Oval Definition:oval:org.opensuse.security:def:64907
Revision Date:2020-12-01Version:1
Title:Security update for qemu (Important)
Description:

This update for qemu fixes the following issues:

* qemu was updated to v3.1.1.1, a stable, bug-fix-only release, which includes 2 fixes we already carry, as well as one additional use- after-free fix in slirp. (CVE-2018-20126 bsc#1119991, CVE-2019-14378 bsc#1143794, and CVE-2019-15890 bsc#1149811 respectively)

Security issues fixed:

- CVE-2019-12068: Fixed potential DOS in lsi scsi controller emulation (bsc#1146873) - CVE-2019-11135: Expose taa-no 'feature', indicating CPU does not have the TSX Async Abort vulnerability. (bsc#1152506) - CVE-2018-12207: Expose pschange-mc-no 'feature', indicating CPU does not have the page size change machine check vulnerability (bsc#1117665)

Other issues fixed:

- Change how this bug gets fixed (bsc#1144087) - Disable file locking in the Xen PV disk backend to avoid locking issues with PV domUs during migration. The issues triggered by the locking can not be properly handled in libxl. The locking introduced in qemu-2.10 was removed again in qemu-4.0. (bsc#1079730, bsc#1098403, bsc#1111025, bsc#1145427, bsc#1145774) - Feature support for vfio-ccw dasd ipl (bsc#1145379 jira-SLE-6132) - Additional hardware instruction support for s390, also update qemu linux headers to 5.2-rc1 (bsc#1145436 jira-SLE-6237)

Family:unixClass:patch
Status:Reference(s):1055186
1058115
1065600
1065729
1079730
1094244
1098403
1111025
1117665
1119991
1136666
1143794
1144087
1145379
1145427
1145436
1145774
1146873
1149811
1152148
1152472
1152489
1152506
1153274
1154353
1155518
1155798
1156395
1167527
1170232
1170774
1171000
1171068
1171073
1171558
1171688
1171742
1172419
1172757
1172873
1173017
1173060
1173115
1173267
1173580
1173746
1173998
1174029
1174110
1174111
1174358
1174484
1174486
1174899
1175263
1175667
1175749
1175787
1175882
1175952
1175996
1175997
1175998
1175999
1176000
1176001
1176019
1176022
1176038
1176063
1176137
1176235
1176236
1176237
1176242
1176278
1176357
1176358
1176359
1176360
1176361
1176362
1176363
1176364
1176365
1176366
1176367
1176381
1176423
1176449
1176486
1176507
1176536
1176537
1176538
1176539
1176540
1176541
1176542
1176543
1176544
1176545
1176546
1176548
1176558
1176559
1176587
1176659
1176698
1176699
1176700
1176721
1176722
1176725
1176732
1176763
1176775
1176788
1176789
1176833
1176869
1176877
1176925
1176962
1176980
1176990
1177021
1177030
1178067
CVE-2018-12207
CVE-2018-20126
CVE-2019-11135
CVE-2019-12068
CVE-2019-14378
CVE-2019-15890
CVE-2020-0404
CVE-2020-0427
CVE-2020-0431
CVE-2020-0432
CVE-2020-13753
CVE-2020-14385
CVE-2020-14390
CVE-2020-25212
CVE-2020-25284
CVE-2020-26088
CVE-2020-27560
CVE-2020-4044
CVE-2020-9802
CVE-2020-9803
CVE-2020-9805
CVE-2020-9806
CVE-2020-9807
CVE-2020-9843
CVE-2020-9850
openSUSE-SU-2020:0999-1
openSUSE-SU-2020:1586-1
openSUSE-SU-2020:1884-1
SUSE-SU-2019:2955-1
SUSE-SU-2020:1990-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Module for Basesystem 15 SP1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libpainter0-0.9.6-lp151.4.6 is installed
  • OR librfxencode0-0.9.6-lp151.4.6 is installed
  • OR xrdp-0.9.6-lp151.4.6 is installed
  • OR xrdp-devel-0.9.6-lp151.4.6 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • kernel-debug-5.3.18-lp152.44 is installed
  • OR kernel-debug-devel-5.3.18-lp152.44 is installed
  • OR kernel-default-5.3.18-lp152.44 is installed
  • OR kernel-default-base-5.3.18-lp152.44.1.lp152.8.8 is installed
  • OR kernel-default-base-rebuild-5.3.18-lp152.44.1.lp152.8.8 is installed
  • OR kernel-default-devel-5.3.18-lp152.44 is installed
  • OR kernel-devel-5.3.18-lp152.44 is installed
  • OR kernel-docs-5.3.18-lp152.44 is installed
  • OR kernel-docs-html-5.3.18-lp152.44 is installed
  • OR kernel-kvmsmall-5.3.18-lp152.44 is installed
  • OR kernel-kvmsmall-devel-5.3.18-lp152.44 is installed
  • OR kernel-macros-5.3.18-lp152.44 is installed
  • OR kernel-obs-build-5.3.18-lp152.44 is installed
  • OR kernel-obs-qa-5.3.18-lp152.44 is installed
  • OR kernel-preempt-5.3.18-lp152.44 is installed
  • OR kernel-preempt-devel-5.3.18-lp152.44 is installed
  • OR kernel-source-5.3.18-lp152.44 is installed
  • OR kernel-source-vanilla-5.3.18-lp152.44 is installed
  • OR kernel-syms-5.3.18-lp152.44 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • qemu-3.1.1.1-9.6 is installed
  • OR qemu-tools-3.1.1.1-9.6 is installed
  • BACK