-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Tue, 22 Dec 2009 20:57:32 +0100 Source: kvm Binary: kvm kvm-source Architecture: source all i386 Version: 72+dfsg-5~lenny4 Distribution: stable-security Urgency: high Maintainer: Jan Lübbe <jluebbe@debian.org> Changed-By: Giuseppe Iuculano <iuculano@debian.org> Description: kvm - Full virtualization on x86 hardware kvm-source - Source for the KVM driver Closes: 557739 562075 562076 Changes: kvm (72+dfsg-5~lenny4) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Fixed CVE-2009-3638: Integer overflow in the kvm_dev_ioctl_get_supported_cpuid function (Closes: #562076) * Fixed CVE-2009-3722: denial of service (trap) on the host OS via a crafted application. (Closes: #557739) * Fixed CVE-2009-4031: denial of service (increased scheduling latency) on the host OS via unspecified manipulations related to SMP support. (Closes: #562075) Checksums-Sha1: 2ddbf4c1b4f3365c641d1e1d3d55693836e010d1 1349 kvm_72+dfsg-5~lenny4.dsc 9d8961d1f6a1e37578cbcc19ea72db400946a0c0 42354 kvm_72+dfsg-5~lenny4.diff.gz cbc4f7f6dbcebb407319211db7733a371a99cb40 158524 kvm-source_72+dfsg-5~lenny4_all.deb 30e5aa546939b82009db2ecb7c25691863cb81cf 1030580 kvm_72+dfsg-5~lenny4_i386.deb Checksums-Sha256: 5eaf406ba9acc7abbdcca1f9b44cebbf5aba248885a2e5d294ddc1bf37b0d6d4 1349 kvm_72+dfsg-5~lenny4.dsc db01fe69530696e099f81df1473e780d801b788a7726f123b9ea2afb413b22da 42354 kvm_72+dfsg-5~lenny4.diff.gz c1d63147ccd5b6733bed998ec796dddaae45c7efc484af1d265f9c8cd2c0f875 158524 kvm-source_72+dfsg-5~lenny4_all.deb 2be750e3d3d0cfd2af11f0b65b966c96379f27193d87608e4d3147dcf448c057 1030580 kvm_72+dfsg-5~lenny4_i386.deb Files: 95ea1b5511954549694e198b838e308c 1349 misc optional kvm_72+dfsg-5~lenny4.dsc 12a3490ebcba2c1e9aa2a86140eaa2e3 42354 misc optional kvm_72+dfsg-5~lenny4.diff.gz 70f46f694afd3169ce16a4c84ee32eb6 158524 misc optional kvm-source_72+dfsg-5~lenny4_all.deb ffdfcfce508514828bf455183e45f581 1030580 misc optional kvm_72+dfsg-5~lenny4_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAksx9ZsACgkQNxpp46476arv7ACdHtOELjAFjKidmw07hxndjwDC J4MAoInBxw0zIJh9cDyIHepGlkLRCk28 =/BIJ -----END PGP SIGNATURE----- Accepted: kvm-source_72+dfsg-5~lenny4_all.deb to main/k/kvm/kvm-source_72+dfsg-5~lenny4_all.deb kvm_72+dfsg-5~lenny4.diff.gz to main/k/kvm/kvm_72+dfsg-5~lenny4.diff.gz kvm_72+dfsg-5~lenny4.dsc to main/k/kvm/kvm_72+dfsg-5~lenny4.dsc kvm_72+dfsg-5~lenny4_i386.deb to main/k/kvm/kvm_72+dfsg-5~lenny4_i386.deb