-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 12 Jun 2019 10:13:38 +0200 Source: libvirt Binary: libvirt-clients libvirt-daemon libvirt-daemon-system libvirt0 libvirt-doc libvirt-dev libvirt-sanlock libnss-libvirt Architecture: i386 Version: 3.0.0-4+deb9u4 Distribution: stretch-security Urgency: medium Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Guido Günther Description: libnss-libvirt - nss plugin providing IP add ress resolution for virtual machines libvirt-clients - Programs for the libvirt library libvirt-daemon - Virtualization daemon libvirt-daemon-system - Libvirt daemon configuration files libvirt-dev - development files for the libvirt library libvirt-doc - documentation for the libvirt library libvirt-sanlock - Sanlock plugin for virtlockd libvirt0 - library for interfacing with different virtualization systems Changes: libvirt (3.0.0-4+deb9u4) stretch-security; urgency=medium . * Fix CVEs related to privilege escalations on R/O connections. - CVE-2019-10161: CVE-2019-10161-api-disallow-virDomainSaveImageGetXMLDesc-.patch - CVE-2019-10167: api-disallow-virConnectGetDomainCapabilities-on-read-only.patch * cpu_map: Define md-clear CPUID bit. CVE-2018-12126, CVE-2018-12127, CVE-2018-12130, CVE-2019-11091 * Add spec-ctrl and ibpb CPU features and ibrs CPU models. CVE-2017-5753, CVE-2017-5715 * Add ssbd CPU feature. CVE-2018-3639 Checksums-Sha1: fe94be7d9477043a152580374d5cb1a933b20fae 299786 libnss-libvirt-dbgsym_3.0.0-4+deb9u4_i386.deb 624935d0446b8a979df44d55278adf062409b8b6 167948 libnss-libvirt_3.0.0-4+deb9u4_i386.deb 848fe108594a9eba688e7b8d0214ca93778a90ae 1341968 libvirt-clients-dbgsym_3.0.0-4+deb9u4_i386.deb f4013b08b2eef2050a6c33e9dcebf68cbcf262ac 632484 libvirt-clients_3.0.0-4+deb9u4_i386.deb 9eaed43b21f7cedb48e8afbdaac4eae78a13badf 9369640 libvirt-daemon-dbgsym_3.0.0-4+deb9u4_i386.deb 3407c990a7432d6808c1dcc35d36fd85a7425b84 301084 libvirt-daemon-system-dbgsym_3.0.0-4+deb9u4_i386.deb 1bf715384cc3ed399c823d6e7d8dc431a63b0ddd 181524 libvirt-daemon-system_3.0.0-4+deb9u4_i386.deb e11a0f9ee7f66a4316896fc3a96fb98311f3d86e 2192448 libvirt-daemon_3.0.0-4+deb9u4_i386.deb 8bdfdd59977f74ce06c204dc25822ddb5ecd2b08 175736 libvirt-dev_3.0.0-4+deb9u4_i386.deb 4a13d53719512048d50d604ab86528eea8d9e638 97364 libvirt-sanlock-dbgsym_3.0.0-4+deb9u4_i386.deb eae7b6f82015a6c0c73a81edd850f60cbbd9c4c1 80552 libvirt-sanlock_3.0.0-4+deb9u4_i386.deb a1ef1dee12439d913c6941153aa5c9b6219f7a5d 3513458 libvirt0-dbgsym_3.0.0-4+deb9u4_i386.deb b1c8204c4c155ea56dbb348c46a6bca93363606e 4038026 libvirt0_3.0.0-4+deb9u4_i386.deb 4b3b5404e5f219d496418fd935532569d016be23 15826 libvirt_3.0.0-4+deb9u4_i386.buildinfo Checksums-Sha256: 696c0084007819ab6dccc60e60e9ed3cae599a627725a44b4a0b293ef5e711f1 299786 libnss-libvirt-dbgsym_3.0.0-4+deb9u4_i386.deb 90bd19bb8a5ab4be1a3ef479724f75f9faf91771f765ad1b6551f987609bc459 167948 libnss-libvirt_3.0.0-4+deb9u4_i386.deb 7e37b5dfb395a8352f1a069002cfe7545f1ea2f3bd1f0ac4e5bede5c72b6643f 1341968 libvirt-clients-dbgsym_3.0.0-4+deb9u4_i386.deb 18b8c0aa58a38403ff63291422c893ab05607743afebb8e66390b89c9735a25b 632484 libvirt-clients_3.0.0-4+deb9u4_i386.deb 1c38cfd50456fb33a7e4c100e293724bdfd4b639d485c5d4ec8f2b3702b439a7 9369640 libvirt-daemon-dbgsym_3.0.0-4+deb9u4_i386.deb f7dd40348f89b2c59988d43c1baabb2cf8ba45aee9e77eabd71c4943278ea482 301084 libvirt-daemon-system-dbgsym_3.0.0-4+deb9u4_i386.deb 26523b321e351e5b09e6b9a41b7c211c059b109a01b29736f77252ad606ed6de 181524 libvirt-daemon-system_3.0.0-4+deb9u4_i386.deb 053a811c2c42aa95a35a5b13ba9bf162120fa5610d2f85b495d55a5307d9918e 2192448 libvirt-daemon_3.0.0-4+deb9u4_i386.deb a25f2db3c3ce08e62b6aac7249b4330999fdc3142ce704ce11680c76c6cc3782 175736 libvirt-dev_3.0.0-4+deb9u4_i386.deb b7cd2e2c7a2f6a9ca1564530ac49ca668c175ae9c0addf6ee2a2c500115f8d76 97364 libvirt-sanlock-dbgsym_3.0.0-4+deb9u4_i386.deb 67fd783f1a49c3bfeef1f326d3458bb5a69034d06d3d294e9dd10446cad84243 80552 libvirt-sanlock_3.0.0-4+deb9u4_i386.deb 5becc29ab7aaa5a4c1a7ec6fa10f52817e6fede4c487b75df9fcbd0cfc1f232f 3513458 libvirt0-dbgsym_3.0.0-4+deb9u4_i386.deb 17f8fa2eaf88a8e9d33cc44503efa6ce6bff28e5ff51bba952f59849b9371ea8 4038026 libvirt0_3.0.0-4+deb9u4_i386.deb 522106e3e977bcb8cff44426aee7efd30b50e82574ce388b8477ea8d6d4285be 15826 libvirt_3.0.0-4+deb9u4_i386.buildinfo Files: 3ba9d5c282f4872a51c1929aedec0b2d 299786 debug extra libnss-libvirt-dbgsym_3.0.0-4+deb9u4_i386.deb c03837611e92a7660989870b50b9ed4c 167948 libs extra libnss-libvirt_3.0.0-4+deb9u4_i386.deb d6073bab5ee782ebf661ab8d83ae93a3 1341968 debug extra libvirt-clients-dbgsym_3.0.0-4+deb9u4_i386.deb f999d6e9ba138ab9146162997d1a1d00 632484 admin optional libvirt-clients_3.0.0-4+deb9u4_i386.deb 6d64de9415e6a8ff8e24815f32211a46 9369640 debug extra libvirt-daemon-dbgsym_3.0.0-4+deb9u4_i386.deb c996ff3ddd855b3f07fafacfb6af032c 301084 debug extra libvirt-daemon-system-dbgsym_3.0.0-4+deb9u4_i386.deb 8d1d37dc127048e35ef814a81ee7976a 181524 admin optional libvirt-daemon-system_3.0.0-4+deb9u4_i386.deb afe0c1d0e4e9736b4d76074283306417 2192448 admin optional libvirt-daemon_3.0.0-4+deb9u4_i386.deb 5b55951227373b6a003b4faa233d786f 175736 libdevel optional libvirt-dev_3.0.0-4+deb9u4_i386.deb 0e8c97960287bdda68c03a74c900b83a 97364 debug extra libvirt-sanlock-dbgsym_3.0.0-4+deb9u4_i386.deb a1d44ae9b064a713e9c89df9a0e0eaa6 80552 libs extra libvirt-sanlock_3.0.0-4+deb9u4_i386.deb 10d593e612f11ed31f8d506ea09b22dd 3513458 debug extra libvirt0-dbgsym_3.0.0-4+deb9u4_i386.deb ecd259ce8c52f1818069608fc5e651dc 4038026 libs optional libvirt0_3.0.0-4+deb9u4_i386.deb a648c8d3cfbda2f32444ee40127f7665 15826 libs optional libvirt_3.0.0-4+deb9u4_i386.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE56RkdImmGnu/qTMEtnmMmMOJfQ0FAl0MGZ4ACgkQtnmMmMOJ fQ1AtQ//T0uWoVVltGvYMMAAPSIGtD/xdA2uJnjoQDgFe0F+lvWK91uQJ+L0E/+N SY4J2JUwq2CyU0I251SCdgr3DBVJxH/ylhMfLM7FP8+/U07bhTgrSJk0mqjynR2G JXi+Gnu/ZPWBh1Gap5MSLVCpJ6HuUkhd/SFWIrfVDTqEJfAMsvWfOkM2g1+ZUWpU h6E84T39m/kRWqfOVslwv2lClxvjFI2BmenCxjthwnTulvDTebDPiJH/PyHiegmA 4TZdg84DidGFIB3rHhWbzeZqrEOgWRK16MZ68VQFyYc/GA+g/NmRzmCGgnup5uh4 JZ5SJRL08K4tRZ1x78bHGzR1k2u5Da6Dhf4K8veSlWTbobapj9nz5UJPmDKe3Iok hTWjCSNPyhWNO+U2DPlAjrecSMyXcTojfJ3DPUBFzmemVF7YdI9X4uWz8Q5IsXux YwwKYbEIVvelRmdaWMf57zQMfs64kmVwVjnraeZYnx7/1M662OT/E3BXoqFpVaJe Gh5KKwTWdU0u1/i+QsQKnuiA7fRsr5C1prtuFp4ynSwP2Dlh4V86SCmDZvMqPwKg amVmp43VH5Y2k/TIhk/eHHD0BwVi9eRG+5Jvh53Z/hGNN0Qg2CiNYUyscaog+KKK yTpSxNB9eq7FTSgT11urZmgb/zTOsDJprk84QVxAhIfNfsWYjYY= =2KjB -----END PGP SIGNATURE-----