Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

SUSE Security Announcement: 2016:1785-1 Addresses KVM Vulnerabilities

suse
Calendar Grey July 11, 2016
Dist Suse Esm H88
SUSE rolls out a crucial update for KVM, tackling a range of security vulnerabilities, thereby fortifying defenses against diverse exploit methods.
An update that solves 33 vulnerabilities and has three An update that solves 33 vulnerabilities and has three An update that solves 33 vulnerabilities and has three fixes is now av...

Summary

kvm was updated to fix 33 security issues. These security issues were fixed: - CVE-2016-4439: Avoid OOB access in 53C9X emulation (bsc#980711) - CVE-2016-4441: Avoid OOB access in 53C9X emulation (bsc#980723) - CVE-2016-3710: Fixed VGA emulation based OOB access with potential for guest escape (bsc#978158) - CVE-2016-3712: Fixed VGa emulation based DOS and OOB read access exploit (bsc#978160) - CVE-2016-4037: Fixed USB ehci based DOS (bsc#976109) - CVE-2016-2538: Fixed potential OOB access in USB net device emulation (bsc#967969) - CVE-2016-2841: Fixed OOB access / hang in ne2000 emulation (bsc#969350) - CVE-2016-2858: Avoid potential DOS when using QEMU pseudo random number generator (bsc#970036) - CVE-2016-2857: Fixed OOB access when processing IP checksums (bsc#970037)

References

#895528 #901508 #928393 #934069 #936132 #940929

#944463 #945404 #945987 #945989 #947159 #958491

#958917 #959005 #960334 #960725 #961332 #961333

#961358 #961556 #961691 #962320 #963782 #964413

#967969 #969350 #970036 #970037 #975128 #975136

#975700 #976109 #978158 #978160 #980711 #980723

Cross- CVE-2014-3615 CVE-2014-3689 CVE-2014-9718

CVE-2015-3214 CVE-2015-5239 CVE-2015-5278

CVE-2015-5279 CVE-2015-5745 CVE-2015-6855

CVE-2015-7295 CVE-2015-7549 CVE-2015-8504

CVE-2015-8558 CVE-2015-8613 CVE-2015-8619

CVE-2015-8743 CVE-2016-1568 CVE-2016-1714

CVE-2016-1922 CVE-2016-1981 CVE-2016-2198

CVE-2016-2538 CVE-2016-2841 CVE-2016-2857

CVE-2016-2858 CVE-2016-3710 CVE-2016-3712

CVE-2016-4001 CVE-2016...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:1785-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here