-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 29 May 2019 14:39:09 +0300 Source: qemu Binary: qemu qemu-system qemu-block-extra qemu-system-common qemu-system-misc qemu-system-arm qemu-system-mips qemu-system-ppc qemu-system-sparc qemu-system-x86 qemu-user qemu-user-static qemu-user-binfmt qemu-utils qemu-guest-agent qemu-kvm Architecture: i386 Version: 1:2.8+dfsg-6+deb9u6 Distribution: stretch-security Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-csail-01) Changed-By: Michael Tokarev Description: qemu - fast processor emulator qemu-block-extra - extra block backend modules for qemu-system and qemu-utils qemu-guest-agent - Guest-side qemu-system agent qemu-kvm - QEMU Full virtualization on x86 hardware qemu-system - QEMU full system emulation binaries qemu-system-arm - QEMU full system emulation binaries (arm) qemu-system-common - QEMU full system emulation binaries (common files) qemu-system-mips - QEMU full system emulation binaries (mips) qemu-system-misc - QEMU full system emulation binaries (miscellaneous) qemu-system-ppc - QEMU full system emulation binaries (ppc) qemu-system-sparc - QEMU full system emulation binaries (sparc) qemu-system-x86 - QEMU full system emulation binaries (x86) qemu-user - QEMU user mode emulation binaries qemu-user-binfmt - QEMU user mode binfmt registration for qemu-user qemu-user-static - QEMU user mode emulation binaries (static version) qemu-utils - QEMU utilities Closes: 901017 902725 911499 912535 914599 914604 914727 916397 921525 922635 929067 929353 Changes: qemu (1:2.8+dfsg-6+deb9u6) stretch-security; urgency=medium . [ Moritz Mühlenhoff ] * slirp-correct-size-computation-concatenating-mbuf-CVE-2018-11806.patch (Closes: #901017, CVE-2018-11806) * qga-check-bytes-count-read-by-guest-file-read-CVE-2018-12617.patch (Closes: #902725, CVE-2018-12617) * usb-mtp-use-O_NOFOLLOW-and-O_CLOEXEC-CVE-2018-16872.patch (Closes: #916397, CVE-2018-16872) * rtl8139-fix-possible-out-of-bound-access-CVE-2018-17958.patch (Closes: #911499, CVE-2018-17958) * lsi53c895a-check-message-length-value-is-valid-CVE-2018-18849.patch (Closes: #912535, CVE-2018-18849) * ppc-pnv-check-size-before-data-buffer-access-CVE-2018-18954.patch (Closes: #914604, CVE-2018-18954) * 9p-write-lock-path-in-v9fs-co_open2.patch 9p-take-write-lock-on-fid-path-updates-CVE-2018-19364.patch (Closes: #914599, CVE-2018-19364) * 9p-fix-QEMU-crash-when-renaming-files-CVE-2018-19489.patch (Closes: #914727, CVE-2018-19489) * i2c-ddc-fix-oob-read-CVE-2019-3812.patch (Closes: #922635, CVE-2019-3812) * slirp-check-data-length-while-emulating-ident-function-CVE-2019-6778.patch (Closes: #921525, CVE-2019-6778) * slirp-check-sscanf-result-when-emulating-ident-CVE-2019-9824.patch (Closes: CVE-2019-9824) . [ Michael Tokarev ] * enable-md-clear.patch define new CPUID for MDS (Closes: #929067) (Closes: CVE-2018-12126, CVE-2018-12127, CVE-2018-12130, CVE-2019-11091) * qxl-check-release-info-object-CVE-2019-12155.patch fixes null-pointer deref in qxl cleanup code (Closes: #929353, CVE-2019-12155) Checksums-Sha1: ebd3189c3de8bde9bc053bf04d7e70652dd7f555 262022 qemu-block-extra-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 76d280236613e72f062f61edeb7b6c1658ce5ae8 110922 qemu-block-extra_2.8+dfsg-6+deb9u6_i386.deb fd445eff33dcaa1753e86cfd8ee90e2c243969d6 638104 qemu-guest-agent-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 491d6a2f89d5393b18309b3f0da9405acbe5f785 321972 qemu-guest-agent_2.8+dfsg-6+deb9u6_i386.deb a60dbedb88809232ab421f9784dfdfeb9c4ee4fe 67284 qemu-kvm_2.8+dfsg-6+deb9u6_i386.deb 636a67313601f1845f76c228d68ca3b4662dc968 31480006 qemu-system-arm-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 9e6a36b62aa2dc582af93ff17f3956ccc2d4d08b 5738696 qemu-system-arm_2.8+dfsg-6+deb9u6_i386.deb e94bd69b156c34a2903e438b36e27ec852df742f 307298 qemu-system-common-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 78722d31ef47efb9d974096845b06b766d724427 499816 qemu-system-common_2.8+dfsg-6+deb9u6_i386.deb 307ba53c17e5882686de83b30a5fe980489a2c95 54199826 qemu-system-mips-dbgsym_2.8+dfsg-6+deb9u6_i386.deb f5fdda2d2adb052163221533ab1cd39df5962b03 9792814 qemu-system-mips_2.8+dfsg-6+deb9u6_i386.deb 3dfffce3f6b5250fc7dd2354b3edbf1151a893a8 141540924 qemu-system-misc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb dce489422a44a25390afcf903180cb39a52095e8 12593514 qemu-system-misc_2.8+dfsg-6+deb9u6_i386.deb fa88abc4a409e711a9b673795132723217270ff7 41874500 qemu-system-ppc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb f633c5570be60018f9b2dd8d34cdba4e8493bbad 7626868 qemu-system-ppc_2.8+dfsg-6+deb9u6_i386.deb 10c4530a0e13b2aa9e0bf16301cee76b41dbb7ed 21108844 qemu-system-sparc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 1fbae10c8c935b4ded43cf7b1831c73e4d7f9268 2775234 qemu-system-sparc_2.8+dfsg-6+deb9u6_i386.deb aabfa95dd318c58b02049d9a58f832e8edef9fb8 30027912 qemu-system-x86-dbgsym_2.8+dfsg-6+deb9u6_i386.deb c65a3eb1efaf17725e34fa02c194738d1cfe124f 5250512 qemu-system-x86_2.8+dfsg-6+deb9u6_i386.deb 538fd1bc834e486945cfff6abbbc524bb0f68f41 66336 qemu-system_2.8+dfsg-6+deb9u6_i386.deb 671319a641326acfbfc03d758ba1ea43808d23d5 2584 qemu-user-binfmt_2.8+dfsg-6+deb9u6_i386.deb c319a8053ae363a5b50c2ebadc7ca97107c08c92 73959120 qemu-user-dbgsym_2.8+dfsg-6+deb9u6_i386.deb da9a9ad47d8c75d8fcb6342f7dbd68d15ea15de5 81984408 qemu-user-static-dbgsym_2.8+dfsg-6+deb9u6_i386.deb bba98eb4f5edff2d961dd602d42fbd6d321d885e 9550694 qemu-user-static_2.8+dfsg-6+deb9u6_i386.deb 7a100299001935b8787b435edaefa05164c29e7e 7744540 qemu-user_2.8+dfsg-6+deb9u6_i386.deb 8f94ec7b872b54a74fe9603c97638a740710052c 8910774 qemu-utils-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 8249aafe5ead1d65d9827809cfbc2d1cddb59911 1064404 qemu-utils_2.8+dfsg-6+deb9u6_i386.deb bbfac0ea878fd6581a0d11dcf1e6bfd0c5348366 21576 qemu_2.8+dfsg-6+deb9u6_i386.buildinfo 8e8774cc2669a408e02b31ec1d43f34926ba44b9 151250 qemu_2.8+dfsg-6+deb9u6_i386.deb Checksums-Sha256: fcbcc33d0c306d5c8cab98dffe8e8bd2555452753e25a2b4b1c18133a79d249a 262022 qemu-block-extra-dbgsym_2.8+dfsg-6+deb9u6_i386.deb fb46f43b7e3c4866f404e5984f7de6a63039cf38168c65a0d183744db9d1da9f 110922 qemu-block-extra_2.8+dfsg-6+deb9u6_i386.deb a4228cefb22ba50aba85411332debbe7dcbe63ffe160bc156352fe79cc4791cf 638104 qemu-guest-agent-dbgsym_2.8+dfsg-6+deb9u6_i386.deb bfe1618de5cfe6e14bbdf63a0bd50524748c8131c175a6c772fcd543dcc9e3b6 321972 qemu-guest-agent_2.8+dfsg-6+deb9u6_i386.deb aad488c89c70531c6db5d7936efafc035db65ad5cf783b362f4550694f87ffbe 67284 qemu-kvm_2.8+dfsg-6+deb9u6_i386.deb b09f0cc781ac92a55e5f22d3f23d5390fb612aa52bfa69936ff949897d1fbb02 31480006 qemu-system-arm-dbgsym_2.8+dfsg-6+deb9u6_i386.deb ee171cbc10d0a06046cce1778944fd7103098e989e028a5f569fd3c9a3c0915f 5738696 qemu-system-arm_2.8+dfsg-6+deb9u6_i386.deb 8fd1960d408a0d02c579a9b886dd1996ca5edc2fd69a08c0dd5d479aaa178ab7 307298 qemu-system-common-dbgsym_2.8+dfsg-6+deb9u6_i386.deb d003577629a52e94abae4beb0619642c13c99039808d822a7cefdbe9063a7adc 499816 qemu-system-common_2.8+dfsg-6+deb9u6_i386.deb f9960682b324d95ec6b151fdee9f834d4aab4ecb769d7ad1c6a7783d6e20fcd4 54199826 qemu-system-mips-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 4a6d5fe31a39cce3d89607cefb26ae1a11d1b3de73d11f2282a086fa9811963c 9792814 qemu-system-mips_2.8+dfsg-6+deb9u6_i386.deb 10d972166712c9eef3936825422c9bc8e49a3886b19f8ddb587f49e217778f7d 141540924 qemu-system-misc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 00a8d974e9202dd509ea779a40765f92b40f81164faeb70e1eaf4f11cf3db3e6 12593514 qemu-system-misc_2.8+dfsg-6+deb9u6_i386.deb 7e3387b33434fdb28a1895b23883675a9a2c4d0608f368639f5119cf854a8b37 41874500 qemu-system-ppc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 7ec9d1e85bb98dccbd65ee8fdb0217f523c7d4dab4731e503a3208aecfc46610 7626868 qemu-system-ppc_2.8+dfsg-6+deb9u6_i386.deb 051b12da6589259e75ea07119f091bc167677415363525608b3944c8950bcf2c 21108844 qemu-system-sparc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 6846893092e060c15ff88e8649ab830ed018b0a58d75e3ac4a39f00fe3956844 2775234 qemu-system-sparc_2.8+dfsg-6+deb9u6_i386.deb 9c7b6f98fbfe15fe5a5f3af0f47d3388e41a600a5d7985a916c818a2691568c9 30027912 qemu-system-x86-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 785a433ccd6c394d77c296d4d3c4e563db4fdc121986457b09808c4bfa399c77 5250512 qemu-system-x86_2.8+dfsg-6+deb9u6_i386.deb 9e93b17246b127541f8eeb1e1a49868b62472c4adb46b747181e3c48a9292629 66336 qemu-system_2.8+dfsg-6+deb9u6_i386.deb 3e7b1cc905e451e5df827dc580074fcb5fa21e8bace95bb09e0ef46740402191 2584 qemu-user-binfmt_2.8+dfsg-6+deb9u6_i386.deb eea10053394dff1d5b1bda7ad851282e3475265683f71631a98146685c029a8c 73959120 qemu-user-dbgsym_2.8+dfsg-6+deb9u6_i386.deb b049e6bf5ca0941210c17e8919d5279a049f439c9b91e40109b892e502138781 81984408 qemu-user-static-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 298b1ba1ee825f241f86ebb7dcd739d7cdc8f9d9a2cfa58bd93f0673b9125e51 9550694 qemu-user-static_2.8+dfsg-6+deb9u6_i386.deb 2f36980859063c7f40332c4c8b2e953374dd526b754ae63787552e2489de8f76 7744540 qemu-user_2.8+dfsg-6+deb9u6_i386.deb dad85681babf60c6d1f1c09531c9fa5f20a5b132013d00c62f1568afbaa08217 8910774 qemu-utils-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 99ca186aabf2a27cecf08cd1d60c087c5c22ae58a3a2eb3151c20f6d87d1bba9 1064404 qemu-utils_2.8+dfsg-6+deb9u6_i386.deb 8531a93fc786555dc3660b783cc2233d664c1b676960267ba8fefd13c088eddc 21576 qemu_2.8+dfsg-6+deb9u6_i386.buildinfo 484fba86673b48572a945ada728a9ca6388ff80b12a98495ef862b77e82cb28f 151250 qemu_2.8+dfsg-6+deb9u6_i386.deb Files: 959f53b8e6889f9f4b78f4f5ecea49c8 262022 debug extra qemu-block-extra-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 1901bfa6fef34a3ec49c9f4ed93f1f5f 110922 otherosfs optional qemu-block-extra_2.8+dfsg-6+deb9u6_i386.deb 959b7a54c4c86b071392b9e953d8e6fb 638104 debug extra qemu-guest-agent-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 01330034d6df3fdfb12df6cc8707dea1 321972 otherosfs optional qemu-guest-agent_2.8+dfsg-6+deb9u6_i386.deb c42aa817842ca1632e0d514419bab055 67284 otherosfs optional qemu-kvm_2.8+dfsg-6+deb9u6_i386.deb 72c8daac259172f993cd11034bbf2ae0 31480006 debug extra qemu-system-arm-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 198f8e678704197ee115a98fb7a52d6a 5738696 otherosfs optional qemu-system-arm_2.8+dfsg-6+deb9u6_i386.deb 506a882844497df0a0ea9317f43db2d6 307298 debug extra qemu-system-common-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 1e1c5ad527a6031a3e223398ef3930ac 499816 otherosfs optional qemu-system-common_2.8+dfsg-6+deb9u6_i386.deb 58db4311a8eb9890049fb61e13ccbec3 54199826 debug extra qemu-system-mips-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 7369f82885bbd15416b7e9a0e40d4f1d 9792814 otherosfs optional qemu-system-mips_2.8+dfsg-6+deb9u6_i386.deb 853d3b2bf50a11e15d69d59ee3a1372d 141540924 debug extra qemu-system-misc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 4a3246775bd27575f3c6247ca3b3f761 12593514 otherosfs optional qemu-system-misc_2.8+dfsg-6+deb9u6_i386.deb cfc02b8f310946abca24f07b28dff2d7 41874500 debug extra qemu-system-ppc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 2fb9e638eaae6e706e41388b87b1d760 7626868 otherosfs optional qemu-system-ppc_2.8+dfsg-6+deb9u6_i386.deb 94667449bb4308e2b41d67456af57353 21108844 debug extra qemu-system-sparc-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 2e6419a1d6304fcf491094fdb4c958d5 2775234 otherosfs optional qemu-system-sparc_2.8+dfsg-6+deb9u6_i386.deb 0849735c7eb4a56b9534c791f4daa48d 30027912 debug extra qemu-system-x86-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 389f58bb65dca8472b3c1522ed1ce87b 5250512 otherosfs optional qemu-system-x86_2.8+dfsg-6+deb9u6_i386.deb 3ab055a1c72b7a5d5fd9ba3cdae129f3 66336 otherosfs optional qemu-system_2.8+dfsg-6+deb9u6_i386.deb 5f66afe687a96b7bad6d6dfbb01ce1ae 2584 otherosfs optional qemu-user-binfmt_2.8+dfsg-6+deb9u6_i386.deb 62deab839ec840200964d5246beed0a7 73959120 debug extra qemu-user-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 67e24334e88685825b28c8e6a217b36d 81984408 debug extra qemu-user-static-dbgsym_2.8+dfsg-6+deb9u6_i386.deb b88f9fc72179e3e6735a535a7e668ab3 9550694 otherosfs optional qemu-user-static_2.8+dfsg-6+deb9u6_i386.deb 48de1d80534d3a3933c478e1611ca1e8 7744540 otherosfs optional qemu-user_2.8+dfsg-6+deb9u6_i386.deb c570571bcd2425b1f59b45262c004841 8910774 debug extra qemu-utils-dbgsym_2.8+dfsg-6+deb9u6_i386.deb 33a984e18b392170074a61575d49f660 1064404 otherosfs optional qemu-utils_2.8+dfsg-6+deb9u6_i386.deb 909c5b81e18afe77188a5ef44b0dfb4b 21576 otherosfs optional qemu_2.8+dfsg-6+deb9u6_i386.buildinfo c9ed3933e366d0c68573d62f48f26af4 151250 otherosfs optional qemu_2.8+dfsg-6+deb9u6_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEfQCLkDuIfHLCXwkJVmLYJthWcBwFAlzuwXwACgkQVmLYJthW cBy41Q//esKkvBaABW8KHRbJJTdtviaJ3VQX4EhBelG/oGEVNB3kKv71cH4R+Mwi pm8S7U8oJnBc9Gr4quurfKM7vg3Ezm2bW7wKLDPxCEr7ejcI+df0rK230QrDJT7m F7r19T0E0F2ncLEodZSLEv1GWTMZ5QapLI0gju6Bo4nrlf6Ntoj/2b/5Ay4nyYZx uB5sZ/p5t41DyVd6WbtcwMMJR/8ZTyJjA+/JQOztg/fYXjHZtXQ1QWO44/f3PTAS Wqm/eLbVYbI5ZeE7i3QGGek17LNyVrxexLNs/IJ1lWnUIPivrFw02zbeES7Iomtx FlgIz/tY/jkrz+CQXl/2RpNlvPgqy9w0AD6MY3EfhxAFiIAWkwAQqgDOvVtDxl7k VtQz4M79CF23XM7hlHmbUN1uUw4/HGh6AKeAbvI0j+YDWrdGCerqOj3fkj/XvfMA lwXg7tW9Wlmp5Yz+4ow2kIOvpAR1ozzNHzvoJf2TeAg/ziIE1+MZirpo6LU6AGNW ycdfQSI+j6cwfY0X5tRfIjgyiu8TeQHJKt6yHX8nUMpJdoyLj4TsCh2sMwE0GChC 8uyor4gBFPDY0fLZ6Y6haavZemD14U3wOCuiTqDomiA3BervB1KnKZNcXGcT+r56 UYTxx9ye6YlubEWFvU3j/ibf7so00xhZ8dExSU9+ZKKjMR5LfsA= =YtR8 -----END PGP SIGNATURE-----