[pve-devel] [PATCH kvm] various CVE fixes

2016-09-19 Thread Fabian Grünbichler
CVE-2016-7170: vmsvga: correct bitmap and pixmap size checks CVE-2016-7421: scsi: pvscsi: limit process IO loop to ring size CVE-2016-7423: scsi: mptsas: use g_new0 to allocate MPTSASRequest object --- ...vga-correct-bitmap-and-pixmap-size-checks.patch | 45 ++

Re: [pve-devel] [PATCH kvm] various CVE fixes

2016-09-07 Thread Dietmar Maurer
applied, thanks! ___ pve-devel mailing list pve-devel@pve.proxmox.com http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel

[pve-devel] [PATCH kvm] various CVE fixes

2016-09-07 Thread Wolfgang Bumiller
CVE-2016-7116: 9pfs: forbid illegal path names 9pfs: forbid . and .. in file names 9pfs: handle walk of ".." in the root directory CVE-2016-7155: scsi: check page count while initialising descriptor rings CVE-2016-7156: scsi: pvscsi: avoid infinite loop while building SG list CVE-2016-7157: