Security update for libvirt

This update for libvirt and virt-manager fixes the following issues:

Security issues fixed:

- CVE-2017-5715: Fixes for speculative side channel attacks aka "SpectreAttack" (var2) (bsc#1079869).
- CVE-2018-6764: Fixed guest executable code injection via libnss_dns.so loaded by libvirt_lxc before init (bsc#1080042).
- CVE-2018-1064: Fixed denial of service when reading from guest agent (bsc#1083625).

Non-security issues fixed in libvirt:

- bsc#1070615: Fixed TPM device passthrough failure on kernels >= 4.0.
- bsc#1082041: SUSE Linux Enterprise 11 SP4 hvm converted to pvhvm. Unless vm memory is on gig boundary, vm won't boot.
- bsc#1082161: Unable to change RTC basis or adjustment for Xen HVM guests using libvirt.

Non-security issues fixed in virt-manager:

- bsc#1086038: VM guests cannot be properly installed with virt-install
- bsc#1067018: KVM Guest creation failed - Property .cmt not found
- bsc#1054986: Fix openSUSE 15.0 detection. It has no content file or .treeinfo file
- bsc#1085757: Fallback to latest version of openSUSE when opensuse-unknown is detected for the ISO

This update was imported from the SUSE:SLE-12-SP3:Update update project.

Fixed bugs
bnc#1083625
VUL-0: EMBARGOED: CVE-2018-1064: libvirt: Denial of service reading from guest agent
bnc#1082041
L3: sles11sp4 hvm converted to pvhvm. Unless vm memory is on gig boundary, vm won't boot
bnc#1080042
VUL-1: CVE-2018-6764: libvirt: guest could inject executable code via libnss_dns.so loaded by libvirt_lxc before init
bnc#1070615
qemu: tpm device passthrough fails on kernels >= 4.0
bnc#1079869
VUL-0: libvirt: fixes for speculative side channel attacks aka "SpectreAttack" (var2)
bnc#1082161
Unable to change RTC basis or adjustment for Xen HVM guests using libvirt
bnc#1086038
VM guests cannot be properly installed with virt-install
bnc#1067018
L3: KVM Guest creation failed - Property .cmt not found
bnc#1054986
Missing content file on the ISO media causes virt-install to fail detecting distro type and version
bnc#1085757
Leap 15 patch for osinfo-db has wrong information in it
Selected Binaries
openSUSE Build Service is sponsored by