ubuntu/+source/qemu:applied/ubuntu/yakkety-devel

Last commit made on 2017-05-16
Get this branch:
git clone -b applied/ubuntu/yakkety-devel https://git.launchpad.net/ubuntu/+source/qemu
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/ubuntu/yakkety-devel
Repository:
lp:ubuntu/+source/qemu

Recent commits

84bc7dd... by Marc Deslauriers on 2017-05-10

Import patches-applied version 1:2.6.1+dfsg-0ubuntu5.5 to applied/ubuntu/yakkety-security

Imported using git-ubuntu import.

Changelog parent: 46971f37e51a83ce91c12acf68edbe06f25251cf
Unapplied parent: 2ebb06ca76589bf2082ddd053a0b741b905cde58

New changelog entries:
  * SECURITY UPDATE: denial of service via leak in virtFS
    - debian/patches/CVE-2017-7377.patch: fix file descriptor leak in
      hw/9pfs/9p.c.
    - CVE-2017-7377
  * SECURITY UPDATE: denial of service in cirrus_vga
    - debian/patches/CVE-2017-7718.patch: check parameters in
      hw/display/cirrus_vga_rop.h.
    - CVE-2017-7718
  * SECURITY UPDATE: code execution via cirrus_vga OOB r/w
    - debian/patches/CVE-2017-7980-1.patch: handle negative pitch in
      hw/display/cirrus_vga.c.
    - debian/patches/CVE-2017-7980-2.patch: allow zero source pitch in
      hw/display/cirrus_vga.c.
    - debian/patches/CVE-2017-7980-3.patch: fix blit address mask handling
      in hw/display/cirrus_vga.c.
    - debian/patches/CVE-2017-7980-4.patch: fix patterncopy checks in
      hw/display/cirrus_vga.c.
    - debian/patches/CVE-2017-7980-5.patch: revert allow zero source pitch
      in hw/display/cirrus_vga.c.
    - debian/patches/CVE-2017-7980-6.patch: stop passing around dst
      pointers in hw/display/cirrus_vga.c, hw/display/cirrus_vga_rop.h,
      hw/display/cirrus_vga_rop2.h.
    - debian/patches/CVE-2017-7980-7.patch: stop passing around src
      pointers in hw/display/cirrus_vga.c, hw/display/cirrus_vga_rop.h,
      hw/display/cirrus_vga_rop2.h.
    - debian/patches/CVE-2017-7980-8.patch: fix off-by-one in
      hw/display/cirrus_vga_rop.h.
    - debian/patches/CVE-2017-7980-9.patch: fix cirrus_invalidate_region in
      hw/display/cirrus_vga.c.
    - CVE-2017-7980
  * SECURITY UPDATE: denial of service via memory leak in virtFS
    - debian/patches/CVE-2017-8086.patch: fix leak in hw/9pfs/9p-xattr.c.
    - CVE-2017-8086
  * SECURITY UPDATE: denial of service via leak in audio
    - debian/patches/CVE-2017-8309.patch: release capture buffers in
      audio/audio.c.
    - CVE-2017-8309
  * SECURITY UPDATE: denial of service via leak in keyboard
    - debian/patches/CVE-2017-8379-1.patch: limit kbd queue depth in
      ui/input.c.
    - debian/patches/CVE-2017-8379-2.patch: don't queue delay if paused in
      ui/input.c.
    - CVE-2017-8379

2ebb06c... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: fix cirrus_invalidate_region

Gbp-Pq: CVE-2017-7980-9.patch.

e2894c4... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: fix off-by-one in cirrus_bitblt_rop_bkwd_transp_*_16

Gbp-Pq: CVE-2017-7980-8.patch.

d75dd9c... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: stop passing around src pointers in the blitter

Gbp-Pq: CVE-2017-7980-7.patch.

695057d... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: stop passing around dst pointers in the blitter

Gbp-Pq: CVE-2017-7980-6.patch.

e0d220a... by Marc Deslauriers on 2017-05-10

[PATCH] Revert "cirrus: allow zero source pitch in pattern fill rops"

Gbp-Pq: CVE-2017-7980-5.patch.

da8b539... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: fix patterncopy checks

Gbp-Pq: CVE-2017-7980-4.patch.

43ee193... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: fix blit address mask handling

Gbp-Pq: CVE-2017-7980-3.patch.

0750ce6... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: allow zero source pitch in pattern fill rops

Gbp-Pq: CVE-2017-7980-2.patch.

1fcaa55... by Marc Deslauriers on 2017-05-10

[PATCH] cirrus: handle negative pitch in cirrus_invalidate_region()

Gbp-Pq: CVE-2017-7980-1.patch.