[ELSA-2010-0998] kvm security and bug fix update

Severity Low
Affected Packages 4
CVEs 1

[kvm-83-164.0.1.el5_5.30]
- Added kvm-add-oracle-workaround-for-libvirt-bug.patch to replace RHEL with OEL
- Added kvm-Introduce-oel-machine-type.patch so that OEL is a recognized VM

[kvm-83-164.el5_5.30]
- Revert the bz#661397 patches as they are not enough
- kvm-kernel-Revert-KVM-VMX-Return-0-from-a-failed-VMREAD.patch [bz#661397]
- kvm-kernel-Revert-KVM-Don-t-spin-on-virt-instruction-faults-dur.patch [bz#661397]
- Related: bz#661397
(reboot(RB_AUTOBOOT) fails if kvm instance is running)
- kvm-kernel-KVM-fix-AMD-initial-TSC-offset-problems-additional-f.patch [bz#656984]
- Resolves: bz#656984
(TSC offset of virtual machines is not initialized correctly by 'kvm_amd' kernel module.)

[kvm-83-164.el5_5.29]
- kvm-kernel-KVM-Don-t-spin-on-virt-instruction-faults-during-reb.patch [bz#661397]
- kvm-kernel-KVM-VMX-Return-0-from-a-failed-VMREAD.patch [bz#661397]
- Resolves: bz#661397
(reboot(RB_AUTOBOOT) fails if kvm instance is running)

[kvm-83-164.el5_5.28]
- kvm-implement-dummy-PnP-support.patch [bz#659850]
- kvm-load-registers-after-restoring-pvclock-msrs.patch [bz#660239]
- Resolves: bz#659850
(If VM boot seq. is set up as nc (PXE then disk) the VM is always stuck on trying to PXE boot)
- Resolves: bz#660239
(clock drift when migrating a guest between mis-matched CPU clock speed)

[kvm-83-164.el5_5.27]
- kvm-kernel-KVM-fix-AMD-initial-TSC-offset-problems.patch [bz#656984]
- Resolves: bz#656984
(TSC offset of virtual machines is not initialized correctly by 'kvm_amd' kernel module.)

[kvm-83-164.el5_5.26]
- Updated kversion to 2.6.18-194.26.1.el5 to match build root
- kvm-kernel-KVM-x86-fix-information-leak-to-userland.patch [bz#649832]
- Resolves: bz#649832
(CVE-2010-3881 kvm: arch/x86/kvm/x86.c: reading uninitialized stack memory [5.5.z])
- CVE: CVE-2010-3881

ID
ELSA-2010-0998
Severity
low
URL
https://linux.oracle.com/errata/ELSA-2010-0998.html
Published
2010-12-20T00:00:00
(13 years ago)
Modified
2010-12-20T00:00:00
(13 years ago)
Rights
Copyright 2010 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/kvm?distro=oraclelinux-5.5 oraclelinux kvm < 83-164.0.1.el5_5.30 oraclelinux-5.5
Affected pkg:rpm/oraclelinux/kvm-tools?distro=oraclelinux-5.5 oraclelinux kvm-tools < 83-164.0.1.el5_5.30 oraclelinux-5.5
Affected pkg:rpm/oraclelinux/kvm-qemu-img?distro=oraclelinux-5.5 oraclelinux kvm-qemu-img < 83-164.0.1.el5_5.30 oraclelinux-5.5
Affected pkg:rpm/oraclelinux/kmod-kvm?distro=oraclelinux-5.5 oraclelinux kmod-kvm < 83-164.0.1.el5_5.30 oraclelinux-5.5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...