gpp_maybe Security update for xen
SUSE-SLE-Module-Server-Applications-15-SP3-2022-3665


This update for xen fixes the following issues: - CVE-2022-33746: Fixed DoS due to excessively long P2M pool freeing (bsc#1203806). - CVE-2022-33748: Fixed DoS due to race in locking (bsc#1203807). - CVE-2022-26365: Fixed issue where Linux Block and Network PV device frontends don't zero memory regions before sharing them with the backend (bsc#1200762). - CVE-2022-33740: Fixed issue where Linux Block and Network PV device frontends don't zero memory regions before sharing them with the backend (bsc#1200762). - CVE-2022-33741: Fixed issue where data residing in the same 4K page as data shared with a backend was being accessible by such backend (bsc#1200762). - CVE-2022-33742: Fixed issue where data residing in the same 4K page as data shared with a backend was being accessible by such backend (bsc#1200762). - CVE-2022-33745: Fixed an insufficient TLB flush for x86 PV guests in shadow mode (bsc#1201394). - CVE-2021-28689: Fixed speculative vulnerabilities with bare (non-shim) 32-bit PV guests (bsc#1185104). Bugfixes: - Fixed logic error in built-in default of max_event_channels (bsc#1167608, bsc#1201631). - Fixed issue where dom0 fails to boot with constrained vcpus and nodes (bsc#1197081). - Included upstream bugfixes (bsc#1027519).


cloud_download Downloads

Server Applications Module 15.3 x86_64
  • Packages
    xen
    Xen Virtualization: Hypervisor (aka VMM aka Microkernel)
    4.14.5_06-150300.3.35.1 lock rpm lock src
    xen-devel
    Xen Virtualization: Headers and libraries for development
    4.14.5_06-150300.3.35.1 lock rpm
    xen-tools
    Xen Virtualization: Control tools for domain 0
    4.14.5_06-150300.3.35.1 lock rpm
    xen-tools-xendomains-wait-disk
    Adds a new xendomains-wait-disks.service
    4.14.5_06-150300.3.35.1 lock rpm