Oval Definition:oval:org.opensuse.security:def:79043
Revision Date:2018-04-10Version:1
Title:Security update for xen (Important)
Description:



This update for xen fixes the following issues:

Update to Xen 4.7.5 bug fix only release (bsc#1027519)

Security issues fixed:

- CVE-2018-7540: Fixed DoS via non-preemptable L3/L4 pagetable freeing (XSA-252) (bsc#1080635) - CVE-2018-7541: A grant table v2 -> v1 transition may crash Xen (XSA-255) (bsc#1080662) - CVE-2017-5753,CVE-2017-5715,CVE-2017-5754 Fixed information leaks via side effects of speculative execution (XSA-254). Includes Spectre v2 mitigation. (bsc#1074562)



- Preserve xen-syms from xen-dbg.gz to allow processing vmcores with crash(1) (bsc#1087251) - Xen HVM: Fixed unchecked MSR access error (bsc#1072834) - Add script, udev rule and systemd service to watch for vcpu online/offline events in a HVM domU They are triggered via xl vcpu-set domU N (fate#324965) - Make sure tools and tools-domU require libs from the very same build


Family:unixClass:patch
Status:Reference(s):1027519
1072834
1074562
1080635
1080662
1087251
CVE-2017-5715
CVE-2017-5753
CVE-2017-5754
CVE-2018-7540
CVE-2018-7541
SUSE-SU-2018:0909-1
Platform(s):SUSE Linux Enterprise Desktop 12 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • xen-4.7.5_02-43.27.1 is installed
  • OR xen-libs-4.7.5_02-43.27.1 is installed
  • OR xen-libs-32bit-4.7.5_02-43.27.1 is installed
  • BACK