Oval Definition:oval:org.opensuse.security:def:4824
Revision Date:2020-12-02Version:1
Title:Security update for libvirt (Important)
Description:

This update for libvirt provides the following fixes:

Security issue fixed:

- CVE-2019-3840: Fixed a null pointer dereference vulnerability in virJSONValueObjectHasKey function which could have resulted in a remote denial of service via the guest agent (bsc#1127458).

Other issues addressed:

- apparmor: reintroduce upstream lxc mount rules (bsc#1130129). - hook: encode incoming XML to UTF-8 before passing to lxml etree from string method (bsc#1123642). - supportconfig: collect rotated logs in /var/log/libvirt/* (bsc#1124667). - libxl: support Xen's max_grant_frames setting with maxGrantFrames attribute on the xenbus controller (bsc#1126325). - conf: added new 'xenbus' controller type - util: skip RDMA detection for non-PCI network devices (bsc#1112182). - qemu: don't use CAP_DAC_OVERRIDE capability if non-root (bsc#1125665). - qemu: fix issues related to restricted permissions on /dev/sev(bsc#1102604). - apparmor: add support for named profiles (bsc#1118952). - libxl: save current memory value after successful balloon (bsc#1120813). - apparmor: Fix ptrace rules. (bsc#1117058) - libxl: Add support for soft reset. (bsc#1081516) - libxl: Fix VM migration on busy hosts. (bsc#1108086) - qemu: Add support for SEV guests. (fate#325817) - util: Don't check for parallel iteration in hash-related functions. (bsc#1106420) - spec: Don't restart libvirt-guests when updating libvirt-client. (bsc#1104662) - Fix virNodeGetSEVInfo API crashing libvirtd on AMD SEV enabled hosts. (bsc#1108395)
Family:unixClass:patch
Status:Reference(s):1081516
1094781
1096745
1097525
1102604
1104662
1106420
1108086
1108395
1112182
1115015
1115022
1115025
1117058
1118952
1120813
1123642
1124667
1125665
1126325
1127458
1130129
1135855
1144348
1144352
1145579
1145580
1145582
1149742
1154091
1168994
1171496
1171497
1171498
1171499
1172356
1174543
1174910
1174913
1175626
1175656
1175686
1176590
1177950
1178591
CVE-2012-0804
CVE-2013-0240
CVE-2013-1799
CVE-2014-2497
CVE-2018-12019
CVE-2018-12020
CVE-2018-16843
CVE-2018-16844
CVE-2018-16845
CVE-2019-12269
CVE-2019-14491
CVE-2019-14492
CVE-2019-15939
CVE-2019-3840
CVE-2019-9511
CVE-2019-9513
CVE-2019-9516
CVE-2020-10713
CVE-2020-11863
CVE-2020-11864
CVE-2020-11865
CVE-2020-11866
CVE-2020-14361
CVE-2020-14362
CVE-2020-14374
CVE-2020-14375
CVE-2020-14376
CVE-2020-14377
CVE-2020-14378
CVE-2020-15663
CVE-2020-15664
CVE-2020-15669
CVE-2020-28368
SUSE-SU-2018:2243-1
SUSE-SU-2019:0936-1
SUSE-SU-2019:1576-1
SUSE-SU-2019:2309-1
SUSE-SU-2019:3192-1
SUSE-SU-2020:1621-1
SUSE-SU-2020:2159-1
SUSE-SU-2020:2398-1
SUSE-SU-2020:2552-1
SUSE-SU-2020:2626-1
SUSE-SU-2020:2767-1
SUSE-SU-2020:3416-1
Platform(s):SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise High Availability 12
SUSE Linux Enterprise High Availability 12 SP1
SUSE Linux Enterprise High Availability 12 SP2
SUSE Linux Enterprise High Availability 12 SP3
SUSE Linux Enterprise High Availability 12 SP4
SUSE Linux Enterprise High Availability 12 SP5
SUSE Linux Enterprise High Performance Computing 12 SP5
SUSE Linux Enterprise Live Patching 12
SUSE Linux Enterprise Module for Containers 12
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Server Applications 15
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Point of Sale 12 SP2-CLIENT
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12-LTSS
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Server for VMWare 11 SP3
SUSE Linux Enterprise Software Development Kit 11 SP3
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Software Development Kit 12 SP1
SUSE Linux Enterprise Software Development Kit 12 SP2
SUSE Linux Enterprise Workstation Extension 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE Linux Enterprise Workstation Extension 15 SP2
SUSE OpenStack Cloud 5
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • ghostscript-fonts-other-8.62-32.34.1 is installed
  • OR ghostscript-fonts-rus-8.62-32.34.1 is installed
  • OR ghostscript-fonts-std-8.62-32.34.1 is installed
  • OR ghostscript-library-8.62-32.34.1 is installed
  • OR ghostscript-omni-8.62-32.34.1 is installed
  • OR ghostscript-x11-8.62-32.34.1 is installed
  • OR libgimpprint-4.2.7-32.34.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND cvs-1.12.12-181 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • aaa_base-13.2+git20140911.61c1681-9 is installed
  • OR aaa_base-extras-13.2+git20140911.61c1681-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • alsa-1.0.27.2-11 is installed
  • OR libasound2-1.0.27.2-11 is installed
  • OR libasound2-32bit-1.0.27.2-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • DirectFB-1.7.1-6 is installed
  • OR lib++dfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-32bit-1.7.1-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • MozillaFirefox-52.9.0esr-109.38 is installed
  • OR MozillaFirefox-translations-52.9.0esr-109.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 is installed
  • AND haproxy-1.5.4-2.4.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP1 is installed
  • AND Package Information
  • libpcreposix0-8.39-7.1 is installed
  • OR pcre-8.39-7.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP2 is installed
  • AND python-requests-2.8.1-6.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP3 is installed
  • AND Package Information
  • cluster-md-kmp-default-4.4.73-5 is installed
  • OR dlm-kmp-default-4.4.73-5 is installed
  • OR gfs2-kmp-default-4.4.73-5 is installed
  • OR ocfs2-kmp-default-4.4.73-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP4 is installed
  • AND Package Information
  • cluster-md-kmp-default-4.12.14-94.41 is installed
  • OR dlm-kmp-default-4.12.14-94.41 is installed
  • OR gfs2-kmp-default-4.12.14-94.41 is installed
  • OR ocfs2-kmp-default-4.12.14-94.41 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP5 is installed
  • AND Package Information
  • corosync-2.3.6-9.13 is installed
  • OR libcorosync4-2.3.6-9.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
  • AND Package Information
  • audiofile-0.3.6-11.3 is installed
  • OR libaudiofile1-0.3.6-11.3 is installed
  • OR libaudiofile1-32bit-0.3.6-11.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Live Patching 12 is installed
  • AND Package Information
  • kgraft-patch-3_12_39-47-default-1-2.1 is installed
  • OR kgraft-patch-3_12_39-47-xen-1-2.1 is installed
  • OR kgraft-patch-SLE12_Update_4-1-2.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 is installed
  • AND Package Information
  • libvirt-4.0.0-9.16 is installed
  • OR libvirt-admin-4.0.0-9.16 is installed
  • OR libvirt-client-4.0.0-9.16 is installed
  • OR libvirt-daemon-4.0.0-9.16 is installed
  • OR libvirt-daemon-config-network-4.0.0-9.16 is installed
  • OR libvirt-daemon-config-nwfilter-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-interface-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-libxl-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-lxc-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-network-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-nodedev-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-nwfilter-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-qemu-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-secret-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-core-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-disk-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-iscsi-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-logical-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-mpath-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-rbd-4.0.0-9.16 is installed
  • OR libvirt-daemon-driver-storage-scsi-4.0.0-9.16 is installed
  • OR libvirt-daemon-hooks-4.0.0-9.16 is installed
  • OR libvirt-daemon-lxc-4.0.0-9.16 is installed
  • OR libvirt-daemon-qemu-4.0.0-9.16 is installed
  • OR libvirt-daemon-xen-4.0.0-9.16 is installed
  • OR libvirt-devel-4.0.0-9.16 is installed
  • OR libvirt-doc-4.0.0-9.16 is installed
  • OR libvirt-lock-sanlock-4.0.0-9.16 is installed
  • OR libvirt-nss-4.0.0-9.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • nginx-1.14.2-6.3 is installed
  • OR nginx-source-1.14.2-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Point of Sale 12 SP2-CLIENT is installed
  • AND Package Information
  • glib2-2.48.2-12.15 is installed
  • OR glib2-lang-2.48.2-12.15 is installed
  • OR glib2-tools-2.48.2-12.15 is installed
  • OR libgio-2_0-0-2.48.2-12.15 is installed
  • OR libgio-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libglib-2_0-0-2.48.2-12.15 is installed
  • OR libglib-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-32bit-2.48.2-12.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND Package Information
  • java-1_6_0-ibm-1.6.0_sr9.3-0.4.1 is installed
  • OR java-1_6_0-ibm-alsa-1.6.0_sr9.3-0.4.1 is installed
  • OR java-1_6_0-ibm-fonts-1.6.0_sr9.3-0.4.1 is installed
  • OR java-1_6_0-ibm-jdbc-1.6.0_sr9.3-0.4.1 is installed
  • OR java-1_6_0-ibm-plugin-1.6.0_sr9.3-0.4.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • MozillaFirefox-31.5.3esr-0.8.1 is installed
  • OR MozillaFirefox-translations-31.5.3esr-0.8.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for VMWare 11 SP3 is installed
  • AND
  • MozillaFirefox-31.5.3esr-0.8.1 is installed
  • OR MozillaFirefox-translations-31.5.3esr-0.8.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • NetworkManager-0.7.1_git20090811-3.28.2 is installed
  • OR NetworkManager-glib-0.7.1_git20090811-3.28.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 is installed
  • AND Package Information
  • openvpn-2.3.2-11.1 is installed
  • OR openvpn-auth-pam-plugin-2.3.2-11.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libxerces-c-3_1-3.1.1-4 is installed
  • OR libxerces-c-3_1-32bit-3.1.1-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND apache2-mod_perl-2.0.8-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND ant-1.9.4-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND apache-commons-httpclient-3.1-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_51-52_39-default-4-2.2 is installed
  • OR kgraft-patch-3_12_51-52_39-xen-4-2.2 is installed
  • OR kgraft-patch-SLE12_Update_11-4-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
  • AND Package Information
  • libX11-1.6.2-8 is installed
  • OR libX11-6-1.6.2-8 is installed
  • OR libX11-data-1.6.2-8 is installed
  • OR libX11-xcb1-1.6.2-8 is installed
  • OR libXfixes-5.0.1-7 is installed
  • OR libXfixes3-5.0.1-7 is installed
  • OR libXi-1.7.4-14 is installed
  • OR libXi6-1.7.4-14 is installed
  • OR libXrender-0.9.8-7 is installed
  • OR libXrender1-0.9.8-7 is installed
  • OR libXtst-1.2.2-7 is installed
  • OR libXtst6-1.2.2-7 is installed
  • OR libXv-1.0.10-7 is installed
  • OR libXv1-1.0.10-7 is installed
  • OR libXvMC-1.0.8-7 is installed
  • OR libXvMC1-1.0.8-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • xen-4.10.4_14-3.38 is installed
  • OR xen-devel-4.10.4_14-3.38 is installed
  • OR xen-libs-4.10.4_14-3.38 is installed
  • OR xen-tools-4.10.4_14-3.38 is installed
  • OR xen-tools-domU-4.10.4_14-3.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
  • AND Package Information
  • libxml2-2.7.6-0.34.1 is installed
  • OR libxml2-devel-2.7.6-0.34.1 is installed
  • OR libxml2-devel-32bit-2.7.6-0.34.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND Package Information
  • expat-2.0.1-88.38.1 is installed
  • OR libexpat-devel-2.0.1-88.38.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 is installed
  • AND libgssglue-devel-0.4-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP1 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-8 is installed
  • OR ImageMagick-devel-6.8.8.1-8 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-8 is installed
  • OR libMagick++-devel-6.8.8.1-8 is installed
  • OR perl-PerlMagick-6.8.8.1-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
  • AND Package Information
  • FastCGI-2.4.0-167 is installed
  • OR perl-FastCGI-2.4.0-167 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND enigmail-2.0.7-3.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND enigmail-2.0.11-3.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP2 is installed
  • AND Package Information
  • MozillaThunderbird-68.12.0-3.94 is installed
  • OR MozillaThunderbird-translations-common-68.12.0-3.94 is installed
  • OR MozillaThunderbird-translations-other-68.12.0-3.94 is installed
  • BACK