← Back to team overview

group.of.nepali.translators team mailing list archive

[Bug 1744882] Re: Add SPEC_CTRL and IBRS changes

 

This bug was fixed in the package qemu - 2.0.0+dfsg-2ubuntu1.38

---------------
qemu (2.0.0+dfsg-2ubuntu1.38) trusty-security; urgency=medium

  * SECURITY UPDATE: Add support for Spectre mitigations (LP: #1744882)
    - debian/patches/CVE-2017-5715-1.patch: Lengthen X86CPUDefinition::
      model_id in target-i386/cpu.c.
    - debian/patches/CVE-2017-5715-2.patch: Add support for SPEC_CTRL MSR
      in target-i386/cpu.h, target-i386/kvm.c, target-i386/machine.c.
    - debian/patches/CVE-2017-5715-3pre1.patch: add FEAT_7_0_ECX and
      FEAT_7_0_EDX in target-i386/cpu.c, target-i386/cpu.h.
    - debian/patches/CVE-2017-5715-3.patch: Add spec-ctrl CPUID bit in
      target-i386/cpu.c, target-i386/cpu.h.
    - debian/patches/CVE-2017-5715-4.patch: Add FEAT_8000_0008_EBX CPUID
      feature word in target-i386/cpu.c, target-i386/cpu.h.
    - debian/patches/CVE-2017-5715-5.patch: Add new -IBRS versions of Intel
      CPU models in target-i386/cpu.c.
    - CVE-2017-5715

 -- Marc Deslauriers <marc.deslauriers@xxxxxxxxxx>  Thu, 01 Feb 2018
13:27:00 -0500

** Changed in: qemu (Ubuntu Trusty)
       Status: In Progress => Fix Released

-- 
You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs
https://bugs.launchpad.net/bugs/1744882

Title:
  Add SPEC_CTRL and IBRS changes

Status in qemu package in Ubuntu:
  Triaged
Status in qemu source package in Trusty:
  Fix Released
Status in qemu source package in Xenial:
  Fix Released
Status in qemu source package in Artful:
  Fix Released
Status in qemu source package in Bionic:
  Triaged

Bug description:
  The merge of [1] landed the spectre related changes for SPEC_CTRL and
  IBRS to qemu 2.12

  It is announced in [2] that there shall be a 2.11.1 with the backport that we intend to pick.
  The security team can use this merge at [1] to work on backwards security updates.
  For 18.04 (not yet released) the intention for now is to pick 2.11.1 once available.

  [1]: https://github.com/qemu/qemu/commit/5cad8ca516011695a37d5be905292722b5249da8
  [2]: https://www.qemu.org/2018/01/04/spectre/

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1744882/+subscriptions