group.of.nepali.translators team mailing list archive
-
group.of.nepali.translators team
-
Mailing list archive
-
Message #21329
[Bug 1744882] Re: Add SPEC_CTRL and IBRS changes
This bug was fixed in the package qemu - 2.0.0+dfsg-2ubuntu1.38
---------------
qemu (2.0.0+dfsg-2ubuntu1.38) trusty-security; urgency=medium
* SECURITY UPDATE: Add support for Spectre mitigations (LP: #1744882)
- debian/patches/CVE-2017-5715-1.patch: Lengthen X86CPUDefinition::
model_id in target-i386/cpu.c.
- debian/patches/CVE-2017-5715-2.patch: Add support for SPEC_CTRL MSR
in target-i386/cpu.h, target-i386/kvm.c, target-i386/machine.c.
- debian/patches/CVE-2017-5715-3pre1.patch: add FEAT_7_0_ECX and
FEAT_7_0_EDX in target-i386/cpu.c, target-i386/cpu.h.
- debian/patches/CVE-2017-5715-3.patch: Add spec-ctrl CPUID bit in
target-i386/cpu.c, target-i386/cpu.h.
- debian/patches/CVE-2017-5715-4.patch: Add FEAT_8000_0008_EBX CPUID
feature word in target-i386/cpu.c, target-i386/cpu.h.
- debian/patches/CVE-2017-5715-5.patch: Add new -IBRS versions of Intel
CPU models in target-i386/cpu.c.
- CVE-2017-5715
-- Marc Deslauriers <marc.deslauriers@xxxxxxxxxx> Thu, 01 Feb 2018
13:27:00 -0500
** Changed in: qemu (Ubuntu Trusty)
Status: In Progress => Fix Released
--
You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs
https://bugs.launchpad.net/bugs/1744882
Title:
Add SPEC_CTRL and IBRS changes
Status in qemu package in Ubuntu:
Triaged
Status in qemu source package in Trusty:
Fix Released
Status in qemu source package in Xenial:
Fix Released
Status in qemu source package in Artful:
Fix Released
Status in qemu source package in Bionic:
Triaged
Bug description:
The merge of [1] landed the spectre related changes for SPEC_CTRL and
IBRS to qemu 2.12
It is announced in [2] that there shall be a 2.11.1 with the backport that we intend to pick.
The security team can use this merge at [1] to work on backwards security updates.
For 18.04 (not yet released) the intention for now is to pick 2.11.1 once available.
[1]: https://github.com/qemu/qemu/commit/5cad8ca516011695a37d5be905292722b5249da8
[2]: https://www.qemu.org/2018/01/04/spectre/
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1744882/+subscriptions