-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-4566-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso November 12, 2019 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : qemu Debian Bug : 944623 This update for QEMU, a fast processor emulator, backports support to passthrough the pschange-mc-no CPU flag. The virtualised MSR seen by a guest is set to show the bug as fixed, allowing to disable iTLB Multihit mitigations in nested hypervisors (cf. DSA 4564-1). For the stable distribution (buster), this problem has been fixed in version 1:3.1+dfsg-8+deb10u3. We recommend that you upgrade your qemu packages. For the detailed security status of qemu please refer to its security tracker page at: https://security-tracker.debian.org/tracker/qemu Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAl3LKylfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND z0RaQA/+JeG27QXBa7STvukXHeG/er/zZ/nI8bAqn8eUBZcCKqqGhYQLn3+Sf1cy 9TbO4QnHtm586paa7jaW9xcC62K7Vk5SIqPCZilS4Y8lu+84LZPmcf02/uJYL4SJ 5vkYsH178lag/yeJVzW8R6lH+44voIzNxLFPTnHQZpTnLV+5HjhjMacryoJbtb8r nqbGr0ww2gO/+moTwm+yFzxTvQEQm5LTnxK5aAWsCWcK+iyCW518rGBC7+M5K5O2 DDePVPj/X76bMGoWQuKlDhr2W9KAoNuJuDrct7xIxnVhh0omMt9iNmiWEnU93ASL QA82Fo67qMWZNalJ5huZDNPJmCemnzYU58p48HXJ9plZdUoGs71Fyxd9cVjVc8v2 nWuUs9bVy/o7zwOYlqowIzKBmybfIyEst0YOCsr3nyUP5o0XYQl4tfe/fP8eob3x a1tsRGAfLOlqSPzQucNWAczOvmjlfVa6dF4ctBFSXXD8O5K48RjHJWSmezvSjXKa VHoPvwd9y8Q1bCGfGSO9ck2KN1l17Ob6FQUjTjVmCfumcb2fQFmdofx2oel8iq86 MGVMEwJQfMijXuoHQjg/xnxao3hMFUswxw37zv/7EDWKgyCj0k+GhHGypHX6ZCC1 R4RXMuur3jl9DpO4ZADjgtQPiuAzl1QxlLzJ5SzZ7eaubo+Kmi0@8l -----END PGP SIGNATURE-----