Oval Definition:oval:org.opensuse.security:def:78098
Revision Date:2015-12-30Version:1
Title:Security update for grub2 (Important)
Description:

This update for grub2 provides the following fixes and enhancements:

Security issue fixed: - Fix buffer overflows when reading username and password. (bsc#956631, CVE-2015-8370)

Non security issues fixed: - Expand list of grub.cfg search path in PV Xen guests for systems installed on btrfs snapshots. (bsc#946148, bsc#952539) - Add --image switch to force zipl update to specific kernel. (bsc#928131) - Do not use shim lock protocol for reading PE header as it won't be available when secure boot is disabled. (bsc#943380) - Make firmware flaw condition be more precisely detected and add debug message for the case.
Family:unixClass:patch
Status:Reference(s):928131
943380
946148
952539
956631
CVE-2015-8370
SUSE-SU-2015:2399-1
Platform(s):SUSE Linux Enterprise Desktop 12
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • grub2-2.02~beta2-56.9.4 is installed
  • OR grub2-i386-pc-2.02~beta2-56.9.4 is installed
  • OR grub2-snapper-plugin-2.02~beta2-56.9.4 is installed
  • OR grub2-x86_64-efi-2.02~beta2-56.9.4 is installed
  • OR grub2-x86_64-xen-2.02~beta2-56.9.4 is installed
  • BACK