gpp_maybe
Security update for xen
SUSE-SLE-SERVER-12-SP2-2016-1866
This update for xen fixes the following issues: - A Mishandling of SYSCALL singlestep during emulation which could have lead to privilege escalation. (XSA-204, bsc#1016340, CVE-2016-10013) - CMPXCHG8B emulation failed to ignore operand size override which could have lead to information disclosure. (XSA-200, bsc#1012651, CVE-2016-9932) - PV guests may have been able to mask interrupts causing a Denial of Service. (XSA-202, bsc#1014298, CVE-2016-10024) - A missing NULL pointer check in VMFUNC emulation could lead to a hypervisor crash leading to a Denial of Servce. (XSA-203, bsc#1014300, CVE-2016-10025)
-
Release DateDec 21 2016
-
ReferencesBugzilla: 1014300, 1012651, 1016340, 1014298
CVEs: CVE-2016-9932, CVE-2016-10013, CVE-2016-10025, CVE-2016-10024 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server 12.2 x86_64
-
Packagesxen
Xen Virtualization: Hypervisor (aka VMM aka Microkernel)xen-doc-html4.7.1_04-28.1 lock rpm lock src
Xen Virtualization: HTML documentationxen-libs4.7.1_04-28.1 lock rpm
Xen Virtualization: Librariesxen-libs-32bit4.7.1_04-28.1 lock rpm
Xen Virtualization: Librariesxen-tools4.7.1_04-28.1 lock rpm
Xen Virtualization: Control tools for domain 0xen-tools-domU4.7.1_04-28.1 lock rpm
Xen Virtualization: Control tools for domain U4.7.1_04-28.1 lock rpm