Oval Definition:oval:org.opensuse.security:def:79905
Revision Date:2012-08-30Version:1
Title:Security update for Xen
Description:



XEN was updated 4.1.3 to fix multiple bugs and security issues.

The following security issues have been fixed:

* CVE-2012-3494: xen: hypercall set_debugreg vulnerability (XSA-12) * CVE-2012-3495: xen: hypercall physdev_get_free_pirq vulnerability (XSA-13) * CVE-2012-3496: xen: XENMEM_populate_physmap DoS vulnerability (XSA-14) * CVE-2012-3498: xen: PHYSDEVOP_map_pirq index vulnerability (XSA-16) * CVE-2012-3515: xen: Qemu VT100 emulation vulnerability (XSA-17)

Also the following bugs have been fixed:

* pvscsi support of attaching Luns - bnc#776995

The following related bugs in vm-install 0.5.12 have been fixed:

* bnc#776300 - vm-install does not pass --extra-args in --upgrade * Add for support Open Enterprise Server 11 * Add support for Windows 8 and Windows Server 2012 * Add support for Ubuntu 12 (Precise Pangolin)

Security Issue references:

* CVE-2012-3496 * CVE-2012-3494 * CVE-2012-3495 * CVE-2012-3498 * CVE-2012-3515

Family:unixClass:patch
Status:Reference(s):776300
776995
777084
777086
777088
777090
777091
CVE-2012-3494
CVE-2012-3495
CVE-2012-3496
CVE-2012-3498
CVE-2012-3515
Platform(s):SUSE Linux Enterprise Desktop 11 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • vm-install-0.5.12-0.5.1 is installed
  • OR xen-4.1.3_02-0.5.1 is installed
  • OR xen-doc-html-4.1.3_02-0.5.1 is installed
  • OR xen-doc-pdf-4.1.3_02-0.5.1 is installed
  • OR xen-kmp-default-4.1.3_02_3.0.38_0.5-0.5.1 is installed
  • OR xen-kmp-trace-4.1.3_02_3.0.38_0.5-0.5.1 is installed
  • OR xen-libs-4.1.3_02-0.5.1 is installed
  • OR xen-libs-32bit-4.1.3_02-0.5.1 is installed
  • OR xen-tools-4.1.3_02-0.5.1 is installed
  • OR xen-tools-domU-4.1.3_02-0.5.1 is installed
  • BACK