Описание
Security update for xen
This update for xen fixes several issues:
These security issues were fixed:
- CVE-2017-5526: The ES1370 audio device emulation support was vulnerable to a memory leakage issue allowing a privileged user inside the guest to cause a DoS and/or potentially crash the Qemu process on the host (bsc#1059777)
- CVE-2017-15593: Missing cleanup in the page type system allowed a malicious or buggy PV guest to cause DoS (XSA-242 bsc#1061084)
- CVE-2017-15592: A problem in the shadow pagetable code allowed a malicious or buggy HVM guest to cause DoS or cause hypervisor memory corruption potentially allowing the guest to escalate its privilege (XSA-243 bsc#1061086)
- CVE-2017-15594: Problematic handling of the selector fields in the Interrupt Descriptor Table (IDT) allowed a malicious or buggy x86 PV guest to escalate its privileges or cause DoS (XSA-244 bsc#1061087)
- CVE-2017-15589: Intercepted I/O write operations with less than a full machine word's worth of data were not properly handled, which allowed a malicious unprivileged x86 HVM guest to obtain sensitive information from the host or other guests (XSA-239 bsc#1061080)
- CVE-2017-15595: In certain configurations of linear page tables a stack overflow might have occured that allowed a malicious or buggy PV guest to cause DoS and potentially privilege escalation and information leaks (XSA-240 bsc#1061081)
- CVE-2017-15588: Under certain conditions x86 PV guests could have caused the hypervisor to miss a necessary TLB flush for a page. This allowed a malicious x86 PV guest to access all of system memory, allowing for privilege escalation, DoS, and information leaks (XSA-241 bsc#1061082)
- CVE-2017-15590: Multiple issues existed with the setup of PCI MSI interrupts that allowed a malicious or buggy guest to cause DoS and potentially privilege escalation and information leaks (XSA-237 bsc#1061076)
Список пакетов
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Software Development Kit 11 SP4
Ссылки
- Link for SUSE-SU-2017:2815-1
- E-Mail link for SUSE-SU-2017:2815-1
- SUSE Security Ratings
- SUSE Bug 1027519
- SUSE Bug 1059777
- SUSE Bug 1061076
- SUSE Bug 1061080
- SUSE Bug 1061081
- SUSE Bug 1061082
- SUSE Bug 1061084
- SUSE Bug 1061086
- SUSE Bug 1061087
- SUSE CVE CVE-2017-15588 page
- SUSE CVE CVE-2017-15589 page
- SUSE CVE CVE-2017-15590 page
- SUSE CVE CVE-2017-15592 page
- SUSE CVE CVE-2017-15593 page
- SUSE CVE CVE-2017-15594 page
- SUSE CVE CVE-2017-15595 page
- SUSE CVE CVE-2017-5526 page
Описание
An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to execute arbitrary code on the host OS because of a race condition that can cause a stale TLB entry.
Затронутые продукты
Ссылки
- CVE-2017-15588
- SUSE Bug 1061082
- SUSE Bug 1178658
Описание
An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.
Затронутые продукты
Ссылки
- CVE-2017-15589
- SUSE Bug 1061080
- SUSE Bug 1178658
Описание
An issue was discovered in Xen through 4.9.x allowing x86 guest OS users to cause a denial of service (hypervisor crash) or possibly gain privileges because MSI mapping was mishandled.
Затронутые продукты
Ссылки
- CVE-2017-15590
- SUSE Bug 1061076
- SUSE Bug 1178658
Описание
An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to cause a denial of service (hypervisor crash) or possibly gain privileges because self-linear shadow mappings are mishandled for translated guests.
Затронутые продукты
Ссылки
- CVE-2017-15592
- SUSE Bug 1061086
- SUSE Bug 1178658
Описание
An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (memory leak) because reference counts are mishandled.
Затронутые продукты
Ссылки
- CVE-2017-15593
- SUSE Bug 1061084
- SUSE Bug 1178658
Описание
An issue was discovered in Xen through 4.9.x allowing x86 SVM PV guest OS users to cause a denial of service (hypervisor crash) or gain privileges because IDT settings are mishandled during CPU hotplugging.
Затронутые продукты
Ссылки
- CVE-2017-15594
- SUSE Bug 1061087
- SUSE Bug 1178658
Описание
An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (unbounded recursion, stack consumption, and hypervisor crash) or possibly gain privileges via crafted page-table stacking.
Затронутые продукты
Ссылки
- CVE-2017-15595
- SUSE Bug 1061081
- SUSE Bug 1178658
Описание
Memory leak in hw/audio/es1370.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large number of device unplug operations.
Затронутые продукты
Ссылки
- CVE-2017-5526
- SUSE Bug 1020589
- SUSE Bug 1059777
- SUSE Bug 1178658