- Issued:
- 2018-04-10
- Updated:
- 2018-04-10
RHSA-2018:1104 - Important: qemu-kvm-rhev security, bug fix, and enhancement update
Synopsis
Important: qemu-kvm-rhev security, bug fix, and enhancement update
Type/Severity
Security Advisory Important
Topic
An update for qemu-kvm-rhev is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 7.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
KVM (Kernel-based Virtual Machine) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm-rhev packages provide the user-space component for running virtual machines that use KVM in environments managed by Red Hat products.
The following packages have been upgraded to a later upstream version: qemu-kvm-rhev (2.10.0). (BZ#1470749)
Security Fix(es):
-
Qemu: stack buffer overflow in NBD server triggered via long export name (CVE-2017-15118)
-
Qemu: DoS via large option request (CVE-2017-15119)
-
Qemu: vga: OOB read access during display update (CVE-2017-13672)
-
Qemu: vga: reachable assert failure during display update (CVE-2017-13673)
-
Qemu: Slirp: use-after-free when sending response (CVE-2017-13711)
-
Qemu: memory exhaustion through framebuffer update request message in VNC server (CVE-2017-15124)
-
Qemu: I/O: potential memory exhaustion via websock connection to VNC (CVE-2017-15268)
-
Qemu: Out-of-bounds read in vga_draw_text routine (CVE-2018-5683)
For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Red Hat would like to thank David Buchanan for reporting CVE-2017-13672 and CVE-2017-13673; Wjjzhang (Tencent.com) for reporting CVE-2017-13711; and Jiang Xin and Lin ZheCheng for reporting CVE-2018-5683. The CVE-2017-15118 and CVE-2017-15119 issues were discovered by Eric Blake (Red Hat) and the CVE-2017-15124 issue was discovered by Daniel Berrange (Red Hat).
Solution
For details on how to apply this update, which includes the changes described in this advisory, refer to:
https://access.redhat.com/articles/11258
After installing this update, shut down all running virtual machines. Once all virtual machines have shut down, start them again for this update to take effect.
Affected Products
| Product | Version | Arch |
|---|---|---|
| Red Hat Virtualization | 4 | x86_64 |
| Red Hat Virtualization for IBM Power LE | 4 | ppc64le |
Updated Packages
- qemu-kvm-rhev-debuginfo-2.10.0-21.el7.x86_64.rpm
- qemu-kvm-rhev-debuginfo-2.10.0-21.el7.ppc64le.rpm
- qemu-kvm-rhev-2.10.0-21.el7.ppc64le.rpm
- qemu-kvm-rhev-2.10.0-21.el7.src.rpm
- qemu-img-rhev-2.10.0-21.el7.ppc64le.rpm
- qemu-kvm-common-rhev-2.10.0-21.el7.ppc64le.rpm
- qemu-kvm-common-rhev-2.10.0-21.el7.x86_64.rpm
- qemu-kvm-rhev-2.10.0-21.el7.x86_64.rpm
- qemu-kvm-tools-rhev-2.10.0-21.el7.ppc64le.rpm
- qemu-img-rhev-2.10.0-21.el7.x86_64.rpm
- qemu-kvm-tools-rhev-2.10.0-21.el7.x86_64.rpm
Fixes
- This content is not included.BZ - 1139507
- This content is not included.BZ - 1178472
- This content is not included.BZ - 1212715
- This content is not included.BZ - 1213786
- This content is not included.BZ - 1285044
- This content is not included.BZ - 1305398
- This content is not included.BZ - 1320114
- This content is not included.BZ - 1344299
- This content is not included.BZ - 1372583
- This content is not included.BZ - 1378241
- This content is not included.BZ - 1390346
- This content is not included.BZ - 1390348
- This content is not included.BZ - 1398633
- This content is not included.BZ - 1406803
- This content is not included.BZ - 1414049
- This content is not included.BZ - 1433670
- This content is not included.BZ - 1434321
- This content is not included.BZ - 1437113
- This content is not included.BZ - 1441460
- This content is not included.BZ - 1441684
- This content is not included.BZ - 1441938
- This content is not included.BZ - 1443877
- This content is not included.BZ - 1445834
- This content is not included.BZ - 1446565
- This content is not included.BZ - 1447258
- This content is not included.BZ - 1447413
- This content is not included.BZ - 1448344
- This content is not included.BZ - 1449067
- This content is not included.BZ - 1449609
- This content is not included.BZ - 1449991
- This content is not included.BZ - 1451015
- This content is not included.BZ - 1451189
- This content is not included.BZ - 1451269
- This content is not included.BZ - 1453167
- This content is not included.BZ - 1454362
- This content is not included.BZ - 1454367
- This content is not included.BZ - 1455074
- This content is not included.BZ - 1457662
- This content is not included.BZ - 1459906
- This content is not included.BZ - 1459945
- This content is not included.BZ - 1460119
- This content is not included.BZ - 1460595
- This content is not included.BZ - 1460848
- This content is not included.BZ - 1462145
- This content is not included.BZ - 1463172
- This content is not included.BZ - 1464908
- This content is not included.BZ - 1465799
- This content is not included.BZ - 1468260
- This content is not included.BZ - 1470634
- This content is not included.BZ - 1472756
- This content is not included.BZ - 1474464
- This content is not included.BZ - 1475634
- This content is not included.BZ - 1476121
- This content is not included.BZ - 1481593
- This content is not included.BZ - 1482478
- This content is not included.BZ - 1486400
- This content is not included.BZ - 1486560
- This content is not included.BZ - 1486588
- This content is not included.BZ - 1489670
- This content is not included.BZ - 1489800
- This content is not included.BZ - 1491909
- This content is not included.BZ - 1492178
- This content is not included.BZ - 1492295
- This content is not included.BZ - 1495090
- This content is not included.BZ - 1495456
- This content is not included.BZ - 1496879
- This content is not included.BZ - 1497120
- This content is not included.BZ - 1497137
- This content is not included.BZ - 1497740
- This content is not included.BZ - 1498042
- This content is not included.BZ - 1498496
- This content is not included.BZ - 1498754
- This content is not included.BZ - 1498817
- This content is not included.BZ - 1498865
- This content is not included.BZ - 1499011
- This content is not included.BZ - 1499647
- This content is not included.BZ - 1500181
- This content is not included.BZ - 1500334
- This content is not included.BZ - 1501240
- This content is not included.BZ - 1501337
- This content is not included.BZ - 1501468
- This content is not included.BZ - 1502949
- This content is not included.BZ - 1505654
- This content is not included.BZ - 1505696
- This content is not included.BZ - 1505701
- This content is not included.BZ - 1506151
- This content is not included.BZ - 1506531
- This content is not included.BZ - 1506882
- This content is not included.BZ - 1507693
- This content is not included.BZ - 1508271
- This content is not included.BZ - 1508799
- This content is not included.BZ - 1508886
- This content is not included.BZ - 1510809
- This content is not included.BZ - 1511312
- This content is not included.BZ - 1513870
- This content is not included.BZ - 1515173
- This content is not included.BZ - 1515393
- This content is not included.BZ - 1515604
- This content is not included.BZ - 1516922
- This content is not included.BZ - 1516925
- This content is not included.BZ - 1517144
- This content is not included.BZ - 1518482
- This content is not included.BZ - 1518649
- This content is not included.BZ - 1519721
- This content is not included.BZ - 1520294
- This content is not included.BZ - 1520824
- This content is not included.BZ - 1523414
- This content is not included.BZ - 1525195
- This content is not included.BZ - 1525324
- This content is not included.BZ - 1525868
- This content is not included.BZ - 1526212
- This content is not included.BZ - 1526423
- This content is not included.BZ - 1528173
- This content is not included.BZ - 1529053
- This content is not included.BZ - 1529243
- This content is not included.BZ - 1529676
- This content is not included.BZ - 1530356
- This content is not included.BZ - 1534491
- This content is not included.BZ - 1535752
- This content is not included.BZ - 1535992
- This content is not included.BZ - 1538494
- This content is not included.BZ - 1538953
- This content is not included.BZ - 1540003
- This content is not included.BZ - 1540182
- This content is not included.BZ - 1542045
CVEs
- CVE-2017-13672
- CVE-2017-13673
- CVE-2017-13711
- CVE-2017-15118
- CVE-2017-15119
- CVE-2017-15124
- CVE-2017-15268
- CVE-2018-5683
References
Additional information
- The Red Hat security contact is This content is not included.secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.
- Offline Security Data data is available for integration with other systems. See Offline Security Data API to get started.