Revision Date: | 2021-09-06 | Version: | 1 |
Title: | Security update for xen (Important) |
Description: |
This update for xen fixes the following issues:
- CVE-2021-3594: slirp: invalid pointer initialization may lead to information disclosure (udp)(bsc#1187378). - CVE-2021-3595: slirp: invalid pointer initialization may lead to information disclosure (tftp)(bsc#1187376). - CVE-2021-28698: long running loops in grant table handling (XSA-380)(bsc#1189378). - CVE-2021-28699: inadequate grant-v2 status frames array bounds check (XSA-382)(bsc#1189380). - CVE-2021-20255: Fixed stack overflow via infinite recursion in eepro100 (bsc#1182654) - CVE-2021-28690: xen: x86: TSX Async Abort protections not restored after S3 (bsc#1186434) - CVE-2021-28692: xen: inappropriate x86 IOMMU timeout detection / handling (bsc#1186429) - CVE-2021-28694,CVE-2021-28695,CVE-2021-28696: IOMMU page mapping issues on x86 (XSA-378)(bsc#1189373). - CVE-2021-0089: xen: Speculative Code Store Bypass (bsc#1186433) - CVE-2021-28697: grant table v2 status pages may remain accessible after de-allocation (XSA-379)(bsc#1189376). - CVE-2021-3592: slirp: invalid pointer initialization may lead to information disclosure (bootp)(bsc#1187369).
- Prevent superpage allocation in the LAPIC and ACPI_INFO range (bsc#1189882).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1182654 1186429 1186433 1186434 1187369 1187376 1187378 1189373 1189376 1189378 1189380 1189882 CVE-2021-0089 CVE-2021-20255 CVE-2021-28690 CVE-2021-28692 CVE-2021-28694 CVE-2021-28695 CVE-2021-28696 CVE-2021-28697 CVE-2021-28698 CVE-2021-28699 CVE-2021-3592 CVE-2021-3594 CVE-2021-3595
|
Platform(s): | SUSE Linux Enterprise Server 12 SP3-TERADATA
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed AND Package Information
xen-4.9.4_20-3.91.1 is installed
OR xen-doc-html-4.9.4_20-3.91.1 is installed
OR xen-libs-4.9.4_20-3.91.1 is installed
OR xen-libs-32bit-4.9.4_20-3.91.1 is installed
OR xen-tools-4.9.4_20-3.91.1 is installed
OR xen-tools-domU-4.9.4_20-3.91.1 is installed
|