Go to file
Cole Robinson 9b48605ba7 CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083)
CVE-2016-4952 scsi: pvscsi: out-of-bounds access issue
CVE-2016-5106: scsi: megasas: out-of-bounds write (bz #1339581)
CVE-2016-5105: scsi: megasas: stack information leakage (bz #1339585)
CVE-2016-5107: scsi: megasas: out-of-bounds read (bz #1339573)
CVE-2016-4454: display: vmsvga: out-of-bounds read (bz #1340740)
CVE-2016-4453: display: vmsvga: infinite loop (bz #1340744)
CVE-2016-5238: scsi: esp: OOB write (bz #1341932)
CVE-2016-5338: scsi: esp: OOB r/w access (bz #1343325)
CVE-2016-5337: scsi: megasas: information leakage (bz #1343910)
2016-06-22 10:15:02 -04:00
.gitignore Update to qemu 2.1.0 final released version. 2014-08-03 13:27:19 +01:00
0001-slirp-use-less-predictable-directory-name-in-tmp-for.patch Rebased to version 2.3.1 2015-08-11 18:42:10 -04:00
0002-qcow2-Handle-EAGAIN-returned-from-update_refcount.patch Rebased to version 2.3.1 2015-08-11 18:42:10 -04:00
0003-raw-posix-Fix-.bdrv_co_get_block_status-for-unaligne.patch Rebased to version 2.3.1 2015-08-11 18:42:10 -04:00
0004-pcnet-force-the-buffer-access-to-be-in-bounds-during.patch Rebased to version 2.3.1 2015-08-11 18:42:10 -04:00
0005-virtio-serial-fix-ANY_LAYOUT.patch Rebased to version 2.3.1 2015-08-11 18:42:10 -04:00
0006-vnc-fix-memory-corruption-CVE-2015-5225.patch CVE-2015-5255: heap memory corruption in vnc_refresh_server_surface (bz #1255899) 2015-08-31 19:59:32 -04:00
0007-Fix-typo-causing-qemu-img-to-link-against-entire-wor.patch Fix typo causing qemu-img to link against entire world (bz #1260996) 2015-09-21 18:19:06 -04:00
0008-e1000-Avoid-infinite-loop-in-processing-transmit-des.patch Fix typo causing qemu-img to link against entire world (bz #1260996) 2015-09-21 18:19:06 -04:00
0009-ide-fix-ATAPI-command-permissions.patch Fix typo causing qemu-img to link against entire world (bz #1260996) 2015-09-21 18:19:06 -04:00
0010-net-avoid-infinite-loop-when-receiving-packets-CVE-2.patch Fix typo causing qemu-img to link against entire world (bz #1260996) 2015-09-21 18:19:06 -04:00
0011-net-add-checks-to-validate-ring-buffer-pointers-CVE-.patch Fix typo causing qemu-img to link against entire world (bz #1260996) 2015-09-21 18:19:06 -04:00
0012-block-mirror-limit-qiov-to-IOV_MAX-elements.patch Fix typo causing qemu-img to link against entire world (bz #1260996) 2015-09-21 18:19:06 -04:00
0013-block-mirror-Sleep-periodically-during-bitmap-scanni.patch Fix typo causing qemu-img to link against entire world (bz #1260996) 2015-09-21 18:19:06 -04:00
0014-target-ppc-fix-vcipher-vcipherlast-vncipherlast-and-.patch Fix emulation of various instructions, required by libm in F22 ppc64 guests 2015-09-22 09:16:29 -04:00
0015-target-ppc-fix-xscmpodp-and-xscmpudp-decoding.patch Fix emulation of various instructions, required by libm in F22 ppc64 guests 2015-09-22 09:16:29 -04:00
0016-virtio-introduce-virtqueue_unmap_sg.patch CVE-2015-7295: virtio-net possible remote DoS (bz #1264393) 2015-10-08 13:39:40 -04:00
0017-virtio-introduce-virtqueue_discard.patch CVE-2015-7295: virtio-net possible remote DoS (bz #1264393) 2015-10-08 13:39:40 -04:00
0018-virtio-net-correctly-drop-truncated-packets.patch CVE-2015-7295: virtio-net possible remote DoS (bz #1264393) 2015-10-08 13:39:40 -04:00
0019-mirror-Fix-coroutine-reentrance.patch CVE-2015-7295: virtio-net possible remote DoS (bz #1264393) 2015-10-08 13:39:40 -04:00
0020-util-socket-Add-missing-localaddr-and-localport-opti.patch CVE-2015-7295: virtio-net possible remote DoS (bz #1264393) 2015-10-08 13:39:40 -04:00
0021-atomics-add-explicit-compiler-fence-in-__atomic-memo.patch Fix abort in abort in bdrv_error_action (bz #1277482) 2015-12-07 14:23:27 -05:00
0022-target-i386-fix-pcmpxstrx-equal-ordered-strstr-mode.patch Fix abort in abort in bdrv_error_action (bz #1277482) 2015-12-07 14:23:27 -05:00
0023-eepro100-Prevent-two-endless-loops.patch Fix abort in abort in bdrv_error_action (bz #1277482) 2015-12-07 14:23:27 -05:00
0024-net-pcnet-add-check-to-validate-receive-data-size-CV.patch Fix abort in abort in bdrv_error_action (bz #1277482) 2015-12-07 14:23:27 -05:00
0025-pcnet-fix-rx-buffer-overflow-CVE-2015-7512.patch Fix abort in abort in bdrv_error_action (bz #1277482) 2015-12-07 14:23:27 -05:00
0026-ui-vnc-avoid-floating-point-exception.patch vnc: avoid floating point exceptions (bz #1289541, bz #1289542) 2015-12-08 10:53:39 -05:00
0027-msix-implement-pba-write-but-read-only.patch CVE-2015-7549: pci: null pointer dereference issue (bz #1291138) 2016-01-09 13:11:22 -05:00
0028-ehci-make-idt-processing-more-robust.patch CVE-2015-7549: pci: null pointer dereference issue (bz #1291138) 2016-01-09 13:11:22 -05:00
0029-acpi-fix-buffer-overrun-on-migration.patch CVE-2015-7549: pci: null pointer dereference issue (bz #1291138) 2016-01-09 13:11:22 -05:00
0030-net-vmxnet3-Refine-l2-header-validation.patch CVE-2015-7549: pci: null pointer dereference issue (bz #1291138) 2016-01-09 13:11:22 -05:00
0031-vmxnet3-Support-reading-IMR-registers-on-bar0.patch CVE-2015-7549: pci: null pointer dereference issue (bz #1291138) 2016-01-09 13:11:22 -05:00
0032-net-vmxnet3-avoid-memory-leakage-in-activate_device.patch CVE-2015-8567: net: vmxnet3: host memory leakage (bz #1289818) 2016-01-20 19:40:35 -05:00
0033-i386-avoid-null-pointer-dereference.patch CVE-2015-8567: net: vmxnet3: host memory leakage (bz #1289818) 2016-01-20 19:40:35 -05:00
0034-scsi-initialise-info-object-with-appropriate-size.patch CVE-2015-8567: net: vmxnet3: host memory leakage (bz #1289818) 2016-01-20 19:40:35 -05:00
0035-net-ne2000-fix-bounds-check-in-ioport-operations.patch CVE-2015-8567: net: vmxnet3: host memory leakage (bz #1289818) 2016-01-20 19:40:35 -05:00
0036-hmp-fix-sendkey-out-of-bounds-write-CVE-2015-8619.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0037-e1000-eliminate-infinite-loops-on-out-of-bounds-tran.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0038-usb-check-page-select-value-while-processing-iTD.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0039-ahci-Do-not-unmap-NULL-addresses.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0040-target-ppc-rename-and-export-maybe_bswap_register.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0041-target-ppc-gdbstub-fix-float-registers-for-little-en.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0042-target-ppc-gdbstub-introduce-avr_need_swap.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0043-target-ppc-gdbstub-fix-altivec-registers-for-little-.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0044-target-ppc-gdbstub-fix-spe-registers-for-little-endi.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0045-target-ppc-gdbstub-Add-VSX-support.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0046-target-ppc-kvm-fix-floating-point-registers-sync-on-.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
80-kvm.rules Add udev rules to make /dev/kvm world accessible and group=kvm (rhbz 2009-07-16 09:53:52 +00:00
99-qemu-guest-agent.rules Fix packaging of the QEMU guest agent 2011-10-05 17:33:58 +01:00
0101-vmdk-Create-streamOptimized-as-version-3.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0102-vmdk-Fix-converting-to-streamOptimized.patch CVE-2015-8619: Fix sendkey out of bounds (bz #1292757) 2016-02-15 17:07:21 -05:00
0103-usb-check-RNDIS-message-length.patch CVE-2016-2538: Integer overflow in usb module (bz #1305815) 2016-03-17 13:47:41 -04:00
0104-usb-check-RNDIS-buffer-offsets-length.patch CVE-2016-2538: Integer overflow in usb module (bz #1305815) 2016-03-17 13:47:41 -04:00
0105-net-ne2000-check-ring-buffer-control-registers.patch CVE-2016-2538: Integer overflow in usb module (bz #1305815) 2016-03-17 13:47:41 -04:00
0106-net-check-packet-payload-length.patch CVE-2016-2538: Integer overflow in usb module (bz #1305815) 2016-03-17 13:47:41 -04:00
0107-usb-check-USB-configuration-descriptor-object.patch CVE-2016-2538: Integer overflow in usb module (bz #1305815) 2016-03-17 13:47:41 -04:00
0108-spice-fix-spice_chr_add_watch-pre-condition.patch CVE-2016-2538: Integer overflow in usb module (bz #1305815) 2016-03-17 13:47:41 -04:00
0109-vga-fix-banked-access-bounds-checking-CVE-2016-3710.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0110-vga-add-vbe_enabled-helper.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0111-vga-factor-out-vga-register-setup.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0112-vga-update-vga-register-setup-on-vbe-changes.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0113-vga-make-sure-vga-register-setup-for-vbe-stays-intac.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0114-ehci-clear-suspend-bit-on-detach.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0115-ehci-apply-limit-to-iTD-sidt-descriptors.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0116-Revert-ehci-make-idt-processing-more-robust.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0117-net-stellaris_enet-check-packet-length-against-recei.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0118-rng-remove-the-unused-request-cancellation-code.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0119-rng-move-request-queue-from-RngEgd-to-RngBackend.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0120-rng-move-request-queue-cleanup-from-RngEgd-to-RngBac.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0121-rng-add-request-queue-support-to-rng-random.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0122-ohci-allocate-timer-only-once.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0123-usb-ehci-add-capability-mmio-write-function.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0124-configure-disallow-ccache-during-compile-tests.patch CVE-2016-3710: incorrect bounds checking in vga (bz #1334345) 2016-05-09 20:08:58 -04:00
0125-i386-kvmvapic-initialise-imm32-variable.patch CVE-2016-4020: memory leak in kvmvapic.c (bz #1326904) 2016-05-26 11:35:54 -04:00
0126-esp-check-command-buffer-length-before-write-CVE-201.patch CVE-2016-4020: memory leak in kvmvapic.c (bz #1326904) 2016-05-26 11:35:54 -04:00
0127-esp-check-dma-length-before-reading-scsi-command-CVE.patch CVE-2016-4020: memory leak in kvmvapic.c (bz #1326904) 2016-05-26 11:35:54 -04:00
0128-vga-add-sr_vbe-register-set.patch CVE-2016-4020: memory leak in kvmvapic.c (bz #1326904) 2016-05-26 11:35:54 -04:00
0129-net-mipsnet-check-packet-length-against-buffer.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0130-scsi-pvscsi-check-command-descriptor-ring-buffer-siz.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0131-scsi-megasas-use-appropriate-property-buffer-size.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0132-scsi-megasas-initialise-local-configuration-data-buf.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0133-scsi-megasas-check-read_queue_head-index-value.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0134-vmsvga-move-fifo-sanity-checks-to-vmsvga_fifo_length.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0135-vmsvga-add-more-fifo-checks.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0136-vmsvga-shadow-fifo-registers.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0137-vmsvga-don-t-process-more-than-1024-fifo-commands-at.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0138-scsi-esp-check-buffer-length-before-reading-scsi-com.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0139-scsi-esp-respect-FIFO-invariant-after-message-phase.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0140-scsi-esp-clean-up-handle_ti-esp_do_dma-if-s-do_cmd.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0141-scsi-esp-make-cmdbuf-big-enough-for-maximum-CDB-size.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
0142-scsi-megasas-null-terminate-bios-version-buffer.patch CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
bridge.conf fixes for -netdev bridge 2012-11-15 17:58:12 +01:00
ksm.service Fix ksm.service (bz 1218814) 2015-05-06 12:52:09 -04:00
ksm.sysconfig - Add ksm control script from Dan Kenigsberg 2009-09-16 09:38:29 +00:00
ksmctl.c - Require seabios-bin >= 0.6.0-2 (#741992) 2011-10-21 16:29:08 -05:00
ksmtuned Reduce CPU usage when audio is playing (bz #1017644) 2013-11-05 19:42:39 -05:00
ksmtuned.conf - Avoid creating too large iovecs in multiwrite merge (#559717) 2010-02-04 15:58:29 +00:00
ksmtuned.service Alias qemu-system-* man page to qemu.1 (bz #907746) 2013-05-25 14:54:03 -04:00
kvm.modules ppc64: Enable HV and PR KVM 2014-08-27 10:57:47 +01:00
qemu-guest-agent.service Fix packaging of the QEMU guest agent 2011-10-05 17:33:58 +01:00
qemu-kvm.sh Handful of packaging fixes 2013-02-20 12:18:15 -05:00
qemu.binfmt binfmt fixes and improvements 2013-04-03 21:06:24 -04:00
qemu.spec CVE-2016-4002: net: buffer overflow in MIPSnet (bz #1326083) 2016-06-22 10:15:02 -04:00
sources Rebased to version 2.3.1 2015-08-11 18:42:10 -04:00