Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

SUSE 11 SP2: SUSE-SU-2012:1503-1 Important: Libvirt Remote DoS

suse
Calendar Grey November 19, 2012
Scroller Suse
SUSE Security Patch impacts libvirt addressing severe vulnerabilities. For full information, see advisory: SUSE-SU-2012:1504-1.
An update that fixes 8 vulnerabilities is now available

Summary

libvirt received security and bugfixes: * CVE-2012-4423: Fixed a libvirt remote denial of service (crash) problem. The following bugs have been fixed: * qemu: Fix probing for guest capabilities * xen-xm: Generate UUID if not specified * xenParseXM: don't dereference NULL pointer when script is empty Security Issue references: * CVE-2012-4539 * CVE-2012-3497 * CVE-2012-4411 * CVE-2012-4535 * CVE-2012-4537 * CVE-2012-4536

References

#772586 #773621 #773626 #780432

Cross- CVE-2012-3497 CVE-2012-4411 CVE-2012-4535

CVE-2012-4536 CVE-2012-4537 CVE-2012-4538

CVE-2012-4539 CVE-2012-4544

Affected Products:

SUSE Linux Enterprise Software Development Kit 11 SP2

SUSE Linux Enterprise Server 11 SP2

SUSE Linux Enterprise Desktop 11 SP2

https://www.suse.com/security/cve/CVE-2012-3497.html

https://www.suse.com/security/cve/CVE-2012-4411.html

https://www.suse.com/security/cve/CVE-2012-4535.html

https://www.suse.com/security/cve/CVE-2012-4536.html

https://www.suse.com/security/cve/CVE-2012-4537.html

https://www.suse.com/security/cve/CVE-2012-4538.html

https://www.suse.com/security/cve/CVE-2012-4539.html

https://www.suse.com/security/cve/CVE-2012-4544.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2012:1503-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.