Debian: DSA-4469-1: libvirt security update
Summary
Additionally the libvirt's cpu map was updated to make addressing
CVE-2018-3639, CVE-2017-5753, CVE-2017-5715, CVE-2018-12126,
CVE-2018-12127, CVE-2018-12130 and CVE-2019-11091 easier by supporting
the md-clear, ssbd, spec-ctrl and ibpb CPU features when picking CPU
models without having to fall back to host-passthrough.
For the stable distribution (stretch), these problems have been fixed in
version 3.0.0-4+deb9u4.
We recommend that you upgrade your libvirt packages.
For the detailed security status of libvirt please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/source-package/libvirt
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/