Oval Definition:oval:org.opensuse.security:def:59686
Revision Date:2020-12-01Version:1
Title:Security update for xen (Important)
Description:

This update for xen fixes the following issues:

- CVE-2020-25604: Fixed a race condition when migrating timers between x86 HVM vCPU-s (bsc#1176343,XSA-336) - CVE-2020-25595: Fixed an issue where PCI passthrough code was reading back hardware registers (bsc#1176344,XSA-337) - CVE-2020-25597: Fixed an issue where a valid event channels may not turn invalid (bsc#1176346,XSA-338) - CVE-2020-25596: Fixed a potential denial of service in x86 pv guest kernel via SYSENTER (bsc#1176345,XSA-339) - CVE-2020-25603: Fixed an issue due to missing barriers when accessing/allocating an event channel (bsc#1176347,XSA-340) - CVE-2020-25600: Fixed out of bounds event channels available to 32-bit x86 domains (bsc#1176348,XSA-342) - CVE-2020-25599: Fixed race conditions with evtchn_reset() (bsc#1176349,XSA-343) - CVE-2020-25601: Fixed an issue due to lack of preemption in evtchn_reset() / evtchn_destroy() (bsc#1176350,XSA-344) - CVE-2020-14364: Fixed an out-of-bounds read/write access while processing usb packets (bsc#1175534). - CVE-2020-0543: Fixed a leak of Special Register Buffer Data Sampling (SRBDS) aka 'CrossTalk' (bsc#1172205,XSA-320) - CVE-2020-15565: Fixed an issue cache write (bsc#1173378,XSA-321). - CVE-2020-15567: Fixed an issue with non-atomic modification of live EPT PTE (bsc#1173380,XSA-328)
Family:unixClass:patch
Status:Reference(s):1012382
1023175
1042286
1065600
1065726
1067841
1067844
1070500
1070805
1077445
1082063
1082210
1083417
1083420
1083422
1083424
1083426
1084721
1086095
1086535
1091158
1091171
1091197
1091396
1094825
1095344
1098996
1099257
1099523
1099597
1100105
1101555
1103624
1104204
1104731
1105010
1105025
1105931
1106293
1107256
1107299
1107385
1107832
1107866
1108145
1108498
1108818
1109105
1109330
1110233
1110286
1110837
1111062
1111479
1111480
1111586
1112229
1113094
1113192
1113672
1113751
1113769
1114190
1114648
1114763
1115433
1115440
1116027
1116183
1116345
1117022
1117186
1117187
1117274
1117313
1117327
1117331
1118152
1118159
1118319
1119714
1119946
1119947
1120657
1120743
1120758
1121621
1122053
1122825
1123161
1124170
1128382
1128453
1128783
1129729
1132654
1132852
1133719
1134495
1134589
1136446
1136569
1137377
1137597
1137817
1138124
1138187
1138489
1138967
1139750
1140512
1140663
1140747
1142032
1142521
1142686
1143310
1163019
1168140
1168142
1169392
1172205
1173378
1173380
1173998
1174543
1175193
1175194
1175534
1176343
1176344
1176345
1176346
1176347
1176348
1176349
1176350
1178666
1178667
1178668
964336
CVE-2010-1205
CVE-2011-2501
CVE-2011-2690
CVE-2011-2691
CVE-2011-2692
CVE-2011-3026
CVE-2011-3048
CVE-2011-3328
CVE-2011-3464
CVE-2012-3386
CVE-2015-3448
CVE-2015-8126
CVE-2015-8540
CVE-2016-10087
CVE-2016-1549
CVE-2017-15098
CVE-2017-15099
CVE-2017-17051
CVE-2018-11769
CVE-2018-12900
CVE-2018-14633
CVE-2018-15473
CVE-2018-16862
CVE-2018-16884
CVE-2018-17095
CVE-2018-17182
CVE-2018-17183
CVE-2018-17961
CVE-2018-18073
CVE-2018-18281
CVE-2018-18284
CVE-2018-18386
CVE-2018-18557
CVE-2018-18661
CVE-2018-18690
CVE-2018-18710
CVE-2018-19409
CVE-2018-19475
CVE-2018-19476
CVE-2018-19477
CVE-2018-19824
CVE-2018-19985
CVE-2018-20169
CVE-2018-7170
CVE-2018-7182
CVE-2018-7183
CVE-2018-7184
CVE-2018-7185
CVE-2018-9516
CVE-2018-9568
CVE-2019-11477
CVE-2019-11478
CVE-2019-3459
CVE-2019-3460
CVE-2019-3846
CVE-2019-9735
CVE-2020-0543
CVE-2020-11739
CVE-2020-11740
CVE-2020-11741
CVE-2020-11742
CVE-2020-13753
CVE-2020-14349
CVE-2020-14350
CVE-2020-14364
CVE-2020-15565
CVE-2020-15567
CVE-2020-25595
CVE-2020-25596
CVE-2020-25597
CVE-2020-25599
CVE-2020-25600
CVE-2020-25601
CVE-2020-25603
CVE-2020-25604
CVE-2020-25694
CVE-2020-25695
CVE-2020-25696
CVE-2020-8608
CVE-2020-9802
CVE-2020-9803
CVE-2020-9805
CVE-2020-9806
CVE-2020-9807
CVE-2020-9843
CVE-2020-9850
SUSE-SU-2017:3391-1
SUSE-SU-2018:3588-1
SUSE-SU-2018:3910-1
SUSE-SU-2018:3911-1
SUSE-SU-2019:0392-1
SUSE-SU-2019:2219-1
SUSE-SU-2020:2069-1
SUSE-SU-2020:2822-1
SUSE-SU-2020:3464-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND update-alternatives-1.19.0.4-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • apache2-2.4.33-lp151.8.6 is installed
  • OR apache2-devel-2.4.33-lp151.8.6 is installed
  • OR apache2-doc-2.4.33-lp151.8.6 is installed
  • OR apache2-event-2.4.33-lp151.8.6 is installed
  • OR apache2-example-pages-2.4.33-lp151.8.6 is installed
  • OR apache2-prefork-2.4.33-lp151.8.6 is installed
  • OR apache2-utils-2.4.33-lp151.8.6 is installed
  • OR apache2-worker-2.4.33-lp151.8.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • xen-4.7.6_10-43.67 is installed
  • OR xen-doc-html-4.7.6_10-43.67 is installed
  • OR xen-libs-4.7.6_10-43.67 is installed
  • OR xen-libs-32bit-4.7.6_10-43.67 is installed
  • OR xen-tools-4.7.6_10-43.67 is installed
  • OR xen-tools-domU-4.7.6_10-43.67 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • ntp-4.2.8p11-64.5 is installed
  • OR ntp-doc-4.2.8p11-64.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND libpng15-15-1.5.22-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND squid-3.5.21-26.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_162-94_69-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_21-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kernel-default-4.4.180-94.103 is installed
  • OR kernel-default-base-4.4.180-94.103 is installed
  • OR kernel-default-devel-4.4.180-94.103 is installed
  • OR kernel-default-man-4.4.180-94.103 is installed
  • OR kernel-devel-4.4.180-94.103 is installed
  • OR kernel-macros-4.4.180-94.103 is installed
  • OR kernel-source-4.4.180-94.103 is installed
  • OR kernel-syms-4.4.180-94.103 is installed
  • OR kgraft-patch-4_4_180-94_103-default-1-4.3 is installed
  • OR kgraft-patch-SLE12-SP3_Update_28-1-4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libSoundTouch0-1.7.1-5.3 is installed
  • OR soundtouch-1.7.1-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • evince-3.20.2-6.22 is installed
  • OR evince-browser-plugin-3.20.2-6.22 is installed
  • OR evince-lang-3.20.2-6.22 is installed
  • OR evince-plugin-djvudocument-3.20.2-6.22 is installed
  • OR evince-plugin-dvidocument-3.20.2-6.22 is installed
  • OR evince-plugin-pdfdocument-3.20.2-6.22 is installed
  • OR evince-plugin-psdocument-3.20.2-6.22 is installed
  • OR evince-plugin-tiffdocument-3.20.2-6.22 is installed
  • OR evince-plugin-xpsdocument-3.20.2-6.22 is installed
  • OR libevdocument3-4-3.20.2-6.22 is installed
  • OR libevview3-3-3.20.2-6.22 is installed
  • OR nautilus-evince-3.20.2-6.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • LibVNCServer-0.9.9-17.31 is installed
  • OR libvncclient0-0.9.9-17.31 is installed
  • OR libvncserver0-0.9.9-17.31 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • ardana-ansible-8.0+git.1560208949.67048e3-3.64 is installed
  • OR ardana-db-8.0+git.1564410318.f0cca2c-3.28 is installed
  • OR ardana-freezer-8.0+git.1564164977.ef9baeb-3.18 is installed
  • OR ardana-glance-8.0+git.1564491709.349d78e-3.14 is installed
  • OR ardana-input-model-8.0+git.1562848601.c3daff0-3.30 is installed
  • OR ardana-nova-8.0+git.1565388406.c6abb8d-3.32 is installed
  • OR ardana-osconfig-8.0+git.1563383198.c7fd9b4-3.39 is installed
  • OR ardana-swiftlm-drive-provision-8.0+git.1541434883.e0ebe69-5.9 is installed
  • OR ardana-swiftlm-log-tailer-8.0+git.1541434883.e0ebe69-5.9 is installed
  • OR ardana-swiftlm-uptime-mon-8.0+git.1541434883.e0ebe69-5.9 is installed
  • OR ardana-tempest-8.0+git.1562849010.73bc517-3.24 is installed
  • OR caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-4.15 is installed
  • OR documentation-suse-openstack-cloud-installation-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-operations-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-opsconsole-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-planning-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-security-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-user-8.20190805-1.20 is installed
  • OR galera-python-clustercheck-0.0+git.1562242499.36b8b64-4.6 is installed
  • OR grafana-monasca-ui-drilldown-1.8.1~dev39-3.9 is installed
  • OR openstack-cinder-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-api-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-backup-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-doc-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-scheduler-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-volume-11.2.3~dev7-3.18 is installed
  • OR openstack-glance-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-api-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-doc-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-registry-15.0.3~dev2-3.9 is installed
  • OR openstack-heat-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cfn-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cloudwatch-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-doc-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-engine-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-plugin-heat_docker-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-test-9.0.8~dev11-3.21 is installed
  • OR openstack-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR openstack-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR openstack-ironic-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-api-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-conductor-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-doc-9.1.8~dev7-3.21 is installed
  • OR openstack-keystone-12.0.4~dev2-5.22 is installed
  • OR openstack-keystone-doc-12.0.4~dev2-5.22 is installed
  • OR openstack-manila-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-api-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-data-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-doc-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-scheduler-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-share-5.1.1~dev2-3.18 is installed
  • OR openstack-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR openstack-monasca-api-2.2.2~dev1-3.15 is installed
  • OR openstack-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR openstack-monasca-persister-java-1.7.1~a0~dev2-3.3 is installed
  • OR openstack-murano-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-api-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-doc-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-engine-4.0.2~dev2-3.9 is installed
  • OR openstack-neutron-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-dhcp-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-doc-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR openstack-neutron-ha-tool-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-l3-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-agent-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-doc-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-linuxbridge-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-macvtap-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metadata-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metering-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-openvswitch-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-server-11.0.9~dev42-3.21 is installed
  • OR openstack-nova-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-cells-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-compute-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-conductor-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-console-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-doc-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-placement-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-scheduler-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-octavia-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-amphora-agent-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-api-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-health-manager-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-housekeeping-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-worker-1.0.6~dev2-4.18 is installed
  • OR python-Beaver-8.0+git.1502900605.3e0068a-4.3 is installed
  • OR python-cinder-11.2.3~dev7-3.18 is installed
  • OR python-glance-15.0.3~dev2-3.9 is installed
  • OR python-heat-9.0.8~dev11-3.21 is installed
  • OR python-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR python-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR python-ironic-9.1.8~dev7-3.21 is installed
  • OR python-keystone-12.0.4~dev2-5.22 is installed
  • OR python-manila-5.1.1~dev2-3.18 is installed
  • OR python-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR python-monasca-api-2.2.2~dev1-3.15 is installed
  • OR python-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR python-murano-4.0.2~dev2-3.9 is installed
  • OR python-neutron-11.0.9~dev42-3.21 is installed
  • OR python-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR python-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR python-nova-16.1.9~dev4-3.26 is installed
  • OR python-octavia-1.0.6~dev2-4.18 is installed
  • OR python-oslo.db-4.25.2-3.6 is installed
  • OR python-osprofiler-1.11.1-3.3 is installed
  • OR python-swiftlm-8.0+git.1541434883.e0ebe69-5.9 is installed
  • OR venv-openstack-magnum-5.0.2_5.0.2_5.0.2~dev31-11.18 is installed
  • OR venv-openstack-magnum-x86_64-5.0.2_5.0.2_5.0.2~dev31-11.18 is installed
  • OR venv-openstack-monasca-2.2.2~dev1-11.16 is installed
  • OR venv-openstack-monasca-ceilometer-1.5.1_1.5.1_1.5.1~dev3-8.14 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.5.1_1.5.1_1.5.1~dev3-8.14 is installed
  • OR venv-openstack-monasca-x86_64-2.2.2~dev1-11.16 is installed
  • OR venv-openstack-murano-4.0.2~dev2-12.14 is installed
  • OR venv-openstack-murano-x86_64-4.0.2~dev2-12.14 is installed
  • OR venv-openstack-neutron-11.0.9~dev42-13.22 is installed
  • OR venv-openstack-neutron-x86_64-11.0.9~dev42-13.22 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND couchdb-1.7.2-3.6 is installed
  • BACK