Описание
Security update for xen
This update for xen fixes the following security issues:
- CVE-2017-7228: Broken check in memory_exchange() permited PV guest breakout (bsc#1030442).
- CVE-2017-6414: Memory leak in the vcard_apdu_new function in card_7816.c in libcacard allowed local guest OS users to cause a denial of service (host memory consumption) via vectors related to allocating a new APDU object (bsc#1027570).
- CVE-2017-6505: The ohci_service_ed_list function in hw/usb/hcd-ohci.c allowed local guest OS users to cause a denial of service (infinite loop) via vectors involving the number of link endpoint list descriptors (bsc#1028235).
Список пакетов
SUSE Linux Enterprise Point of Sale 11 SP3
SUSE Linux Enterprise Server 11 SP3-LTSS
SUSE Manager 2.1
SUSE Manager Proxy 2.1
SUSE OpenStack Cloud 5
Ссылки
- Link for SUSE-SU-2017:1058-1
- E-Mail link for SUSE-SU-2017:1058-1
- SUSE Security Ratings
- SUSE Bug 1027570
- SUSE Bug 1028235
- SUSE Bug 1030442
- SUSE CVE CVE-2017-6414 page
- SUSE CVE CVE-2017-6505 page
- SUSE CVE CVE-2017-7228 page
Описание
Memory leak in the vcard_apdu_new function in card_7816.c in libcacard before 2.5.3 allows local guest OS users to cause a denial of service (host memory consumption) via vectors related to allocating a new APDU object.
Затронутые продукты
Ссылки
- CVE-2017-6414
- SUSE Bug 1027514
- SUSE Bug 1027570
Описание
The ohci_service_ed_list function in hw/usb/hcd-ohci.c in QEMU (aka Quick Emulator) before 2.9.0 allows local guest OS users to cause a denial of service (infinite loop) via vectors involving the number of link endpoint list descriptors, a different vulnerability than CVE-2017-9330.
Затронутые продукты
Ссылки
- CVE-2017-6505
- SUSE Bug 1028184
- SUSE Bug 1028235
- SUSE Bug 1178658
Описание
An issue (known as XSA-212) was discovered in Xen, with fixes available for 4.8.x, 4.7.x, 4.6.x, 4.5.x, and 4.4.x. The earlier XSA-29 fix introduced an insufficient check on XENMEM_exchange input, allowing the caller to drive hypervisor memory accesses outside of the guest provided input/output arrays.
Затронутые продукты
Ссылки
- CVE-2017-7228
- SUSE Bug 1030442
- SUSE Bug 1072198
- SUSE Bug 1072223
- SUSE Bug 1178658