Oval Definition:oval:org.opensuse.security:def:63681
Revision Date:2020-12-01Version:1
Title:Security update for qemu (Important)
Description:

This update for qemu fixes the following issues:

- CVE-2019-9824: Fixed an information leak in slirp (bsc#1129622) - CVE-2019-8934: Added method to specify whether or not to expose certain ppc64 host information, which can be considered a security issue (bsc#1126455) - CVE-2019-3812: Fixed OOB memory access and information leak in virtual monitor interface (bsc#1125721) - CVE-2018-20815: Fix DOS possibility in device tree processing (bsc#1130675) - Adjust fix for CVE-2019-8934 (bsc#1126455) to match the latest upstream adjustments for the same. Basically now the security fix is to provide a dummy host-model and host-serial value, which overrides getting that value from the host - CVE-2018-12126 CVE-2018-12127 CVE-2018-12130 CVE-2019-11091: Added x86 cpu feature 'md-clear' (bsc#1111331)

Other bugs fixed:

- Use a new approach to handling the file input to -smbios option, which accepts either legacy or per-spec formats regardless of the machine type. - Drop the 'ampersand 0x25 shift altgr' line in pt-br keymap file (bsc#1129962)

Family:unixClass:patch
Status:Reference(s):1065600
1065729
1071995
1082318
1083548
1085030
1085308
1087082
1092100
1104129
1111331
1111666
1112178
1113956
1121753
1122242
1122243
1122244
1122245
1122535
1125721
1126068
1126069
1126455
1128481
1128828
1129622
1129962
1130675
1133021
1133185
1136570
1142614
1144333
1146657
1152148
1158990
1158992
1161297
1163524
1164675
1165629
1166965
1169215
1169511
1169790
1170232
1171688
1172073
1172108
1172277
1172418
1172428
1172783
1172871
1172872
1172873
1172963
1173477
1173485
1173691
1173694
1173700
1173701
1173743
1173798
1173874
1173875
1173876
1173880
1173954
1174003
1174026
1174205
1174387
1174484
1174547
1174550
1174625
1174689
1174699
1174734
1174771
1174852
1174873
1174904
1174910
1174913
1174926
1174968
1175062
1175063
1175064
1175065
1175066
1175067
1175112
1175127
1175128
1175149
1175199
1175213
1175228
1175232
1175284
1175393
1175394
1175396
1175397
1175398
1175399
1175400
1175401
1175402
1175403
1175404
1175405
1175406
1175407
1175408
1175409
1175410
1175411
1175412
1175413
1175414
1175415
1175416
1175417
1175418
1175419
1175420
1175421
1175422
1175423
1175440
1175493
1175515
1175518
1175526
1175550
1175654
1175666
1175667
1175668
1175669
1175670
1175767
1175768
1175769
1175770
1175771
1175772
1175786
1175873
CVE-2009-4112
CVE-2017-18922
CVE-2018-1122
CVE-2018-1123
CVE-2018-1124
CVE-2018-1125
CVE-2018-1126
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-20723
CVE-2018-20724
CVE-2018-20725
CVE-2018-20726
CVE-2018-20815
CVE-2018-21247
CVE-2018-3639
CVE-2018-5740
CVE-2018-5743
CVE-2018-5745
CVE-2019-10086
CVE-2019-11091
CVE-2019-16723
CVE-2019-17357
CVE-2019-17358
CVE-2019-20839
CVE-2019-20840
CVE-2019-3812
CVE-2019-3860
CVE-2019-6465
CVE-2019-8934
CVE-2019-9824
CVE-2019-9893
CVE-2020-14314
CVE-2020-14331
CVE-2020-14356
CVE-2020-14361
CVE-2020-14362
CVE-2020-14397
CVE-2020-14398
CVE-2020-14399
CVE-2020-14400
CVE-2020-14401
CVE-2020-14402
CVE-2020-1749
CVE-2020-24394
CVE-2020-2654
CVE-2020-2756
CVE-2020-2757
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2830
CVE-2020-7106
CVE-2020-7237
CVE-2020-8813
openSUSE-SU-2019:1533-1
openSUSE-SU-2020:0558-1
openSUSE-SU-2020:0988-1
openSUSE-SU-2020:1325-1
SUSE-SU-2019:0450-1
SUSE-SU-2019:1238-1
SUSE-SU-2019:1606-1
SUSE-SU-2019:2244-1
SUSE-SU-2019:2941-1
SUSE-SU-2020:1683-1
Platform(s):openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • bind-9.11.2-lp151.11.3 is installed
  • OR bind-chrootenv-9.11.2-lp151.11.3 is installed
  • OR bind-devel-9.11.2-lp151.11.3 is installed
  • OR bind-devel-32bit-9.11.2-lp151.11.3 is installed
  • OR bind-doc-9.11.2-lp151.11.3 is installed
  • OR bind-lwresd-9.11.2-lp151.11.3 is installed
  • OR bind-utils-9.11.2-lp151.11.3 is installed
  • OR libbind9-160-9.11.2-lp151.11.3 is installed
  • OR libbind9-160-32bit-9.11.2-lp151.11.3 is installed
  • OR libdns169-9.11.2-lp151.11.3 is installed
  • OR libdns169-32bit-9.11.2-lp151.11.3 is installed
  • OR libirs-devel-9.11.2-lp151.11.3 is installed
  • OR libirs160-9.11.2-lp151.11.3 is installed
  • OR libirs160-32bit-9.11.2-lp151.11.3 is installed
  • OR libisc166-9.11.2-lp151.11.3 is installed
  • OR libisc166-32bit-9.11.2-lp151.11.3 is installed
  • OR libisccc160-9.11.2-lp151.11.3 is installed
  • OR libisccc160-32bit-9.11.2-lp151.11.3 is installed
  • OR libisccfg160-9.11.2-lp151.11.3 is installed
  • OR libisccfg160-32bit-9.11.2-lp151.11.3 is installed
  • OR liblwres160-9.11.2-lp151.11.3 is installed
  • OR liblwres160-32bit-9.11.2-lp151.11.3 is installed
  • OR python3-bind-9.11.2-lp151.11.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • qemu-2.11.2-5.13 is installed
  • OR qemu-arm-2.11.2-5.13 is installed
  • OR qemu-block-curl-2.11.2-5.13 is installed
  • OR qemu-block-iscsi-2.11.2-5.13 is installed
  • OR qemu-block-rbd-2.11.2-5.13 is installed
  • OR qemu-block-ssh-2.11.2-5.13 is installed
  • OR qemu-guest-agent-2.11.2-5.13 is installed
  • OR qemu-ipxe-1.0.0+-5.13 is installed
  • OR qemu-kvm-2.11.2-5.13 is installed
  • OR qemu-lang-2.11.2-5.13 is installed
  • OR qemu-ppc-2.11.2-5.13 is installed
  • OR qemu-s390-2.11.2-5.13 is installed
  • OR qemu-seabios-1.11.0-5.13 is installed
  • OR qemu-sgabios-8-5.13 is installed
  • OR qemu-tools-2.11.2-5.13 is installed
  • OR qemu-vgabios-1.11.0-5.13 is installed
  • OR qemu-x86-2.11.2-5.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • xorg-x11-server-1.19.6-4.11 is installed
  • OR xorg-x11-server-extra-1.19.6-4.11 is installed
  • BACK