5
0
mirror of git://git.proxmox.com/git/pve-qemu.git synced 2025-02-01 09:47:42 +03:00
Fiona Ebner b242e7f196 backport fix for CVE-2024-4467
This prevents that malicious qcow2 images can already cause bad
effects if being queried via 'qemu-img info'.

For Proxmox VE, this is an additional safe guard, as currently it
directly creates and manages the qcow2 images used by VMs and does not
allow unprivileged users to import them.

Reference: https://access.redhat.com/security/cve/cve-2024-4467

Signed-off-by: Fiona Ebner <f.ebner@proxmox.com>
2024-07-03 13:50:07 +02:00
..
2024-07-03 13:50:07 +02:00
2024-07-01 14:02:00 +02:00
2017-04-05 11:39:09 +02:00
2017-04-05 11:39:09 +02:00
2017-04-05 11:40:20 +02:00
2017-04-05 11:39:09 +02:00
2017-04-05 11:39:09 +02:00