[ubuntu-cloud-archive/ocata-proposed] qemu (Accepted)
Corey Bryant
corey.bryant at canonical.com
Fri Feb 9 16:23:16 UTC 2018
qemu (1:2.8+dfsg-3ubuntu2.9~cloud2) xenial-ocata; urgency=medium
.
* SECURITY UPDATE: Add support for Spectre mitigations (LP: #1744882)
- debian/patches/CVE-2017-5715-1.patch: Change X86CPUDefinition::
model_id to const char* in target/i386/cpu.c.
- debian/patches/CVE-2017-5715-2.patch: Add support for SPEC_CTRL MSR
in target/i386/cpu.h, target/i386/kvm.c, target/i386/machine.c.
- debian/patches/CVE-2017-5715-3.patch: Add spec-ctrl CPUID bit in
target/i386/cpu.c, target/i386/cpu.h.
- debian/patches/CVE-2017-5715-4.patch: Add FEAT_8000_0008_EBX CPUID
feature word in target/i386/cpu.c, target/i386/cpu.h.
- debian/patches/CVE-2017-5715-5.patch: Add new -IBRS versions of Intel
CPU models in target/i386/cpu.c.
- debian/patches/CVE-2017-5715-s390x-1.patch: add linux-header content
for bpbc in linux-headers/asm-s390/kvm.h, linux-headers/linux/kvm.h.
- debian/patches/CVE-2017-5715-s390x-2.patch: handle bpb feature in
target/s390x/cpu.c, target/s390x/cpu.h, target/s390x/cpu_features.c,
target/s390x/cpu_features_def.h, target/s390x/gen-features.c,
target/s390x/kvm.c, target/s390x/machine.c.
- debian/patches/CVE-2017-5715-s390x-3.patch: provide stfle.81 in
target/s390x/cpu_features.c, target/s390x/cpu_features_def.h,
target/s390x/gen-features.c.
- CVE-2017-5715
Date: Thu, 08 Feb 2018 11:49:45 -0500
Changed-By: Corey Bryant <corey.bryant at canonical.com>
Signed-By: Corey Bryant <corey.bryant at canonical.com>
Published-By: Corey Bryant <corey.bryant at canonical.com>
More information about the Cloud-archive-changes
mailing list