{"affected":[{"ecosystem_specific":{"binaries":[{"qemu":"10.0.7-160000.1.1","qemu-SLOF":"10.0.7-160000.1.1","qemu-accel-qtest":"10.0.7-160000.1.1","qemu-arm":"10.0.7-160000.1.1","qemu-audio-alsa":"10.0.7-160000.1.1","qemu-audio-dbus":"10.0.7-160000.1.1","qemu-audio-jack":"10.0.7-160000.1.1","qemu-audio-oss":"10.0.7-160000.1.1","qemu-audio-pa":"10.0.7-160000.1.1","qemu-audio-pipewire":"10.0.7-160000.1.1","qemu-audio-spice":"10.0.7-160000.1.1","qemu-block-curl":"10.0.7-160000.1.1","qemu-block-dmg":"10.0.7-160000.1.1","qemu-block-iscsi":"10.0.7-160000.1.1","qemu-block-nfs":"10.0.7-160000.1.1","qemu-block-rbd":"10.0.7-160000.1.1","qemu-block-ssh":"10.0.7-160000.1.1","qemu-chardev-baum":"10.0.7-160000.1.1","qemu-chardev-spice":"10.0.7-160000.1.1","qemu-doc":"10.0.7-160000.1.1","qemu-extra":"10.0.7-160000.1.1","qemu-guest-agent":"10.0.7-160000.1.1","qemu-headless":"10.0.7-160000.1.1","qemu-hw-display-qxl":"10.0.7-160000.1.1","qemu-hw-display-virtio-gpu":"10.0.7-160000.1.1","qemu-hw-display-virtio-gpu-pci":"10.0.7-160000.1.1","qemu-hw-display-virtio-vga":"10.0.7-160000.1.1","qemu-hw-s390x-virtio-gpu-ccw":"10.0.7-160000.1.1","qemu-hw-usb-host":"10.0.7-160000.1.1","qemu-hw-usb-redirect":"10.0.7-160000.1.1","qemu-hw-usb-smartcard":"10.0.7-160000.1.1","qemu-img":"10.0.7-160000.1.1","qemu-ipxe":"10.0.7-160000.1.1","qemu-ivshmem-tools":"10.0.7-160000.1.1","qemu-ksm":"10.0.7-160000.1.1","qemu-lang":"10.0.7-160000.1.1","qemu-linux-user":"10.0.7-160000.1.1","qemu-microvm":"10.0.7-160000.1.1","qemu-ppc":"10.0.7-160000.1.1","qemu-pr-helper":"10.0.7-160000.1.1","qemu-s390x":"10.0.7-160000.1.1","qemu-seabios":"10.0.71.16.3_3_g3d33c746-160000.1.1","qemu-skiboot":"10.0.7-160000.1.1","qemu-spice":"10.0.7-160000.1.1","qemu-tools":"10.0.7-160000.1.1","qemu-ui-curses":"10.0.7-160000.1.1","qemu-ui-dbus":"10.0.7-160000.1.1","qemu-ui-gtk":"10.0.7-160000.1.1","qemu-ui-opengl":"10.0.7-160000.1.1","qemu-ui-spice-app":"10.0.7-160000.1.1","qemu-ui-spice-core":"10.0.7-160000.1.1","qemu-vgabios":"10.0.71.16.3_3_g3d33c746-160000.1.1","qemu-vhost-user-gpu":"10.0.7-160000.1.1","qemu-vmsr-helper":"10.0.7-160000.1.1","qemu-x86":"10.0.7-160000.1.1"}]},"package":{"ecosystem":"openSUSE:Leap 16.0","name":"qemu","purl":"pkg:rpm/opensuse/qemu&distro=openSUSE%20Leap%2016.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"10.0.7-160000.1.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"qemu":"10.0.7-160000.1.1","qemu-SLOF":"10.0.7-160000.1.1","qemu-accel-qtest":"10.0.7-160000.1.1","qemu-arm":"10.0.7-160000.1.1","qemu-audio-alsa":"10.0.7-160000.1.1","qemu-audio-dbus":"10.0.7-160000.1.1","qemu-audio-jack":"10.0.7-160000.1.1","qemu-audio-oss":"10.0.7-160000.1.1","qemu-audio-pa":"10.0.7-160000.1.1","qemu-audio-pipewire":"10.0.7-160000.1.1","qemu-audio-spice":"10.0.7-160000.1.1","qemu-block-curl":"10.0.7-160000.1.1","qemu-block-dmg":"10.0.7-160000.1.1","qemu-block-iscsi":"10.0.7-160000.1.1","qemu-block-nfs":"10.0.7-160000.1.1","qemu-block-rbd":"10.0.7-160000.1.1","qemu-block-ssh":"10.0.7-160000.1.1","qemu-chardev-baum":"10.0.7-160000.1.1","qemu-chardev-spice":"10.0.7-160000.1.1","qemu-doc":"10.0.7-160000.1.1","qemu-extra":"10.0.7-160000.1.1","qemu-guest-agent":"10.0.7-160000.1.1","qemu-headless":"10.0.7-160000.1.1","qemu-hw-display-qxl":"10.0.7-160000.1.1","qemu-hw-display-virtio-gpu":"10.0.7-160000.1.1","qemu-hw-display-virtio-gpu-pci":"10.0.7-160000.1.1","qemu-hw-display-virtio-vga":"10.0.7-160000.1.1","qemu-hw-s390x-virtio-gpu-ccw":"10.0.7-160000.1.1","qemu-hw-usb-host":"10.0.7-160000.1.1","qemu-hw-usb-redirect":"10.0.7-160000.1.1","qemu-hw-usb-smartcard":"10.0.7-160000.1.1","qemu-img":"10.0.7-160000.1.1","qemu-ipxe":"10.0.7-160000.1.1","qemu-ivshmem-tools":"10.0.7-160000.1.1","qemu-ksm":"10.0.7-160000.1.1","qemu-lang":"10.0.7-160000.1.1","qemu-linux-user":"10.0.7-160000.1.1","qemu-microvm":"10.0.7-160000.1.1","qemu-ppc":"10.0.7-160000.1.1","qemu-pr-helper":"10.0.7-160000.1.1","qemu-s390x":"10.0.7-160000.1.1","qemu-seabios":"10.0.71.16.3_3_g3d33c746-160000.1.1","qemu-skiboot":"10.0.7-160000.1.1","qemu-spice":"10.0.7-160000.1.1","qemu-tools":"10.0.7-160000.1.1","qemu-ui-curses":"10.0.7-160000.1.1","qemu-ui-dbus":"10.0.7-160000.1.1","qemu-ui-gtk":"10.0.7-160000.1.1","qemu-ui-opengl":"10.0.7-160000.1.1","qemu-ui-spice-app":"10.0.7-160000.1.1","qemu-ui-spice-core":"10.0.7-160000.1.1","qemu-vgabios":"10.0.71.16.3_3_g3d33c746-160000.1.1","qemu-vhost-user-gpu":"10.0.7-160000.1.1","qemu-vmsr-helper":"10.0.7-160000.1.1","qemu-x86":"10.0.7-160000.1.1"}]},"package":{"ecosystem":"openSUSE:Leap 16.0","name":"qemu-linux-user","purl":"pkg:rpm/opensuse/qemu-linux-user&distro=openSUSE%20Leap%2016.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"10.0.7-160000.1.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for qemu fixes the following issues:\n\nUpdate to version 10.0.7.\n\nSecurity issues fixed:\n\n- CVE-2025-12464: stack-based buffer overflow in the e1000 network device operations can be exploited by a malicious\n  guest user to crash the QEMU process on the host (bsc#1253002).\n- CVE-2025-11234: use-after-free in WebSocket handshake operations can be exploited by a malicious client with network\n  access to the VNC WebSocket port to cause a denial-of-service (bsc#1250984).\n\nOther updates and bugfixes:\n\n- Version 10.0.7:\n  * kvm: Fix kvm_vm_ioctl() and kvm_device_ioctl() return value\n  * docs/devel: Update URL for make-pullreq script\n  * target/arm: Fix assert on BRA.\n  * hw/aspeed/{xdma, rtc, sdhci}: Fix endianness to DEVICE_LITTLE_ENDIAN\n  * hw/core/machine: Provide a description for aux-ram-share property\n  * hw/pci: Make msix_init take a uint32_t for nentries\n  * block/io_uring: avoid potentially getting stuck after resubmit at the end of ioq_submit()\n  * block-backend: Fix race when resuming queued requests\n  * ui/vnc: Fix qemu abort when query vnc info\n  * chardev/char-pty: Do not ignore chr_write() failures\n  * hw/display/exynos4210_fimd: Account for zero length in fimd_update_memory_section()\n  * hw/arm/armv7m: Disable reentrancy guard for v7m_sysreg_ns_ops MRs\n  * hw/arm/aspeed: Fix missing SPI IRQ connection causing DMA interrupt failure\n  * migration: Fix transition to COLO state from precopy\n  * Full backport list: https://lore.kernel.org/qemu-devel/1765037524.347582.2700543.nullmailer@tls.msk.ru/\n\n- Version 10.0.6:\n  * linux-user/microblaze: Fix little-endianness binary\n  * target/hppa: correct size bit parity for fmpyadd\n  * target/i386: user: do not set up a valid LDT on reset\n  * async: access bottom half flags with qatomic_read\n  * target/i386: fix x86_64 pushw op\n  * i386/tcg/smm_helper: Properly apply DR values on SMM entry / exit\n  * i386/cpu: Prevent delivering SIPI during SMM in TCG mode\n  * i386/kvm: Expose ARCH_CAP_FB_CLEAR when invulnerable to MDS\n  * target/i386: Fix CR2 handling for non-canonical addresses\n  * block/curl.c: Use explicit long constants in curl_easy_setopt calls\n  * pcie_sriov: Fix broken MMIO accesses from SR-IOV VFs\n  * target/riscv: rvv: Fix vslide1[up|down].vx unexpected result when XLEN2 and SEWd\n  * target/riscv: Fix ssamoswap error handling\n  * Full backport list: https://lore.kernel.org/qemu-devel/1761022287.744330.6357.nullmailer@tls.msk.ru/\n\n- Version 10.0.5:\n  * tests/functional/test_aarch64_sbsaref_freebsd: Fix the URL of the ISO image\n  * tests/functional/test_ppc_bamboo: Replace broken link with working assets\n  * physmem: Destroy all CPU AddressSpaces on unrealize\n  * memory: New AS helper to serialize destroy+free\n  * include/system/memory.h: Clarify address_space_destroy() behaviour\n  * migration: Fix state transition in postcopy_start() error handling\n  * target/riscv: rvv: Modify minimum VLEN according to enabled vector extensions\n  * target/riscv: rvv: Replace checking V by checking Zve32x\n  * target/riscv: Fix endianness swap on compressed instructions\n  * hw/riscv/riscv-iommu: Fixup PDT Nested Walk\n  * Full backport list: https://lore.kernel.org/qemu-devel/1759986125.676506.643525.nullmailer@tls.msk.ru/\n\n- [openSUSE][RPM]: really fix *-virtio-gpu-pci dependency on ARM (bsc#1254286).\n- [openSUSE][RPM] spec: make glusterfs support conditional (bsc#1254494).\n","id":"openSUSE-SU-2025:20171-1","modified":"2025-12-18T12:42:03Z","published":"2025-12-18T12:42:03Z","references":[{"type":"ADVISORY","url":null},{"type":"REPORT","url":"https://bugzilla.suse.com/1230042"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250984"},{"type":"REPORT","url":"https://bugzilla.suse.com/1253002"},{"type":"REPORT","url":"https://bugzilla.suse.com/1254286"},{"type":"REPORT","url":"https://bugzilla.suse.com/1254494"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-11234"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-12464"}],"related":["CVE-2025-11234","CVE-2025-12464"],"summary":"Security update for qemu","upstream":["CVE-2025-11234","CVE-2025-12464"]}