[Ubuntu-translations-coordinators] [Bug 1449062] [NEW] qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

2016-08-07 Thread Launchpad Bug Tracker
*** This bug is a security vulnerability *** You have been subscribed to a public security bug: Reported via private E-mail from Richard W.M. Jones. Turns out qemu image parser is not hardened against malicious input and can be abused to allocated an arbitrary amount of memory and/or dump a lot

[Ubuntu-translations-coordinators] [Bug 1449062] [NEW] qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

2016-08-07 Thread Launchpad Bug Tracker
*** This bug is a security vulnerability *** You have been subscribed to a public security bug: Reported via private E-mail from Richard W.M. Jones. Turns out qemu image parser is not hardened against malicious input and can be abused to allocated an arbitrary amount of memory and/or dump a lot

[Ubuntu-translations-coordinators] [Bug 1449062] Re: qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

2016-08-07 Thread Mathew Hodson
** Project changed: cinder => ubuntu-translations ** No longer affects: ubuntu-translations ** Project changed: glance => ubuntu-translations ** Changed in: ubuntu-translations Milestone: ongoing => None ** No longer affects: ubuntu-translations -- You received this bug notification becau