File _patchinfo of Package patchinfo.15021

<patchinfo incident="15021">
  <issue tracker="cve" id="2020-1983"/>
  <issue tracker="bnc" id="1170940">VUL-0: CVE-2020-1983: slirp4netns,libslirp,kvm,qemu: use-after-free in ip_reass function in ip_input.c</issue>
  <issue tracker="bnc" id="1158880">[sles12sp5 FEAT][s390x] Fail to boot up guest system with mdev passthrough device as installation device</issue>
  <issue tracker="bnc" id="1167816">Not able to limit the memory bandwidth during live-migrations via migrate-setspeed anymore sles12sp5</issue>
  <packager>bfrogers</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for qemu</summary>
  <description>This update for qemu fixes the following issues:

Security issue fixed:

- CVE-2020-1983: Fixed a use-after-free in the ip_reass function of slirp (bsc#1170940).

Non-security issues fixed:

- Fixed an issue where limiting the memory bandwidth was not possible (bsc#1167816).
- Fixed the issue that s390x could not read IPL channel program when using dasd as boot device (bsc#1158880).
- Miscellaneous fixes to the in-package support documentation.
</description>
</patchinfo>
openSUSE Build Service is sponsored by