xen was updated to fix 27 security issues. These security issues were fixed: - CVE-2013-4533: Buffer overflow in the pxa2xx_ssp_load function in hw/arm/pxa2xx.c allowed remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted s->rx_level value in a savevm image (bsc#864655). - CVE-2013-4534: Buffer overflow in hw/intc/openpic.c allowed remote attackers to cause a denial of service or possibly execute arbitrary code via vectors related to IRQDest elements (bsc#864811). - CVE-2013-4537: The ssi_sd_transfer function in hw/sd/ssi-sd.c allowed remote attackers to execute arbitrary code via a crafted arglen value in a savevm image (bsc#864391). - CVE-2013-4538: Multiple buffer overflows in the ssd0323_load function in
#864391 #864655 #864769 #864805 #864811 #877642
#897654 #901508 #902737 #945989 #957162 #957988
#958007 #958009 #958491 #958523 #959005 #960707
#960725 #960861 #960862 #961691 #963782 #965315
#965317 #967013 #967630 #969350
Cross- CVE-2013-4533 CVE-2013-4534 CVE-2013-4537
CVE-2013-4538 CVE-2013-4539 CVE-2014-0222
CVE-2014-3640 CVE-2014-3689 CVE-2014-7815
CVE-2015-5278 CVE-2015-7512 CVE-2015-8504
CVE-2015-8550 CVE-2015-8554 CVE-2015-8555
CVE-2015-8558 CVE-2015-8743 CVE-2015-8745
CVE-2016-1570 CVE-2016-1571 CVE-2016-1714
CVE-2016-1981 CVE-2016-2270 CVE-2016-2271
CVE-2016-2391 CVE-2016-2841
Affected Products:
SUSE Linux Enterprise Server 11-SP2-LTSS
https://www.suse.com/security/cve/CVE-2013-4533.html
https://www.suse.com/sec...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.