Revision Date: | 2021-09-16 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP3) (Important) |
Description: |
This update for the Linux Kernel 5.3.18-59_10 fixes several issues.
The following security issues were fixed:
- CVE-2021-3653: Fixed missing validation of the KVM `int_ctl` VMCB field that would have allowed a malicious L1 guest to enable AVIC support for the L2 guest (bsc#1189420). - CVE-2021-3656: Fixed KVM nSVM nested VMLOAD/VMSAVE interception (bsc#1189418). - CVE-2021-38198: Fixed KVM MMU to use the correct inherited permissions to get shadow page (bsc#1189278).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1189278 1189418 1189420 CVE-2007-6600 CVE-2009-0758 CVE-2009-0790 CVE-2009-4034 CVE-2009-4136 CVE-2010-0295 CVE-2010-0407 CVE-2010-1169 CVE-2010-1170 CVE-2010-2244 CVE-2010-3433 CVE-2010-4531 CVE-2011-1002 CVE-2011-1145 CVE-2011-3177 CVE-2011-3200 CVE-2011-4362 CVE-2012-0866 CVE-2012-0867 CVE-2012-0868 CVE-2012-2143 CVE-2012-2388 CVE-2012-2655 CVE-2012-3488 CVE-2012-3489 CVE-2012-5533 CVE-2013-0255 CVE-2013-1762 CVE-2013-1899 CVE-2013-1900 CVE-2013-1901 CVE-2013-2944 CVE-2013-4508 CVE-2013-4559 CVE-2013-4560 CVE-2013-4758 CVE-2013-5018 CVE-2013-6075 CVE-2013-6076 CVE-2013-6370 CVE-2013-6370 CVE-2013-6371 CVE-2013-6371 CVE-2014-0016 CVE-2014-0060 CVE-2014-0061 CVE-2014-0062 CVE-2014-0063 CVE-2014-0064 CVE-2014-0065 CVE-2014-0066 CVE-2014-0067 CVE-2014-2323 CVE-2014-2324 CVE-2014-2338 CVE-2014-3430 CVE-2014-3634 CVE-2014-4038 CVE-2014-4039 CVE-2014-8104 CVE-2014-9221 CVE-2014-9622 CVE-2015-3165 CVE-2015-3166 CVE-2015-3167 CVE-2015-3200 CVE-2015-4171 CVE-2015-5288 CVE-2015-5289 CVE-2016-1000212 CVE-2021-3653 CVE-2021-3656 CVE-2021-38198
|
Platform(s): | openSUSE 13.1 openSUSE 13.2 openSUSE 13.2 NonFree openSUSE Leap 42.1 SUSE Linux Enterprise Build System Kit 12 SUSE Linux Enterprise Build System Kit 12 SP1 SUSE Linux Enterprise Build System Kit 12 SP3 SUSE Linux Enterprise Build System Kit 12 SP4 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise High Availability 12 SUSE Linux Enterprise High Availability 12 SP1 SUSE Linux Enterprise High Availability 12 SP2 SUSE Linux Enterprise High Availability 12 SP3 SUSE Linux Enterprise High Availability 12 SP4 SUSE Linux Enterprise High Availability Extension 11 SP3 SUSE Linux Enterprise High Availability Extension 11 SP4 SUSE Linux Enterprise High Performance Computing 15 SP3 SUSE Linux Enterprise Micro 5.1 SUSE Linux Enterprise Module for Live Patching 15 SP3 SUSE Linux Enterprise Point of Sale 11 SP3 SUSE Linux Enterprise Real Time Extension 11 SP4 SUSE Linux Enterprise Server 11 SUSE Linux Enterprise Server 11 SP1 SUSE Linux Enterprise Server 11 SP1-LTSS SUSE Linux Enterprise Server 11 SP3 SUSE Linux Enterprise Server 11 SP3-LTSS SUSE Linux Enterprise Server 11 SP4 SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server 12-LTSS SUSE Linux Enterprise Server 15 SP3 SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 SUSE Linux Enterprise Server for SAP Applications 12 SUSE Linux Enterprise Server for SAP Applications 12 SP1 SUSE Linux Enterprise Server for SAP Applications 12 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP3 SUSE Linux Enterprise Server for VMWare 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP2 SUSE Linux Enterprise Software Development Kit 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP4 SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Software Development Kit 12 SP2 SUSE Linux Enterprise Software Development Kit 12 SP3 SUSE Linux Enterprise Software Development Kit 12 SP4 SUSE Linux Enterprise Workstation Extension 12 SUSE Linux Enterprise Workstation Extension 12 SP1 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SP3 SUSE Linux Enterprise Workstation Extension 12 SP4
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 is installed AND Package Information
cups-1.7.5-5 is installed
OR cups-ddk-1.7.5-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP1 is installed
AND kernel-zfcpdump-3.12.59-60.41 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP3 is installed
AND Package Information
libudev-mini-devel-228-150.29 is installed
OR libudev-mini1-228-150.29 is installed
OR systemd-mini-228-150.29 is installed
OR systemd-mini-devel-228-150.29 is installed
OR udev-mini-228-150.29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP4 is installed
AND Package Information
ghostscript-mini-9.26-23.16 is installed
OR ghostscript-mini-devel-9.26-23.16 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND clamav-0.97.8-0.2.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
MozillaFirefox-31.8.0esr-0.10.1 is installed
OR MozillaFirefox-translations-31.8.0esr-0.10.1 is installed
OR libfreebl3-3.19.2_CKBI_1.98-0.10.1 is installed
OR libfreebl3-32bit-3.19.2_CKBI_1.98-0.10.1 is installed
OR libsoftokn3-3.19.2_CKBI_1.98-0.10.1 is installed
OR libsoftokn3-32bit-3.19.2_CKBI_1.98-0.10.1 is installed
OR mozilla-nspr-4.10.8-0.5.1 is installed
OR mozilla-nspr-32bit-4.10.8-0.5.1 is installed
OR mozilla-nss-3.19.2_CKBI_1.98-0.10.1 is installed
OR mozilla-nss-32bit-3.19.2_CKBI_1.98-0.10.1 is installed
OR mozilla-nss-tools-3.19.2_CKBI_1.98-0.10.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP4 is installed
AND Package Information
mozilla-nspr-4.10.9-11.1 is installed
OR mozilla-nspr-32bit-4.10.9-11.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
cpio-2.11-29 is installed
OR cpio-lang-2.11-29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
libxml2-2.9.4-36 is installed
OR libxml2-2-2.9.4-36 is installed
OR libxml2-2-32bit-2.9.4-36 is installed
OR libxml2-tools-2.9.4-36 is installed
OR python-libxml2-2.9.4-36 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
libmysqlclient18-10.0.31-29.3 is installed
OR libmysqlclient18-32bit-10.0.31-29.3 is installed
OR libmysqlclient_r18-10.0.31-29.3 is installed
OR libmysqlclient_r18-32bit-10.0.31-29.3 is installed
OR mariadb-10.0.31-29.3 is installed
OR mariadb-client-10.0.31-29.3 is installed
OR mariadb-errormessages-10.0.31-29.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
libSoundTouch0-1.7.1-5.6 is installed
OR libSoundTouch0-32bit-1.7.1-5.6 is installed
OR soundtouch-1.7.1-5.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 is installed
AND python-requests-2.8.1-6.9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP1 is installed
AND Package Information
libpacemaker3-1.1.13-20 is installed
OR pacemaker-1.1.13-20 is installed
OR pacemaker-cli-1.1.13-20 is installed
OR pacemaker-cts-1.1.13-20 is installed
OR pacemaker-remote-1.1.13-20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP2 is installed
AND lighttpd-1.4.35-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP3 is installed
AND Package Information
ctdb-4.6.7+git.38.90b2cdb4f22-3.7 is installed
OR ldirectord-4.0.1+git.1495055229.643177f1-2.4 is installed
OR monitoring-plugins-metadata-4.0.1+git.1495055229.643177f1-2.4 is installed
OR resource-agents-4.0.1+git.1495055229.643177f1-2.4 is installed
OR samba-4.6.7+git.38.90b2cdb4f22-3.7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP4 is installed
AND lighttpd-1.4.35-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability Extension 11 SP3 is installed
AND Package Information
cluster-network-kmp-bigsmp-1.4_3.0.101_0.47.55-2.28.1.21 is installed
OR cluster-network-kmp-default-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-pae-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-ppc64-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-trace-1.4_3.0.101_0.40-2.27.98 is installed
OR cluster-network-kmp-xen-1.4_3.0.101_0.40-2.27.98 is installed
OR gfs2-kmp-bigsmp-2_3.0.101_0.47.55-0.17.1.21 is installed
OR gfs2-kmp-default-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-pae-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-ppc64-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-trace-2_3.0.101_0.40-0.16.104 is installed
OR gfs2-kmp-xen-2_3.0.101_0.40-0.16.104 is installed
OR ocfs2-kmp-bigsmp-1.6_3.0.101_0.47.55-0.21.1.21 is installed
OR ocfs2-kmp-default-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-pae-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-ppc64-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-trace-1.6_3.0.101_0.40-0.20.98 is installed
OR ocfs2-kmp-xen-1.6_3.0.101_0.40-0.20.98 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability Extension 11 SP4 is installed
AND Package Information
gnutls-2.4.1-24.39.60.1 is installed
OR libgnutls-extra26-2.4.1-24.39.60.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 SP3 is installed
AND kernel-livepatch-5_3_18-59_10-default-4-2.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Point of Sale 11 SP3 is installed
AND Package Information
bind-9.9.6P1-0.36.1 is installed
OR bind-chrootenv-9.9.6P1-0.36.1 is installed
OR bind-doc-9.9.6P1-0.36.1 is installed
OR bind-libs-9.9.6P1-0.36.1 is installed
OR bind-utils-9.9.6P1-0.36.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Real Time Extension 11 SP4 is installed
AND Package Information
kernel-rt-3.0.101.rt130-54.1 is installed
OR kernel-rt-base-3.0.101.rt130-54.1 is installed
OR kernel-rt-devel-3.0.101.rt130-54.1 is installed
OR kernel-rt_trace-3.0.101.rt130-54.1 is installed
OR kernel-rt_trace-base-3.0.101.rt130-54.1 is installed
OR kernel-rt_trace-devel-3.0.101.rt130-54.1 is installed
OR kernel-source-rt-3.0.101.rt130-54.1 is installed
OR kernel-syms-rt-3.0.101.rt130-54.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 is installed
AND Package Information
NetworkManager-0.7.0.r4359-15.9.2 is installed
OR NetworkManager-glib-0.7.0.r4359-15.9.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP1 is installed
AND apache2-mod_perl-2.0.4-40.19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP1-LTSS is installed
AND Package Information
MozillaFirefox-24.5.0esr-0.3.1 is installed
OR MozillaFirefox-branding-SLED-24-0.4.10.14 is installed
OR MozillaFirefox-translations-24.5.0esr-0.3.1 is installed
OR libfreebl3-3.16-0.3.1 is installed
OR libfreebl3-32bit-3.16-0.3.1 is installed
OR mozilla-nspr-4.10.4-0.3.1 is installed
OR mozilla-nspr-32bit-4.10.4-0.3.1 is installed
OR mozilla-nss-3.16-0.3.1 is installed
OR mozilla-nss-32bit-3.16-0.3.1 is installed
OR mozilla-nss-tools-3.16-0.3.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 11 SP3 is installed
AND
bash-3.2-147.22.1 is installed
OR bash-doc-3.2-147.22.1 is installed
OR bash-x86-3.2-147.22.1 is installed
OR libreadline5-5.2-147.22.1 is installed
OR libreadline5-32bit-5.2-147.22.1 is installed
OR libreadline5-x86-5.2-147.22.1 is installed
OR readline-doc-5.2-147.22.1 is installed
OR Package Information
SUSE Linux Enterprise Server for VMWare 11 SP3 is installed
AND
bash-3.2-147.22.1 is installed
OR bash-doc-3.2-147.22.1 is installed
OR bash-x86-3.2-147.22.1 is installed
OR libreadline5-5.2-147.22.1 is installed
OR libreadline5-32bit-5.2-147.22.1 is installed
OR libreadline5-x86-5.2-147.22.1 is installed
OR readline-doc-5.2-147.22.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP3-LTSS is installed
AND Package Information
java-1_6_0-ibm-1.6.0_sr16.25-69.1 is installed
OR java-1_6_0-ibm-alsa-1.6.0_sr16.25-69.1 is installed
OR java-1_6_0-ibm-devel-1.6.0_sr16.25-69.1 is installed
OR java-1_6_0-ibm-fonts-1.6.0_sr16.25-69.1 is installed
OR java-1_6_0-ibm-jdbc-1.6.0_sr16.25-69.1 is installed
OR java-1_6_0-ibm-plugin-1.6.0_sr16.25-69.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP4 is installed
AND Package Information
libneon27-0.29.6-6.7.1 is installed
OR libneon27-32bit-0.29.6-6.7.1 is installed
OR libneon27-x86-0.29.6-6.7.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 is installed
AND ppc64-diag-2.6.7-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
avahi-0.6.31-20 is installed
OR avahi-lang-0.6.31-20 is installed
OR avahi-utils-0.6.31-20 is installed
OR libavahi-client3-0.6.31-20 is installed
OR libavahi-client3-32bit-0.6.31-20 is installed
OR libavahi-common3-0.6.31-20 is installed
OR libavahi-common3-32bit-0.6.31-20 is installed
OR libavahi-core7-0.6.31-20 is installed
OR libdns_sd-0.6.31-20 is installed
OR libdns_sd-32bit-0.6.31-20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND sudo-1.8.10p3-2.19.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
bash-4.3-78 is installed
OR bash-doc-4.3-78 is installed
OR libreadline6-6.3-78 is installed
OR libreadline6-32bit-6.3-78 is installed
OR readline-doc-6.3-78 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND apache-commons-httpclient-3.1-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
alsa-1.0.27.2-15 is installed
OR alsa-docs-1.0.27.2-15 is installed
OR libasound2-1.0.27.2-15 is installed
OR libasound2-32bit-1.0.27.2-15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP5 is installed
AND Package Information
apache2-mod_apparmor-2.8.2-51.18 is installed
OR apparmor-docs-2.8.2-51.18 is installed
OR apparmor-parser-2.8.2-51.18 is installed
OR apparmor-profiles-2.8.2-51.18 is installed
OR apparmor-utils-2.8.2-51.18 is installed
OR libapparmor1-2.8.2-51.18 is installed
OR libapparmor1-32bit-2.8.2-51.18 is installed
OR pam_apparmor-2.8.2-51.18 is installed
OR pam_apparmor-32bit-2.8.2-51.18 is installed
OR perl-apparmor-2.8.2-51.18 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12-LTSS is installed
AND Package Information
kgraft-patch-3_12_51-52_31-default-5-2.2 is installed
OR kgraft-patch-3_12_51-52_31-xen-5-2.2 is installed
OR kgraft-patch-SLE12_Update_9-5-2.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
AND Package Information
MozillaFirefox-45.4.0esr-81 is installed
OR MozillaFirefox-translations-45.4.0esr-81 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 is installed
AND Package Information
libspice-server1-0.12.4-8.15 is installed
OR spice-0.12.4-8.15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 SP1 is installed
AND clamav-0.99.2-32 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 SP2 is installed
AND Package Information
kgraft-patch-4_4_114-92_67-default-5-2 is installed
OR kgraft-patch-SLE12-SP2_Update_19-5-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP2 is installed
AND libopenssl-devel-0.9.8j-0.50.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
AND Package Information
apache2-2.2.12-1.46.1 is installed
OR apache2-devel-2.2.12-1.46.1 is installed
OR apache2-doc-2.2.12-1.46.1 is installed
OR apache2-example-pages-2.2.12-1.46.1 is installed
OR apache2-prefork-2.2.12-1.46.1 is installed
OR apache2-utils-2.2.12-1.46.1 is installed
OR apache2-worker-2.2.12-1.46.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
AND Package Information
icu-4.0-38.1 is installed
OR libicu-32bit-4.0-38.1 is installed
OR libicu-devel-4.0-38.1 is installed
OR libicu-devel-32bit-4.0-38.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 is installed
AND Package Information
finch-devel-2.10.9-8 is installed
OR libpurple-2.10.9-8 is installed
OR libpurple-devel-2.10.9-8 is installed
OR libpurple-lang-2.10.9-8 is installed
OR pidgin-2.10.9-8 is installed
OR pidgin-devel-2.10.9-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
AND Package Information
libvirt-2.0.0-27.29 is installed
OR libvirt-devel-2.0.0-27.29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
AND Package Information
libquicktime-1.2.4-14.3 is installed
OR libquicktime-devel-1.2.4-14.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
AND liblcms2-devel-2.7-9.7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 is installed
AND libuuid-devel-2.25-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
AND argyllcms-1.6.3-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
AND bash-lang-4.3-78 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
AND Package Information
dia-0.97.3-15 is installed
OR dia-lang-0.97.3-15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
AND bash-lang-4.3-83.15 is installed
|