On Mon, Apr 28, 2014 at 02:09:50PM +0100, Peter Maydell wrote: > On 28 April 2014 14:08, Michael S. Tsirkin <m...@redhat.com> wrote: > > Incoming migration with stellaris_enet is unsafe. > > It's being reworked, but for now, simply block it > > since noone is using it anyway. > > Block outgoing migration for good measure. > > > > CVE-2013-4532 > > > > Signed-off-by: Michael S. Tsirkin <m...@redhat.com> > > --- > > hw/net/stellaris_enet.c | 11 ++++++++++- > > 1 file changed, 10 insertions(+), 1 deletion(-) > > This is going to clash with the stellaris patches > I just sent out, so I don't really want to apply it > to master.
Yes 5/5 is just for stable, sorry about the confusion. > You could apply it just to stable if you > like, I suppose, but personally I wouldn't bother. > > thanks > -- PMM I'll leave that for mdroth to decide - he was the one that reported the original CVE. -- MST