Oval Definition:oval:org.opensuse.security:def:51978
Revision Date:2021-11-09Version:1
Title:Security update for qemu (Important)
Description:

This update for qemu fixes the following issues:

Security issues fixed:

- Fix heap use-after-free in virtio_net_receive_rcu (bsc#1189938, CVE-2021-3748) - Fix out-of-bounds write in UAS (USB Attached SCSI) device emulation (bsc#1189702, CVE-2021-3713) - usbredir: free call on invalid pointer in bufp_alloc (bsc#1189145, CVE-2021-3682) - NULL pointer dereference in ESP (bsc#1180433, CVE-2020-35504) (bsc#1180434, CVE-2020-35505) (bsc#1180435, CVE-2020-35506) - NULL pointer dereference issue in megasas-gen2 host bus adapter (bsc#1180432, CVE-2020-35503) - eepro100: stack overflow via infinite recursion (bsc#1182651, CVE-2021-20255) - usb: unbounded stack allocation in usbredir (bsc#1186012, CVE-2021-3527)
Family:unixClass:patch
Status:Reference(s):1013712
1081947
1082293
1085196
1106214
1118832
1119396
1121197
1122417
1125886
1126711
1126713
1126821
1126823
1126827
1127122
1128722
1128883
1128886
1128887
1128889
1128892
1129032
1132837
1132838
1134322
1135534
1135708
1166916
1167631
1171883
1172442
1172443
1175070
1175071
1175074
1178171
1180432
1180433
1180434
1180435
1182651
1186012
1189145
1189702
1189938
353876
945190
CVE-2006-2607
CVE-2007-6746
CVE-2009-1892
CVE-2010-0424
CVE-2010-2156
CVE-2010-3611
CVE-2010-3616
CVE-2011-0413
CVE-2011-0997
CVE-2011-2748
CVE-2011-2749
CVE-2011-4539
CVE-2011-4868
CVE-2012-3570
CVE-2012-3571
CVE-2012-3954
CVE-2012-3955
CVE-2013-1987
CVE-2013-1988
CVE-2013-2266
CVE-2014-3577
CVE-2014-9087
CVE-2015-5262
CVE-2015-8605
CVE-2016-5180
CVE-2016-9082
CVE-2016-9798
CVE-2017-7475
CVE-2018-19935
CVE-2018-20783
CVE-2019-11034
CVE-2019-11035
CVE-2019-11036
CVE-2019-9020
CVE-2019-9021
CVE-2019-9022
CVE-2019-9023
CVE-2019-9024
CVE-2019-9637
CVE-2019-9638
CVE-2019-9639
CVE-2019-9640
CVE-2019-9641
CVE-2019-9675
CVE-2020-11080
CVE-2020-11984
CVE-2020-11993
CVE-2020-1752
CVE-2020-35503
CVE-2020-35504
CVE-2020-35505
CVE-2020-35506
CVE-2020-7598
CVE-2020-8174
CVE-2020-9490
CVE-2021-20255
CVE-2021-3527
CVE-2021-3682
CVE-2021-3713
CVE-2021-3748
SUSE-SU-2019:1461-1
SUSE-SU-2019:2392-1
SUSE-SU-2019:3046-1
SUSE-SU-2020:0820-1
SUSE-SU-2020:1576-1
SUSE-SU-2020:1858-1
SUSE-SU-2020:2344-1
SUSE-SU-2020:3151-1
SUSE-SU-2021:3635-1
Platform(s):openSUSE Leap 15.0
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 15
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gdm-3.26.2.1-lp150.10 is installed
  • OR gdm-lang-3.26.2.1-lp150.10 is installed
  • OR gdmflexiserver-3.26.2.1-lp150.10 is installed
  • OR libgdm1-3.26.2.1-lp150.10 is installed
  • OR typelib-1_0-Gdm-1_0-3.26.2.1-lp150.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • xorg-x11-libXrender-7.4-1.16 is installed
  • OR xorg-x11-libXrender-32bit-7.4-1.16 is installed
  • OR xorg-x11-libXrender-devel-7.4-1.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • ImageMagick-6.4.3.6-7.30 is installed
  • OR libMagick++1-6.4.3.6-7.30 is installed
  • OR libMagickCore1-6.4.3.6-7.30 is installed
  • OR libMagickCore1-32bit-6.4.3.6-7.30 is installed
  • OR libMagickWand1-6.4.3.6-7.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libXrender1-0.9.8-3 is installed
  • OR libXrender1-32bit-0.9.8-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • cron-4.2-58 is installed
  • OR cronie-1.4.11-58 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • dhcp-4.3.3-9 is installed
  • OR dhcp-client-4.3.3-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libXRes1-1.0.7-3 is installed
  • OR libXRes1-32bit-1.0.7-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • avahi-0.6.32-30 is installed
  • OR avahi-lang-0.6.32-30 is installed
  • OR libavahi-client3-0.6.32-30 is installed
  • OR libavahi-client3-32bit-0.6.32-30 is installed
  • OR libavahi-common3-0.6.32-30 is installed
  • OR libavahi-common3-32bit-0.6.32-30 is installed
  • OR libavahi-core7-0.6.32-30 is installed
  • OR libdns_sd-0.6.32-30 is installed
  • OR libdns_sd-32bit-0.6.32-30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND python-libmount-2.31.1-9.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • apache2-2.4.33-3.33 is installed
  • OR apache2-devel-2.4.33-3.33 is installed
  • OR apache2-doc-2.4.33-3.33 is installed
  • OR apache2-prefork-2.4.33-3.33 is installed
  • OR apache2-utils-2.4.33-3.33 is installed
  • OR apache2-worker-2.4.33-3.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-4.32 is installed
  • OR php7-7.2.5-4.32 is installed
  • OR php7-bcmath-7.2.5-4.32 is installed
  • OR php7-bz2-7.2.5-4.32 is installed
  • OR php7-calendar-7.2.5-4.32 is installed
  • OR php7-ctype-7.2.5-4.32 is installed
  • OR php7-curl-7.2.5-4.32 is installed
  • OR php7-dba-7.2.5-4.32 is installed
  • OR php7-devel-7.2.5-4.32 is installed
  • OR php7-dom-7.2.5-4.32 is installed
  • OR php7-enchant-7.2.5-4.32 is installed
  • OR php7-exif-7.2.5-4.32 is installed
  • OR php7-fastcgi-7.2.5-4.32 is installed
  • OR php7-fileinfo-7.2.5-4.32 is installed
  • OR php7-fpm-7.2.5-4.32 is installed
  • OR php7-ftp-7.2.5-4.32 is installed
  • OR php7-gd-7.2.5-4.32 is installed
  • OR php7-gettext-7.2.5-4.32 is installed
  • OR php7-gmp-7.2.5-4.32 is installed
  • OR php7-iconv-7.2.5-4.32 is installed
  • OR php7-intl-7.2.5-4.32 is installed
  • OR php7-json-7.2.5-4.32 is installed
  • OR php7-ldap-7.2.5-4.32 is installed
  • OR php7-mbstring-7.2.5-4.32 is installed
  • OR php7-mysql-7.2.5-4.32 is installed
  • OR php7-odbc-7.2.5-4.32 is installed
  • OR php7-opcache-7.2.5-4.32 is installed
  • OR php7-openssl-7.2.5-4.32 is installed
  • OR php7-pcntl-7.2.5-4.32 is installed
  • OR php7-pdo-7.2.5-4.32 is installed
  • OR php7-pear-7.2.5-4.32 is installed
  • OR php7-pear-Archive_Tar-7.2.5-4.32 is installed
  • OR php7-pgsql-7.2.5-4.32 is installed
  • OR php7-phar-7.2.5-4.32 is installed
  • OR php7-posix-7.2.5-4.32 is installed
  • OR php7-shmop-7.2.5-4.32 is installed
  • OR php7-snmp-7.2.5-4.32 is installed
  • OR php7-soap-7.2.5-4.32 is installed
  • OR php7-sockets-7.2.5-4.32 is installed
  • OR php7-sodium-7.2.5-4.32 is installed
  • OR php7-sqlite-7.2.5-4.32 is installed
  • OR php7-sysvmsg-7.2.5-4.32 is installed
  • OR php7-sysvsem-7.2.5-4.32 is installed
  • OR php7-sysvshm-7.2.5-4.32 is installed
  • OR php7-tokenizer-7.2.5-4.32 is installed
  • OR php7-wddx-7.2.5-4.32 is installed
  • OR php7-xmlreader-7.2.5-4.32 is installed
  • OR php7-xmlrpc-7.2.5-4.32 is installed
  • OR php7-xmlwriter-7.2.5-4.32 is installed
  • OR php7-xsl-7.2.5-4.32 is installed
  • OR php7-zip-7.2.5-4.32 is installed
  • OR php7-zlib-7.2.5-4.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • nodejs8-8.17.0-3.32 is installed
  • OR nodejs8-devel-8.17.0-3.32 is installed
  • OR nodejs8-docs-8.17.0-3.32 is installed
  • OR npm8-8.17.0-3.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libudisks2-0-2.1.3-1 is installed
  • OR udisks2-2.1.3-1 is installed
  • OR udisks2-lang-2.1.3-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.15-38.8 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.15-38.8 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.15-38.8 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.15-38.8 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.15-38.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • emacs-24.3-16 is installed
  • OR emacs-el-24.3-16 is installed
  • OR emacs-info-24.3-16 is installed
  • OR emacs-nox-24.3-16 is installed
  • OR emacs-x11-24.3-16 is installed
  • OR etags-24.3-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libzypp-16.17.20-27.52 is installed
  • OR zypper-1.13.45-18.33 is installed
  • OR zypper-log-1.13.45-18.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND yast2-smt-3.0.14-17.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_114-92_67-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_19-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND cifs-utils-6.5-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND ppp-2.4.7-4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • MozillaFirefox-68.1.0-109.89 is installed
  • OR MozillaFirefox-branding-SLE-68-32.8 is installed
  • OR MozillaFirefox-translations-common-68.1.0-109.89 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • bzip2-1.0.6-30.5 is installed
  • OR bzip2-doc-1.0.6-30.5 is installed
  • OR libbz2-1-1.0.6-30.5 is installed
  • OR libbz2-1-32bit-1.0.6-30.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libtiff5-4.0.9-44.21 is installed
  • OR libtiff5-32bit-4.0.9-44.21 is installed
  • OR tiff-4.0.9-44.21 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND busybox-1.21.1-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND permissions-20180125-3.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • AND Package Information
  • qemu-2.11.2-5.40.2 is installed
  • OR qemu-block-curl-2.11.2-5.40.2 is installed
  • OR qemu-block-iscsi-2.11.2-5.40.2 is installed
  • OR qemu-block-rbd-2.11.2-5.40.2 is installed
  • OR qemu-block-ssh-2.11.2-5.40.2 is installed
  • OR qemu-guest-agent-2.11.2-5.40.2 is installed
  • OR qemu-ipxe-1.0.0+-5.40.2 is installed
  • OR qemu-kvm-2.11.2-5.40.2 is installed
  • OR qemu-lang-2.11.2-5.40.2 is installed
  • OR qemu-ppc-2.11.2-5.40.2 is installed
  • OR qemu-seabios-1.11.0_0_g63451fc-5.40.2 is installed
  • OR qemu-sgabios-8-5.40.2 is installed
  • OR qemu-tools-2.11.2-5.40.2 is installed
  • OR qemu-vgabios-1.11.0_0_g63451fc-5.40.2 is installed
  • OR qemu-x86-2.11.2-5.40.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND apache-commons-httpclient-3.1-4.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND mongodb-2.4.14-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • openssh-7.2p2-74.30 is installed
  • OR openssh-askpass-gnome-7.2p2-74.30 is installed
  • OR openssh-fips-7.2p2-74.30 is installed
  • OR openssh-helpers-7.2p2-74.30 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libmysqlclient18-10.0.38-29.27 is installed
  • OR mariadb-10.0.38-29.27 is installed
  • BACK