[ubuntu/noble-security] qemu 1:8.2.2+ds-0ubuntu1.16 (Accepted)
Fabian Toepfer
fabian.toepfer at canonical.com
Thu Apr 9 14:30:49 UTC 2026
qemu (1:8.2.2+ds-0ubuntu1.16) noble-security; urgency=medium
* SECURITY UPDATE: use-after-free
- debian/patches/CVE-2024-6519.patch: keep a reference to the device while
SCRIPTS in hw/scsi/lsi53c895a.c.
- CVE-2024-6519
* SECURITY UPDATE: out-of-bounds read
- debian/patches/CVE-2026-2243.patch: fix OOB read in vmdk_read_extent()
in block/vmdk.c.
- CVE-2026-2243
* SECURITY UPDATE: heap buffer overflow
- debian/patches/CVE-2026-3195-1.patch: fix max_size bounds check in input
cb in hw/audio/virtio-snd.c.
- debian/patches/CVE-2026-3195-2.patch: tighten read amount in in_cb in
hw/audio/virtio-snd.c.
- CVE-2026-3195
* SECURITY UPDATE: integer overflow
- debian/patches/CVE-2026-3196.patch: handle 5.14.6.2 for PCM_INFO properly
in hw/audio/virtio-snd.c.
- CVE-2026-3196
* SECURITY UPDATE: out-of-bounds write
- debian/patches/CVE-2026-3842.patch: check length returned by
cpu_physical_memory_map() in hw/hyperv/syndbg.c.
- CVE-2026-3842
qemu (1:8.2.2+ds-0ubuntu1.15) noble; urgency=medium
* d/p/u/lp2142099-*: fix wrong feature dependency for waitpkg
(LP: #2142099)
qemu (1:8.2.2+ds-0ubuntu1.14) noble; urgency=medium
* Fix crash on concurrent `block-stream` and `query-named-block-nodes`
(LP: #2126951)
- d/p/ubuntu/lp2126951-block-Drop-detach_subchain-for-bdrv_replace_node.patch
Date: 2026-04-08 10:14:15.493927+00:00
Changed-By: Fabian Toepfer <fabian.toepfer at canonical.com>
https://launchpad.net/ubuntu/+source/qemu/1:8.2.2+ds-0ubuntu1.16
-------------- next part --------------
Sorry, changesfile not available.
More information about the noble-changes
mailing list