Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:3793-1

Опубликовано: 24 окт. 2025
Источник: suse-cvrf

Описание

Security update for xen

This update for xen fixes the following issues:

  • CVE-2025-58147, CVE-2025-58148: fixed input sanitisation in Viridian hypercalls (XSA-475, bsc#1251271)

Список пакетов

Image SLES15-SP7-Azure-3P
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Azure-Basic
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Azure-Standard
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-BYOS-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-BYOS-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-BYOS-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-CHOST-BYOS-Aliyun
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-CHOST-BYOS-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-CHOST-BYOS-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-CHOST-BYOS-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-CHOST-BYOS-GDC
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-CHOST-BYOS-SAP-CCloud
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-EC2-ECS-HVM
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-GCE-3P
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-HPC-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-HPC-BYOS-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-HPC-BYOS-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-HPC-BYOS-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Hardened-BYOS-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Hardened-BYOS-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Hardened-BYOS-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Azure-3P
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Azure-LI-BYOS-Production
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Azure-VLI-BYOS-Production
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-BYOS-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-BYOS-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-BYOS-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-GCE-3P
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Hardened-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Hardened-BYOS-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Hardened-BYOS-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Hardened-BYOS-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAP-Hardened-GCE
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAPCAL-Azure
xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAPCAL-EC2
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
Image SLES15-SP7-SAPCAL-GCE
xen-libs-4.20.1_06-150700.3.14.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
xen-libs-4.20.1_06-150700.3.14.1
xen-tools-domU-4.20.1_06-150700.3.14.1
SUSE Linux Enterprise Module for Server Applications 15 SP7
xen-4.20.1_06-150700.3.14.1
xen-devel-4.20.1_06-150700.3.14.1
xen-tools-4.20.1_06-150700.3.14.1
xen-tools-xendomains-wait-disk-4.20.1_06-150700.3.14.1

Описание

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Some Viridian hypercalls can specify a mask of vCPU IDs as an input, in one of three formats. Xen has boundary checking bugs with all three formats, which can cause out-of-bounds reads and writes while processing the inputs. * CVE-2025-58147. Hypercalls using the HV_VP_SET Sparse format can cause vpmask_set() to write out of bounds when converting the bitmap to Xen's format. * CVE-2025-58148. Hypercalls using any input format can cause send_ipi() to read d->vcpu[] out-of-bounds, and operate on a wild vCPU pointer.


Затронутые продукты
Image SLES15-SP7-Azure-3P:xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Azure-Basic:xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Azure-Standard:xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-BYOS-Azure:xen-libs-4.20.1_06-150700.3.14.1

Ссылки

Описание

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Some Viridian hypercalls can specify a mask of vCPU IDs as an input, in one of three formats. Xen has boundary checking bugs with all three formats, which can cause out-of-bounds reads and writes while processing the inputs. * CVE-2025-58147. Hypercalls using the HV_VP_SET Sparse format can cause vpmask_set() to write out of bounds when converting the bitmap to Xen's format. * CVE-2025-58148. Hypercalls using any input format can cause send_ipi() to read d->vcpu[] out-of-bounds, and operate on a wild vCPU pointer.


Затронутые продукты
Image SLES15-SP7-Azure-3P:xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Azure-Basic:xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-Azure-Standard:xen-libs-4.20.1_06-150700.3.14.1
Image SLES15-SP7-BYOS-Azure:xen-libs-4.20.1_06-150700.3.14.1

Ссылки