gpp_maybe
Security update for xen
SUSE-SLE-Module-Server-Applications-15-SP4-2022-2597
This update for xen fixes the following issues: - CVE-2022-26363, CVE-2022-26364: Fixed insufficient care with non-coherent mappings (XSA-402) (bsc#1199966). - CVE-2022-21123, CVE-2022-21125, CVE-2022-21166: Fixed MMIO stale data vulnerabilities on x86 (XSA-404) (bsc#1200549). - CVE-2022-26362: Fixed a race condition in typeref acquisition (XSA-401) (bsc#1199965). - CVE-2022-33745: Fixed insufficient TLB flush for x86 PV guests in shadow mode (XSA-408) (bsc#1201394). - CVE-2022-23816, CVE-2022-23825, CVE-2022-29900: Fixed RETBLEED vulnerability, arbitrary speculative code execution with return instructions (XSA-407) (bsc#1201469). Fixed several upstream bugs (bsc#1027519).
-
Release DateJul 29 2022
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
Server Applications Module 15.4 x86_64
-
Packagesxen
Xen Virtualization: Hypervisor (aka VMM aka Microkernel)xen-devel4.16.1_06-150400.4.8.1 lock rpm lock src
Xen Virtualization: Headers and libraries for developmentxen-tools4.16.1_06-150400.4.8.1 lock rpm
Xen Virtualization: Control tools for domain 0xen-tools-xendomains-wait-disk4.16.1_06-150400.4.8.1 lock rpm
Adds a new xendomains-wait-disks.service4.16.1_06-150400.4.8.1 lock rpm