File _patchinfo of Package patchinfo.14190
<patchinfo incident="14190">
<issue tracker="bnc" id="1145774">Libivrtd segfaults on SLES15SP1 when trying to live migrate a VM</issue>
<issue tracker="bnc" id="1151850">virsh restore fails with message Property '.ospke' not found</issue>
<issue tracker="bnc" id="1152649">[12sp5 FEAT] CCW IPL Support (DASD) - libvirt part (kvm)</issue>
<issue tracker="bnc" id="1154093">virt-create-rootfs script returns "Unhandled SLE version: 15.0"</issue>
<issue tracker="bnc" id="1157490">libvirtd.service fails to load on Xen 12TB system - unable to configure libxl memory management</issue>
<issue tracker="bnc" id="1161883">scsi reservations setup by pr_helper</issue>
<issue tracker="bnc" id="1162160">libvirt Xen driver does not support setting credit2 scheduler parameters</issue>
<issue tracker="bnc" id="1167007">[limit][xen][SR950] Fail to load libvirtd.service on xen 8TB memory system</issue>
<issue tracker="bnc" id="1168683">VUL-0: CVE-2020-10703: libvirt: potential denial of service via active pool without target path</issue>
<issue tracker="bnc" id="1170765">VUL-1: CVE-2020-12430: libvirt: users on a read-only connection may cause a memory leak in domstats, resulting in a potential denial of service</issue>
<issue tracker="cve" id="2020-10703"/>
<issue tracker="cve" id="2020-12430"/>
<issue tracker="fate" id="327355"/>
<issue tracker="jsc" id="SLE-5826"/>
<packager>jfehlig</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for libvirt</summary>
<description>This update for libvirt fixes the following issues:
Security issues fixed:
- CVE-2020-10703: Fixed a daemon crash caused by pools without target paths (bsc#1168683).
- CVE-2020-12430: Fixed a memory leak in qemuDomainGetStatsIOThread (bsc#1170765).
Non-security issues fixed:
- Support setting credit2 scheduler parameters for xen (bsc#1162160).
- Add SLE 15 and SLE 12 service packs support to 'libvirtd' (bsc#1154093).
- Add support boot from 'vfio-ccw'and 'mdev' devices (jsc#SLE-5826, FATE#327355, bsc#1152649).
- Fix lock manager lock ordering (bsc#1145774).
- Do not define known no-op features. (bsc#1151850).
- Enable use of newer libxl APIs for retrieving memory statistics (bsc#1157490, bsc#1167007).
- Create multipath targets for qemu PR (bsc#1161883).
</description>
</patchinfo>