| libvirt-lock-sanlock-0.10.2-64.el6_10.2.x86_64
              [199 KiB] | Changelog
              by Jiri Denemark (2019-06-19): - api: disallow virDomainSaveImageGetXMLDesc on read-only connections (CVE-2019-10161) | 
            | libvirt-lock-sanlock-0.10.2-64.el6_10.1.x86_64
              [198 KiB] | Changelog
              by Jiri Denemark (2019-04-18): - cpu_x86: Do not cache microcode version (CVE-2018-12126, CVE-2018-12130, CVE-2018-12127)
- cpu_map: Define md-clear CPUID bit (CVE-2018-12126, CVE-2018-12130, CVE-2018-12127) | 
            | libvirt-lock-sanlock-0.10.2-64.el6.x86_64
              [198 KiB] | Changelog
              by Jiri Denemark (2018-05-22): - cpu: define the 'ssbd' CPUID feature bit (CVE-2018-3639)
- cpu: define the 'virt-ssbd' CPUID feature bit (CVE-2018-3639) | 
            | libvirt-lock-sanlock-0.10.2-62.el6_9.2.x86_64
              [198 KiB] | Changelog
              by Jiri Denemark (2018-05-10): - cpu: define the 'ssbd' CPUID feature bit (CVE-2018-3639) | 
            | libvirt-lock-sanlock-0.10.2-62.el6_9.1.x86_64
              [198 KiB] | Changelog
              by Jiri Denemark (2017-12-15): - util: Implement virFileReadHeaderFD (CVE-2017-5715)
- util: add virFileReadHeaderQuiet wrapper around virFileReadHeaderFD (CVE-2017-5715)
- util: introduce virHostCPUGetMicrocodeVersion (CVE-2017-5715)
- conf: include x86 microcode version in virsh capabiltiies (CVE-2017-5715)
- cpu: add CPU features and model for indirect branch prediction protection (CVE-2017-5715) | 
            | libvirt-lock-sanlock-0.10.2-46.el6_6.2.x86_64
              [188 KiB] | Changelog
              by Jiri Denemark (2014-11-07): - qemu: allow restore with non-migratable XML input (rhbz#1155564)
- qemu: Introduce qemuDomainDefCheckABIStability (rhbz#1155564)
- Make ABI stability issue easier to debug (rhbz#1155564)
- CVE-2014-3633: qemu: blkiotune: Use correct definition when looking up disk (CVE-2014-3633)
- domain_conf: fix domain deadlock (CVE-2014-3657)
- CVE-2014-7823: dumpxml: security hole with migratable flag (CVE-2014-7823) | 
            | libvirt-lock-sanlock-0.10.2-29.el6_5.8.x86_64
              [171 KiB] | Changelog
              by Jiri Denemark (2014-05-14): - LSN-2014-0003: Don't expand entities when parsing XML (CVE-2014-0179)
- QoS: make tc filters match all traffic (rhbz#1096806)
- use virBitmapFree instead of VIR_FREE for cpumask (rhbz#1091206)
- Properly free vcpupin info for unplugged CPUs (rhbz#1091206)
- sanlock: code movement in virLockManagerSanlockAcquire (rhbz#1097227)
- sanlock: don't fail with unregistered domains (rhbz#1097227)
- sanlock: avoid leak in acquire() (rhbz#1097227) | 
            | libvirt-lock-sanlock-0.10.2-29.el6_5.3.x86_64
              [169 KiB] | Changelog
              by Jiri Denemark (2014-01-21): - qemu: Avoid operations on NULL monitor if VM fails early (rhbz#1055578)
- qemu: Do not access stale data in virDomainBlockStats (CVE-2013-6458)
- qemu: Avoid using stale data in virDomainGetBlockInfo (CVE-2013-6458)
- qemu: Fix job usage in qemuDomainBlockJobImpl (CVE-2013-6458)
- qemu: Fix job usage in qemuDomainBlockCopy (rhbz#1054804)
- qemu: Fix job usage in virDomainGetBlockIoTune (CVE-2013-6458)
- Don't crash if a connection closes early (CVE-2014-1447)
- Really don't crash if a connection closes early (CVE-2014-1447) | 
            | libvirt-lock-sanlock-0.10.2-18.el6_4.14.x86_64
              [159 KiB] | Changelog
              by Jiri Denemark (2013-09-17): - spec: Update requirements to pick up rebuilt polkit (CVE-2013-4311) | 
            | libvirt-lock-sanlock-0.10.2-18.el6_4.5.x86_64
              [157 KiB] | Changelog
              by Jiri Denemark (2013-05-03): - daemon: Fix leak after listing volumes (CVE-2013-1962)
- Don't try to add non-existant devices to ACL (rhbz#958837)
- Avoid spamming logs with cgroups warnings (rhbz#958837)
- audit: Properly encode device path in cgroup audit (rhbz#958839) | 
            | libvirt-lock-sanlock-0.10.2-18.el6.x86_64
              [151 KiB] | Changelog
              by Jiri Denemark (2013-01-28): - rpc: Fix crash on error paths of message dispatching (CVE-2013-0170)
- spec: Disable libssh2 support (rhbz#513363) | 
            | libvirt-lock-sanlock-0.9.10-21.el6_3.8.x86_64
              [126 KiB] | Changelog
              by Jiri Denemark (2013-01-10): - rpc: Fix crash on error paths of message dispatching (CVE-2013-0170) | 
            | libvirt-lock-sanlock-0.9.10-21.el6_3.5.x86_64
              [125 KiB] | Changelog
              by Jiri Denemark (2012-09-26): - security: Fix libvirtd crash possibility (CVE-2012-4423)
- Fix augeas test of shared sanlock leases (rhbz#858988)
- qemu augeas: Add spice_tls/spice_tls_x509_cert_dir (rhbz#858988)
- Fix mistakes in augeas lens (rhbz#858988)
- qemu: Fix failure path in disk hotplug (rhbz#859376)
- blockjob: Relabel entire existing chain (rhbz#860720) | 
            | libvirt-lock-sanlock-0.9.10-21.el6_3.4.x86_64
              [124 KiB] | Changelog
              by Daniel Veillard (2012-08-15): - daemon: Fix crash in virTypedParameterArrayClear (rhbz#844735)
- remote: Fix locking in stream APIs (rhbz#847946)
- Using virOnce for global initialization is desirable (rhbz#847959)
- json: Fix interface locale dependency (rhbz#847959) | 
            | libvirt-lock-sanlock-0.9.10-21.el6.x86_64
              [123 KiB] | Changelog
              by Daniel Veillard (2012-05-23): - qemu: Rollback on used USB devices (rhbz#743671)
- qemu: Don't delete USB device on failed qemuPrepareHostdevUSBDevices (rhbz#743671)
- Revert "rpc: Discard non-blocking calls only when necessary" (rhbz#821468) |