899abba74fdedcffb871dfb05200dcc266f 7261100 qemu-user-static_2.10+dfsg-0ubuntu3.5_armhf.deb 8a190c9165ef09c8b432a81875fe6b1480df804c85b834235b152c6554416ca6 5465182 qemu-user_2.10+dfsg-0ubuntu3.5_armhf.deb 4c9b8a8ecb5bd792c218880cfb24e19b0120ccf0ebef2912d094b10c6f9e8254 7570160 qemu-utils-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 22bbb44b67b2b78cf3082c607dce648db3a481a72ed820843232b9be4a4ca747 722226 qemu-utils_2.10+dfsg-0ubuntu3.5_armhf.deb 232320ea59f06ea1e2a709baddab98cecc0edd81047bb7c92ad167690675cd82 22160 qemu_2.10+dfsg-0ubuntu3.5_armhf.buildinfo 336120985020e14cdfb511e34c053c02b312a164d4b744dc5cec0ddc94c85e4d 105048 qemu_2.10+dfsg-0ubuntu3.5_armhf.deb e9f45621c820c251e58de69e181e6c040653185af0ce8bb6b7fc49302330e44a 3287 qemu_2.10+dfsg-0ubuntu3.5_armhf_translations.tar.gz Files: f6436c9237f154a79180cb0f1ec2633b 124566 debug extra qemu-block-extra-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 7395f6346f88b3249ea72601c32a3dcf 37730 otherosfs optional qemu-block-extra_2.10+dfsg-0ubuntu3.5_armhf.deb 14c934d56f27430e90310131f32cdc32 806516 debug extra qemu-guest-agent-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb e932edad1e5274851adffb7b72e1d6f9 200760 otherosfs optional qemu-guest-agent_2.10+dfsg-0ubuntu3.5_armhf.deb e4f653397f2742ea9d3d5ff7e050afd9 12516 otherosfs optional qemu-kvm_2.10+dfsg-0ubuntu3.5_armhf.deb bc9a2749e6de3a1ca4f4b9cdc0111e15 28746592 debug extra qemu-system-arm-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb ced0474f2a102ad1e95b771988b02014 3027780 otherosfs optional qemu-system-arm_2.10+dfsg-0ubuntu3.5_armhf.deb 2bb2fbcc9842baa03a06e79e432ba398 45946 debug extra qemu-system-common-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb d97af76af2da5777f1e9656396d8648e 398968 otherosfs optional qemu-system-common_2.10+dfsg-0ubuntu3.5_armhf.deb 4373a5f1382ae4f6d33447eb9ab5f06a 48141382 debug extra qemu-system-mips-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb e1e859961f5a9d8f0ec6b07f569cc5a3 3581114 otherosfs optional qemu-system-mips_2.10+dfsg-0ubuntu3.5_armhf.deb 32b22627e7bc5a09c03ab1a5c5286dd3 109891316 debug extra qemu-system-misc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb facbbd2c8a06efcc2275f5fba304c4b9 8170958 otherosfs optional qemu-system-misc_2.10+dfsg-0ubuntu3.5_armhf.deb 5dc637b199b4ba516de6697f09311960 37728446 debug extra qemu-system-ppc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 4df7cb1579ada8471c8c2bfa51a47955 3562870 otherosfs optional qemu-system-ppc_2.10+dfsg-0ubuntu3.5_armhf.deb f25bac580dd7f02a1a545339df67ae33 9109626 debug extra qemu-system-s390x-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb f8bc0e472dda4bf9c1621c0656d97e03 1644054 otherosfs optional qemu-system-s390x_2.10+dfsg-0ubuntu3.5_armhf.deb bf63ffcf308caa0a6620c9b0f0fa455e 18157062 debug extra qemu-system-sparc-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 1e39311ef2d01680690b32912b7ff111 2310190 otherosfs optional qemu-system-sparc_2.10+dfsg-0ubuntu3.5_armhf.deb e1539f16c355cbd8c7c24efadf5c0beb 25289934 debug extra qemu-system-x86-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb cdc9127f43a67c6bc7e6765cf388a0e9 2696320 otherosfs optional qemu-system-x86_2.10+dfsg-0ubuntu3.5_armhf.deb 186933d4fc96717bb5e203be2099debc 12164 otherosfs optional qemu-system_2.10+dfsg-0ubuntu3.5_armhf.deb 5f5af964ac35992ff1ee76e7afe821ec 2630 otherosfs optional qemu-user-binfmt_2.10+dfsg-0ubuntu3.5_armhf.deb 18e43cd93f3b4f0cef245515b586aef6 69237200 debug extra qemu-user-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 7588009cd3c96656661ebfce909e4582 78144486 debug extra qemu-user-static-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb 6c8ea7f6b671f9c13167a18514f0edfb 7261100 otherosfs optional qemu-user-static_2.10+dfsg-0ubuntu3.5_armhf.deb 21a2f99752cf66e315f0ae71a2a4d39d 5465182 otherosfs optional qemu-user_2.10+dfsg-0ubuntu3.5_armhf.deb 0f024a1ba77f6873407e0409ca65f2f5 7570160 debug extra qemu-utils-dbgsym_2.10+dfsg-0ubuntu3.5_armhf.ddeb f98f79a255b77c0f2d95f5d1d2ce5068 722226 otherosfs optional qemu-utils_2.10+dfsg-0ubuntu3.5_armhf.deb 6d1fa53ab143ad7382ab94c5b37682e3 22160 otherosfs optional qemu_2.10+dfsg-0ubuntu3.5_armhf.buildinfo 4920f1098c5a189c02add1ffc5bd3ccc 105048 otherosfs optional qemu_2.10+dfsg-0ubuntu3.5_armhf.deb dbbbd6f143b9662856a1177f0ad890a8 3287 raw-translations - qemu_2.10+dfsg-0ubuntu3.5_armhf_translations.tar.gz Original-Maintainer: Debian QEMU Team