Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

openSUSE 15.3: 2021:1393-1 Important VirtualBox Security Fix

opensuse
Calendar Grey October 26, 2021
Dist Opensuse Esm H88
A crucial patch for Fedora's KVM has been rolled out, tackling various vulnerabilities while providing essential improvements to boost performance.
An update that fixes 5 vulnerabilities is now available

Description

This update for virtualbox fixes the following issues:

Version bump to 6.1.28 (released October 19 2021 by Oracle)

This is a maintenance release. The following items were fixed and/or added:

- VMM: Fixed guru meditation while booting nested-guests accessing debug

registers under certain conditions

- UI: Bug fixes for touchpad-based scrolling

- VMSVGA: Fixed VM black screen issue on first resize after restoring from

saved state (bug #20067)

- VMSVGA: Fixed display corruption on Linux Mint (bug #20513)

- Storage: Fixed a possible write error under certain circumstances when

using VHD images (bug #20512)

- Network: Multiple updates in virtio-net device support

- Network: Disconnecting cable in saved VM state now is handled properly

by virtio-net

- Network: More administrative control over network ranges, see user manual

- NAT: Fixed not rejecting TFTP requests with absolute pathnames (bug

#20589)

- Audio: Fixed VM...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.3:

zypper in -t patch openSUSE-2021-1393=1

Package List

- openSUSE Leap 15.3 (noarch):

virtualbox-guest-desktop-icons-6.1.28-lp153.2.12.1

virtualbox-guest-source-6.1.28-lp153.2.12.1

virtualbox-host-source-6.1.28-lp153.2.12.1

- openSUSE Leap 15.3 (x86_64):

python3-virtualbox-6.1.28-lp153.2.12.1

python3-virtualbox-debuginfo-6.1.28-lp153.2.12.1

virtualbox-6.1.28-lp153.2.12.1

virtualbox-debuginfo-6.1.28-lp153.2.12.1

virtualbox-debugsource-6.1.28-lp153.2.12.1

virtualbox-devel-6.1.28-lp153.2.12.1

virtualbox-guest-tools-6.1.28-lp153.2.12.1

virtualbox-guest-tools-debuginfo-6.1.28-lp153.2.12.1

virtualbox-guest-x11-6.1.28-lp153.2.12.1

virtualbox-guest-x11-debuginfo-6.1.28-lp153.2.12.1

virtualbox-kmp-debugsource-6.1.28-lp153.2.12.1

virtualbox-kmp-default-6.1.28_k5.3.18_59.27-lp153.2.12.1

virtualbox-kmp-default-debuginfo-6.1.28_k5.3.18_59.27-lp153.2.12.1

virtualbox-kmp-preempt-6.1.28_k5.3.18_59.27-lp153.2.12.1

virtualbox-kmp-preempt-debuginfo-6.1.28_k5.3.18_59.27-lp153.2.12.1

virtualbox-qt-6.1.28-lp153.2.12.1

virtualbox-qt-debuginfo-6.1.28-lp153.2.12.1

virtualbox-vnc-6.1.28...

Read the Full Advisory

References

https://www.suse.com/security/cve/CVE-2021-2475.html

https://www.suse.com/security/cve/CVE-2021-35538.html

https://www.suse.com/security/cve/CVE-2021-35540.html

https://www.suse.com/security/cve/CVE-2021-35542.html

https://www.suse.com/security/cve/CVE-2021-35545.html

https://bugzilla.suse.com/1191104

https://bugzilla.suse.com/1191526

https://bugzilla.suse.com/1191869

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2021:1393-1
Rating: important
Affected Products: openSUSE Leap 15.3 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here