Oval Definition:oval:org.opensuse.security:def:57100
Revision Date:2021-09-23Version:1
Title:Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
Description:

This update for the Linux Kernel 4.4.180-94_130 fixes several issues.

The following security issues were fixed:

- CVE-2021-3653: Fixed missing validation of the KVM `int_ctl` VMCB field that would have allowed a malicious L1 guest to enable AVIC support for the L2 guest (bsc#1189420). - CVE-2021-38198: Fixed KVM MMU to use the correct inherited permissions to get shadow page (bsc#1189278).
Family:unixClass:patch
Status:Reference(s):1018699
1018700
1018701
1018702
1022703
1028655
1029827
1030144
1034843
1034844
1034994
1035204
1036146
1038231
1040311
1040312
1040313
1041783
1042802
1042803
1043088
1045719
1045721
1050577
1050578
1050579
1050581
1055960
1068565
1069708
1074662
1082216
1082233
1082234
1088268
1090036
1096718
1102682
1103203
1131233
1131237
1131239
1131241
1131245
1133191
1136446
1137597
1140747
1144504
1144903
1149458
1151021
1151839
1153108
1153158
1153161
1161799
1189278
1189420
904970
907150
920615
920633
930408
CVE-2006-0855
CVE-2007-1669
CVE-2014-9273
CVE-2016-9131
CVE-2016-9147
CVE-2016-9444
CVE-2016-9603
CVE-2017-0861
CVE-2017-1000433
CVE-2017-11624
CVE-2017-11625
CVE-2017-11626
CVE-2017-11627
CVE-2017-12595
CVE-2017-16939
CVE-2017-5436
CVE-2017-7494
CVE-2017-7511
CVE-2017-7515
CVE-2017-7718
CVE-2017-9208
CVE-2017-9209
CVE-2017-9210
CVE-2017-9406
CVE-2017-9408
CVE-2017-9775
CVE-2017-9776
CVE-2018-1000199
CVE-2018-12015
CVE-2018-5390
CVE-2018-6797
CVE-2018-6798
CVE-2018-6913
CVE-2019-0196
CVE-2019-0197
CVE-2019-0211
CVE-2019-0217
CVE-2019-0220
CVE-2019-10220
CVE-2019-11477
CVE-2019-11478
CVE-2019-11487
CVE-2019-12625
CVE-2019-12900
CVE-2019-14835
CVE-2019-17133
CVE-2019-3846
CVE-2020-6796
CVE-2020-6797
CVE-2020-6798
CVE-2020-6799
CVE-2020-6800
CVE-2021-3653
CVE-2021-38198
SUSE-SU-2017:0111-1
SUSE-SU-2017:1143-1
SUSE-SU-2017:1149-1
SUSE-SU-2017:1392-1
SUSE-SU-2017:1999-1
SUSE-SU-2017:3338-1
SUSE-SU-2018:1194-1
SUSE-SU-2018:1232-1
SUSE-SU-2018:1972-1
SUSE-SU-2018:3066-1
SUSE-SU-2019:0878-1
SUSE-SU-2019:2821-1
SUSE-SU-2019:3066-1
SUSE-SU-2020:0384-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND screen-4.6.2-lp150.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • exim-4.88-lp151.4.3 is installed
  • OR eximon-4.88-lp151.4.3 is installed
  • OR eximstats-html-4.88-lp151.4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND clamav-0.100.3-33.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libdcerpc-binding0-4.2.4-28.14 is installed
  • OR libdcerpc-binding0-32bit-4.2.4-28.14 is installed
  • OR libdcerpc0-4.2.4-28.14 is installed
  • OR libdcerpc0-32bit-4.2.4-28.14 is installed
  • OR libgensec0-4.2.4-28.14 is installed
  • OR libgensec0-32bit-4.2.4-28.14 is installed
  • OR libndr-krb5pac0-4.2.4-28.14 is installed
  • OR libndr-krb5pac0-32bit-4.2.4-28.14 is installed
  • OR libndr-nbt0-4.2.4-28.14 is installed
  • OR libndr-nbt0-32bit-4.2.4-28.14 is installed
  • OR libndr-standard0-4.2.4-28.14 is installed
  • OR libndr-standard0-32bit-4.2.4-28.14 is installed
  • OR libndr0-4.2.4-28.14 is installed
  • OR libndr0-32bit-4.2.4-28.14 is installed
  • OR libnetapi0-4.2.4-28.14 is installed
  • OR libnetapi0-32bit-4.2.4-28.14 is installed
  • OR libregistry0-4.2.4-28.14 is installed
  • OR libsamba-credentials0-4.2.4-28.14 is installed
  • OR libsamba-credentials0-32bit-4.2.4-28.14 is installed
  • OR libsamba-hostconfig0-4.2.4-28.14 is installed
  • OR libsamba-hostconfig0-32bit-4.2.4-28.14 is installed
  • OR libsamba-passdb0-4.2.4-28.14 is installed
  • OR libsamba-passdb0-32bit-4.2.4-28.14 is installed
  • OR libsamba-util0-4.2.4-28.14 is installed
  • OR libsamba-util0-32bit-4.2.4-28.14 is installed
  • OR libsamdb0-4.2.4-28.14 is installed
  • OR libsamdb0-32bit-4.2.4-28.14 is installed
  • OR libsmbclient-raw0-4.2.4-28.14 is installed
  • OR libsmbclient-raw0-32bit-4.2.4-28.14 is installed
  • OR libsmbclient0-4.2.4-28.14 is installed
  • OR libsmbclient0-32bit-4.2.4-28.14 is installed
  • OR libsmbconf0-4.2.4-28.14 is installed
  • OR libsmbconf0-32bit-4.2.4-28.14 is installed
  • OR libsmbldap0-4.2.4-28.14 is installed
  • OR libsmbldap0-32bit-4.2.4-28.14 is installed
  • OR libtevent-util0-4.2.4-28.14 is installed
  • OR libtevent-util0-32bit-4.2.4-28.14 is installed
  • OR libwbclient0-4.2.4-28.14 is installed
  • OR libwbclient0-32bit-4.2.4-28.14 is installed
  • OR samba-4.2.4-28.14 is installed
  • OR samba-32bit-4.2.4-28.14 is installed
  • OR samba-client-4.2.4-28.14 is installed
  • OR samba-client-32bit-4.2.4-28.14 is installed
  • OR samba-doc-4.2.4-28.14 is installed
  • OR samba-libs-4.2.4-28.14 is installed
  • OR samba-libs-32bit-4.2.4-28.14 is installed
  • OR samba-winbind-4.2.4-28.14 is installed
  • OR samba-winbind-32bit-4.2.4-28.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_63-default-2-2 is installed
  • OR kgraft-patch-3_12_74-60_64_63-xen-2-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_22-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libhivex0-1.3.10-4 is installed
  • OR perl-Win-Hivex-1.3.10-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • xen-4.7.6_02-43.36 is installed
  • OR xen-doc-html-4.7.6_02-43.36 is installed
  • OR xen-libs-4.7.6_02-43.36 is installed
  • OR xen-libs-32bit-4.7.6_02-43.36 is installed
  • OR xen-tools-4.7.6_02-43.36 is installed
  • OR xen-tools-domU-4.7.6_02-43.36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • xen-4.7.5_04-43.33 is installed
  • OR xen-doc-html-4.7.5_04-43.33 is installed
  • OR xen-libs-4.7.5_04-43.33 is installed
  • OR xen-libs-32bit-4.7.5_04-43.33 is installed
  • OR xen-tools-4.7.5_04-43.33 is installed
  • OR xen-tools-domU-4.7.5_04-43.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • openssh-7.2p2-74.30 is installed
  • OR openssh-askpass-gnome-7.2p2-74.30 is installed
  • OR openssh-fips-7.2p2-74.30 is installed
  • OR openssh-helpers-7.2p2-74.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND chrony-2.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_178-94_91-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_25-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND kgraft-patch-4_4_180-94_130-default-14-2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • curl-7.37.0-37.31 is installed
  • OR libcurl4-7.37.0-37.31 is installed
  • OR libcurl4-32bit-7.37.0-37.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.212-27.32 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.212-27.32 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.212-27.32 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.212-27.32 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-pysaml2-4.0.2-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND ucode-intel-20191112-13.53 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND nodejs6-6.17.0-11.24 is installed
  • BACK