[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2019:1238-1 -- SLES qemu, qemu-guest-agent

ID: oval:org.secpod.oval:def:89003099Date: (C)2021-02-27   (M)2024-04-17
Class: PATCHFamily: unix




This update for qemu fixes the following issues: - CVE-2019-9824: Fixed an information leak in slirp - CVE-2019-8934: Added method to specify whether or not to expose certain ppc64 host information, which can be considered a security issue - CVE-2019-3812: Fixed OOB memory access and information leak in virtual monitor interface - CVE-2018-20815: Fix DOS possibility in device tree processing - Adjust fix for CVE-2019-8934 to match the latest upstream adjustments for the same. Basically now the security fix is to provide a dummy host-model and host-serial value, which overrides getting that value from the host - CVE-2018-12126 CVE-2018-12127 CVE-2018-12130 CVE-2019-11091: Added x86 cpu feature quot;md-clearquot; Other bugs fixed: - Use a new approach to handling the file input to -smbios option, which accepts either legacy or per-spec formats regardless of the machine type. - Drop the "ampersand 0x25 shift altgr" line in pt-br keymap file

Platform:
SUSE Linux Enterprise Server 12 SP4
Product:
qemu
qemu-guest-agent
Reference:
SUSE-SU-2019:1238-1
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-20815
CVE-2019-11091
CVE-2019-3812
CVE-2019-8934
CVE-2019-9824
CVE    8
CVE-2018-20815
CVE-2019-8934
CVE-2019-3812
CVE-2019-9824
...
CPE    3
cpe:/o:suse:suse_linux_enterprise_server:12:sp4
cpe:/a:qemu:qemu
cpe:/a:kvm_group:qemu_guest_agent

© SecPod Technologies