An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.. SUSE Security Update: Security update for kvm ______________________________________________________________________________ Announcement ID: SUSE-SU-2015:1409-1 Rating: important References: #938344 Cross-References: CVE-2015-5154 Affected Products: SUSE Linux Enterprise Server 11-SP1-LTSS SUSE Linux Enterprise Debuginfo 11-SP1 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: kvm was updated to fix one security issue. This security issue was fixed: - CVE-2015-5154: Host code execution via IDE subsystem CD-ROM (bsc#938344). Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 11-SP1-LTSS: zypper in -t patch slessp1-kvm-12036=1 - SUSE Linux Enterprise Debuginfo 11-SP1: zypper in -t patch dbgsp1-kvm-12036=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Server 11-SP1-LTSS (i586 x86_64): kvm-0.12.5-1.30.2 - SUSE Linux Enterprise Debuginfo 11-SP1 (i586 x86_64): kvm-debuginfo-0.12.5-1.30.2 kvm-debugsource-0.12.5-1.30.2 References: https://www.suse.com/security/cve/CVE-2015-5154.html https://bugzilla.suse.com/938344 . Significant SUSE Security Patch for kvm tackles serious host execution flaw to improve overall system security.. SUSE Linux,kvm update,security patch,system security. . Severity: Important. LinuxSecurity.com Team
An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.. SUSE Security Update: Security update for qemu ______________________________________________________________________________ Announcement ID: SUSE-SU-2012:1203-1 Rating: important References: #777084 Cross-References: CVE-2012-3515 Affected Products: SUSE Linux Enterprise Software Development Kit 11 SP2 SUSE Linux Enterprise Point of Service 11 SP2 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: The qemu vt100 emulation is affected by a problem where specific vt100 sequences could have been used by guest users to affect the host. (CVE-2012-3515 aka XSA-17). Security Issue references: * CVE-2012-3515 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 11 SP2: zypper in -t patch sdksp2-qemu-6765 - SUSE Linux Enterprise Point of Service 11 SP2: zypper in -t patch sleposp2-qemu-6765 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Software Development Kit 11 SP2 (i586 x86_64): qemu-0.10.1-0.5.7.1 - SUSE Linux Enterprise Point of Service 11 SP2 (i586 x86_64): qemu-0.10.1-0.5.7.1 References: https://www.suse.com/security/cve/CVE-2012-3515.html https://login.microfocus.com/nidp/app/login?sid=0 https://login.microfocus.com/nidp/app/login?sid=0 . Crucial SUSE Security Patch for qemu tackles a targeted vulnerability impacting Linux environments.. SUSE Security Update,qemu threat,host security issue. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.