a0f6152 CVE-2016-6836: vmxnet: Information leakage in vmxnet3_complete_packet (bz #1366370)

Authored and Committed by crobinso 7 years ago
33 files changed. 1451 lines added. 1 lines removed.
0011-net-vmxnet-initialise-local-tx-descriptor.patch
file added
+30
0012-net-pcnet-check-rx-tx-descriptor-ring-length.patch
file added
+34
0013-virtio-gpu-fix-memory-leak-in-virtio_gpu_resource_cr.patch
file added
+32
0014-9pfs-fix-potential-host-memory-leak-in-v9fs_read.patch
file added
+36
0015-9pfs-allocate-space-for-guest-originated-empty-strin.patch
file added
+56
0016-net-rocker-set-limit-to-DMA-buffer-size.patch
file added
+33
0017-char-serial-check-divider-value-against-baud-base.patch
file added
+34
0018-audio-intel-hda-check-stream-entry-count-during-tran.patch
file added
+35
0019-timer-a9gtimer-remove-loop-to-auto-increment-compara.patch
file added
+48
0020-net-eepro100-fix-memory-leak-in-device-uninit.patch
file added
+27
0021-9pfs-fix-information-leak-in-xattr-read.patch
file added
+29
0022-9pfs-fix-memory-leak-in-v9fs_xattrcreate.patch
file added
+32
0023-9pfs-add-xattrwalk_fid-field-in-V9fsXattr-struct.patch
file added
+70
0024-9pfs-convert-len-copied_len-field-in-V9fsXattr-to-th.patch
file added
+44
0025-9pfs-fix-integer-overflow-issue-in-xattr-read-write.patch
file added
+89
0026-9pfs-fix-memory-leak-in-v9fs_link.patch
file added
+30
0027-9pfs-fix-memory-leak-in-v9fs_write.patch
file added
+31
0028-xen-fix-ioreq-handling.patch
file added
+71
0029-display-cirrus-check-vga-bits-per-pixel-bpp-value.patch
file added
+73
0030-net-mcf-check-receive-buffer-size-register-value.patch
file added
+31
0031-virtio-gpu-fix-information-leak-in-getting-capset-in.patch
file added
+34
0032-virtio-gpu-fix-memory-leak-in-update_cursor_data_vir.patch
file added
+33
0033-usbredir-free-vm_change_state_handler-in-usbredir-de.patch
file added
+51
0034-usb-ehci-fix-memory-leak-in-ehci_init_transfer.patch
file added
+28
0035-9pfs-adjust-the-order-of-resource-cleanup-in-device-.patch
file added
+40
0036-9pfs-add-cleanup-operation-in-FileOperations.patch
file added
+53
0037-9pfs-add-cleanup-operation-for-handle-backend-driver.patch
file added
+44
0038-9pfs-add-cleanup-operation-for-proxy-backend-driver.patch
file added
+44
0039-9pfs-fix-crash-when-fsdev-is-missing.patch
file added
+29
0040-display-virtio-gpu-3d-check-virgl-capabilities-max_s.patch
file added
+37
0041-virtio-gpu-fix-information-leak-in-capset-get-dispat.patch
file added
+37
0042-virtio-gpu-call-cleanup-mapping-function-in-resource.patch
file added
+41
qemu.spec
file modified
+115 -1
    CVE-2016-6836: vmxnet: Information leakage in vmxnet3_complete_packet (bz #1366370)
    CVE-2016-7909: pcnet: Infinite loop in pcnet_rdra_addr (bz #1381196)
    CVE-2016-7994: virtio-gpu: memory leak in resource_create_2d (bz #1382667)
    CVE-2016-8577: 9pfs: host memory leakage in v9fs_read (bz #1383286)
    CVE-2016-8578: 9pfs: potential NULL dereferencein 9pfs routines (bz #1383292)
    CVE-2016-8668: OOB buffer access in rocker switch emulation (bz #1384898)
    CVE-2016-8669: divide by zero error in serial_update_parameters (bz #1384911)
    CVE-2016-8909: intel-hda: infinite loop in dma buffer stream (bz #1388053)
    Infinite loop vulnerability in a9_gtimer_update (bz #1388300)
    CVE-2016-9101: eepro100: memory leakage at device unplug (bz #1389539)
    CVE-2016-9103: 9pfs: information leakage via xattr (bz #1389643)
    CVE-2016-9102: 9pfs: memory leakage when creating extended attribute (bz #1389551)
    CVE-2016-9104: 9pfs: integer overflow leading to OOB access (bz #1389687)
    CVE-2016-9105: 9pfs: memory leakage in v9fs_link (bz #1389704)
    CVE-2016-9106: 9pfs: memory leakage in v9fs_write (bz #1389713)
    CVE-2016-9381: xen: incautious about shared ring processing (bz #1397385)
    CVE-2016-9921: Divide by zero vulnerability in cirrus_do_copy (bz #1399054)
    CVE-2016-9776: infinite loop while receiving data in mcf_fec_receive (bz #1400830)
    CVE-2016-9845: information leakage in virgl_cmd_get_capset_info (bz #1402247)
    CVE-2016-9846: virtio-gpu: memory leakage while updating cursor data (bz #1402258)
    CVE-2016-9907: usbredir: memory leakage when destroying redirector (bz #1402266)
    CVE-2016-9911: usb: ehci: memory leakage in ehci_init_transfer (bz #1402273)
    CVE-2016-9913: 9pfs: memory leakage via proxy/handle callbacks (bz #1402277)
    CVE-2016-10028: virtio-gpu-3d: OOB access while reading virgl capabilities (bz #1406368)
    CVE-2016-9908: virtio-gpu: information leakage in virgl_cmd_get_capset (bz #1402263)
    CVE-2016-9912: virtio-gpu: memory leakage when destroying gpu resource (bz #1402285)
    
        
file modified
+115 -1