RHSA Number: RHSA-2017:0328 Type/Severity: Important Topic: qemu-kvm-rhev security update for Red Hat OpenStack Platform 10.0 (Newton) Description: Multiple security issues in qemu-kvm-rhev, including out-of-bounds access and potential arbitrary code execution due to issues in VGA emulation for Cirrus CLGD 54xx. CVEs: - CVE-2017-2615: Out-of-bounds access during VGA data copying. - CVE-2017-2620: Potential arbitrary code execution through cirrus_bitblt_cputovideo. Solution: Apply the security update and restart all running virtual machines. Affected Products: Red Hat OpenStack 10 x86_64 References: Security Classification and Red Hat Security Contact