Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2016:1703-1 Important: QEMU Security Update for System Integrity

suse
Calendar Grey June 29, 2016
Dist Suse Esm H88
SUSE Security Patch resolves 28 vulnerabilities in nginx, delivering essential enhancements for network defense.
An update that solves 32 vulnerabilities and has two fixes An update that solves 32 vulnerabilities and has two fixes An update that solves 32 vulnerabilities and has two fixes is ...

Summary

qemu was updated to fix 29 security issues. These security issues were fixed: - CVE-2016-4439: Avoid OOB access in 53C9X emulation (bsc#980711) - CVE-2016-4441: Avoid OOB access in 53C9X emulation (bsc#980723) - CVE-2016-4952: Avoid OOB access in Vmware PV SCSI emulation (bsc#981266) - CVE-2015-8817: Avoid OOB access in PCI dma I/O (bsc#969121) - CVE-2015-8818: Avoid OOB access in PCI dma I/O (bsc#969122) - CVE-2016-3710: Fixed VGA emulation based OOB access with potential for guest escape (bsc#978158) - CVE-2016-3712: Fixed VGa emulation based DOS and OOB read access exploit (bsc#978160) - CVE-2016-4037: Fixed USB ehci based DOS (bsc#976109) - CVE-2016-2538: Fixed potential OOB access in USB net device emulation (bsc#967969) - CVE-2016-2841: Fixed OOB access / hang in ne2000 emulation (bsc#969350)

References

#886378 #940929 #958491 #958917 #959005 #959386

#960334 #960708 #960725 #960835 #961332 #961333

#961358 #961556 #961691 #962320 #963782 #964411

#964413 #967969 #969121 #969122 #969350 #970036

#970037 #975128 #975136 #975700 #976109 #978158

#978160 #980711 #980723 #981266

Cross- CVE-2015-5745 CVE-2015-7549 CVE-2015-8504

CVE-2015-8558 CVE-2015-8567 CVE-2015-8568

CVE-2015-8613 CVE-2015-8619 CVE-2015-8743

CVE-2015-8744 CVE-2015-8745 CVE-2015-8817

CVE-2015-8818 CVE-2016-1568 CVE-2016-1714

CVE-2016-1922 CVE-2016-1981 CVE-2016-2197

CVE-2016-2198 CVE-2016-2538 CVE-2016-2841

CVE-2016-2857 CVE-2016-2858 CVE-2016-3710

CVE-2016-3712 CVE-2016-4001 CVE-2016-4002

CVE-2016-4020 CVE-2016-4037 CVE-2016-4439

...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:1703-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here