Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2014-8867 (GCVE-0-2014-8867)
Vulnerability from cvelistv5
Published
2014-12-01 15:00
Modified
2024-08-06 13:26
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- n/a
Summary
The acceleration support for the "REP MOVS" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.
References
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-06T13:26:02.892Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "name": "RHSA-2015:0783", "tags": [ "vendor-advisory", "x_refsource_REDHAT", "x_transferred" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "name": "GLSA-201504-04", "tags": [ "vendor-advisory", "x_refsource_GENTOO", "x_transferred" ], "url": "https://security.gentoo.org/glsa/201504-04" }, { "name": "62672", "tags": [ "third-party-advisory", "x_refsource_SECUNIA", "x_transferred" ], "url": "http://secunia.com/advisories/62672" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://support.citrix.com/article/CTX201794" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://support.citrix.com/article/CTX200288" }, { "name": "DSA-3140", "tags": [ "vendor-advisory", "x_refsource_DEBIAN", "x_transferred" ], "url": "http://www.debian.org/security/2015/dsa-3140" }, { "name": "openSUSE-SU-2015:0226", "tags": [ "vendor-advisory", "x_refsource_SUSE", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "name": "openSUSE-SU-2015:0256", "tags": [ "vendor-advisory", "x_refsource_SUSE", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" }, { "name": "59949", "tags": [ "third-party-advisory", "x_refsource_SECUNIA", "x_transferred" ], "url": "http://secunia.com/advisories/59949" }, { "name": "71331", "tags": [ "vdb-entry", "x_refsource_BID", "x_transferred" ], "url": "http://www.securityfocus.com/bid/71331" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "datePublic": "2014-11-27T00:00:00", "descriptions": [ { "lang": "en", "value": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2017-11-14T10:57:01", "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "shortName": "mitre" }, "references": [ { "name": "RHSA-2015:0783", "tags": [ "vendor-advisory", "x_refsource_REDHAT" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "name": "GLSA-201504-04", "tags": [ "vendor-advisory", "x_refsource_GENTOO" ], "url": "https://security.gentoo.org/glsa/201504-04" }, { "name": "62672", "tags": [ "third-party-advisory", "x_refsource_SECUNIA" ], "url": "http://secunia.com/advisories/62672" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://support.citrix.com/article/CTX201794" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://support.citrix.com/article/CTX200288" }, { "name": "DSA-3140", "tags": [ "vendor-advisory", "x_refsource_DEBIAN" ], "url": "http://www.debian.org/security/2015/dsa-3140" }, { "name": "openSUSE-SU-2015:0226", "tags": [ "vendor-advisory", "x_refsource_SUSE" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "name": "openSUSE-SU-2015:0256", "tags": [ "vendor-advisory", "x_refsource_SUSE" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" }, { "name": "59949", "tags": [ "third-party-advisory", "x_refsource_SECUNIA" ], "url": "http://secunia.com/advisories/59949" }, { "name": "71331", "tags": [ "vdb-entry", "x_refsource_BID" ], "url": "http://www.securityfocus.com/bid/71331" } ], "x_legacyV4Record": { "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2014-8867", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "RHSA-2015:0783", "refsource": "REDHAT", "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "name": "GLSA-201504-04", "refsource": "GENTOO", "url": "https://security.gentoo.org/glsa/201504-04" }, { "name": "62672", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/62672" }, { "name": "http://support.citrix.com/article/CTX201794", "refsource": "CONFIRM", "url": "http://support.citrix.com/article/CTX201794" }, { "name": "http://support.citrix.com/article/CTX200288", "refsource": "CONFIRM", "url": "http://support.citrix.com/article/CTX200288" }, { "name": "DSA-3140", "refsource": "DEBIAN", "url": "http://www.debian.org/security/2015/dsa-3140" }, { "name": "openSUSE-SU-2015:0226", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "name": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705", "refsource": "CONFIRM", "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "name": "openSUSE-SU-2015:0256", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "name": "http://xenbits.xenproject.org/xsa/advisory-112.html", "refsource": "CONFIRM", "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" }, { "name": "59949", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/59949" }, { "name": "71331", "refsource": "BID", "url": "http://www.securityfocus.com/bid/71331" } ] } } } }, "cveMetadata": { "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "assignerShortName": "mitre", "cveId": "CVE-2014-8867", "datePublished": "2014-12-01T15:00:00", "dateReserved": "2014-11-14T00:00:00", "dateUpdated": "2024-08-06T13:26:02.892Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1", "vulnerability-lookup:meta": { "nvd": "{\"cve\":{\"id\":\"CVE-2014-8867\",\"sourceIdentifier\":\"cve@mitre.org\",\"published\":\"2014-12-01T15:59:09.780\",\"lastModified\":\"2025-04-12T10:46:40.837\",\"vulnStatus\":\"Deferred\",\"cveTags\":[],\"descriptions\":[{\"lang\":\"en\",\"value\":\"The acceleration support for the \\\"REP MOVS\\\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.\"},{\"lang\":\"es\",\"value\":\"El soporte de aceleraci\u00f3n para la instrucci\u00f3n \u0027REP MOVS\u0027 en Xen 4.4.x, 3.2.x, y anteriores falla en la comprobaci\u00f3n correcta de los l\u00edmites para entrada/salida del mapeado de memoria (memory mapped I/O, MMIO) emulado en el hipervisor, lo que permite a invitados HVM locales causar una denegaci\u00f3n de servicio (ca\u00edda del anfitri\u00f3n) a trav\u00e9s de vectores no especificados.\"}],\"metrics\":{\"cvssMetricV2\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"2.0\",\"vectorString\":\"AV:L/AC:L/Au:N/C:N/I:N/A:C\",\"baseScore\":4.9,\"accessVector\":\"LOCAL\",\"accessComplexity\":\"LOW\",\"authentication\":\"NONE\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"COMPLETE\"},\"baseSeverity\":\"MEDIUM\",\"exploitabilityScore\":3.9,\"impactScore\":6.9,\"acInsufInfo\":false,\"obtainAllPrivilege\":false,\"obtainUserPrivilege\":false,\"obtainOtherPrivilege\":false,\"userInteractionRequired\":false}]},\"weaknesses\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-17\"}]}],\"configurations\":[{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"1D8B549B-E57B-4DFE-8A13-CAB06B5356B3\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"133AAFA7-AF42-4D7B-8822-AA2E85611BF5\"}]}]},{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:*\",\"versionEndIncluding\":\"3.2.0\",\"matchCriteriaId\":\"4A3469DF-B0AC-4DC3-8BBC-A7054EFDBD81\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:xen:xen:3.2.1:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"2A4B60DE-A8C0-459E-A99C-6EF0D3264B75\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:xen:xen:3.2.2:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"A83F4F7E-53CF-4066-857B-2154D25979D8\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:xen:xen:3.2.3:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"048E790E-B0A1-4504-9299-0B6D9CB0C509\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:xen:xen:4.4.0:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"1044792C-D544-457C-9391-4F3B5BAB978D\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:xen:xen:4.4.1:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"FBD9AD01-50B7-4951-8A73-A6CF4801A487\"}]}]},{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"16F59A04-14CF-49E2-9973-645477EA09DA\"}]}]},{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"A10BC294-9196-425F-9FB0-B1625465B47F\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"03117DF1-3BEC-4B8D-AD63-DBBDB2126081\"}]}]}],\"references\":[{\"url\":\"http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705\",\"source\":\"cve@mitre.org\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html\",\"source\":\"cve@mitre.org\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html\",\"source\":\"cve@mitre.org\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0783.html\",\"source\":\"cve@mitre.org\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://secunia.com/advisories/59949\",\"source\":\"cve@mitre.org\",\"tags\":[\"Permissions Required\",\"Third Party Advisory\"]},{\"url\":\"http://secunia.com/advisories/62672\",\"source\":\"cve@mitre.org\",\"tags\":[\"Permissions Required\",\"Third Party Advisory\"]},{\"url\":\"http://support.citrix.com/article/CTX200288\",\"source\":\"cve@mitre.org\"},{\"url\":\"http://support.citrix.com/article/CTX201794\",\"source\":\"cve@mitre.org\"},{\"url\":\"http://www.debian.org/security/2015/dsa-3140\",\"source\":\"cve@mitre.org\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://www.securityfocus.com/bid/71331\",\"source\":\"cve@mitre.org\",\"tags\":[\"Third Party Advisory\",\"VDB Entry\"]},{\"url\":\"http://xenbits.xenproject.org/xsa/advisory-112.html\",\"source\":\"cve@mitre.org\",\"tags\":[\"Patch\",\"Vendor Advisory\"]},{\"url\":\"https://security.gentoo.org/glsa/201504-04\",\"source\":\"cve@mitre.org\"},{\"url\":\"http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0783.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://secunia.com/advisories/59949\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Permissions Required\",\"Third Party Advisory\"]},{\"url\":\"http://secunia.com/advisories/62672\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Permissions Required\",\"Third Party Advisory\"]},{\"url\":\"http://support.citrix.com/article/CTX200288\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://support.citrix.com/article/CTX201794\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.debian.org/security/2015/dsa-3140\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://www.securityfocus.com/bid/71331\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\",\"VDB Entry\"]},{\"url\":\"http://xenbits.xenproject.org/xsa/advisory-112.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Patch\",\"Vendor Advisory\"]},{\"url\":\"https://security.gentoo.org/glsa/201504-04\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"}]}}" } }
ghsa-jj57-646v-244j
Vulnerability from github
Published
2022-05-14 02:05
Modified
2022-05-14 02:05
VLAI Severity ?
Details
The acceleration support for the "REP MOVS" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.
{ "affected": [], "aliases": [ "CVE-2014-8867" ], "database_specific": { "cwe_ids": [], "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2014-12-01T15:59:00Z", "severity": "MODERATE" }, "details": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.", "id": "GHSA-jj57-646v-244j", "modified": "2022-05-14T02:05:36Z", "published": "2022-05-14T02:05:36Z", "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8867" }, { "type": "WEB", "url": "https://security.gentoo.org/glsa/201504-04" }, { "type": "WEB", "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "type": "WEB", "url": "http://secunia.com/advisories/59949" }, { "type": "WEB", "url": "http://secunia.com/advisories/62672" }, { "type": "WEB", "url": "http://support.citrix.com/article/CTX200288" }, { "type": "WEB", "url": "http://support.citrix.com/article/CTX201794" }, { "type": "WEB", "url": "http://www.debian.org/security/2015/dsa-3140" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/71331" }, { "type": "WEB", "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" } ], "schema_version": "1.4.0", "severity": [] }
suse-su-2015:0940-1
Vulnerability from csaf_suse
Published
2012-11-22 17:59
Modified
2012-11-22 17:59
Summary
Security update for Xen
Notes
Title of the patch
Security update for Xen
Description of the patch
This update fixes the following security issues in Xen:
* CVE-2012-5510: Grant table version switch list corruption
vulnerability (XSA-26)
* CVE-2012-5511: Several HVM operations do not validate the range of
their inputs (XSA-27)
* CVE-2012-5513: XENMEM_exchange may overwrite hypervisor memory
(XSA-29)
* CVE-2012-5514: Missing unlock in
guest_physmap_mark_populate_on_demand() (XSA-30)
* CVE-2012-5515: Several memory hypercall operations allow invalid
extent order values (XSA-31)
Also the following fix has been applied:
* bnc#777628 - guest 'disappears' after live migration
Updated block-dmmd script
Security Issues references:
* CVE-2012-5513
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5513>
* CVE-2012-5514
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5514>
* CVE-2012-5511
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5511>
* CVE-2012-5510
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5510>
* CVE-2012-5515
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5515>
Patchnames
slessp1-xen
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "moderate" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for Xen", "title": "Title of the patch" }, { "category": "description", "text": "\nThis update fixes the following security issues in Xen:\n\n * CVE-2012-5510: Grant table version switch list corruption\n vulnerability (XSA-26)\n * CVE-2012-5511: Several HVM operations do not validate the range of\n their inputs (XSA-27)\n * CVE-2012-5513: XENMEM_exchange may overwrite hypervisor memory\n (XSA-29)\n * CVE-2012-5514: Missing unlock in\n guest_physmap_mark_populate_on_demand() (XSA-30)\n * CVE-2012-5515: Several memory hypercall operations allow invalid\n extent order values (XSA-31)\n\nAlso the following fix has been applied:\n\n * bnc#777628 - guest \u0027disappears\u0027 after live migration\n Updated block-dmmd script\n\nSecurity Issues references:\n\n * CVE-2012-5513\n \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5513\u003e\n * CVE-2012-5514\n \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5514\u003e\n * CVE-2012-5511\n \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5511\u003e\n * CVE-2012-5510\n \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5510\u003e\n * CVE-2012-5515\n \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5515\u003e\n\n", "title": "Description of the patch" }, { "category": "details", "text": "slessp1-xen", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2015_0940-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2015:0940-1", "url": "https://www.suse.com/support/update/announcement/2015/suse-su-20150940-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2015:0940-1", "url": "https://lists.suse.com/pipermail/sle-security-updates/2015-May/001404.html" }, { "category": "self", "summary": "SUSE Bug 777628", "url": "https://bugzilla.suse.com/777628" }, { "category": "self", "summary": "SUSE Bug 789944", "url": "https://bugzilla.suse.com/789944" }, { "category": "self", "summary": "SUSE Bug 789945", "url": "https://bugzilla.suse.com/789945" }, { "category": "self", "summary": "SUSE Bug 789948", "url": "https://bugzilla.suse.com/789948" }, { "category": "self", "summary": "SUSE Bug 789950", "url": "https://bugzilla.suse.com/789950" }, { "category": "self", "summary": "SUSE Bug 789951", "url": "https://bugzilla.suse.com/789951" }, { "category": "self", "summary": "SUSE Bug 826717", "url": "https://bugzilla.suse.com/826717" }, { "category": "self", "summary": "SUSE Bug 880751", "url": "https://bugzilla.suse.com/880751" }, { "category": "self", "summary": "SUSE Bug 895798", "url": "https://bugzilla.suse.com/895798" }, { "category": "self", "summary": "SUSE Bug 895799", "url": "https://bugzilla.suse.com/895799" }, { "category": "self", "summary": "SUSE Bug 895802", "url": "https://bugzilla.suse.com/895802" }, { "category": "self", "summary": "SUSE Bug 903850", "url": "https://bugzilla.suse.com/903850" }, { "category": "self", "summary": "SUSE Bug 903967", "url": "https://bugzilla.suse.com/903967" }, { "category": "self", "summary": "SUSE Bug 903970", "url": "https://bugzilla.suse.com/903970" }, { "category": "self", "summary": "SUSE Bug 905465", "url": "https://bugzilla.suse.com/905465" }, { "category": "self", "summary": "SUSE Bug 905467", "url": "https://bugzilla.suse.com/905467" }, { "category": "self", "summary": "SUSE Bug 906439", "url": "https://bugzilla.suse.com/906439" }, { "category": "self", "summary": "SUSE Bug 927967", "url": "https://bugzilla.suse.com/927967" }, { "category": "self", "summary": "SUSE Bug 929339", "url": "https://bugzilla.suse.com/929339" }, { "category": "self", "summary": "SUSE CVE CVE-2012-5510 page", "url": "https://www.suse.com/security/cve/CVE-2012-5510/" }, { "category": "self", "summary": "SUSE CVE CVE-2012-5511 page", "url": "https://www.suse.com/security/cve/CVE-2012-5511/" }, { "category": "self", "summary": "SUSE CVE CVE-2012-5513 page", "url": "https://www.suse.com/security/cve/CVE-2012-5513/" }, { "category": "self", "summary": "SUSE CVE CVE-2012-5514 page", "url": "https://www.suse.com/security/cve/CVE-2012-5514/" }, { "category": "self", "summary": "SUSE CVE CVE-2012-5515 page", "url": "https://www.suse.com/security/cve/CVE-2012-5515/" }, { "category": "self", "summary": "SUSE CVE CVE-2013-3495 page", "url": "https://www.suse.com/security/cve/CVE-2013-3495/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-4021 page", "url": "https://www.suse.com/security/cve/CVE-2014-4021/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-7154 page", "url": "https://www.suse.com/security/cve/CVE-2014-7154/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-7155 page", "url": "https://www.suse.com/security/cve/CVE-2014-7155/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-7156 page", "url": "https://www.suse.com/security/cve/CVE-2014-7156/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-8594 page", "url": "https://www.suse.com/security/cve/CVE-2014-8594/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-8595 page", "url": "https://www.suse.com/security/cve/CVE-2014-8595/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-8866 page", "url": "https://www.suse.com/security/cve/CVE-2014-8866/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-8867 page", "url": "https://www.suse.com/security/cve/CVE-2014-8867/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-9030 page", "url": "https://www.suse.com/security/cve/CVE-2014-9030/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-3340 page", "url": "https://www.suse.com/security/cve/CVE-2015-3340/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-3456 page", "url": "https://www.suse.com/security/cve/CVE-2015-3456/" } ], "title": "Security update for Xen", "tracking": { "current_release_date": "2012-11-22T17:59:15Z", "generator": { "date": "2012-11-22T17:59:15Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2015:0940-1", "initial_release_date": "2012-11-22T17:59:15Z", "revision_history": [ { "date": "2012-11-22T17:59:15Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "xen-4.0.3_21548_12-0.3.1.i586", "product": { "name": "xen-4.0.3_21548_12-0.3.1.i586", "product_id": "xen-4.0.3_21548_12-0.3.1.i586" } }, { "category": "product_version", "name": "xen-doc-html-4.0.3_21548_12-0.3.1.i586", "product": { "name": "xen-doc-html-4.0.3_21548_12-0.3.1.i586", "product_id": "xen-doc-html-4.0.3_21548_12-0.3.1.i586" } }, { "category": "product_version", "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "product": { "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "product_id": "xen-doc-pdf-4.0.3_21548_12-0.3.1.i586" } }, { "category": "product_version", "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "product": { "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "product_id": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586" } }, { "category": "product_version", "name": "xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "product": { "name": "xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "product_id": "xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586" } }, { "category": "product_version", "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "product": { "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "product_id": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586" } }, { "category": "product_version", "name": "xen-libs-4.0.3_21548_12-0.3.1.i586", "product": { "name": "xen-libs-4.0.3_21548_12-0.3.1.i586", "product_id": "xen-libs-4.0.3_21548_12-0.3.1.i586" } }, { "category": "product_version", "name": "xen-tools-4.0.3_21548_12-0.3.1.i586", "product": { "name": "xen-tools-4.0.3_21548_12-0.3.1.i586", "product_id": "xen-tools-4.0.3_21548_12-0.3.1.i586" } }, { "category": "product_version", "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "product": { "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "product_id": "xen-tools-domU-4.0.3_21548_12-0.3.1.i586" } } ], "category": "architecture", "name": "i586" }, { "branches": [ { "category": "product_version", "name": "xen-4.0.3_21548_12-0.3.1.x86_64", "product": { "name": "xen-4.0.3_21548_12-0.3.1.x86_64", "product_id": "xen-4.0.3_21548_12-0.3.1.x86_64" } }, { "category": "product_version", "name": "xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "product": { "name": "xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "product_id": "xen-doc-html-4.0.3_21548_12-0.3.1.x86_64" } }, { "category": "product_version", "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "product": { "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "product_id": "xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64" } }, { "category": "product_version", "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "product": { "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "product_id": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64" } }, { "category": "product_version", "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "product": { "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "product_id": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64" } }, { "category": "product_version", "name": "xen-libs-4.0.3_21548_12-0.3.1.x86_64", "product": { "name": "xen-libs-4.0.3_21548_12-0.3.1.x86_64", "product_id": "xen-libs-4.0.3_21548_12-0.3.1.x86_64" } }, { "category": "product_version", "name": "xen-tools-4.0.3_21548_12-0.3.1.x86_64", "product": { "name": "xen-tools-4.0.3_21548_12-0.3.1.x86_64", "product_id": "xen-tools-4.0.3_21548_12-0.3.1.x86_64" } }, { "category": "product_version", "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "product": { "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "product_id": "xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux Enterprise Server 11 SP1-LTSS", "product": { "name": "SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS", "product_identification_helper": { "cpe": "cpe:/o:suse:suse_sles_ltss:11:sp1" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server 11 SP1-TERADATA", "product": { "name": "SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_identification_helper": { "cpe": "cpe:/o:suse:sles:11:sp1:teradata" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "xen-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-html-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-doc-html-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-html-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586" }, "product_reference": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64" }, "product_reference": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586" }, "product_reference": "xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586" }, "product_reference": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64" }, "product_reference": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-libs-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-libs-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-libs-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-libs-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-tools-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-tools-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "xen-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-html-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-doc-html-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-html-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586" }, "product_reference": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64" }, "product_reference": "xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586" }, "product_reference": "xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586" }, "product_reference": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64" }, "product_reference": "xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-libs-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-libs-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-libs-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-libs-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-tools-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-tools-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.i586 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586" }, "product_reference": "xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" }, { "category": "default_component_of", "full_product_name": { "name": "xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP1-TERADATA", "product_id": "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" }, "product_reference": "xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 11 SP1-TERADATA" } ] }, "vulnerabilities": [ { "cve": "CVE-2012-5510", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2012-5510" } ], "notes": [ { "category": "general", "text": "Xen 4.x, when downgrading the grant table version, does not properly remove the status page from the tracking list when freeing the page, which allows local guest OS administrators to cause a denial of service (hypervisor crash) via unspecified vectors.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2012-5510", "url": "https://www.suse.com/security/cve/CVE-2012-5510" }, { "category": "external", "summary": "SUSE Bug 789945 for CVE-2012-5510", "url": "https://bugzilla.suse.com/789945" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2012-5510" }, { "cve": "CVE-2012-5511", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2012-5511" } ], "notes": [ { "category": "general", "text": "Stack-based buffer overflow in the dirty video RAM tracking functionality in Xen 3.4 through 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) via a large bitmap image.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2012-5511", "url": "https://www.suse.com/security/cve/CVE-2012-5511" }, { "category": "external", "summary": "SUSE Bug 789944 for CVE-2012-5511", "url": "https://bugzilla.suse.com/789944" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2012-5511" }, { "cve": "CVE-2012-5513", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2012-5513" } ], "notes": [ { "category": "general", "text": "The XENMEM_exchange handler in Xen 4.2 and earlier does not properly check the memory address, which allows local PV guest OS administrators to cause a denial of service (crash) or possibly gain privileges via unspecified vectors that overwrite memory in the hypervisor reserved range.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2012-5513", "url": "https://www.suse.com/security/cve/CVE-2012-5513" }, { "category": "external", "summary": "SUSE Bug 789951 for CVE-2012-5513", "url": "https://bugzilla.suse.com/789951" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2012-5513" }, { "cve": "CVE-2012-5514", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2012-5514" } ], "notes": [ { "category": "general", "text": "The guest_physmap_mark_populate_on_demand function in Xen 4.2 and earlier does not properly unlock the subject GFNs when checking if they are in use, which allows local guest HVM administrators to cause a denial of service (hang) via unspecified vectors.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2012-5514", "url": "https://www.suse.com/security/cve/CVE-2012-5514" }, { "category": "external", "summary": "SUSE Bug 789948 for CVE-2012-5514", "url": "https://bugzilla.suse.com/789948" }, { "category": "external", "summary": "SUSE Bug 789988 for CVE-2012-5514", "url": "https://bugzilla.suse.com/789988" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2012-5514" }, { "cve": "CVE-2012-5515", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2012-5515" } ], "notes": [ { "category": "general", "text": "The (1) XENMEM_decrease_reservation, (2) XENMEM_populate_physmap, and (3) XENMEM_exchange hypercalls in Xen 4.2 and earlier allow local guest administrators to cause a denial of service (long loop and hang) via a crafted extent_order value.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2012-5515", "url": "https://www.suse.com/security/cve/CVE-2012-5515" }, { "category": "external", "summary": "SUSE Bug 789950 for CVE-2012-5515", "url": "https://bugzilla.suse.com/789950" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2012-5515" }, { "cve": "CVE-2013-3495", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2013-3495" } ], "notes": [ { "category": "general", "text": "The Intel VT-d Interrupt Remapping engine in Xen 3.3.x through 4.3.x allows local guests to cause a denial of service (kernel panic) via a malformed Message Signaled Interrupt (MSI) from a PCI device that is bus mastering capable that triggers a System Error Reporting (SERR) Non-Maskable Interrupt (NMI).", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2013-3495", "url": "https://www.suse.com/security/cve/CVE-2013-3495" }, { "category": "external", "summary": "SUSE Bug 826717 for CVE-2013-3495", "url": "https://bugzilla.suse.com/826717" }, { "category": "external", "summary": "SUSE Bug 903970 for CVE-2013-3495", "url": "https://bugzilla.suse.com/903970" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2013-3495" }, { "cve": "CVE-2014-4021", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-4021" } ], "notes": [ { "category": "general", "text": "Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-4021", "url": "https://www.suse.com/security/cve/CVE-2014-4021" }, { "category": "external", "summary": "SUSE Bug 880751 for CVE-2014-4021", "url": "https://bugzilla.suse.com/880751" }, { "category": "external", "summary": "SUSE Bug 903970 for CVE-2014-4021", "url": "https://bugzilla.suse.com/903970" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "low" } ], "title": "CVE-2014-4021" }, { "cve": "CVE-2014-7154", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-7154" } ], "notes": [ { "category": "general", "text": "Race condition in HVMOP_track_dirty_vram in Xen 4.0.0 through 4.4.x does not ensure possession of the guarding lock for dirty video RAM tracking, which allows certain local guest domains to cause a denial of service via unspecified vectors.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-7154", "url": "https://www.suse.com/security/cve/CVE-2014-7154" }, { "category": "external", "summary": "SUSE Bug 880751 for CVE-2014-7154", "url": "https://bugzilla.suse.com/880751" }, { "category": "external", "summary": "SUSE Bug 895798 for CVE-2014-7154", "url": "https://bugzilla.suse.com/895798" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2014-7154" }, { "cve": "CVE-2014-7155", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-7155" } ], "notes": [ { "category": "general", "text": "The x86_emulate function in arch/x86/x86_emulate/x86_emulate.c in Xen 4.4.x and earlier does not properly check supervisor mode permissions, which allows local HVM users to cause a denial of service (guest crash) or gain guest kernel mode privileges via vectors involving an (1) HLT, (2) LGDT, (3) LIDT, or (4) LMSW instruction.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-7155", "url": "https://www.suse.com/security/cve/CVE-2014-7155" }, { "category": "external", "summary": "SUSE Bug 880751 for CVE-2014-7155", "url": "https://bugzilla.suse.com/880751" }, { "category": "external", "summary": "SUSE Bug 895799 for CVE-2014-7155", "url": "https://bugzilla.suse.com/895799" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2014-7155" }, { "cve": "CVE-2014-7156", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-7156" } ], "notes": [ { "category": "general", "text": "The x86_emulate function in arch/x86/x86_emulate/x86_emulate.c in Xen 3.3.x through 4.4.x does not check the supervisor mode permissions for instructions that generate software interrupts, which allows local HVM guest users to cause a denial of service (guest crash) via unspecified vectors.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-7156", "url": "https://www.suse.com/security/cve/CVE-2014-7156" }, { "category": "external", "summary": "SUSE Bug 880751 for CVE-2014-7156", "url": "https://bugzilla.suse.com/880751" }, { "category": "external", "summary": "SUSE Bug 895802 for CVE-2014-7156", "url": "https://bugzilla.suse.com/895802" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "low" } ], "title": "CVE-2014-7156" }, { "cve": "CVE-2014-8594", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-8594" } ], "notes": [ { "category": "general", "text": "The do_mmu_update function in arch/x86/mm.c in Xen 4.x through 4.4.x does not properly restrict updates to only PV page tables, which allows remote PV guests to cause a denial of service (NULL pointer dereference) by leveraging hardware emulation services for HVM guests using Hardware Assisted Paging (HAP).", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-8594", "url": "https://www.suse.com/security/cve/CVE-2014-8594" }, { "category": "external", "summary": "SUSE Bug 903967 for CVE-2014-8594", "url": "https://bugzilla.suse.com/903967" }, { "category": "external", "summary": "SUSE Bug 903970 for CVE-2014-8594", "url": "https://bugzilla.suse.com/903970" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2014-8594" }, { "cve": "CVE-2014-8595", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-8595" } ], "notes": [ { "category": "general", "text": "arch/x86/x86_emulate/x86_emulate.c in Xen 3.2.1 through 4.4.x does not properly check privileges, which allows local HVM guest users to gain privileges or cause a denial of service (crash) via a crafted (1) CALL, (2) JMP, (3) RETF, (4) LCALL, (5) LJMP, or (6) LRET far branch instruction.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-8595", "url": "https://www.suse.com/security/cve/CVE-2014-8595" }, { "category": "external", "summary": "SUSE Bug 903970 for CVE-2014-8595", "url": "https://bugzilla.suse.com/903970" }, { "category": "external", "summary": "SUSE Bug 907649 for CVE-2014-8595", "url": "https://bugzilla.suse.com/907649" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "low" } ], "title": "CVE-2014-8595" }, { "cve": "CVE-2014-8866", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-8866" } ], "notes": [ { "category": "general", "text": "The compatibility mode hypercall argument translation in Xen 3.3.x through 4.4.x, when running on a 64-bit hypervisor, allows local 32-bit HVM guests to cause a denial of service (host crash) via vectors involving altering the high halves of registers while in 64-bit mode.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-8866", "url": "https://www.suse.com/security/cve/CVE-2014-8866" }, { "category": "external", "summary": "SUSE Bug 903970 for CVE-2014-8866", "url": "https://bugzilla.suse.com/903970" }, { "category": "external", "summary": "SUSE Bug 905465 for CVE-2014-8866", "url": "https://bugzilla.suse.com/905465" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2014-8866" }, { "cve": "CVE-2014-8867", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-8867" } ], "notes": [ { "category": "general", "text": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-8867", "url": "https://www.suse.com/security/cve/CVE-2014-8867" }, { "category": "external", "summary": "SUSE Bug 903970 for CVE-2014-8867", "url": "https://bugzilla.suse.com/903970" }, { "category": "external", "summary": "SUSE Bug 905467 for CVE-2014-8867", "url": "https://bugzilla.suse.com/905467" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2014-8867" }, { "cve": "CVE-2014-9030", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-9030" } ], "notes": [ { "category": "general", "text": "The do_mmu_update function in arch/x86/mm.c in Xen 3.2.x through 4.4.x does not properly manage page references, which allows remote domains to cause a denial of service by leveraging control over an HVM guest and a crafted MMU_MACHPHYS_UPDATE.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-9030", "url": "https://www.suse.com/security/cve/CVE-2014-9030" }, { "category": "external", "summary": "SUSE Bug 903970 for CVE-2014-9030", "url": "https://bugzilla.suse.com/903970" }, { "category": "external", "summary": "SUSE Bug 906439 for CVE-2014-9030", "url": "https://bugzilla.suse.com/906439" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "important" } ], "title": "CVE-2014-9030" }, { "cve": "CVE-2015-3340", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-3340" } ], "notes": [ { "category": "general", "text": "Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-3340", "url": "https://www.suse.com/security/cve/CVE-2015-3340" }, { "category": "external", "summary": "SUSE Bug 927967 for CVE-2015-3340", "url": "https://bugzilla.suse.com/927967" }, { "category": "external", "summary": "SUSE Bug 929339 for CVE-2015-3340", "url": "https://bugzilla.suse.com/929339" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "low" } ], "title": "CVE-2015-3340" }, { "cve": "CVE-2015-3456", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-3456" } ], "notes": [ { "category": "general", "text": "The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (out-of-bounds write and guest crash) or possibly execute arbitrary code via the (1) FD_CMD_READ_ID, (2) FD_CMD_DRIVE_SPECIFICATION_COMMAND, or other unspecified commands, aka VENOM.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-3456", "url": "https://www.suse.com/security/cve/CVE-2015-3456" }, { "category": "external", "summary": "SUSE Bug 929339 for CVE-2015-3456", "url": "https://bugzilla.suse.com/929339" }, { "category": "external", "summary": "SUSE Bug 932770 for CVE-2015-3456", "url": "https://bugzilla.suse.com/932770" }, { "category": "external", "summary": "SUSE Bug 935900 for CVE-2015-3456", "url": "https://bugzilla.suse.com/935900" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-LTSS:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-html-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-doc-pdf-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-default-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-pae-4.0.3_21548_18_2.6.32.59_0.19-0.21.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-kmp-trace-4.0.3_21548_12_2.6.32.54_0.11.TDC-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-libs-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-4.0.3_21548_12-0.3.1.x86_64", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.i586", "SUSE Linux Enterprise Server 11 SP1-TERADATA:xen-tools-domU-4.0.3_21548_12-0.3.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2012-11-22T17:59:15Z", "details": "moderate" } ], "title": "CVE-2015-3456" } ] }
gsd-2014-8867
Vulnerability from gsd
Modified
2023-12-13 01:22
Details
The acceleration support for the "REP MOVS" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.
Aliases
Aliases
{ "GSD": { "alias": "CVE-2014-8867", "description": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.", "id": "GSD-2014-8867", "references": [ "https://www.suse.com/security/cve/CVE-2014-8867.html", "https://www.debian.org/security/2015/dsa-3140", "https://access.redhat.com/errata/RHSA-2015:0783", "https://linux.oracle.com/cve/CVE-2014-8867.html" ] }, "gsd": { "metadata": { "exploitCode": "unknown", "remediation": "unknown", "reportConfidence": "confirmed", "type": "vulnerability" }, "osvSchema": { "aliases": [ "CVE-2014-8867" ], "details": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.", "id": "GSD-2014-8867", "modified": "2023-12-13T01:22:49.757435Z", "schema_version": "1.4.0" } }, "namespaces": { "cve.org": { "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2014-8867", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "RHSA-2015:0783", "refsource": "REDHAT", "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "name": "GLSA-201504-04", "refsource": "GENTOO", "url": "https://security.gentoo.org/glsa/201504-04" }, { "name": "62672", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/62672" }, { "name": "http://support.citrix.com/article/CTX201794", "refsource": "CONFIRM", "url": "http://support.citrix.com/article/CTX201794" }, { "name": "http://support.citrix.com/article/CTX200288", "refsource": "CONFIRM", "url": "http://support.citrix.com/article/CTX200288" }, { "name": "DSA-3140", "refsource": "DEBIAN", "url": "http://www.debian.org/security/2015/dsa-3140" }, { "name": "openSUSE-SU-2015:0226", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "name": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705", "refsource": "CONFIRM", "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "name": "openSUSE-SU-2015:0256", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "name": "http://xenbits.xenproject.org/xsa/advisory-112.html", "refsource": "CONFIRM", "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" }, { "name": "59949", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/59949" }, { "name": "71331", "refsource": "BID", "url": "http://www.securityfocus.com/bid/71331" } ] } }, "nvd.nist.gov": { "configurations": { "CVE_data_version": "4.0", "nodes": [ { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" }, { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:o:xen:xen:3.2.1:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:xen:xen:3.2.2:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:xen:xen:3.2.3:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:xen:xen:4.4.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:xen:xen:4.4.1:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:*", "cpe_name": [], "versionEndIncluding": "3.2.0", "vulnerable": true } ], "operator": "OR" }, { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" }, { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" } ] }, "cve": { "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2014-8867" }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "en", "value": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "en", "value": "CWE-17" } ] } ] }, "references": { "reference_data": [ { "name": "http://xenbits.xenproject.org/xsa/advisory-112.html", "refsource": "CONFIRM", "tags": [ "Patch", "Vendor Advisory" ], "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" }, { "name": "71331", "refsource": "BID", "tags": [ "Third Party Advisory", "VDB Entry" ], "url": "http://www.securityfocus.com/bid/71331" }, { "name": "59949", "refsource": "SECUNIA", "tags": [ "Permissions Required", "Third Party Advisory" ], "url": "http://secunia.com/advisories/59949" }, { "name": "62672", "refsource": "SECUNIA", "tags": [ "Permissions Required", "Third Party Advisory" ], "url": "http://secunia.com/advisories/62672" }, { "name": "DSA-3140", "refsource": "DEBIAN", "tags": [ "Third Party Advisory" ], "url": "http://www.debian.org/security/2015/dsa-3140" }, { "name": "openSUSE-SU-2015:0256", "refsource": "SUSE", "tags": [ "Third Party Advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "name": "openSUSE-SU-2015:0226", "refsource": "SUSE", "tags": [ "Third Party Advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "name": "RHSA-2015:0783", "refsource": "REDHAT", "tags": [ "Third Party Advisory" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "name": "http://support.citrix.com/article/CTX201794", "refsource": "CONFIRM", "tags": [], "url": "http://support.citrix.com/article/CTX201794" }, { "name": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705", "refsource": "CONFIRM", "tags": [], "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "name": "GLSA-201504-04", "refsource": "GENTOO", "tags": [], "url": "https://security.gentoo.org/glsa/201504-04" }, { "name": "http://support.citrix.com/article/CTX200288", "refsource": "CONFIRM", "tags": [], "url": "http://support.citrix.com/article/CTX200288" } ] } }, "impact": { "baseMetricV2": { "cvssV2": { "accessComplexity": "LOW", "accessVector": "LOCAL", "authentication": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 4.9, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:L/AC:L/Au:N/C:N/I:N/A:C", "version": "2.0" }, "exploitabilityScore": 3.9, "impactScore": 6.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "severity": "MEDIUM", "userInteractionRequired": false } }, "lastModifiedDate": "2018-10-30T16:27Z", "publishedDate": "2014-12-01T15:59Z" } } }
rhsa-2015:0783
Vulnerability from csaf_redhat
Published
2015-04-07 15:08
Modified
2025-08-01 21:44
Summary
Red Hat Security Advisory: kernel security and bug fix update
Notes
Topic
Updated kernel packages that fix two security issues and two bugs are now
available for Red Hat Enterprise Linux 5.
Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
The kernel packages contain the Linux kernel, the core of any Linux
operating system.
* It was found that the Linux kernel's Infiniband subsystem did not
properly sanitize input parameters while registering memory regions from
user space via the (u)verbs API. A local user with access to a
/dev/infiniband/uverbsX device could use this flaw to crash the system or,
potentially, escalate their privileges on the system. (CVE-2014-8159,
Important)
* An insufficient bound checking flaw was found in the Xen hypervisor's
implementation of acceleration support for the "REP MOVS" instructions.
A privileged HVM guest user could potentially use this flaw to crash the
host. (CVE-2014-8867, Important)
Red Hat would like to thank Mellanox for reporting CVE-2014-8159, and the
Xen project for reporting CVE-2014-8867.
This update also fixes the following bugs:
* Under memory pressure, cached data was previously flushed to the backing
server using the PID of the thread responsible for flushing the data in the
Server Message Block (SMB) headers instead of the PID of the thread which
actually wrote the data. As a consequence, when a file was locked by the
writing thread prior to writing, the server considered writes by the thread
flushing the pagecache as being a separate process from writing to a locked
file, and thus rejected the writes. In addition, the data to be written was
discarded. This update ensures that the correct PID is sent to the server,
and data corruption is avoided when data is being written from a client
under memory pressure. (BZ#1169304)
* This update adds support for new cryptographic hardware in toleration
mode for IBM System z. (BZ#1182522)
All kernel users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. The system must be
rebooted for this update to take effect.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated kernel packages that fix two security issues and two bugs are now\navailable for Red Hat Enterprise Linux 5.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "The kernel packages contain the Linux kernel, the core of any Linux\noperating system.\n\n* It was found that the Linux kernel\u0027s Infiniband subsystem did not\nproperly sanitize input parameters while registering memory regions from\nuser space via the (u)verbs API. A local user with access to a\n/dev/infiniband/uverbsX device could use this flaw to crash the system or,\npotentially, escalate their privileges on the system. (CVE-2014-8159,\nImportant)\n\n* An insufficient bound checking flaw was found in the Xen hypervisor\u0027s\nimplementation of acceleration support for the \"REP MOVS\" instructions.\nA privileged HVM guest user could potentially use this flaw to crash the\nhost. (CVE-2014-8867, Important)\n\nRed Hat would like to thank Mellanox for reporting CVE-2014-8159, and the\nXen project for reporting CVE-2014-8867.\n\nThis update also fixes the following bugs:\n\n* Under memory pressure, cached data was previously flushed to the backing\nserver using the PID of the thread responsible for flushing the data in the\nServer Message Block (SMB) headers instead of the PID of the thread which\nactually wrote the data. As a consequence, when a file was locked by the\nwriting thread prior to writing, the server considered writes by the thread\nflushing the pagecache as being a separate process from writing to a locked\nfile, and thus rejected the writes. In addition, the data to be written was\ndiscarded. This update ensures that the correct PID is sent to the server,\nand data corruption is avoided when data is being written from a client\nunder memory pressure. (BZ#1169304)\n\n* This update adds support for new cryptographic hardware in toleration\nmode for IBM System z. (BZ#1182522)\n\nAll kernel users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. The system must be\nrebooted for this update to take effect.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2015:0783", "url": "https://access.redhat.com/errata/RHSA-2015:0783" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "1164255", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1164255" }, { "category": "external", "summary": "1181166", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1181166" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2015/rhsa-2015_0783.json" } ], "title": "Red Hat Security Advisory: kernel security and bug fix update", "tracking": { "current_release_date": "2025-08-01T21:44:21+00:00", "generator": { "date": "2025-08-01T21:44:21+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.6.6" } }, "id": "RHSA-2015:0783", "initial_release_date": "2015-04-07T15:08:19+00:00", "revision_history": [ { "date": "2015-04-07T15:08:19+00:00", "number": "1", "summary": "Initial version" }, { "date": "2015-04-07T15:08:19+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2025-08-01T21:44:21+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux Desktop (v. 5 client)", "product": { "name": "Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:5::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux (v. 5 server)", "product": { "name": "Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:5::server" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "kernel-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-0:2.6.18-404.el5.s390x", "product_id": "kernel-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-debuginfo-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-debuginfo-0:2.6.18-404.el5.s390x", "product_id": "kernel-debuginfo-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-devel-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-devel-0:2.6.18-404.el5.s390x", "product_id": "kernel-devel-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-devel@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "product_id": "kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo-common@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-kdump-devel-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-kdump-devel-0:2.6.18-404.el5.s390x", "product_id": "kernel-kdump-devel-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-kdump-devel@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-kdump-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-kdump-0:2.6.18-404.el5.s390x", "product_id": "kernel-kdump-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-kdump@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-debug-devel-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-debug-devel-0:2.6.18-404.el5.s390x", "product_id": "kernel-debug-devel-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-devel@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-debug-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-debug-0:2.6.18-404.el5.s390x", "product_id": "kernel-debug-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "product_id": "kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-kdump-debuginfo@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-headers-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-headers-0:2.6.18-404.el5.s390x", "product_id": "kernel-headers-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-headers@2.6.18-404.el5?arch=s390x" } } }, { "category": "product_version", "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "product": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "product_id": "kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-debuginfo@2.6.18-404.el5?arch=s390x" } } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "kernel-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-0:2.6.18-404.el5.ppc64", "product_id": "kernel-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-debuginfo-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-debuginfo-0:2.6.18-404.el5.ppc64", "product_id": "kernel-debuginfo-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-devel-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-devel-0:2.6.18-404.el5.ppc64", "product_id": "kernel-devel-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-devel@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "product_id": "kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo-common@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "product_id": "kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-kdump-devel@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-kdump-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-kdump-0:2.6.18-404.el5.ppc64", "product_id": "kernel-kdump-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-kdump@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-debug-devel-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-debug-devel-0:2.6.18-404.el5.ppc64", "product_id": "kernel-debug-devel-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-devel@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-debug-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-debug-0:2.6.18-404.el5.ppc64", "product_id": "kernel-debug-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "product_id": "kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-kdump-debuginfo@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-headers-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-headers-0:2.6.18-404.el5.ppc64", "product_id": "kernel-headers-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-headers@2.6.18-404.el5?arch=ppc64" } } }, { "category": "product_version", "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "product": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "product_id": "kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-debuginfo@2.6.18-404.el5?arch=ppc64" } } } ], "category": "architecture", "name": "ppc64" }, { "branches": [ { "category": "product_version", "name": "kernel-headers-0:2.6.18-404.el5.ppc", "product": { "name": "kernel-headers-0:2.6.18-404.el5.ppc", "product_id": "kernel-headers-0:2.6.18-404.el5.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-headers@2.6.18-404.el5?arch=ppc" } } } ], "category": "architecture", "name": "ppc" }, { "branches": [ { "category": "product_version", "name": "kernel-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-0:2.6.18-404.el5.x86_64", "product_id": "kernel-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-debuginfo-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-debuginfo-0:2.6.18-404.el5.x86_64", "product_id": "kernel-debuginfo-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-devel-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-devel-0:2.6.18-404.el5.x86_64", "product_id": "kernel-devel-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-devel@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "product_id": "kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo-common@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-debug-devel-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-debug-devel-0:2.6.18-404.el5.x86_64", "product_id": "kernel-debug-devel-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-devel@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-debug-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-debug-0:2.6.18-404.el5.x86_64", "product_id": "kernel-debug-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-xen-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-xen-0:2.6.18-404.el5.x86_64", "product_id": "kernel-xen-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-xen-devel-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-xen-devel-0:2.6.18-404.el5.x86_64", "product_id": "kernel-xen-devel-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen-devel@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-headers-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-headers-0:2.6.18-404.el5.x86_64", "product_id": "kernel-headers-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-headers@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "product_id": "kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-debuginfo@2.6.18-404.el5?arch=x86_64" } } }, { "category": "product_version", "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "product": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "product_id": "kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen-debuginfo@2.6.18-404.el5?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "kernel-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-0:2.6.18-404.el5.ia64", "product_id": "kernel-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-debuginfo-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-debuginfo-0:2.6.18-404.el5.ia64", "product_id": "kernel-debuginfo-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-devel-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-devel-0:2.6.18-404.el5.ia64", "product_id": "kernel-devel-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-devel@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "product_id": "kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo-common@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-debug-devel-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-debug-devel-0:2.6.18-404.el5.ia64", "product_id": "kernel-debug-devel-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-devel@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-debug-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-debug-0:2.6.18-404.el5.ia64", "product_id": "kernel-debug-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-xen-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-xen-0:2.6.18-404.el5.ia64", "product_id": "kernel-xen-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-xen-devel-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-xen-devel-0:2.6.18-404.el5.ia64", "product_id": "kernel-xen-devel-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen-devel@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-headers-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-headers-0:2.6.18-404.el5.ia64", "product_id": "kernel-headers-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-headers@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "product_id": "kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-debuginfo@2.6.18-404.el5?arch=ia64" } } }, { "category": "product_version", "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "product": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "product_id": "kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen-debuginfo@2.6.18-404.el5?arch=ia64" } } } ], "category": "architecture", "name": "ia64" }, { "branches": [ { "category": "product_version", "name": "kernel-0:2.6.18-404.el5.src", "product": { "name": "kernel-0:2.6.18-404.el5.src", "product_id": "kernel-0:2.6.18-404.el5.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel@2.6.18-404.el5?arch=src" } } } ], "category": "architecture", "name": "src" }, { "branches": [ { "category": "product_version", "name": "kernel-0:2.6.18-404.el5.i686", "product": { "name": "kernel-0:2.6.18-404.el5.i686", "product_id": "kernel-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-debuginfo-0:2.6.18-404.el5.i686", "product": { "name": "kernel-debuginfo-0:2.6.18-404.el5.i686", "product_id": "kernel-debuginfo-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-devel-0:2.6.18-404.el5.i686", "product": { "name": "kernel-devel-0:2.6.18-404.el5.i686", "product_id": "kernel-devel-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-devel@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "product": { "name": "kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "product_id": "kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-PAE-debuginfo@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-PAE-0:2.6.18-404.el5.i686", "product": { "name": "kernel-PAE-0:2.6.18-404.el5.i686", "product_id": "kernel-PAE-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-PAE@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-debuginfo-common-0:2.6.18-404.el5.i686", "product": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.i686", "product_id": "kernel-debuginfo-common-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debuginfo-common@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-PAE-devel-0:2.6.18-404.el5.i686", "product": { "name": "kernel-PAE-devel-0:2.6.18-404.el5.i686", "product_id": "kernel-PAE-devel-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-PAE-devel@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-debug-devel-0:2.6.18-404.el5.i686", "product": { "name": "kernel-debug-devel-0:2.6.18-404.el5.i686", "product_id": "kernel-debug-devel-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-devel@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-debug-0:2.6.18-404.el5.i686", "product": { "name": "kernel-debug-0:2.6.18-404.el5.i686", "product_id": "kernel-debug-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-xen-0:2.6.18-404.el5.i686", "product": { "name": "kernel-xen-0:2.6.18-404.el5.i686", "product_id": "kernel-xen-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-xen-devel-0:2.6.18-404.el5.i686", "product": { "name": "kernel-xen-devel-0:2.6.18-404.el5.i686", "product_id": "kernel-xen-devel-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen-devel@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "product": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "product_id": "kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-debug-debuginfo@2.6.18-404.el5?arch=i686" } } }, { "category": "product_version", "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "product": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "product_id": "kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-xen-debuginfo@2.6.18-404.el5?arch=i686" } } } ], "category": "architecture", "name": "i686" }, { "branches": [ { "category": "product_version", "name": "kernel-headers-0:2.6.18-404.el5.i386", "product": { "name": "kernel-headers-0:2.6.18-404.el5.i386", "product_id": "kernel-headers-0:2.6.18-404.el5.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-headers@2.6.18-404.el5?arch=i386" } } } ], "category": "architecture", "name": "i386" }, { "branches": [ { "category": "product_version", "name": "kernel-doc-0:2.6.18-404.el5.noarch", "product": { "name": "kernel-doc-0:2.6.18-404.el5.noarch", "product_id": "kernel-doc-0:2.6.18-404.el5.noarch", "product_identification_helper": { "purl": "pkg:rpm/redhat/kernel-doc@2.6.18-404.el5?arch=noarch" } } } ], "category": "architecture", "name": "noarch" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.src as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-0:2.6.18-404.el5.src" }, "product_reference": "kernel-0:2.6.18-404.el5.src", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-PAE-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-PAE-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-PAE-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-PAE-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-PAE-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-doc-0:2.6.18-404.el5.noarch as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch" }, "product_reference": "kernel-doc-0:2.6.18-404.el5.noarch", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.i386 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.i386", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.ppc as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.ppc", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-kdump-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-kdump-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-devel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-devel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-kdump-devel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-xen-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-xen-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-xen-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-xen-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-devel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-xen-devel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-devel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-xen-devel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.src as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-0:2.6.18-404.el5.src" }, "product_reference": "kernel-0:2.6.18-404.el5.src", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-PAE-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-PAE-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-PAE-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-PAE-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-PAE-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debug-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debug-devel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debug-devel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debuginfo-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-debuginfo-common-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-devel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-doc-0:2.6.18-404.el5.noarch as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch" }, "product_reference": "kernel-doc-0:2.6.18-404.el5.noarch", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.i386 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.i386", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.ppc as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.ppc", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-headers-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-headers-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-kdump-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-kdump-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-devel-0:2.6.18-404.el5.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64" }, "product_reference": "kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-kdump-devel-0:2.6.18-404.el5.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x" }, "product_reference": "kernel-kdump-devel-0:2.6.18-404.el5.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-xen-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-xen-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-xen-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-devel-0:2.6.18-404.el5.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686" }, "product_reference": "kernel-xen-devel-0:2.6.18-404.el5.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-devel-0:2.6.18-404.el5.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64" }, "product_reference": "kernel-xen-devel-0:2.6.18-404.el5.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-xen-devel-0:2.6.18-404.el5.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" }, "product_reference": "kernel-xen-devel-0:2.6.18-404.el5.x86_64", "relates_to_product_reference": "5Server-5.11.Z" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "Mellanox" ] } ], "cve": "CVE-2014-8159", "cwe": { "id": "CWE-190", "name": "Integer Overflow or Wraparound" }, "discovery_date": "2015-01-05T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1181166" } ], "notes": [ { "category": "description", "text": "It was found that the Linux kernel\u0027s Infiniband subsystem did not properly sanitize input parameters while registering memory regions from user space via the (u)verbs API. A local user with access to a /dev/infiniband/uverbsX device could use this flaw to crash the system or, potentially, escalate their privileges on the system.", "title": "Vulnerability description" }, { "category": "summary", "text": "kernel: infiniband: uverbs: unprotected physical memory access", "title": "Vulnerability summary" }, { "category": "other", "text": "This issue did affect the Linux kernel packages as shipped with Red Hat\nEnterprise Linux 5, 6, and 7, and Red Hat Enterprise MRG 2. This issue\nhas been addressed in the respective releases.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2014-8159" }, { "category": "external", "summary": "RHBZ#1181166", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1181166" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2014-8159", "url": "https://www.cve.org/CVERecord?id=CVE-2014-8159" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2014-8159", "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8159" } ], "release_date": "2015-03-11T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-07T15:08:19+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" ], "restart_required": { "category": "machine" }, "url": "https://access.redhat.com/errata/RHSA-2015:0783" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "LOCAL", "authentication": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 6.2, "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "vectorString": "AV:L/AC:H/Au:N/C:C/I:C/A:C", "version": "2.0" }, "products": [ "5Client-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "kernel: infiniband: uverbs: unprotected physical memory access" }, { "acknowledgments": [ { "names": [ "Xen project" ] } ], "cve": "CVE-2014-8867", "discovery_date": "2014-11-13T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1164255" } ], "notes": [ { "category": "description", "text": "An insufficient bound checking flaw was found in the Xen hypervisor\u0027s implementation of acceleration support for the \"REP MOVS\" instructions. A privileged HVM guest user could potentially use this flaw to crash the host.", "title": "Vulnerability description" }, { "category": "summary", "text": "xen: Insufficient bounding of \"REP MOVS\" to MMIO emulated inside the hypervisor (xsa112)", "title": "Vulnerability summary" }, { "category": "other", "text": "This issue does affect the versions of the kernel-xen package as shipped with\nRed Hat Enterprise Linux 5. Future kernel-xen updates for Red Hat Enterprise\nLinux 5 may address this issue.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2014-8867" }, { "category": "external", "summary": "RHBZ#1164255", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1164255" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2014-8867", "url": "https://www.cve.org/CVERecord?id=CVE-2014-8867" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2014-8867", "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8867" }, { "category": "external", "summary": "http://xenbits.xen.org/xsa/advisory-112.html", "url": "http://xenbits.xen.org/xsa/advisory-112.html" } ], "release_date": "2014-11-27T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-07T15:08:19+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" ], "restart_required": { "category": "machine" }, "url": "https://access.redhat.com/errata/RHSA-2015:0783" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "ADJACENT_NETWORK", "authentication": "SINGLE", "availabilityImpact": "COMPLETE", "baseScore": 5.2, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:A/AC:M/Au:S/C:N/I:N/A:C", "version": "2.0" }, "products": [ "5Client-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Client-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Client-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Client-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.src", "5Server-5.11.Z:kernel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-PAE-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-PAE-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debug-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-debuginfo-common-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-devel-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-doc-0:2.6.18-404.el5.noarch", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.i386", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-headers-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-debuginfo-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.ppc64", "5Server-5.11.Z:kernel-kdump-devel-0:2.6.18-404.el5.s390x", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-debuginfo-0:2.6.18-404.el5.x86_64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.i686", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.ia64", "5Server-5.11.Z:kernel-xen-devel-0:2.6.18-404.el5.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "xen: Insufficient bounding of \"REP MOVS\" to MMIO emulated inside the hypervisor (xsa112)" } ] }
fkie_cve-2014-8867
Vulnerability from fkie_nvd
Published
2014-12-01 15:59
Modified
2025-04-12 10:46
Severity ?
Summary
The acceleration support for the "REP MOVS" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.
References
▶ | URL | Tags | |
---|---|---|---|
cve@mitre.org | http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705 | ||
cve@mitre.org | http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html | Third Party Advisory | |
cve@mitre.org | http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html | Third Party Advisory | |
cve@mitre.org | http://rhn.redhat.com/errata/RHSA-2015-0783.html | Third Party Advisory | |
cve@mitre.org | http://secunia.com/advisories/59949 | Permissions Required, Third Party Advisory | |
cve@mitre.org | http://secunia.com/advisories/62672 | Permissions Required, Third Party Advisory | |
cve@mitre.org | http://support.citrix.com/article/CTX200288 | ||
cve@mitre.org | http://support.citrix.com/article/CTX201794 | ||
cve@mitre.org | http://www.debian.org/security/2015/dsa-3140 | Third Party Advisory | |
cve@mitre.org | http://www.securityfocus.com/bid/71331 | Third Party Advisory, VDB Entry | |
cve@mitre.org | http://xenbits.xenproject.org/xsa/advisory-112.html | Patch, Vendor Advisory | |
cve@mitre.org | https://security.gentoo.org/glsa/201504-04 | ||
af854a3a-2127-422b-91ae-364da2661108 | http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705 | ||
af854a3a-2127-422b-91ae-364da2661108 | http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://rhn.redhat.com/errata/RHSA-2015-0783.html | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://secunia.com/advisories/59949 | Permissions Required, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://secunia.com/advisories/62672 | Permissions Required, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://support.citrix.com/article/CTX200288 | ||
af854a3a-2127-422b-91ae-364da2661108 | http://support.citrix.com/article/CTX201794 | ||
af854a3a-2127-422b-91ae-364da2661108 | http://www.debian.org/security/2015/dsa-3140 | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://www.securityfocus.com/bid/71331 | Third Party Advisory, VDB Entry | |
af854a3a-2127-422b-91ae-364da2661108 | http://xenbits.xenproject.org/xsa/advisory-112.html | Patch, Vendor Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://security.gentoo.org/glsa/201504-04 |
Impacted products
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*", "matchCriteriaId": "1D8B549B-E57B-4DFE-8A13-CAB06B5356B3", "vulnerable": true }, { "criteria": "cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*", "matchCriteriaId": "133AAFA7-AF42-4D7B-8822-AA2E85611BF5", "vulnerable": true } ], "negate": false, "operator": "OR" } ] }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:*", "matchCriteriaId": "4A3469DF-B0AC-4DC3-8BBC-A7054EFDBD81", "versionEndIncluding": "3.2.0", "vulnerable": true }, { "criteria": "cpe:2.3:o:xen:xen:3.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "2A4B60DE-A8C0-459E-A99C-6EF0D3264B75", "vulnerable": true }, { "criteria": "cpe:2.3:o:xen:xen:3.2.2:*:*:*:*:*:*:*", "matchCriteriaId": "A83F4F7E-53CF-4066-857B-2154D25979D8", "vulnerable": true }, { "criteria": "cpe:2.3:o:xen:xen:3.2.3:*:*:*:*:*:*:*", "matchCriteriaId": "048E790E-B0A1-4504-9299-0B6D9CB0C509", "vulnerable": true }, { "criteria": "cpe:2.3:o:xen:xen:4.4.0:*:*:*:*:*:*:*", "matchCriteriaId": "1044792C-D544-457C-9391-4F3B5BAB978D", "vulnerable": true }, { "criteria": "cpe:2.3:o:xen:xen:4.4.1:*:*:*:*:*:*:*", "matchCriteriaId": "FBD9AD01-50B7-4951-8A73-A6CF4801A487", "vulnerable": true } ], "negate": false, "operator": "OR" } ] }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*", "matchCriteriaId": "16F59A04-14CF-49E2-9973-645477EA09DA", "vulnerable": true } ], "negate": false, "operator": "OR" } ] }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*", "matchCriteriaId": "A10BC294-9196-425F-9FB0-B1625465B47F", "vulnerable": true }, { "criteria": "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*", "matchCriteriaId": "03117DF1-3BEC-4B8D-AD63-DBBDB2126081", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "The acceleration support for the \"REP MOVS\" instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors." }, { "lang": "es", "value": "El soporte de aceleraci\u00f3n para la instrucci\u00f3n \u0027REP MOVS\u0027 en Xen 4.4.x, 3.2.x, y anteriores falla en la comprobaci\u00f3n correcta de los l\u00edmites para entrada/salida del mapeado de memoria (memory mapped I/O, MMIO) emulado en el hipervisor, lo que permite a invitados HVM locales causar una denegaci\u00f3n de servicio (ca\u00edda del anfitri\u00f3n) a trav\u00e9s de vectores no especificados." } ], "id": "CVE-2014-8867", "lastModified": "2025-04-12T10:46:40.837", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "MEDIUM", "cvssData": { "accessComplexity": "LOW", "accessVector": "LOCAL", "authentication": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 4.9, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:L/AC:L/Au:N/C:N/I:N/A:C", "version": "2.0" }, "exploitabilityScore": 3.9, "impactScore": 6.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false } ] }, "published": "2014-12-01T15:59:09.780", "references": [ { "source": "cve@mitre.org", "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "source": "cve@mitre.org", "tags": [ "Third Party Advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "source": "cve@mitre.org", "tags": [ "Third Party Advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "source": "cve@mitre.org", "tags": [ "Third Party Advisory" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "source": "cve@mitre.org", "tags": [ "Permissions Required", "Third Party Advisory" ], "url": "http://secunia.com/advisories/59949" }, { "source": "cve@mitre.org", "tags": [ "Permissions Required", "Third Party Advisory" ], "url": "http://secunia.com/advisories/62672" }, { "source": "cve@mitre.org", "url": "http://support.citrix.com/article/CTX200288" }, { "source": "cve@mitre.org", "url": "http://support.citrix.com/article/CTX201794" }, { "source": "cve@mitre.org", "tags": [ "Third Party Advisory" ], "url": "http://www.debian.org/security/2015/dsa-3140" }, { "source": "cve@mitre.org", "tags": [ "Third Party Advisory", "VDB Entry" ], "url": "http://www.securityfocus.com/bid/71331" }, { "source": "cve@mitre.org", "tags": [ "Patch", "Vendor Advisory" ], "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" }, { "source": "cve@mitre.org", "url": "https://security.gentoo.org/glsa/201504-04" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10705" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0783.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Permissions Required", "Third Party Advisory" ], "url": "http://secunia.com/advisories/59949" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Permissions Required", "Third Party Advisory" ], "url": "http://secunia.com/advisories/62672" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://support.citrix.com/article/CTX200288" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://support.citrix.com/article/CTX201794" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "http://www.debian.org/security/2015/dsa-3140" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory", "VDB Entry" ], "url": "http://www.securityfocus.com/bid/71331" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Vendor Advisory" ], "url": "http://xenbits.xenproject.org/xsa/advisory-112.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://security.gentoo.org/glsa/201504-04" } ], "sourceIdentifier": "cve@mitre.org", "vulnStatus": "Deferred", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-17" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…