Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2018-2001

Опубликовано: 27 июн. 2018
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2018-2001: qemu-kvm security update (IMPORTANT)

[1.5.3-156.el7_5.3]

  • kvm-i386-Define-the-Virt-SSBD-MSR-and-handling-of-it-CVE.patch [bz#1584363]
  • kvm-i386-define-the-AMD-virt-ssbd-CPUID-feature-bit-CVE-.patch [bz#1584363]
  • Resolves: bz#1584363 (CVE-2018-3639 qemu-kvm: hw: cpu: AMD: speculative store bypass [rhel-7.5.z])

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

qemu-img

1.5.3-156.el7_5.3

qemu-kvm

1.5.3-156.el7_5.3

qemu-kvm-common

1.5.3-156.el7_5.3

qemu-kvm-tools

1.5.3-156.el7_5.3

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 7 лет назад

Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.

CVSS3: 5.6
redhat
около 7 лет назад

Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.

CVSS3: 5.5
nvd
около 7 лет назад

Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.

CVSS3: 5.5
debian
около 7 лет назад

Systems with microprocessors utilizing speculative execution and specu ...

suse-cvrf
почти 7 лет назад

Security update for libvirt