File _patchinfo of Package patchinfo.15021
<patchinfo incident="15021"> <issue tracker="cve" id="2020-1983"/> <issue tracker="bnc" id="1170940">VUL-0: CVE-2020-1983: slirp4netns,libslirp,kvm,qemu: use-after-free in ip_reass function in ip_input.c</issue> <issue tracker="bnc" id="1158880">[sles12sp5 FEAT][s390x] Fail to boot up guest system with mdev passthrough device as installation device</issue> <issue tracker="bnc" id="1167816">Not able to limit the memory bandwidth during live-migrations via migrate-setspeed anymore sles12sp5</issue> <packager>bfrogers</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for qemu</summary> <description>This update for qemu fixes the following issues: Security issue fixed: - CVE-2020-1983: Fixed a use-after-free in the ip_reass function of slirp (bsc#1170940). Non-security issues fixed: - Fixed an issue where limiting the memory bandwidth was not possible (bsc#1167816). - Fixed the issue that s390x could not read IPL channel program when using dasd as boot device (bsc#1158880). - Miscellaneous fixes to the in-package support documentation. </description> </patchinfo>