Описание
Security update for ovmf
This update for ovmf fixes the following issues:
- CVE-2019-14559: Fixed a memory leak in ArpOnFrameRcvdDpc() (bsc#1163927).
Список пакетов
SUSE Linux Enterprise Server 12 SP4
ovmf-2017+git1510945757.b2662641d5-3.26.1
ovmf-tools-2017+git1510945757.b2662641d5-3.26.1
qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.26.1
qemu-uefi-aarch64-2017+git1510945757.b2662641d5-3.26.1
SUSE Linux Enterprise Server 12 SP5
ovmf-2017+git1510945757.b2662641d5-3.26.1
ovmf-tools-2017+git1510945757.b2662641d5-3.26.1
qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.26.1
qemu-uefi-aarch64-2017+git1510945757.b2662641d5-3.26.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
ovmf-2017+git1510945757.b2662641d5-3.26.1
ovmf-tools-2017+git1510945757.b2662641d5-3.26.1
qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.26.1
qemu-uefi-aarch64-2017+git1510945757.b2662641d5-3.26.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
ovmf-2017+git1510945757.b2662641d5-3.26.1
ovmf-tools-2017+git1510945757.b2662641d5-3.26.1
qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.26.1
qemu-uefi-aarch64-2017+git1510945757.b2662641d5-3.26.1
Ссылки
- Link for SUSE-SU-2020:1065-1
- E-Mail link for SUSE-SU-2020:1065-1
- SUSE Security Ratings
- SUSE Bug 1163927
- SUSE CVE CVE-2019-14559 page
Описание
Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service via network access.
Затронутые продукты
SUSE Linux Enterprise Server 12 SP4:ovmf-2017+git1510945757.b2662641d5-3.26.1
SUSE Linux Enterprise Server 12 SP4:ovmf-tools-2017+git1510945757.b2662641d5-3.26.1
SUSE Linux Enterprise Server 12 SP4:qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.26.1
SUSE Linux Enterprise Server 12 SP4:qemu-uefi-aarch64-2017+git1510945757.b2662641d5-3.26.1
Ссылки
- CVE-2019-14559
- SUSE Bug 1163927