This bug was fixed in the package qemu - 1:2.10+dfsg-0ubuntu3.4

qemu (1:2.10+dfsg-0ubuntu3.4) artful-security; urgency=medium

  * SECURITY UPDATE: Add support for Spectre mitigations (LP: #1744882)
    - debian/patches/CVE-2017-5715-1.patch: Change X86CPUDefinition::
      model_id to const char* in target/i386/cpu.c.
    - debian/patches/CVE-2017-5715-2.patch: Add support for SPEC_CTRL MSR
      in target/i386/cpu.h, target/i386/kvm.c, target/i386/machine.c.
    - debian/patches/CVE-2017-5715-3.patch: Add spec-ctrl CPUID bit in
      target/i386/cpu.c, target/i386/cpu.h.
    - debian/patches/CVE-2017-5715-4.patch: Add FEAT_8000_0008_EBX CPUID
      feature word in target/i386/cpu.c, target/i386/cpu.h.
    - debian/patches/CVE-2017-5715-5.patch: Add new -IBRS versions of Intel
      CPU models in target/i386/cpu.c.
    - debian/patches/CVE-2017-5715-s390x-1.patch: add linux-header content
      for bpbc in linux-headers/asm-s390/kvm.h, linux-headers/linux/kvm.h.
    - debian/patches/CVE-2017-5715-s390x-2.patch: handle bpb feature in
      target/s390x/cpu.c, target/s390x/cpu.h, target/s390x/cpu_features.c,
      target/s390x/cpu_features_def.h, target/s390x/gen-features.c,
      target/s390x/kvm.c, target/s390x/machine.c.
    - debian/patches/CVE-2017-5715-s390x-3.patch: provide stfle.81 in
      target/s390x/cpu_features.c, target/s390x/cpu_features_def.h,
    - CVE-2017-5715

 -- Marc Deslauriers <>  Thu, 01 Feb 2018
13:28:07 -0500

** Changed in: qemu (Ubuntu Artful)
       Status: In Progress => Fix Released

** CVE added:

** Changed in: qemu (Ubuntu Xenial)
       Status: In Progress => Fix Released

You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs

  Add SPEC_CTRL and IBRS changes

Status in qemu package in Ubuntu:
Status in qemu source package in Trusty:
  In Progress
Status in qemu source package in Xenial:
  Fix Released
Status in qemu source package in Artful:
  Fix Released
Status in qemu source package in Bionic:

Bug description:
  The merge of [1] landed the spectre related changes for SPEC_CTRL and
  IBRS to qemu 2.12

  It is announced in [2] that there shall be a 2.11.1 with the backport that we 
intend to pick.
  The security team can use this merge at [1] to work on backwards security 
  For 18.04 (not yet released) the intention for now is to pick 2.11.1 once 


To manage notifications about this bug go to:

Mailing list:
Post to     :
Unsubscribe :
More help   :

Reply via email to