gpp_maybe
Security update for xen
SUSE-SLE-SERVER-12-SP5-2019-3296
This update for xen fixes the following issues: - CVE-2019-19581: Fixed a potential out of bounds on 32-bit Arm (bsc#1158003 XSA-307). - CVE-2019-19582: Fixed a potential infinite loop when x86 accesses to bitmaps with a compile time known size of 64 (bsc#1158003 XSA-307). - CVE-2019-19583: Fixed improper checks which could have allowed HVM/PVH guest userspace code to crash the guest,leading to a guest denial of service (bsc#1158004 XSA-308). - CVE-2019-19578: Fixed an issue where a malicious or buggy PV guest could have caused hypervisor crash resulting in denial of service affecting the entire host (bsc#1158005 XSA-309). - CVE-2019-19580: Fixed a privilege escalation where a malicious PV guest administrator could have been able to escalate their privilege to that of the host (bsc#1158006 XSA-310). - CVE-2019-19577: Fixed an issue where a malicious guest administrator could have caused Xen to access data structures while they are being modified leading to a crash (bsc#1158007 XSA-311).
-
Release DateDec 13 2019
-
ReferencesBugzilla: 1158007, 1158005, 1158003, 1158004, 1158006
CVEs: CVE-2019-19582, CVE-2019-19580, CVE-2019-19583, CVE-2019-19581, CVE-2019-19578, CVE-2019-19577 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise High Performance Computing 12.5 x86_64
-
Packagesxen
Xen Virtualization: Hypervisor (aka VMM aka Microkernel)xen-doc-html4.12.1_10-3.8.1 lock rpm lock src
Xen Virtualization: HTML documentationxen-libs4.12.1_10-3.8.1 lock rpm
Xen Virtualization: Librariesxen-libs-32bit4.12.1_10-3.8.1 lock rpm
Xen Virtualization: Librariesxen-tools4.12.1_10-3.8.1 lock rpm
Xen Virtualization: Control tools for domain 0xen-tools-domU4.12.1_10-3.8.1 lock rpm
Xen Virtualization: Control tools for domain U4.12.1_10-3.8.1 lock rpm