]> git.ipfire.org Git - thirdparty/libvirt.git/commitdiff
Add news item for sVirt CVE fix
authorDaniel P. Berrangé <berrange@redhat.com>
Thu, 1 Jul 2021 11:38:45 +0000 (12:38 +0100)
committerDaniel P. Berrangé <berrange@redhat.com>
Thu, 1 Jul 2021 12:59:42 +0000 (13:59 +0100)
Reviewed-by: Andrea Bolognani <abologna@redhat.com>
Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
NEWS.rst

index 935b0d0aada2f5c99ec851fe3f7c3ed90e2c95fe..2fbbd2cd3cc50494b8703039e1f01aca3234e2d3 100644 (file)
--- a/NEWS.rst
+++ b/NEWS.rst
@@ -11,6 +11,14 @@ For a more fine-grained view, use the `git log`_.
 v7.5.0 (unreleased)
 ===================
 
+* **Security**
+
+  * svirt: fix MCS label generation (CVE-2021-3631)
+
+    A flaw in the way MCS labels were generated could result in a VM's
+    resource not being fully protected from access by another VM were
+    it to be compromised. https://gitlab.com/libvirt/libvirt/-/issues/153
+
 * **Removed features**
 
   * xen: Remove support for Xen < 4.9