[arch-security] QEMU venom vulnerability

Noel Kuntze noel at familie-kuntze.de
Wed May 13 22:17:23 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello,

pacman -Qii qemu shows me that the package has been built
 Mo 13 Apr 2015 23:27:05 CEST.
As such, it is vulnerable.

Mit freundlichen Grüßen/Kind Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658

Am 14.05.2015 um 00:13 schrieb Mark Lee:
> To All,
>
> After the disclosure of the venom vulnerability in QEMU today; I'm wondering
> if the Arch version of qemu is vulnerable. The disclosure indicated that
> distros have been notified since 4/30/2015.
>
> Regards,
> Mark

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=bkol
-----END PGP SIGNATURE-----


More information about the arch-security mailing list