gpp_maybe
Security update for xen
SUSE-SLE-SAP-12-SP3-2019-2769
This update for xen fixes the following issues: Security issues fixed: - CVE-2019-15890: Fixed a use-after-free in SLiRP networking implementation of QEMU emulator which could have led to Denial of Service (bsc#1149813). - CVE-2019-12068: Fixed an issue in lsi which could lead to an infinite loop and denial of service (bsc#1146874). - CVE-2019-14378: Fixed a heap buffer overflow in SLiRp networking implementation of QEMU emulator which could have led to execution of arbitrary code with privileges of the QEMU process (bsc#1143797). Other issue fixed: - Fixed an issue where libxenlight could not restore domain vsa6535522 on live migration (bsc#1133818).
-
Release DateOct 24 2019
-
ReferencesBugzilla: 1143797, 1126192, 1126196, 1126197, 1126140, 1126141, 1126198, 1127400, 1133818, 1146874, 1126195, 1149813, 1126201
CVEs: CVE-2019-14378, CVE-2018-12127, CVE-2019-17343, CVE-2019-15890, CVE-2019-17340, CVE-2019-17345, CVE-2019-17346, CVE-2018-12130, CVE-2019-12068, CVE-2019-17342, CVE-2018-12126, CVE-2019-17348, CVE-2019-17347, CVE-2019-11091, CVE-2019-17341, CVE-2019-17344 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.3 x86_64
-
Packagesxen
Xen Virtualization: Hypervisor (aka VMM aka Microkernel)xen-doc-html4.9.4_04-3.56.2lock rpmlock src
Xen Virtualization: HTML documentationxen-libs4.9.4_04-3.56.2lock rpm
Xen Virtualization: Librariesxen-libs-32bit4.9.4_04-3.56.2lock rpm
Xen Virtualization: Librariesxen-tools4.9.4_04-3.56.2lock rpm
Xen Virtualization: Control tools for domain 0xen-tools-domU4.9.4_04-3.56.2lock rpm
Xen Virtualization: Control tools for domain U4.9.4_04-3.56.2lock rpm