Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2020:4162 - Security Advisory
Issued:
2020-10-01
Updated:
2020-10-01

RHSA-2020:4162 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: qemu-kvm-ma security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for qemu-kvm-ma is now available for Red Hat Enterprise Linux 7.6 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Kernel-based Virtual Machine (KVM) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm-ma packages provide the user-space component for running virtual machines that use KVM on the IBM z Systems, IBM Power, and 64-bit ARM architectures.

Security Fix(es):

  • QEMU: usb: out-of-bounds r/w access issue while processing usb packets (CVE-2020-14364)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

After installing this update, shut down all running virtual machines. Once all virtual machines have shut down, start them again for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 7.6 s390x
  • Red Hat Enterprise Linux for Power, big endian - Extended Update Support 7.6 ppc64
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 7.6 ppc64le
  • Red Hat Enterprise Linux for ARM 64 7 aarch64
  • Red Hat Enterprise Linux for Power 9 7 ppc64le
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 7.6 ppc64le
  • Red Hat Enterprise Linux for IBM System z (Structure A) 7 s390x

Fixes

  • BZ - 1869201 - CVE-2020-14364 QEMU: usb: out-of-bounds r/w access issue while processing usb packets

CVEs

  • CVE-2020-14364

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 7.6

SRPM
qemu-kvm-ma-2.12.0-18.el7_6.7.src.rpm SHA-256: d63f07fae8b1747e2d45560c01ce6bae73e417d14e186b1bdfd0e529194084d2
s390x
qemu-img-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: 54ead75eaad97c7f4f11814b993669a0779a364a0b6cd90eae21cbf6e1ee1adc
qemu-kvm-common-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: d382effe2c71dca711bdad9d5f814e17f53cecf6316ba7f3ef4e5ad2f59ddb14
qemu-kvm-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: 3606e317d3ac88b42a7d0d53ae73d7da984888a30d8ba370810dd928d82f8567
qemu-kvm-ma-debuginfo-2.12.0-18.el7_6.7.s390x.rpm SHA-256: d370298477ff9caa9b606cc7428c0e1d190ab1eae119a73893fd9325da0d2a8f
qemu-kvm-tools-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: ae7d6526e60b33440ca27986bd97443f4f532953da451652853c92a801a7cddf

Red Hat Enterprise Linux for Power, big endian - Extended Update Support 7.6

SRPM
qemu-kvm-ma-2.12.0-18.el7_6.7.src.rpm SHA-256: d63f07fae8b1747e2d45560c01ce6bae73e417d14e186b1bdfd0e529194084d2
ppc64
qemu-img-ma-2.12.0-18.el7_6.7.ppc64.rpm SHA-256: bf8ff582fb55dda3cfb4bd76df0e34affd7d07b310bd5813e45a95860bbc2da7
qemu-kvm-ma-debuginfo-2.12.0-18.el7_6.7.ppc64.rpm SHA-256: a41d9778235b2b40fbf62b266c02db346c0401fc0b005db72c9e4ba04d4b54cb

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 7.6

SRPM
qemu-kvm-ma-2.12.0-18.el7_6.7.src.rpm SHA-256: d63f07fae8b1747e2d45560c01ce6bae73e417d14e186b1bdfd0e529194084d2
ppc64le
qemu-img-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 9d1f82ca7ef7b05fc85f28effc695900c8f7b96a2303c077e7d0e9c9775ff596
qemu-kvm-common-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 63e49c6ee98d8cc4a6a7cf4a9a5dfdf4ea5eb4c9dafcac23e439a0cc9183bc8f
qemu-kvm-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 36c54b6f0cc3c86126485c6be4a6a42671351f19e5bd05a5968c72779d656331
qemu-kvm-ma-debuginfo-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 07f5601af6b9a67076ee3972b9bdc663182c610ac0770af96c43e7e62bf1f79a
qemu-kvm-tools-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 437d4bb0b34fb436f55f823b0841366a562084caf217961725cc468551bd93cc

Red Hat Enterprise Linux for ARM 64 7

SRPM
qemu-kvm-ma-2.12.0-18.el7_6.7.src.rpm SHA-256: d63f07fae8b1747e2d45560c01ce6bae73e417d14e186b1bdfd0e529194084d2
aarch64
qemu-img-ma-2.12.0-18.el7_6.7.aarch64.rpm SHA-256: e3fe2fc92668af13a9e2ca0ea8013cae8475f3689beaee23911d314e70171362
qemu-kvm-common-ma-2.12.0-18.el7_6.7.aarch64.rpm SHA-256: dda61490b2ab24d2132bba55c27bffc31169b38c0a4ca1fee79264dd288d66c4
qemu-kvm-ma-2.12.0-18.el7_6.7.aarch64.rpm SHA-256: 637d1426487595ba94a56027ab84606883c83ab57c8ddd30c96d3e491f816c95
qemu-kvm-ma-debuginfo-2.12.0-18.el7_6.7.aarch64.rpm SHA-256: 3c715a69148aa129492fb6fa924e0d6944540b10cd4b5ceb475ed72a2f713cb0
qemu-kvm-tools-ma-2.12.0-18.el7_6.7.aarch64.rpm SHA-256: 6862d7095d96d4c4d1e66fcc4df408b2bffeaba6535803b0bf5da79764e74a59

Red Hat Enterprise Linux for Power 9 7

SRPM
qemu-kvm-ma-2.12.0-18.el7_6.7.src.rpm SHA-256: d63f07fae8b1747e2d45560c01ce6bae73e417d14e186b1bdfd0e529194084d2
ppc64le
qemu-img-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 9d1f82ca7ef7b05fc85f28effc695900c8f7b96a2303c077e7d0e9c9775ff596
qemu-kvm-common-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 63e49c6ee98d8cc4a6a7cf4a9a5dfdf4ea5eb4c9dafcac23e439a0cc9183bc8f
qemu-kvm-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 36c54b6f0cc3c86126485c6be4a6a42671351f19e5bd05a5968c72779d656331
qemu-kvm-ma-debuginfo-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 07f5601af6b9a67076ee3972b9bdc663182c610ac0770af96c43e7e62bf1f79a
qemu-kvm-tools-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 437d4bb0b34fb436f55f823b0841366a562084caf217961725cc468551bd93cc

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 7.6

SRPM
qemu-kvm-ma-2.12.0-18.el7_6.7.src.rpm SHA-256: d63f07fae8b1747e2d45560c01ce6bae73e417d14e186b1bdfd0e529194084d2
ppc64le
qemu-img-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 9d1f82ca7ef7b05fc85f28effc695900c8f7b96a2303c077e7d0e9c9775ff596
qemu-kvm-common-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 63e49c6ee98d8cc4a6a7cf4a9a5dfdf4ea5eb4c9dafcac23e439a0cc9183bc8f
qemu-kvm-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 36c54b6f0cc3c86126485c6be4a6a42671351f19e5bd05a5968c72779d656331
qemu-kvm-ma-debuginfo-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 07f5601af6b9a67076ee3972b9bdc663182c610ac0770af96c43e7e62bf1f79a
qemu-kvm-tools-ma-2.12.0-18.el7_6.7.ppc64le.rpm SHA-256: 437d4bb0b34fb436f55f823b0841366a562084caf217961725cc468551bd93cc

Red Hat Enterprise Linux for IBM System z (Structure A) 7

SRPM
qemu-kvm-ma-2.12.0-18.el7_6.7.src.rpm SHA-256: d63f07fae8b1747e2d45560c01ce6bae73e417d14e186b1bdfd0e529194084d2
s390x
qemu-img-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: 54ead75eaad97c7f4f11814b993669a0779a364a0b6cd90eae21cbf6e1ee1adc
qemu-kvm-common-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: d382effe2c71dca711bdad9d5f814e17f53cecf6316ba7f3ef4e5ad2f59ddb14
qemu-kvm-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: 3606e317d3ac88b42a7d0d53ae73d7da984888a30d8ba370810dd928d82f8567
qemu-kvm-ma-debuginfo-2.12.0-18.el7_6.7.s390x.rpm SHA-256: d370298477ff9caa9b606cc7428c0e1d190ab1eae119a73893fd9325da0d2a8f
qemu-kvm-tools-ma-2.12.0-18.el7_6.7.s390x.rpm SHA-256: ae7d6526e60b33440ca27986bd97443f4f532953da451652853c92a801a7cddf

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility