SynopsisThe remote OracleVM host is missing a security update.
DescriptionThe remote OracleVM system is missing necessary patches to address critical security updates :
- kvm-virtio-error-out-if-guest-exceeds-virtqueue-size.pat ch [bz#1359724]
- Resolves: bz#1359724 (EMBARGOED CVE-2016-5403 qemu-kvm:
Qemu: virtio: unbounded memory allocation on host via guest leading to DoS [rhel-6.8.z])
- kvm-vga-add-sr_vbe-register-set.patch [bz#1347192]
- Resolves: bz#1347192 (Regression from CVE-2016-3712:
windows installer fails to start)
SolutionUpdate the affected qemu-img package.