Revision Date: | 2021-09-16 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP2) (Important) |
Description: |
This update for the Linux Kernel 5.3.18-24_49 fixes several issues.
The following security issues were fixed:
- CVE-2021-3653: Fixed missing validation of the KVM `int_ctl` VMCB field that would have allowed a malicious L1 guest to enable AVIC support for the L2 guest (bsc#1189420). - CVE-2021-3656: Fixed KVM nSVM nested VMLOAD/VMSAVE interception (bsc#1189418). - CVE-2021-38198: Fixed KVM MMU to use the correct inherited permissions to get shadow page (bsc#1189278).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1189278 1189418 1189420 CVE-2007-5970 CVE-2008-7247 CVE-2009-0793 CVE-2009-3297 CVE-2009-4019 CVE-2009-4028 CVE-2009-4030 CVE-2010-1172 CVE-2010-4530 CVE-2010-5298 CVE-2011-0541 CVE-2011-1006 CVE-2011-1022 CVE-2011-4405 CVE-2012-2944 CVE-2012-4425 CVE-2012-5615 CVE-2013-0292 CVE-2013-1976 CVE-2013-1985 CVE-2013-2062 CVE-2013-4242 CVE-2013-4276 CVE-2014-0195 CVE-2014-0198 CVE-2014-0221 CVE-2014-0224 CVE-2014-2494 CVE-2014-3470 CVE-2014-4207 CVE-2014-4258 CVE-2014-4260 CVE-2014-4274 CVE-2014-4287 CVE-2014-6463 CVE-2014-6464 CVE-2014-6469 CVE-2014-6474 CVE-2014-6478 CVE-2014-6484 CVE-2014-6489 CVE-2014-6491 CVE-2014-6494 CVE-2014-6495 CVE-2014-6496 CVE-2014-6500 CVE-2014-6505 CVE-2014-6507 CVE-2014-6520 CVE-2014-6530 CVE-2014-6551 CVE-2014-6555 CVE-2014-6559 CVE-2014-6564 CVE-2014-6568 CVE-2014-8484 CVE-2014-8485 CVE-2014-8501 CVE-2014-8502 CVE-2014-8503 CVE-2014-8504 CVE-2014-8737 CVE-2014-8738 CVE-2014-8964 CVE-2015-0374 CVE-2015-0381 CVE-2015-0382 CVE-2015-0391 CVE-2015-0411 CVE-2015-0432 CVE-2015-0433 CVE-2015-0441 CVE-2015-0499 CVE-2015-0501 CVE-2015-0505 CVE-2015-1038 CVE-2015-2325 CVE-2015-2326 CVE-2015-2568 CVE-2015-2571 CVE-2015-2573 CVE-2015-3152 CVE-2015-3202 CVE-2015-5198 CVE-2015-5199 CVE-2015-5200 CVE-2016-1372 CVE-2016-2335 CVE-2017-17969 CVE-2021-3653 CVE-2021-3656 CVE-2021-38198
|
Platform(s): | openSUSE 13.1 openSUSE 13.1 NonFree openSUSE 13.2 openSUSE Leap 42.1 SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 SUSE Linux Enterprise Build System Kit 12 SP1 SUSE Linux Enterprise Build System Kit 12 SP2 SUSE Linux Enterprise Build System Kit 12 SP3 SUSE Linux Enterprise Build System Kit 12 SP4 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise for SAP 11 SP4 SUSE Linux Enterprise High Availability Extension 11 SP2 SUSE Linux Enterprise High Availability Extension 11 SP3 SUSE Linux Enterprise High Availability Extension 11 SP4 SUSE Linux Enterprise High Performance Computing 15 SP2 SUSE Linux Enterprise Module for Live Patching 15 SP2 SUSE Linux Enterprise Point of Sale 11 SP2 SUSE Linux Enterprise Point of Sale 11 SP3 SUSE Linux Enterprise Real Time Extension 11 SP3 SUSE Linux Enterprise Real Time Extension 12 SP2 SUSE Linux Enterprise Server 11 SUSE Linux Enterprise Server 11 SP2 SUSE Linux Enterprise Server 11 SP2-LTSS SUSE Linux Enterprise Server 11 SP3 SUSE Linux Enterprise Server 11 SP3-LTSS SUSE Linux Enterprise Server 11 SP4 SUSE Linux Enterprise Server 11-SECURITY SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server 12-LTSS SUSE Linux Enterprise Server 15 SP2 SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 SUSE Linux Enterprise Server for SAP Applications 12 SUSE Linux Enterprise Server for SAP Applications 12 SP1 SUSE Linux Enterprise Server for SAP Applications 12 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP2 SUSE Linux Enterprise Server for VMWare 11 SP2 SUSE Linux Enterprise Server for VMWare 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP2 SUSE Linux Enterprise Software Development Kit 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP4 SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Software Development Kit 12 SP2 SUSE Linux Enterprise Software Development Kit 12 SP3 SUSE Linux Enterprise Software Development Kit 12 SP4 SUSE Linux Enterprise Workstation Extension 12 SUSE Linux Enterprise Workstation Extension 12 SP1 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SP3 SUSE Linux Enterprise Workstation Extension 12 SP4 SUSE OpenStack Cloud 6
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP1 is installed AND kernel-zfcpdump-3.12.51-60.25 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP2 is installed
AND kernel-zfcpdump-4.4.59-92.24 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP3 is installed
AND kernel-zfcpdump-4.4.82-6.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP4 is installed
AND kernel-zfcpdump-4.12.14-95.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND cifs-utils-5.1-0.7.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
MozillaFirefox-17.0.9esr-0.7.1 is installed
OR MozillaFirefox-translations-17.0.9esr-0.7.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP4 is installed
AND dhcpcd-3.2.3-45.5.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
dbus-1-1.8.12-6 is installed
OR dbus-1-x11-1.8.12-6 is installed
OR libdbus-1-3-1.8.12-6 is installed
OR libdbus-1-3-32bit-1.8.12-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND binutils-2.29.1-9.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
libquicktime-1.2.4-14.3 is installed
OR libquicktime0-1.2.4-14.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND p7zip-9.20.1-7.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise for SAP 11 SP4 is installed
AND Package Information
compat-openssl097g-0.9.7g-146.22.47.1 is installed
OR compat-openssl097g-32bit-0.9.7g-146.22.47.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability Extension 11 SP2 is installed
AND Package Information
cluster-network-kmp-default-1.4_3.0.101_0.7.17-2.18.81 is installed
OR cluster-network-kmp-pae-1.4_3.0.101_0.7.17-2.18.81 is installed
OR cluster-network-kmp-ppc64-1.4_3.0.101_0.7.17-2.18.81 is installed
OR cluster-network-kmp-trace-1.4_3.0.101_0.7.17-2.18.81 is installed
OR cluster-network-kmp-xen-1.4_3.0.101_0.7.17-2.18.81 is installed
OR gfs2-kmp-default-2_3.0.101_0.7.17-0.7.109 is installed
OR gfs2-kmp-pae-2_3.0.101_0.7.17-0.7.109 is installed
OR gfs2-kmp-ppc64-2_3.0.101_0.7.17-0.7.109 is installed
OR gfs2-kmp-trace-2_3.0.101_0.7.17-0.7.109 is installed
OR gfs2-kmp-xen-2_3.0.101_0.7.17-0.7.109 is installed
OR ocfs2-kmp-default-1.6_3.0.101_0.7.17-0.11.80 is installed
OR ocfs2-kmp-pae-1.6_3.0.101_0.7.17-0.11.80 is installed
OR ocfs2-kmp-ppc64-1.6_3.0.101_0.7.17-0.11.80 is installed
OR ocfs2-kmp-trace-1.6_3.0.101_0.7.17-0.11.80 is installed
OR ocfs2-kmp-xen-1.6_3.0.101_0.7.17-0.11.80 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability Extension 11 SP3 is installed
AND Package Information
cluster-network-kmp-bigsmp-1.4_3.0.101_0.47.55-2.28.1.21 is installed
OR cluster-network-kmp-default-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-pae-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-ppc64-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-trace-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-xen-1.4_3.0.101_0.40-2.27.98 is installed
OR gfs2-kmp-bigsmp-2_3.0.101_0.47.55-0.17.1.21 is installed
OR gfs2-kmp-default-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-pae-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-ppc64-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-trace-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-xen-2_3.0.101_0.40-0.16.104 is installed
OR ocfs2-kmp-bigsmp-1.6_3.0.101_0.47.55-0.21.1.21 is installed
OR ocfs2-kmp-default-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-pae-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-ppc64-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-trace-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-xen-1.6_3.0.101_0.40-0.20.98 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability Extension 11 SP4 is installed
AND Package Information
gnutls-2.4.1-24.39.60.1 is installed
OR libgnutls-extra26-2.4.1-24.39.60.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 SP2 is installed
AND kernel-livepatch-5_3_18-24_49-default-10-2.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Point of Sale 11 SP2 is installed
AND qemu-0.10.1-0.5.7.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Point of Sale 11 SP3 is installed
AND Package Information
bind-9.9.6P1-0.36.1 is installed
OR bind-chrootenv-9.9.6P1-0.36.1 is installed
OR bind-doc-9.9.6P1-0.36.1 is installed
OR bind-libs-9.9.6P1-0.36.1 is installed
OR bind-utils-9.9.6P1-0.36.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Real Time Extension 11 SP3 is installed
AND Package Information
kernel-rt-3.0.101.rt130-0.33.44.2 is installed
OR kernel-rt-base-3.0.101.rt130-0.33.44.2 is installed
OR kernel-rt-devel-3.0.101.rt130-0.33.44.2 is installed
OR kernel-rt_trace-3.0.101.rt130-0.33.44.2 is installed
OR kernel-rt_trace-base-3.0.101.rt130-0.33.44.2 is installed
OR kernel-rt_trace-devel-3.0.101.rt130-0.33.44.2 is installed
OR kernel-source-rt-3.0.101.rt130-0.33.44.2 is installed
OR kernel-syms-rt-3.0.101.rt130-0.33.44.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Real Time Extension 12 SP2 is installed
AND Package Information
cluster-md-kmp-rt-4.4.74-7.10 is installed
OR cluster-network-kmp-rt-4.4.74-7.10 is installed
OR dlm-kmp-rt-4.4.74-7.10 is installed
OR gfs2-kmp-rt-4.4.74-7.10 is installed
OR kernel-devel-rt-4.4.74-7.10 is installed
OR kernel-rt-4.4.74-7.10 is installed
OR kernel-rt-base-4.4.74-7.10 is installed
OR kernel-rt-devel-4.4.74-7.10 is installed
OR kernel-rt_debug-4.4.74-7.10 is installed
OR kernel-rt_debug-devel-4.4.74-7.10 is installed
OR kernel-source-rt-4.4.74-7.10 is installed
OR kernel-syms-rt-4.4.74-7.10 is installed
OR ocfs2-kmp-rt-4.4.74-7.10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 is installed
AND NetworkManager-gnome-0.7.0.r1053-11.11.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 11 SP2 is installed
AND
openCryptoki-2.4-0.11.1 is installed
OR openCryptoki-32bit-2.4-0.11.1 is installed
OR openCryptoki-64bit-2.4-0.11.1 is installed
OR Package Information
SUSE Linux Enterprise Server for VMWare 11 SP2 is installed
AND
openCryptoki-2.4-0.11.1 is installed
OR openCryptoki-32bit-2.4-0.11.1 is installed
OR openCryptoki-64bit-2.4-0.11.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP2-LTSS is installed
AND Package Information
xen-4.1.6_08-32.1 is installed
OR xen-devel-4.1.6_08-32.1 is installed
OR xen-doc-html-4.1.6_08-32.1 is installed
OR xen-doc-pdf-4.1.6_08-32.1 is installed
OR xen-kmp-default-4.1.6_08_3.0.101_0.7.44-32.1 is installed
OR xen-kmp-pae-4.1.6_08_3.0.101_0.7.44-32.1 is installed
OR xen-kmp-trace-4.1.6_08_3.0.101_0.7.44-32.1 is installed
OR xen-libs-4.1.6_08-32.1 is installed
OR xen-libs-32bit-4.1.6_08-32.1 is installed
OR xen-tools-4.1.6_08-32.1 is installed
OR xen-tools-domU-4.1.6_08-32.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 11 SP3 is installed
AND
augeas-0.9.0-3.15.1 is installed
OR augeas-lenses-0.9.0-3.15.1 is installed
OR libaugeas0-0.9.0-3.15.1 is installed
OR Package Information
SUSE Linux Enterprise Server for VMWare 11 SP3 is installed
AND
augeas-0.9.0-3.15.1 is installed
OR augeas-lenses-0.9.0-3.15.1 is installed
OR libaugeas0-0.9.0-3.15.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP3-LTSS is installed
AND Package Information
ImageMagick-6.4.3.6-7.34.1 is installed
OR libMagickCore1-6.4.3.6-7.34.1 is installed
OR libMagickCore1-32bit-6.4.3.6-7.34.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP4 is installed
AND Package Information
curl-7.19.7-1.42.1 is installed
OR libcurl4-7.19.7-1.42.1 is installed
OR libcurl4-32bit-7.19.7-1.42.1 is installed
OR libcurl4-x86-7.19.7-1.42.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11-SECURITY is installed
AND Package Information
libldap-openssl1-2_4-2-2.4.26-0.62.3 is installed
OR libldap-openssl1-2_4-2-32bit-2.4.26-0.62.3 is installed
OR libldap-openssl1-2_4-2-x86-2.4.26-0.62.3 is installed
OR openldap2-client-openssl1-2.4.26-0.62.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 is installed
AND Package Information
libXinerama1-1.1.3-3 is installed
OR libXinerama1-32bit-1.1.3-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND binutils-2.25.0-13 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
kgraft-patch-3_12_67-60_64_18-default-8-3.1 is installed
OR kgraft-patch-3_12_67-60_64_18-xen-8-3.1 is installed
OR kgraft-patch-SLE12-SP1_Update_9-8-3.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND apache-commons-httpclient-3.1-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND autofs-5.0.9-27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
file-5.22-10.6 is installed
OR file-magic-5.22-10.6 is installed
OR libmagic1-5.22-10.6 is installed
OR libmagic1-32bit-5.22-10.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP5 is installed
AND Package Information
PackageKit-1.1.3-24.9 is installed
OR PackageKit-backend-zypp-1.1.3-24.9 is installed
OR PackageKit-lang-1.1.3-24.9 is installed
OR libpackagekit-glib2-18-1.1.3-24.9 is installed
OR typelib-1_0-PackageKitGlib-1_0-1.1.3-24.9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12-LTSS is installed
AND Package Information
MozillaFirefox-45.4.0esr-81.1 is installed
OR MozillaFirefox-translations-45.4.0esr-81.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
AND Package Information
aaa_base-13.2+git20140911.61c1681-28 is installed
OR aaa_base-extras-13.2+git20140911.61c1681-28 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 is installed
AND Package Information
kgraft-patch-3_12_55-52_42-default-2-2 is installed
OR kgraft-patch-3_12_55-52_42-xen-2-2 is installed
OR kgraft-patch-SLE12_Update_12-2-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 SP1 is installed
AND Package Information
evince-3.10.3-2.3 is installed
OR evince-lang-3.10.3-2.3 is installed
OR libevdocument3-4-3.10.3-2.3 is installed
OR libevview3-3-3.10.3-2.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 SP2 is installed
AND cryptctl-1.2.6-5.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP2 is installed
AND Package Information
ImageMagick-6.4.3.6-7.26.1 is installed
OR ImageMagick-devel-6.4.3.6-7.26.1 is installed
OR libMagick++-devel-6.4.3.6-7.26.1 is installed
OR libMagick++1-6.4.3.6-7.26.1 is installed
OR libMagickWand1-6.4.3.6-7.26.1 is installed
OR libMagickWand1-32bit-6.4.3.6-7.26.1 is installed
OR perl-PerlMagick-6.4.3.6-7.26.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
AND Package Information
augeas-0.9.0-3.17.2 is installed
OR augeas-devel-0.9.0-3.17.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
AND python-crypto-2.0.1-28.20.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 is installed
AND Package Information
flac-1.3.0-6 is installed
OR flac-devel-1.3.0-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
AND Package Information
sane-backends-1.0.24-3 is installed
OR sane-backends-devel-1.0.24-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
AND Package Information
libpoppler44-0.24.4-14.6 is installed
OR poppler-0.24.4-14.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
AND gdm-devel-3.10.0.1-54.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 is installed
AND Package Information
dia-0.97.2-13 is installed
OR dia-lang-0.97.2-13 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
AND Package Information
freerdp-1.0.2-7 is installed
OR libfreerdp-1_0-1.0.2-7 is installed
OR libfreerdp-1_0-plugins-1.0.2-7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
AND Package Information
empathy-3.12.12-5 is installed
OR empathy-lang-3.12.12-5 is installed
OR telepathy-mission-control-plugin-goa-3.12.12-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
AND Package Information
ImageMagick-6.8.8.1-70 is installed
OR libMagick++-6_Q16-3-6.8.8.1-70 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-70 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
AND gnome-shell-calendar-3.20.4-77.17 is installed
|