Revision Date: | 2021-09-16 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 22 for SLE 12 SP4) (Important) |
Description: |
This update for the Linux Kernel 4.12.14-95_80 fixes several issues.
The following security issues were fixed:
- CVE-2021-3653: Fixed missing validation of the KVM `int_ctl` VMCB field that would have allowed a malicious L1 guest to enable AVIC support for the L2 guest (bsc#1189420). - CVE-2021-3656: Fixed KVM nSVM nested VMLOAD/VMSAVE interception (bsc#1189418). - CVE-2021-38198: Fixed KVM MMU to use the correct inherited permissions to get shadow page (bsc#1189278).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1189278 1189418 1189420 CVE-2021-3653 CVE-2021-3656 CVE-2021-38198
|
Platform(s): | SUSE Linux Enterprise Live Patching 12 SP4
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Live Patching 12 SP4 is installed AND kgraft-patch-4_12_14-95_80-default-3-2.2 is installed
|