Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:3082-1

Опубликовано: 31 июл. 2023
Источник: suse-cvrf

Описание

Security update for qemu

This update for qemu fixes the following issues:

  • CVE-2023-3301: Fixed incorrect cleanup of the vdpa/vhost-net structures if peer nic is present (bsc#1213414).
  • CVE-2023-0330: Fixed reentrancy issues in the LSI controller (bsc#1207205).
  • CVE-2023-2861: Fixed opening special files in 9pfs (bsc#1212968).
  • CVE-2023-3255: Fixed infinite loop in inflate_buffer() leads to denial of service (bsc#1213001).

Bugfixes:

  • hw/ide/piix: properly initialize the BMIBA register (bsc#bsc#1179993)
  • Fixed issue where Guest did not run on XEN SLES15SP2 (bsc#1181740).

Список пакетов

Container suse/sle-micro/kvm-5.5:latest
qemu-guest-agent-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP5
qemu-tools-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5
qemu-7.1.0-150500.49.6.1
qemu-SLOF-7.1.0-150500.49.6.1
qemu-accel-tcg-x86-7.1.0-150500.49.6.1
qemu-arm-7.1.0-150500.49.6.1
qemu-audio-alsa-7.1.0-150500.49.6.1
qemu-audio-dbus-7.1.0-150500.49.6.1
qemu-audio-pa-7.1.0-150500.49.6.1
qemu-audio-spice-7.1.0-150500.49.6.1
qemu-block-curl-7.1.0-150500.49.6.1
qemu-block-iscsi-7.1.0-150500.49.6.1
qemu-block-rbd-7.1.0-150500.49.6.1
qemu-block-ssh-7.1.0-150500.49.6.1
qemu-chardev-baum-7.1.0-150500.49.6.1
qemu-chardev-spice-7.1.0-150500.49.6.1
qemu-guest-agent-7.1.0-150500.49.6.1
qemu-hw-display-qxl-7.1.0-150500.49.6.1
qemu-hw-display-virtio-gpu-7.1.0-150500.49.6.1
qemu-hw-display-virtio-gpu-pci-7.1.0-150500.49.6.1
qemu-hw-display-virtio-vga-7.1.0-150500.49.6.1
qemu-hw-s390x-virtio-gpu-ccw-7.1.0-150500.49.6.1
qemu-hw-usb-host-7.1.0-150500.49.6.1
qemu-hw-usb-redirect-7.1.0-150500.49.6.1
qemu-ipxe-1.0.0+-150500.49.6.1
qemu-ksm-7.1.0-150500.49.6.1
qemu-kvm-7.1.0-150500.49.6.1
qemu-lang-7.1.0-150500.49.6.1
qemu-ppc-7.1.0-150500.49.6.1
qemu-s390x-7.1.0-150500.49.6.1
qemu-seabios-1.16.0_0_gd239552-150500.49.6.1
qemu-sgabios-8-150500.49.6.1
qemu-skiboot-7.1.0-150500.49.6.1
qemu-ui-curses-7.1.0-150500.49.6.1
qemu-ui-dbus-7.1.0-150500.49.6.1
qemu-ui-gtk-7.1.0-150500.49.6.1
qemu-ui-opengl-7.1.0-150500.49.6.1
qemu-ui-spice-app-7.1.0-150500.49.6.1
qemu-ui-spice-core-7.1.0-150500.49.6.1
qemu-vgabios-1.16.0_0_gd239552-150500.49.6.1
qemu-x86-7.1.0-150500.49.6.1
openSUSE Leap 15.5
qemu-7.1.0-150500.49.6.1
qemu-SLOF-7.1.0-150500.49.6.1
qemu-accel-qtest-7.1.0-150500.49.6.1
qemu-accel-tcg-x86-7.1.0-150500.49.6.1
qemu-arm-7.1.0-150500.49.6.1
qemu-audio-alsa-7.1.0-150500.49.6.1
qemu-audio-dbus-7.1.0-150500.49.6.1
qemu-audio-jack-7.1.0-150500.49.6.1
qemu-audio-pa-7.1.0-150500.49.6.1
qemu-audio-spice-7.1.0-150500.49.6.1
qemu-block-curl-7.1.0-150500.49.6.1
qemu-block-dmg-7.1.0-150500.49.6.1
qemu-block-gluster-7.1.0-150500.49.6.1
qemu-block-iscsi-7.1.0-150500.49.6.1
qemu-block-nfs-7.1.0-150500.49.6.1
qemu-block-rbd-7.1.0-150500.49.6.1
qemu-block-ssh-7.1.0-150500.49.6.1
qemu-chardev-baum-7.1.0-150500.49.6.1
qemu-chardev-spice-7.1.0-150500.49.6.1
qemu-extra-7.1.0-150500.49.6.1
qemu-guest-agent-7.1.0-150500.49.6.1
qemu-hw-display-qxl-7.1.0-150500.49.6.1
qemu-hw-display-virtio-gpu-7.1.0-150500.49.6.1
qemu-hw-display-virtio-gpu-pci-7.1.0-150500.49.6.1
qemu-hw-display-virtio-vga-7.1.0-150500.49.6.1
qemu-hw-s390x-virtio-gpu-ccw-7.1.0-150500.49.6.1
qemu-hw-usb-host-7.1.0-150500.49.6.1
qemu-hw-usb-redirect-7.1.0-150500.49.6.1
qemu-hw-usb-smartcard-7.1.0-150500.49.6.1
qemu-ipxe-1.0.0+-150500.49.6.1
qemu-ivshmem-tools-7.1.0-150500.49.6.1
qemu-ksm-7.1.0-150500.49.6.1
qemu-kvm-7.1.0-150500.49.6.1
qemu-lang-7.1.0-150500.49.6.1
qemu-microvm-7.1.0-150500.49.6.1
qemu-ppc-7.1.0-150500.49.6.1
qemu-s390x-7.1.0-150500.49.6.1
qemu-seabios-1.16.0_0_gd239552-150500.49.6.1
qemu-sgabios-8-150500.49.6.1
qemu-skiboot-7.1.0-150500.49.6.1
qemu-tools-7.1.0-150500.49.6.1
qemu-ui-curses-7.1.0-150500.49.6.1
qemu-ui-dbus-7.1.0-150500.49.6.1
qemu-ui-gtk-7.1.0-150500.49.6.1
qemu-ui-opengl-7.1.0-150500.49.6.1
qemu-ui-spice-app-7.1.0-150500.49.6.1
qemu-ui-spice-core-7.1.0-150500.49.6.1
qemu-vgabios-1.16.0_0_gd239552-150500.49.6.1
qemu-vhost-user-gpu-7.1.0-150500.49.6.1
qemu-x86-7.1.0-150500.49.6.1

Описание

A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP5:qemu-tools-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-SLOF-7.1.0-150500.49.6.1

Ссылки

Описание

A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU. The 9pfs server did not prohibit opening special files on the host side, potentially allowing a malicious client to escape from the exported 9p tree by creating and opening a device file in the shared folder.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP5:qemu-tools-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-SLOF-7.1.0-150500.49.6.1

Ссылки

Описание

A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lead to an infinite loop when inflating an attacker controlled zlib buffer in the `inflate_buffer` function. This could allow a remote authenticated client who is able to send a clipboard to the VNC server to trigger a denial of service.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP5:qemu-tools-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-SLOF-7.1.0-150500.49.6.1

Ссылки

Описание

A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci frontend has been unplugged. A malicious guest could use this time window to trigger an assertion and cause a denial of service.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP5:qemu-tools-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-7.1.0-150500.49.6.1
SUSE Linux Enterprise Module for Server Applications 15 SP5:qemu-SLOF-7.1.0-150500.49.6.1

Ссылки
Уязвимость SUSE-SU-2023:3082-1