On 13/05/15 19:14, Tim Macy wrote:
Hi Tim,
oVirt is using the platform's qemu package.
So for CentOS and Fedora it's already there-
*
https://www.centosblog.com/critical-qemu-vulnerability-venom-affects-xen-...
*
http://koji.fedoraproject.org/koji/buildinfo?buildID=636796
Wed May 13 2015 Cole Robinson <crobinso(a)redhat.com> - 2:2.1.3-7
- CVE-2015-3456: (VENOM) fdc: out-of-bounds fifo buffer memory access (bz