Oval Definition:oval:org.opensuse.security:def:55919
Revision Date:2021-06-22Version:1
Title:Security update for ovmf (Important)
Description:

This update for ovmf fixes the following issues:

- Fixed a possible buffer overflow in IScsiDxe (bsc#1186151) - CVE-2021-28211: ovmf: edk2: possible heap corruption with LzmaUefiDecompressGetInfo (bsc#1183578) - CVE-2021-28210: ovmf: unlimited FV recursion, round 2 (bsc#1183579) - CVE-2019-14584: ovmf,shim: NULL pointer dereference in AuthenticodeVerify() (bsc#1177789)
Family:unixClass:patch
Status:Reference(s):1000677
1001912
1002991
1004499
1005878
1019334
1021641
1056061
1102682
1103203
1105323
1133191
1135170
1136446
1137597
1138872
1177789
1183578
1183579
1186151
758040
777565
793927
794316
797014
797031
797523
798188
799694
800156
800275
802690
805094
806736
814440
826427
833605
847710
869101
870532
900610
904348
904965
920016
921949
923002
924493
926007
926238
926709
926774
930145
930788
932350
932805
933514
933721
935053
935757
936118
936773
938706
939460
939826
939926
939955
940017
940776
940925
941113
941202
942204
942305
942367
942605
942688
942938
943786
943959
944296
944831
944837
944989
944993
945691
945825
945827
945842
946078
946309
947241
947478
947957
948330
948347
948521
949100
949192
949298
949502
949706
949744
949936
949981
950013
950580
950750
950998
951110
951165
951440
951638
951864
952084
952151
952384
952579
952666
953527
953717
953826
953830
953831
953971
953980
954002
954404
954512
954635
954986
955136
955148
955224
955354
955382
955422
955533
955644
955762
956047
956053
956147
956284
956703
956711
956717
956801
956876
957395
957546
958504
958510
958647
962765
964468
966220
968771
984663
CVE-2012-5634
CVE-2012-6075
CVE-2012-6698
CVE-2012-6699
CVE-2012-6700
CVE-2013-0153
CVE-2013-1571
CVE-2013-2069
CVE-2014-0040
CVE-2014-0041
CVE-2014-0042
CVE-2014-2532
CVE-2015-0272
CVE-2015-0272
CVE-2015-2925
CVE-2015-5156
CVE-2015-5157
CVE-2015-5276
CVE-2015-5307
CVE-2015-6252
CVE-2015-6937
CVE-2015-7651
CVE-2015-7652
CVE-2015-7653
CVE-2015-7654
CVE-2015-7655
CVE-2015-7656
CVE-2015-7657
CVE-2015-7658
CVE-2015-7659
CVE-2015-7660
CVE-2015-7661
CVE-2015-7662
CVE-2015-7663
CVE-2015-7799
CVE-2015-7872
CVE-2015-7872
CVE-2015-7990
CVE-2015-7990
CVE-2015-8042
CVE-2015-8043
CVE-2015-8044
CVE-2015-8046
CVE-2015-8104
CVE-2015-8215
CVE-2016-2108
CVE-2016-7056
CVE-2016-7942
CVE-2016-8610
CVE-2017-13078
CVE-2017-13079
CVE-2017-13080
CVE-2017-13081
CVE-2017-13087
CVE-2017-13088
CVE-2018-10902
CVE-2018-5390
CVE-2019-11477
CVE-2019-11478
CVE-2019-11487
CVE-2019-11708
CVE-2019-14584
CVE-2019-3846
CVE-2019-5436
CVE-2021-28210
CVE-2021-28211
SUSE-SU-2015:1960-1
SUSE-SU-2015:2108-1
SUSE-SU-2015:2174-1
SUSE-SU-2015:2292-1
SUSE-SU-2016:0963-1
SUSE-SU-2016:3001-1
SUSE-SU-2017:0605-1
SUSE-SU-2017:2745-1
SUSE-SU-2019:1363-1
SUSE-SU-2019:1684-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP2-LTSS-ERICSSON
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND libHX28-3.22-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • cron-4.2-lp151.4.3 is installed
  • OR cronie-1.5.1-lp151.4.3 is installed
  • OR cronie-anacron-1.5.1-lp151.4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • xen-4.1.4_02-0.5 is installed
  • OR xen-doc-html-4.1.4_02-0.5 is installed
  • OR xen-doc-pdf-4.1.4_02-0.5 is installed
  • OR xen-kmp-default-4.1.4_02_3.0.58_0.6.6-0.5 is installed
  • OR xen-kmp-pae-4.1.4_02_3.0.58_0.6.6-0.5 is installed
  • OR xen-kmp-trace-4.1.4_02_3.0.58_0.6.6-0.5 is installed
  • OR xen-libs-4.1.4_02-0.5 is installed
  • OR xen-libs-32bit-4.1.4_02-0.5 is installed
  • OR xen-tools-4.1.4_02-0.5 is installed
  • OR xen-tools-domU-4.1.4_02-0.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • flash-player-11.2.202.548-0.26 is installed
  • OR flash-player-gnome-11.2.202.548-0.26 is installed
  • OR flash-player-kde4-11.2.202.548-0.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND dhcpcd-3.2.3-45.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • gcc5-5.3.1+r233831-9 is installed
  • OR libasan2-5.3.1+r233831-9 is installed
  • OR libasan2-32bit-5.3.1+r233831-9 is installed
  • OR libatomic1-5.3.1+r233831-9 is installed
  • OR libatomic1-32bit-5.3.1+r233831-9 is installed
  • OR libcilkrts5-5.3.1+r233831-9 is installed
  • OR libcilkrts5-32bit-5.3.1+r233831-9 is installed
  • OR libffi-gcc5-5.3.1+r233831-9 is installed
  • OR libffi4-5.3.1+r233831-9 is installed
  • OR libffi4-32bit-5.3.1+r233831-9 is installed
  • OR libgcc_s1-5.3.1+r233831-9 is installed
  • OR libgcc_s1-32bit-5.3.1+r233831-9 is installed
  • OR libgfortran3-5.3.1+r233831-9 is installed
  • OR libgfortran3-32bit-5.3.1+r233831-9 is installed
  • OR libgomp1-5.3.1+r233831-9 is installed
  • OR libgomp1-32bit-5.3.1+r233831-9 is installed
  • OR libitm1-5.3.1+r233831-9 is installed
  • OR libitm1-32bit-5.3.1+r233831-9 is installed
  • OR liblsan0-5.3.1+r233831-9 is installed
  • OR libmpx0-5.3.1+r233831-9 is installed
  • OR libmpx0-32bit-5.3.1+r233831-9 is installed
  • OR libmpxwrappers0-5.3.1+r233831-9 is installed
  • OR libmpxwrappers0-32bit-5.3.1+r233831-9 is installed
  • OR libquadmath0-5.3.1+r233831-9 is installed
  • OR libquadmath0-32bit-5.3.1+r233831-9 is installed
  • OR libstdc++6-5.3.1+r233831-9 is installed
  • OR libstdc++6-32bit-5.3.1+r233831-9 is installed
  • OR libstdc++6-locale-5.3.1+r233831-9 is installed
  • OR libtsan0-5.3.1+r233831-9 is installed
  • OR libubsan0-5.3.1+r233831-9 is installed
  • OR libubsan0-32bit-5.3.1+r233831-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND ant-1.9.4-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND wpa_supplicant-2.2-15.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • bzip2-1.0.6-29 is installed
  • OR bzip2-doc-1.0.6-29 is installed
  • OR libbz2-1-1.0.6-29 is installed
  • OR libbz2-1-32bit-1.0.6-29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.212-27.32 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.212-27.32 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.212-27.32 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.212-27.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • xen-4.7.5_04-43.33 is installed
  • OR xen-doc-html-4.7.5_04-43.33 is installed
  • OR xen-libs-4.7.5_04-43.33 is installed
  • OR xen-libs-32bit-4.7.5_04-43.33 is installed
  • OR xen-tools-4.7.5_04-43.33 is installed
  • OR xen-tools-domU-4.7.5_04-43.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libdcerpc-binding0-4.4.2-38.20 is installed
  • OR libdcerpc-binding0-32bit-4.4.2-38.20 is installed
  • OR libdcerpc0-4.4.2-38.20 is installed
  • OR libdcerpc0-32bit-4.4.2-38.20 is installed
  • OR libndr-krb5pac0-4.4.2-38.20 is installed
  • OR libndr-krb5pac0-32bit-4.4.2-38.20 is installed
  • OR libndr-nbt0-4.4.2-38.20 is installed
  • OR libndr-nbt0-32bit-4.4.2-38.20 is installed
  • OR libndr-standard0-4.4.2-38.20 is installed
  • OR libndr-standard0-32bit-4.4.2-38.20 is installed
  • OR libndr0-4.4.2-38.20 is installed
  • OR libndr0-32bit-4.4.2-38.20 is installed
  • OR libnetapi0-4.4.2-38.20 is installed
  • OR libnetapi0-32bit-4.4.2-38.20 is installed
  • OR libsamba-credentials0-4.4.2-38.20 is installed
  • OR libsamba-credentials0-32bit-4.4.2-38.20 is installed
  • OR libsamba-errors0-4.4.2-38.20 is installed
  • OR libsamba-errors0-32bit-4.4.2-38.20 is installed
  • OR libsamba-hostconfig0-4.4.2-38.20 is installed
  • OR libsamba-hostconfig0-32bit-4.4.2-38.20 is installed
  • OR libsamba-passdb0-4.4.2-38.20 is installed
  • OR libsamba-passdb0-32bit-4.4.2-38.20 is installed
  • OR libsamba-util0-4.4.2-38.20 is installed
  • OR libsamba-util0-32bit-4.4.2-38.20 is installed
  • OR libsamdb0-4.4.2-38.20 is installed
  • OR libsamdb0-32bit-4.4.2-38.20 is installed
  • OR libsmbclient0-4.4.2-38.20 is installed
  • OR libsmbclient0-32bit-4.4.2-38.20 is installed
  • OR libsmbconf0-4.4.2-38.20 is installed
  • OR libsmbconf0-32bit-4.4.2-38.20 is installed
  • OR libsmbldap0-4.4.2-38.20 is installed
  • OR libsmbldap0-32bit-4.4.2-38.20 is installed
  • OR libtevent-util0-4.4.2-38.20 is installed
  • OR libtevent-util0-32bit-4.4.2-38.20 is installed
  • OR libwbclient0-4.4.2-38.20 is installed
  • OR libwbclient0-32bit-4.4.2-38.20 is installed
  • OR samba-4.4.2-38.20 is installed
  • OR samba-client-4.4.2-38.20 is installed
  • OR samba-client-32bit-4.4.2-38.20 is installed
  • OR samba-doc-4.4.2-38.20 is installed
  • OR samba-libs-4.4.2-38.20 is installed
  • OR samba-libs-32bit-4.4.2-38.20 is installed
  • OR samba-winbind-4.4.2-38.20 is installed
  • OR samba-winbind-32bit-4.4.2-38.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libhivex0-1.3.10-4 is installed
  • OR perl-Win-Hivex-1.3.10-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • python-PyYAML-5.1.2-26.9 is installed
  • OR python-asn1crypto-0.24.0-2.5 is installed
  • OR python-packaging-17.1-2.5 is installed
  • OR python3-PyYAML-5.1.2-26.9 is installed
  • OR python3-asn1crypto-0.24.0-2.5 is installed
  • OR python3-packaging-17.1-2.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • ibus-1.5.13-15.11 is installed
  • OR ibus-gtk-1.5.13-15.11 is installed
  • OR ibus-gtk3-1.5.13-15.11 is installed
  • OR ibus-lang-1.5.13-15.11 is installed
  • OR libibus-1_0-5-1.5.13-15.11 is installed
  • OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libspice-client-glib-2_0-8-0.33-3.6 is installed
  • OR libspice-client-glib-helper-0.33-3.6 is installed
  • OR libspice-client-gtk-3_0-5-0.33-3.6 is installed
  • OR libspice-controller0-0.33-3.6 is installed
  • OR spice-gtk-0.33-3.6 is installed
  • OR typelib-1_0-SpiceClientGlib-2_0-0.33-3.6 is installed
  • OR typelib-1_0-SpiceClientGtk-3_0-0.33-3.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND SuSEfirewall2-3.6.312.333-3.13 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND openstack-heat-templates-0.0.0+git.1452795102.e53f5d3-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • gpg2-2.0.24-9.3 is installed
  • OR gpg2-lang-2.0.24-9.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND squid-3.5.21-26.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND python-ecdsa-0.13.3-5.10 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND haproxy-1.6.11-11.3 is installed
  • BACK