Revision Date: | 2021-09-23 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important) |
Description: |
This update for the Linux Kernel 4.4.180-94_130 fixes several issues.
The following security issues were fixed:
- CVE-2021-3653: Fixed missing validation of the KVM `int_ctl` VMCB field that would have allowed a malicious L1 guest to enable AVIC support for the L2 guest (bsc#1189420). - CVE-2021-38198: Fixed KVM MMU to use the correct inherited permissions to get shadow page (bsc#1189278).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1018699 1018700 1018701 1018702 1022703 1028655 1029827 1030144 1034843 1034844 1034994 1035204 1036146 1038231 1040311 1040312 1040313 1041783 1042802 1042803 1043088 1045719 1045721 1050577 1050578 1050579 1050581 1055960 1068565 1069708 1074662 1082216 1082233 1082234 1088268 1090036 1096718 1102682 1103203 1131233 1131237 1131239 1131241 1131245 1133191 1136446 1137597 1140747 1144504 1144903 1149458 1151021 1151839 1153108 1153158 1153161 1161799 1189278 1189420 904970 907150 920615 920633 930408 CVE-2006-0855 CVE-2007-1669 CVE-2014-9273 CVE-2016-9131 CVE-2016-9147 CVE-2016-9444 CVE-2016-9603 CVE-2017-0861 CVE-2017-1000433 CVE-2017-11624 CVE-2017-11625 CVE-2017-11626 CVE-2017-11627 CVE-2017-12595 CVE-2017-16939 CVE-2017-5436 CVE-2017-7494 CVE-2017-7511 CVE-2017-7515 CVE-2017-7718 CVE-2017-9208 CVE-2017-9209 CVE-2017-9210 CVE-2017-9406 CVE-2017-9408 CVE-2017-9775 CVE-2017-9776 CVE-2018-1000199 CVE-2018-12015 CVE-2018-5390 CVE-2018-6797 CVE-2018-6798 CVE-2018-6913 CVE-2019-0196 CVE-2019-0197 CVE-2019-0211 CVE-2019-0217 CVE-2019-0220 CVE-2019-10220 CVE-2019-11477 CVE-2019-11478 CVE-2019-11487 CVE-2019-12625 CVE-2019-12900 CVE-2019-14835 CVE-2019-17133 CVE-2019-3846 CVE-2020-6796 CVE-2020-6797 CVE-2020-6798 CVE-2020-6799 CVE-2020-6800 CVE-2021-3653 CVE-2021-38198 SUSE-SU-2017:0111-1 SUSE-SU-2017:1143-1 SUSE-SU-2017:1149-1 SUSE-SU-2017:1392-1 SUSE-SU-2017:1999-1 SUSE-SU-2017:3338-1 SUSE-SU-2018:1194-1 SUSE-SU-2018:1232-1 SUSE-SU-2018:1972-1 SUSE-SU-2018:3066-1 SUSE-SU-2019:0878-1 SUSE-SU-2019:2821-1 SUSE-SU-2019:3066-1 SUSE-SU-2020:0384-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 15.1 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE OpenStack Cloud 7 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud Crowbar 8
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND screen-4.6.2-lp150.3 is installed
|
Definition Synopsis |
openSUSE Leap 15.1 is installed
AND Package Information
exim-4.88-lp151.4.3 is installed
OR eximon-4.88-lp151.4.3 is installed
OR eximstats-html-4.88-lp151.4.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND clamav-0.100.3-33.26 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
libdcerpc-binding0-4.2.4-28.14 is installed
OR libdcerpc-binding0-32bit-4.2.4-28.14 is installed
OR libdcerpc0-4.2.4-28.14 is installed
OR libdcerpc0-32bit-4.2.4-28.14 is installed
OR libgensec0-4.2.4-28.14 is installed
OR libgensec0-32bit-4.2.4-28.14 is installed
OR libndr-krb5pac0-4.2.4-28.14 is installed
OR libndr-krb5pac0-32bit-4.2.4-28.14 is installed
OR libndr-nbt0-4.2.4-28.14 is installed
OR libndr-nbt0-32bit-4.2.4-28.14 is installed
OR libndr-standard0-4.2.4-28.14 is installed
OR libndr-standard0-32bit-4.2.4-28.14 is installed
OR libndr0-4.2.4-28.14 is installed
OR libndr0-32bit-4.2.4-28.14 is installed
OR libnetapi0-4.2.4-28.14 is installed
OR libnetapi0-32bit-4.2.4-28.14 is installed
OR libregistry0-4.2.4-28.14 is installed
OR libsamba-credentials0-4.2.4-28.14 is installed
OR libsamba-credentials0-32bit-4.2.4-28.14 is installed
OR libsamba-hostconfig0-4.2.4-28.14 is installed
OR libsamba-hostconfig0-32bit-4.2.4-28.14 is installed
OR libsamba-passdb0-4.2.4-28.14 is installed
OR libsamba-passdb0-32bit-4.2.4-28.14 is installed
OR libsamba-util0-4.2.4-28.14 is installed
OR libsamba-util0-32bit-4.2.4-28.14 is installed
OR libsamdb0-4.2.4-28.14 is installed
OR libsamdb0-32bit-4.2.4-28.14 is installed
OR libsmbclient-raw0-4.2.4-28.14 is installed
OR libsmbclient-raw0-32bit-4.2.4-28.14 is installed
OR libsmbclient0-4.2.4-28.14 is installed
OR libsmbclient0-32bit-4.2.4-28.14 is installed
OR libsmbconf0-4.2.4-28.14 is installed
OR libsmbconf0-32bit-4.2.4-28.14 is installed
OR libsmbldap0-4.2.4-28.14 is installed
OR libsmbldap0-32bit-4.2.4-28.14 is installed
OR libtevent-util0-4.2.4-28.14 is installed
OR libtevent-util0-32bit-4.2.4-28.14 is installed
OR libwbclient0-4.2.4-28.14 is installed
OR libwbclient0-32bit-4.2.4-28.14 is installed
OR samba-4.2.4-28.14 is installed
OR samba-32bit-4.2.4-28.14 is installed
OR samba-client-4.2.4-28.14 is installed
OR samba-client-32bit-4.2.4-28.14 is installed
OR samba-doc-4.2.4-28.14 is installed
OR samba-libs-4.2.4-28.14 is installed
OR samba-libs-32bit-4.2.4-28.14 is installed
OR samba-winbind-4.2.4-28.14 is installed
OR samba-winbind-32bit-4.2.4-28.14 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
kgraft-patch-3_12_74-60_64_63-default-2-2 is installed
OR kgraft-patch-3_12_74-60_64_63-xen-2-2 is installed
OR kgraft-patch-SLE12-SP1_Update_22-2-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
libhivex0-1.3.10-4 is installed
OR perl-Win-Hivex-1.3.10-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
xen-4.7.6_02-43.36 is installed
OR xen-doc-html-4.7.6_02-43.36 is installed
OR xen-libs-4.7.6_02-43.36 is installed
OR xen-libs-32bit-4.7.6_02-43.36 is installed
OR xen-tools-4.7.6_02-43.36 is installed
OR xen-tools-domU-4.7.6_02-43.36 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
xen-4.7.5_04-43.33 is installed
OR xen-doc-html-4.7.5_04-43.33 is installed
OR xen-libs-4.7.5_04-43.33 is installed
OR xen-libs-32bit-4.7.5_04-43.33 is installed
OR xen-tools-4.7.5_04-43.33 is installed
OR xen-tools-domU-4.7.5_04-43.33 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
openssh-7.2p2-74.30 is installed
OR openssh-askpass-gnome-7.2p2-74.30 is installed
OR openssh-fips-7.2p2-74.30 is installed
OR openssh-helpers-7.2p2-74.30 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND chrony-2.3-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND Package Information
kgraft-patch-4_4_178-94_91-default-4-2 is installed
OR kgraft-patch-SLE12-SP3_Update_25-4-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND kgraft-patch-4_4_180-94_130-default-14-2.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND Package Information
curl-7.37.0-37.31 is installed
OR libcurl4-7.37.0-37.31 is installed
OR libcurl4-32bit-7.37.0-37.31 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
java-1_8_0-openjdk-1.8.0.212-27.32 is installed
OR java-1_8_0-openjdk-demo-1.8.0.212-27.32 is installed
OR java-1_8_0-openjdk-devel-1.8.0.212-27.32 is installed
OR java-1_8_0-openjdk-headless-1.8.0.212-27.32 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND python-pysaml2-4.0.2-3.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND ucode-intel-20191112-13.53 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND nodejs6-6.17.0-11.24 is installed
|