Oval Definition:oval:org.opensuse.security:def:69137
Revision Date:2021-08-27Version:1
Title:Security update for qemu (Moderate)
Description:

This update for qemu fixes the following issues:

Security issues fixed:

- usbredir: free call on invalid pointer in bufp_alloc (bsc#1189145, CVE-2021-3682) - NULL pointer dereference in ESP (bsc#1180433, CVE-2020-35504) (bsc#1180434, CVE-2020-35505) (bsc#1180435, CVE-2020-35506) - NULL pointer dereference issue in megasas-gen2 host bus adapter (bsc#1180432, CVE-2020-35503) - eepro100: stack overflow via infinite recursion (bsc#1182651, CVE-2021-20255) - usb: unbounded stack allocation in usbredir (bsc#1186012, CVE-2021-3527)

Non-security issues fixed:

- Use max host physical address if -cpu max is used (bsc#1188299)
Family:unixClass:patch
Status:Reference(s):1123156
1154790
1161066
1162729
1163018
1165776
1166240
1166379
1171252
1171254
1180432
1180433
1180434
1180435
1182651
1186012
1188299
1189145
CVE-2019-15034
CVE-2019-20382
CVE-2019-6778
CVE-2020-12653
CVE-2020-12654
CVE-2020-1711
CVE-2020-35503
CVE-2020-35504
CVE-2020-35505
CVE-2020-35506
CVE-2020-7039
CVE-2020-8608
CVE-2021-20255
CVE-2021-3527
CVE-2021-3682
SUSE-SU-2020:0844-1
SUSE-SU-2020:1475-1
SUSE-SU-2021:2858-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP3
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Manager Proxy 4.2
SUSE Manager Server 4.2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-197_37-default-3-2 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_10-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • qemu-3.1.1.1-9.14 is installed
  • OR qemu-arm-3.1.1.1-9.14 is installed
  • OR qemu-audio-alsa-3.1.1.1-9.14 is installed
  • OR qemu-audio-oss-3.1.1.1-9.14 is installed
  • OR qemu-audio-pa-3.1.1.1-9.14 is installed
  • OR qemu-block-dmg-3.1.1.1-9.14 is installed
  • OR qemu-extra-3.1.1.1-9.14 is installed
  • OR qemu-linux-user-3.1.1.1-9.14 is installed
  • OR qemu-ppc-3.1.1.1-9.14 is installed
  • OR qemu-s390-3.1.1.1-9.14 is installed
  • OR qemu-seabios-1.12.0-9.14 is installed
  • OR qemu-sgabios-8-9.14 is installed
  • OR qemu-testsuite-3.1.1.1-9.14 is installed
  • OR qemu-ui-curses-3.1.1.1-9.14 is installed
  • OR qemu-ui-gtk-3.1.1.1-9.14 is installed
  • OR qemu-x86-3.1.1.1-9.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP3 is installed
  • AND Package Information
  • qemu-5.2.0-103.2 is installed
  • OR qemu-arm-5.2.0-103.2 is installed
  • OR qemu-audio-alsa-5.2.0-103.2 is installed
  • OR qemu-audio-pa-5.2.0-103.2 is installed
  • OR qemu-audio-spice-5.2.0-103.2 is installed
  • OR qemu-block-curl-5.2.0-103.2 is installed
  • OR qemu-block-iscsi-5.2.0-103.2 is installed
  • OR qemu-block-rbd-5.2.0-103.2 is installed
  • OR qemu-block-ssh-5.2.0-103.2 is installed
  • OR qemu-chardev-baum-5.2.0-103.2 is installed
  • OR qemu-chardev-spice-5.2.0-103.2 is installed
  • OR qemu-guest-agent-5.2.0-103.2 is installed
  • OR qemu-hw-display-qxl-5.2.0-103.2 is installed
  • OR qemu-hw-display-virtio-gpu-5.2.0-103.2 is installed
  • OR qemu-hw-display-virtio-gpu-pci-5.2.0-103.2 is installed
  • OR qemu-hw-display-virtio-vga-5.2.0-103.2 is installed
  • OR qemu-hw-s390x-virtio-gpu-ccw-5.2.0-103.2 is installed
  • OR qemu-hw-usb-redirect-5.2.0-103.2 is installed
  • OR qemu-ipxe-1.0.0+-103.2 is installed
  • OR qemu-ksm-5.2.0-103.2 is installed
  • OR qemu-kvm-5.2.0-103.2 is installed
  • OR qemu-lang-5.2.0-103.2 is installed
  • OR qemu-ppc-5.2.0-103.2 is installed
  • OR qemu-s390x-5.2.0-103.2 is installed
  • OR qemu-seabios-1.14.0_0_g155821a-103.2 is installed
  • OR qemu-sgabios-8-103.2 is installed
  • OR qemu-skiboot-5.2.0-103.2 is installed
  • OR qemu-ui-curses-5.2.0-103.2 is installed
  • OR qemu-ui-gtk-5.2.0-103.2 is installed
  • OR qemu-ui-opengl-5.2.0-103.2 is installed
  • OR qemu-ui-spice-app-5.2.0-103.2 is installed
  • OR qemu-ui-spice-core-5.2.0-103.2 is installed
  • OR qemu-vgabios-1.14.0_0_g155821a-103.2 is installed
  • OR qemu-x86-5.2.0-103.2 is installed
  • BACK