[CLSA-2026:1779581056] qemu-kvm: Fix of CVE-2025-11234
Type:
security
Severity:
Important
Release date:
2026-05-24 00:04:20 UTC
Description:
- CVE-2025-11234: fix use-after-free in QIOChannelWebsock handshake by tracking the handshake GSource id and removing it on close/finalize
Updated packages:
  • qemu-guest-agent-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:2b1fad2e8fb7c42fe4d7a77b0a7849e1c28d82d99797cf2ca2829b4203e6da66
  • qemu-img-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:a1ddec73f6e2ccbd46c91af5aca34463debfb1d51c1adb41bbcf4eb7f8ca0d9d
  • qemu-kvm-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:716407395be389fd476ea7566be872b1d7fc638bb4769b353057c9a9102f5f81
  • qemu-kvm-audio-dbus-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:4b9177fb811ab2073681cf34668ca2fb2ba2d9cd15f69ed021c233f65b3616ea
  • qemu-kvm-audio-pa-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:cf3b501ded06a21ad1d16a5938bf85c16616b6166ef5757475b4fa132b43d266
  • qemu-kvm-block-blkio-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:26a85114cba8369d67d9fc470a282146b01a978049d6b5d1b3d2cdc2e5a6330e
  • qemu-kvm-block-curl-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:887d41cf4d56093a4637189d35a763200e5646b568fa5076e881f5e40b030eef
  • qemu-kvm-block-rbd-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:9330c08c5400840ebe7e07b30f1858de660b9a64e6b57f321c5cb3c6e3d64cdf
  • qemu-kvm-common-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:cc2e26620802d86cb374e81ec51361ecb897da4890bb72fb704540e1db78a2d0
  • qemu-kvm-core-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:8d4d6d47158e2ae2458854871a4681d8571e83db26ac789418cca33770b94885
  • qemu-kvm-device-display-virtio-gpu-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:78ba6a533fc713f2a50ab833fb752b20dab953af59c3721d4f6bb398ff05e802
  • qemu-kvm-device-display-virtio-gpu-pci-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:5a26b1308e16a091c99ee16c31152d753401f534bbf7bf4f67ff0e58c0af0990
  • qemu-kvm-device-display-virtio-vga-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:cc6bc1f68dce330e1acfd91239d117c56bbdadc19baa70c305bfe528889685d1
  • qemu-kvm-device-usb-host-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:04d78c4614afebaa8dd01ad097c6032d3d4d64d8d7005b22becc3a126f8ed695
  • qemu-kvm-device-usb-redirect-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:4dcf9171cfddeab01b29e1d9722e0889e9af6b720e373a717d6137008606fb47
  • qemu-kvm-docs-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:14e4e468404421bb9de90509c55997f9567da02d8383636edfc00e5358e214e0
  • qemu-kvm-tests-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:50e9141294c0722304b5049e6d69d6031db11d4911df74080f7f5d7d26a5f416
  • qemu-kvm-tools-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:bcbc25e0c469aacd51352410e3c973687fd0e9887110dee1f366fac7e3a2a381
  • qemu-kvm-ui-dbus-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:a2f4ea5eec74d170146fae1add878e347dbe47e581b74470fe9e9e858362690f
  • qemu-kvm-ui-egl-headless-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:6f61ef8f5dac6e82132b0e0ab067af9aa3f02d65d76238abe1f81f3a2370a0c7
  • qemu-kvm-ui-opengl-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:c0d652208eb8ee1c2b1a1d277b2bcfc9fdb53efdc692f90b6cb957c5d44cdb7d
  • qemu-pr-helper-9.1.0-15.el9_6.9.alma.1.tuxcare.els1.x86_64.rpm
    sha:3b2d78ca37a48af80a7ad5263825ed2a38bdf3b2178f0aa06708de98240e80a0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.