Oval Definition:oval:org.opensuse.security:def:64155
Revision Date:2020-12-01Version:1
Title:Security update for xen (Important)
Description:

This update for xen fixes the following issues:

- CVE-2020-25602: Fixed an issue where there was a crash when handling guest access to MSR_MISC_ENABLE was thrown (bsc#1176339,XSA-333) - CVE-2020-25598: Added a missing unlock in XENMEM_acquire_resource error path (bsc#1176341,XSA-334) - CVE-2020-25604: Fixed a race condition when migrating timers between x86 HVM vCPU-s (bsc#1176343,XSA-336) - CVE-2020-25595: Fixed an issue where PCI passthrough code was reading back hardware registers (bsc#1176344,XSA-337) - CVE-2020-25597: Fixed an issue where a valid event channels may not turn invalid (bsc#1176346,XSA-338) - CVE-2020-25596: Fixed a potential denial of service in x86 pv guest kernel via SYSENTER (bsc#1176345,XSA-339) - CVE-2020-25603: Fixed an issue due to missing barriers when accessing/allocating an event channel (bsc#1176347,XSA-340) - CVE-2020-25600: Fixed out of bounds event channels available to 32-bit x86 domains (bsc#1176348,XSA-342) - CVE-2020-25599: Fixed race conditions with evtchn_reset() (bsc#1176349,XSA-343) - CVE-2020-25601: Fixed an issue due to lack of preemption in evtchn_reset() / evtchn_destroy() (bsc#1176350,XSA-344) - CVE-2020-14364: Fixed an out-of-bounds read/write access while processing usb packets (bsc#1175534). - Various bug fixes (bsc#1027519)
Family:unixClass:patch
Status:Reference(s):1027519
1068716
1114605
1123919
1142439
1144065
1164572
1164574
1170200
1172491
1174075
1174159
1174466
1175201
1175534
1176339
1176343
1176344
1176345
1176346
1176347
1176348
1176349
1176350
1177344
1177843
1178073
1178531
CVE-2009-3894
CVE-2017-16808
CVE-2019-1010220
CVE-2019-10214
CVE-2020-13790
CVE-2020-14364
CVE-2020-14628
CVE-2020-14629
CVE-2020-14646
CVE-2020-14647
CVE-2020-14648
CVE-2020-14649
CVE-2020-14650
CVE-2020-14673
CVE-2020-14674
CVE-2020-14675
CVE-2020-14676
CVE-2020-14677
CVE-2020-14694
CVE-2020-14695
CVE-2020-14698
CVE-2020-14699
CVE-2020-14700
CVE-2020-14703
CVE-2020-14704
CVE-2020-14707
CVE-2020-14711
CVE-2020-14712
CVE-2020-14713
CVE-2020-14714
CVE-2020-14715
CVE-2020-25595
CVE-2020-25596
CVE-2020-25597
CVE-2020-25599
CVE-2020-25600
CVE-2020-25601
CVE-2020-25602
CVE-2020-25603
CVE-2020-25604
CVE-2020-25660
CVE-2020-9272
CVE-2020-9273
openSUSE-SU-2019:1964-1
openSUSE-SU-2019:2143-1
openSUSE-SU-2019:2612-1
openSUSE-SU-2020:0273-1
openSUSE-SU-2020:1413-1
openSUSE-SU-2020:1486-1
SUSE-SU-2020:2786-1
SUSE-SU-2020:3539-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Enterprise Storage 7
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Server 12 SP4-LTSS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND tcpdump-4.9.2-lp151.4.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • python3-virtualbox-6.1.14-lp152.2.5 is installed
  • OR virtualbox-6.1.14-lp152.2.5 is installed
  • OR virtualbox-devel-6.1.14-lp152.2.5 is installed
  • OR virtualbox-guest-desktop-icons-6.1.14-lp152.2.5 is installed
  • OR virtualbox-guest-source-6.1.14-lp152.2.5 is installed
  • OR virtualbox-guest-tools-6.1.14-lp152.2.5 is installed
  • OR virtualbox-guest-x11-6.1.14-lp152.2.5 is installed
  • OR virtualbox-host-source-6.1.14-lp152.2.5 is installed
  • OR virtualbox-kmp-6.1.14-lp152.2.5 is installed
  • OR virtualbox-kmp-default-6.1.14_k5.3.18_lp152.41-lp152.2.5 is installed
  • OR virtualbox-kmp-preempt-6.1.14_k5.3.18_lp152.41-lp152.2.5 is installed
  • OR virtualbox-qt-6.1.14-lp152.2.5 is installed
  • OR virtualbox-vnc-6.1.14-lp152.2.5 is installed
  • OR virtualbox-websrv-6.1.14-lp152.2.5 is installed
  • Definition Synopsis
  • SUSE Enterprise Storage 7 is installed
  • AND Package Information
  • ceph-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR ceph-base-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR ceph-common-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR cephadm-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR libcephfs2-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR librados2-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR librbd1-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR librgw2-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR python3-ceph-argparse-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR python3-ceph-common-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR python3-cephfs-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR python3-rados-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR python3-rbd-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR python3-rgw-15.2.5.667+g1a579d5bf2-3.3 is installed
  • OR rbd-nbd-15.2.5.667+g1a579d5bf2-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND dstat-0.7.3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • xen-4.11.4_08-2.36 is installed
  • OR xen-doc-html-4.11.4_08-2.36 is installed
  • OR xen-libs-4.11.4_08-2.36 is installed
  • OR xen-libs-32bit-4.11.4_08-2.36 is installed
  • OR xen-tools-4.11.4_08-2.36 is installed
  • OR xen-tools-domU-4.11.4_08-2.36 is installed
  • BACK