Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

SUSE: 2016:1154-1 Important: Xen Security Update Effective Immediately

suse
Calendar Grey April 26, 2016
Dist Suse Esm H88
SUSE Linux has rolled out updates that tackle 26 weaknesses within xen. These fixes are crucial, ensuring enhanced security measures and addressing multiple concerns effectively.
An update that solves 26 vulnerabilities and has two fixes An update that solves 26 vulnerabilities and has two fixes An update that solves 26 vulnerabilities and has two fixes is ...

Summary

xen was updated to fix 27 security issues. These security issues were fixed: - CVE-2013-4533: Buffer overflow in the pxa2xx_ssp_load function in hw/arm/pxa2xx.c allowed remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted s->rx_level value in a savevm image (bsc#864655). - CVE-2013-4534: Buffer overflow in hw/intc/openpic.c allowed remote attackers to cause a denial of service or possibly execute arbitrary code via vectors related to IRQDest elements (bsc#864811). - CVE-2013-4537: The ssi_sd_transfer function in hw/sd/ssi-sd.c allowed remote attackers to execute arbitrary code via a crafted arglen value in a savevm image (bsc#864391). - CVE-2013-4538: Multiple buffer overflows in the ssd0323_load function in

References

#864391 #864655 #864769 #864805 #864811 #877642

#897654 #901508 #902737 #945989 #957162 #957988

#958007 #958009 #958491 #958523 #959005 #960707

#960725 #960861 #960862 #961691 #963782 #965315

#965317 #967013 #967630 #969350

Cross- CVE-2013-4533 CVE-2013-4534 CVE-2013-4537

CVE-2013-4538 CVE-2013-4539 CVE-2014-0222

CVE-2014-3640 CVE-2014-3689 CVE-2014-7815

CVE-2015-5278 CVE-2015-7512 CVE-2015-8504

CVE-2015-8550 CVE-2015-8554 CVE-2015-8555

CVE-2015-8558 CVE-2015-8743 CVE-2015-8745

CVE-2016-1570 CVE-2016-1571 CVE-2016-1714

CVE-2016-1981 CVE-2016-2270 CVE-2016-2271

CVE-2016-2391 CVE-2016-2841

Affected Products:

SUSE Linux Enterprise Server 11-SP2-LTSS

https://www.suse.com/security/cve/CVE-2013-4533.html

https://www.suse.com/sec...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:1154-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here