Oval Definition:oval:org.opensuse.security:def:60906
Revision Date:2020-12-01Version:1
Title:Security update for xen (Important)
Description:

This update for xen fixes the following issues:

Security issues fixed:

- CVE-2019-15890: Fixed a use-after-free in SLiRP networking implementation of QEMU emulator which could have led to Denial of Service (bsc#1149813). - CVE-2019-12068: Fixed an issue in lsi which could lead to an infinite loop and denial of service (bsc#1146874). - CVE-2019-14378: Fixed a heap buffer overflow in SLiRp networking implementation of QEMU emulator which could have led to execution of arbitrary code with privileges of the QEMU process (bsc#1143797).

Other issue fixed:

- Fixed an issue where libxenlight could not restore domain vsa6535522 on live migration (bsc#1133818).
Family:unixClass:patch
Status:Reference(s):1032089
1037008
1037009
1055857
1056996
1057514
1059100
1059134
1059139
1059893
1093414
1103040
1104457
1110723
1113534
1113652
1117625
1117626
1117627
1117629
1117630
1126140
1126141
1126192
1126195
1126196
1126197
1126198
1126201
1127400
1133818
1139073
1141035
1143797
1146874
1149813
1149955
1150003
1150114
1150250
1150734
1152107
1153238
1155988
1157198
1165439
1172906
1172935
1173197
1173798
1174205
1174757
1174771
1175112
1175127
1175228
1175691
1176012
1176069
1176072
1176382
1176896
1176931
1178671
CVE-2016-10209
CVE-2016-10349
CVE-2016-10350
CVE-2016-6328
CVE-2017-14107
CVE-2017-14166
CVE-2017-14501
CVE-2017-14502
CVE-2017-14503
CVE-2017-7544
CVE-2018-0734
CVE-2018-12116
CVE-2018-12120
CVE-2018-12121
CVE-2018-12122
CVE-2018-12123
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-14680
CVE-2018-14681
CVE-2018-14682
CVE-2018-15378
CVE-2018-5407
CVE-2019-11091
CVE-2019-11135
CVE-2019-11139
CVE-2019-12068
CVE-2019-14378
CVE-2019-1547
CVE-2019-1563
CVE-2019-15890
CVE-2019-16056
CVE-2019-16167
CVE-2019-16746
CVE-2019-16935
CVE-2019-17340
CVE-2019-17341
CVE-2019-17342
CVE-2019-17343
CVE-2019-17344
CVE-2019-17345
CVE-2019-17346
CVE-2019-17347
CVE-2019-17348
CVE-2019-3688
CVE-2019-3690
CVE-2020-0429
CVE-2020-0431
CVE-2020-12321
CVE-2020-14093
CVE-2020-14154
CVE-2020-14314
CVE-2020-14331
CVE-2020-14381
CVE-2020-14386
CVE-2020-14386
CVE-2020-14954
CVE-2020-16166
CVE-2020-1747
CVE-2020-25212
SUSE-SU-2017:2546-1
SUSE-SU-2018:0193-1
SUSE-SU-2018:3640-1
SUSE-SU-2019:0395-1
SUSE-SU-2019:2769-1
SUSE-SU-2019:3180-1
SUSE-SU-2020:1285-1
SUSE-SU-2020:1794-1
SUSE-SU-2020:2582-1
SUSE-SU-2020:3225-1
SUSE-SU-2020:3354-1
Platform(s):openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libwireshark9-2.4.15-lp151.2.3 is installed
  • OR libwiretap7-2.4.15-lp151.2.3 is installed
  • OR libwscodecs1-2.4.15-lp151.2.3 is installed
  • OR libwsutil8-2.4.15-lp151.2.3 is installed
  • OR wireshark-2.4.15-lp151.2.3 is installed
  • OR wireshark-devel-2.4.15-lp151.2.3 is installed
  • OR wireshark-ui-qt-2.4.15-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libzip-0.11.1-13.3 is installed
  • OR libzip2-0.11.1-13.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • python-PyYAML-5.1.2-26.12 is installed
  • OR python3-PyYAML-5.1.2-26.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND ucode-intel-20191112a-13.56 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND permissions-2015.09.28.1626-17.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND clamav-0.100.2-33.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • coreutils-8.25-13.7 is installed
  • OR coreutils-lang-8.25-13.7 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • xen-4.9.4_04-3.56 is installed
  • OR xen-doc-html-4.9.4_04-3.56 is installed
  • OR xen-libs-4.9.4_04-3.56 is installed
  • OR xen-libs-32bit-4.9.4_04-3.56 is installed
  • OR xen-tools-4.9.4_04-3.56 is installed
  • OR xen-tools-domU-4.9.4_04-3.56 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • xen-4.11.4_04-2.30 is installed
  • OR xen-doc-html-4.11.4_04-2.30 is installed
  • OR xen-libs-4.11.4_04-2.30 is installed
  • OR xen-libs-32bit-4.11.4_04-2.30 is installed
  • OR xen-tools-4.11.4_04-2.30 is installed
  • OR xen-tools-domU-4.11.4_04-2.30 is installed
  • BACK