File _patchinfo of Package patchinfo.15021
<patchinfo incident="15021">
<issue tracker="cve" id="2020-1983"/>
<issue tracker="bnc" id="1170940">VUL-0: CVE-2020-1983: slirp4netns,libslirp,kvm,qemu: use-after-free in ip_reass function in ip_input.c</issue>
<issue tracker="bnc" id="1158880">[sles12sp5 FEAT][s390x] Fail to boot up guest system with mdev passthrough device as installation device</issue>
<issue tracker="bnc" id="1167816">Not able to limit the memory bandwidth during live-migrations via migrate-setspeed anymore sles12sp5</issue>
<packager>bfrogers</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for qemu</summary>
<description>This update for qemu fixes the following issues:
Security issue fixed:
- CVE-2020-1983: Fixed a use-after-free in the ip_reass function of slirp (bsc#1170940).
Non-security issues fixed:
- Fixed an issue where limiting the memory bandwidth was not possible (bsc#1167816).
- Fixed the issue that s390x could not read IPL channel program when using dasd as boot device (bsc#1158880).
- Miscellaneous fixes to the in-package support documentation.
</description>
</patchinfo>