[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Please unblock libvirt 0.8.3-2



On Tue, Oct  5, 2010 at 09:16:07 +0200, Guido Günther wrote:

> diff -Nru libvirt-0.8.3/debian/libvirt-bin.NEWS libvirt-0.8.3/debian/libvirt-bin.NEWS
> --- libvirt-0.8.3/debian/libvirt-bin.NEWS	2010-08-06 23:06:40.000000000 +0200
> +++ libvirt-0.8.3/debian/libvirt-bin.NEWS	2010-09-29 13:29:13.000000000 +0200
> @@ -7,3 +7,19 @@
>    anything.
>  
>   -- Guido Günther <agx@sigxcpu.org>  Mon, 12 Jul 2010 19:58:35 +0200
> +
> +libvirt (0.8.3-2) unstable; urgency=low
> +
> +  Disk format probing is disabled now by default for security reasons
> +  (CVE-2010-2237). You need to explicitly add a driver type element to your
> +  disk devices in the domain XML:
> +
> +      <disk ...>
> +         <driver name='qemu' type='qcow2'/>
> +         ...
> +      </disk>
> +
> +  Alternatively you can reenable probing by setting allow_disk_format_probing=1
> +  in /etc/libvirt/qemu.conf but this is insecure.
> +
> + -- Guido Günther <agx@sigxcpu.org>  Wed, 29 Sep 2010 13:10:02 +0200

That seems backwards, I'd expect the new entry to go at the top?  Does
apt-listchanges handle that correctly?

Cheers,
Julien

Attachment: signature.asc
Description: Digital signature


Reply to: