Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

SUSE Linux Enterprise 11 SP2: 2012:1205-1 important: kvm security issue

suse
Calendar Grey September 18, 2012
Dist Suse Esm H88
SUSE Security Patch for kvm introduces crucial corrections and addresses a vulnerability. Discover how to perform the update promptly.
An update that solves one vulnerability and has two fixes An update that solves one vulnerability and has two fixes An update that solves one vulnerability and has two fixes is now...

Summary

The kvm qemu vt100 emulation was affected by a problem where specific vt100 sequences could have been used by guest users to affect the host. (CVE-2012-3515 aka XSA-17). Also the following non security bugs have been fixed: * permit qemu-kvm -device "?" even when no /dev/kvm (bnc#772586) * SLES11SP2 KVM Virtio: on kvm guest, scsi inquiry was still ok on the disabled subpaths. (bnc#770153) Security Issue reference: * CVE-2012-3515 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 11 SP2: zypper in -t patch slessp2-kvm-6755 - SUSE Linux Enterprise Desktop 11 SP2: zypper in -t patch sledsp2-kvm-6755

References

#770153 #772586 #777084

Cross- CVE-2012-3515

Affected Products:

SUSE Linux Enterprise Server 11 SP2

SUSE Linux Enterprise Desktop 11 SP2

https://www.suse.com/security/cve/CVE-2012-3515.html

https://login.microfocus.com/nidp/app/login?sid=0

https://login.microfocus.com/nidp/app/login?sid=0

https://login.microfocus.com/nidp/app/login?sid=0

https://login.microfocus.com/nidp/app/login?sid=0

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2012:1205-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here