[Oraclevm-errata] OVMSA-2016-0151 Important: Oracle VM 3.4 ovm-consoled security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Fri Oct 28 10:07:29 PDT 2016


Oracle VM Security Advisory OVMSA-2016-0151

The following updated rpms for Oracle VM 3.4 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
ovm-consoled-0.1-20.el6.2.noarch.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.4/SRPMS-updates/ovm-consoled-0.1-20.el6.2.src.rpm



Description of changes:

[0.1-20.el6.2]
- Fix ovm-consoled/socat accepting connections from any remote machine issue
   It was caused by a socat change of behavior,
   see: https://bugzilla.redhat.com/show_bug.cgi?id=1022063
   CVE-2016-5485
   Signed-off-by: Herbert van den Bergh <herbert.van.den.bergh at oracle.com>
   Reviewed-by: Zhigang Wang <zhigang.x.wang at oracle.com>
   Reviewed-by: Adnan Misherfi <adnan.misherfi at oracle.com> [bug 24811365]




More information about the Oraclevm-errata mailing list