Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.851335
Kategorie:SuSE Local Security Checks
Titel:SUSE: Security Advisory for qemu (SUSE-SU-2016:1560-1)
Zusammenfassung:The remote host is missing an update for the 'qemu'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'qemu'
package(s) announced via the referenced advisory.

Vulnerability Insight:
qemu was updated to fix 37 security issues.

These security issues were fixed:

- CVE-2016-4439: Avoid OOB access in 53C9X emulation (bsc#980711)

- CVE-2016-4441: Avoid OOB access in 53C9X emulation (bsc#980723)

- CVE-2016-4952: Avoid OOB access in Vmware PV SCSI emulation (bsc#981266)

- CVE-2015-8817: Avoid OOB access in PCI DMA I/O (bsc#969121)

- CVE-2015-8818: Avoid OOB access in PCI DMA I/O (bsc#969122)

- CVE-2016-3710: Fixed VGA emulation based OOB access with potential for
guest escape (bsc#978158)

- CVE-2016-3712: Fixed VGa emulation based DOS and OOB read access exploit
(bsc#978160)

- CVE-2016-4037: Fixed USB ehci based DOS (bsc#976109)

- CVE-2016-2538: Fixed potential OOB access in USB net device emulation
(bsc#967969)

- CVE-2016-2841: Fixed OOB access / hang in ne2000 emulation (bsc#969350)

- CVE-2016-2858: Avoid potential DOS when using QEMU pseudo random number
generator (bsc#970036)

- CVE-2016-2857: Fixed OOB access when processing IP checksums (bsc#970037)

- CVE-2016-4001: Fixed OOB access in Stellaris enet emulated nic
(bsc#975128)

- CVE-2016-4002: Fixed OOB access in MIPSnet emulated controller
(bsc#975136)

- CVE-2016-4020: Fixed possible host data leakage to guest from TPR access
(bsc#975700)

- CVE-2015-3214: Fixed OOB read in i8254 PIC (bsc#934069)

- CVE-2014-9718: Fixed the handling of malformed or short ide PRDTs to
avoid any opportunity for guest to cause DoS by abusing that interface
(bsc#928393)

- CVE-2014-3689: Fixed insufficient parameter validation in rectangle
functions (bsc#901508)

- CVE-2014-3615: The VGA emulator in QEMU allowed local guest users to
read host memory by setting the display to a high resolution
(bsc#895528).

- CVE-2015-5239: Integer overflow in vnc_client_read() and
protocol_client_msg() (bsc#944463).

- CVE-2015-5745: Buffer overflow in virtio-serial (bsc#940929).

- CVE-2015-7295: hw/virtio/virtio.c in the Virtual Network Device
(virtio-net) support in QEMU, when big or mergeable receive buffers are
not supported, allowed remote attackers to cause a denial of service
(guest network consumption) via a flood of jumbo frames on the (1)
tuntap or (2) macvtap interface (bsc#947159).

- CVE-2015-7549: PCI null pointer dereferences (bsc#958917).

- CVE-2015-8504: VNC floating point exception (bsc#958491).

- CVE-2015-8558: Infinite loop in ehci_advance_state resulting in DoS
(bsc#959005).

- CVE-2015-8567: A guest repeatedly activating a vmxnet3 device can leak
host memory (bsc#959386).

- CVE-2015-8568: A guest repe ...

Description truncated, please see the referenced URL(s) for more information.

Affected Software/OS:
qemu on SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Desktop 12

Solution:
Please install the updated package(s).

CVSS Score:
7.2

CVSS Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2014-3615
BugTraq ID: 69654
http://www.securityfocus.com/bid/69654
Debian Security Information: DSA-3044 (Google Search)
http://www.debian.org/security/2014/dsa-3044
RedHat Security Advisories: RHSA-2014:1669
http://rhn.redhat.com/errata/RHSA-2014-1669.html
RedHat Security Advisories: RHSA-2014:1670
http://rhn.redhat.com/errata/RHSA-2014-1670.html
RedHat Security Advisories: RHSA-2014:1941
http://rhn.redhat.com/errata/RHSA-2014-1941.html
http://secunia.com/advisories/61829
SuSE Security Announcement: openSUSE-SU-2015:0732 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00014.html
http://www.ubuntu.com/usn/USN-2409-1
Common Vulnerability Exposure (CVE) ID: CVE-2014-3689
Debian Security Information: DSA-3066 (Google Search)
http://www.debian.org/security/2014/dsa-3066
Debian Security Information: DSA-3067 (Google Search)
http://www.debian.org/security/2014/dsa-3067
https://www.mail-archive.com/qemu-devel@nongnu.org/msg261580.html
http://www.osvdb.org/114397
http://secunia.com/advisories/60923
http://secunia.com/advisories/62143
http://secunia.com/advisories/62144
Common Vulnerability Exposure (CVE) ID: CVE-2014-9718
BugTraq ID: 73316
http://www.securityfocus.com/bid/73316
Debian Security Information: DSA-3259 (Google Search)
http://www.debian.org/security/2015/dsa-3259
http://openwall.com/lists/oss-security/2015/04/20/7
Common Vulnerability Exposure (CVE) ID: CVE-2015-3214
BugTraq ID: 75273
http://www.securityfocus.com/bid/75273
Debian Security Information: DSA-3348 (Google Search)
http://www.debian.org/security/2015/dsa-3348
https://www.exploit-db.com/exploits/37990/
https://security.gentoo.org/glsa/201510-02
http://www.openwall.com/lists/oss-security/2015/06/25/7
https://www.mail-archive.com/qemu-devel@nongnu.org/msg304138.html
RedHat Security Advisories: RHSA-2015:1507
http://rhn.redhat.com/errata/RHSA-2015-1507.html
RedHat Security Advisories: RHSA-2015:1508
http://rhn.redhat.com/errata/RHSA-2015-1508.html
RedHat Security Advisories: RHSA-2015:1512
http://rhn.redhat.com/errata/RHSA-2015-1512.html
http://www.securitytracker.com/id/1032598
Common Vulnerability Exposure (CVE) ID: CVE-2015-5239
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/168077.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/168646.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/168671.html
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00026.html
http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00005.html
http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00011.html
http://www.openwall.com/lists/oss-security/2015/09/02/7
http://www.ubuntu.com/usn/USN-2745-1
Common Vulnerability Exposure (CVE) ID: CVE-2015-5745
http://www.openwall.com/lists/oss-security/2015/08/06/3
http://www.openwall.com/lists/oss-security/2015/08/06/5
https://github.com/qemu/qemu/commit/7882080388be5088e72c425b02223c02e6cb4295
https://lists.gnu.org/archive/html/qemu-devel/2015-07/msg05458.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-7295
BugTraq ID: 82672
http://www.securityfocus.com/bid/82672
Debian Security Information: DSA-3469 (Google Search)
http://www.debian.org/security/2016/dsa-3469
Debian Security Information: DSA-3470 (Google Search)
http://www.debian.org/security/2016/dsa-3470
Debian Security Information: DSA-3471 (Google Search)
http://www.debian.org/security/2016/dsa-3471
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169802.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169624.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169767.html
https://security.gentoo.org/glsa/201602-01
http://www.openwall.com/lists/oss-security/2015/09/18/5
http://www.openwall.com/lists/oss-security/2015/09/18/9
Common Vulnerability Exposure (CVE) ID: CVE-2015-7549
BugTraq ID: 80761
http://www.securityfocus.com/bid/80761
http://lists.fedoraproject.org/pipermail/package-announce/2016-January/175380.html
http://www.openwall.com/lists/oss-security/2015/12/14/2
Common Vulnerability Exposure (CVE) ID: CVE-2015-8504
BugTraq ID: 78708
http://www.securityfocus.com/bid/78708
http://www.openwall.com/lists/oss-security/2015/12/08/7
Common Vulnerability Exposure (CVE) ID: CVE-2015-8558
BugTraq ID: 80694
http://www.securityfocus.com/bid/80694
http://www.openwall.com/lists/oss-security/2015/12/14/9
http://www.openwall.com/lists/oss-security/2015/12/14/16
https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg02124.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-8567
BugTraq ID: 79721
http://www.securityfocus.com/bid/79721
http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176558.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176300.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-January/175967.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176503.html
http://www.openwall.com/lists/oss-security/2015/12/15/10
https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg02299.html
SuSE Security Announcement: SUSE-SU-2016:0873 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00087.html
SuSE Security Announcement: SUSE-SU-2016:0955 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00002.html
SuSE Security Announcement: SUSE-SU-2016:1318 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00049.html
SuSE Security Announcement: SUSE-SU-2016:1560 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00017.html
SuSE Security Announcement: SUSE-SU-2016:1703 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00058.html
SuSE Security Announcement: openSUSE-SU-2016:0123 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00010.html
SuSE Security Announcement: openSUSE-SU-2016:0126 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00012.html
SuSE Security Announcement: openSUSE-SU-2016:1750 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00003.html
http://www.ubuntu.com/usn/USN-2891-1
Common Vulnerability Exposure (CVE) ID: CVE-2015-8568
Common Vulnerability Exposure (CVE) ID: CVE-2015-8613
BugTraq ID: 79719
http://www.securityfocus.com/bid/79719
https://security.gentoo.org/glsa/201604-01
http://www.openwall.com/lists/oss-security/2015/12/22/1
https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg03737.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-8619
BugTraq ID: 79668
http://www.securityfocus.com/bid/79668
http://www.openwall.com/lists/oss-security/2015/12/23/1
https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg02930.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-8743
BugTraq ID: 79820
http://www.securityfocus.com/bid/79820
http://www.openwall.com/lists/oss-security/2016/01/04/1
http://www.openwall.com/lists/oss-security/2016/01/04/2
https://lists.gnu.org/archive/html/qemu-devel/2016-01/msg00050.html
http://www.securitytracker.com/id/1034574
Common Vulnerability Exposure (CVE) ID: CVE-2015-8744
BugTraq ID: 79821
http://www.securityfocus.com/bid/79821
http://www.openwall.com/lists/oss-security/2016/01/04/3
http://www.openwall.com/lists/oss-security/2016/01/04/6
http://www.securitytracker.com/id/1034576
Common Vulnerability Exposure (CVE) ID: CVE-2015-8745
BugTraq ID: 79822
http://www.securityfocus.com/bid/79822
http://www.openwall.com/lists/oss-security/2016/01/04/4
http://www.openwall.com/lists/oss-security/2016/01/04/7
http://www.securitytracker.com/id/1034575
Common Vulnerability Exposure (CVE) ID: CVE-2015-8817
http://www.openwall.com/lists/oss-security/2016/03/01/1
http://www.openwall.com/lists/oss-security/2016/03/01/10
https://lists.gnu.org/archive/html/qemu-stable/2016-01/msg00060.html
RedHat Security Advisories: RHSA-2016:2670
http://rhn.redhat.com/errata/RHSA-2016-2670.html
RedHat Security Advisories: RHSA-2016:2671
http://rhn.redhat.com/errata/RHSA-2016-2671.html
RedHat Security Advisories: RHSA-2016:2704
http://rhn.redhat.com/errata/RHSA-2016-2704.html
RedHat Security Advisories: RHSA-2016:2705
http://rhn.redhat.com/errata/RHSA-2016-2705.html
RedHat Security Advisories: RHSA-2016:2706
http://rhn.redhat.com/errata/RHSA-2016-2706.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-8818
Common Vulnerability Exposure (CVE) ID: CVE-2016-1568
BugTraq ID: 80191
http://www.securityfocus.com/bid/80191
http://www.openwall.com/lists/oss-security/2016/01/09/1
http://www.openwall.com/lists/oss-security/2016/01/09/2
RedHat Security Advisories: RHSA-2016:0084
http://rhn.redhat.com/errata/RHSA-2016-0084.html
RedHat Security Advisories: RHSA-2016:0086
http://rhn.redhat.com/errata/RHSA-2016-0086.html
RedHat Security Advisories: RHSA-2016:0087
http://rhn.redhat.com/errata/RHSA-2016-0087.html
RedHat Security Advisories: RHSA-2016:0088
http://rhn.redhat.com/errata/RHSA-2016-0088.html
http://www.securitytracker.com/id/1034859
Common Vulnerability Exposure (CVE) ID: CVE-2016-1714
BugTraq ID: 80250
http://www.securityfocus.com/bid/80250
https://lists.gnu.org/archive/html/qemu-devel/2016-01/msg00428.html
http://www.openwall.com/lists/oss-security/2016/01/11/7
http://www.openwall.com/lists/oss-security/2016/01/12/10
http://www.openwall.com/lists/oss-security/2016/01/12/11
RedHat Security Advisories: RHSA-2016:0081
http://rhn.redhat.com/errata/RHSA-2016-0081.html
RedHat Security Advisories: RHSA-2016:0082
http://rhn.redhat.com/errata/RHSA-2016-0082.html
RedHat Security Advisories: RHSA-2016:0083
http://rhn.redhat.com/errata/RHSA-2016-0083.html
RedHat Security Advisories: RHSA-2016:0085
http://rhn.redhat.com/errata/RHSA-2016-0085.html
http://www.securitytracker.com/id/1034858
Common Vulnerability Exposure (CVE) ID: CVE-2016-1922
BugTraq ID: 81058
http://www.securityfocus.com/bid/81058
http://www.openwall.com/lists/oss-security/2016/01/16/1
http://www.openwall.com/lists/oss-security/2016/01/16/6
https://lists.gnu.org/archive/html/qemu-devel/2016-01/msg02812.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-1981
BugTraq ID: 81549
http://www.securityfocus.com/bid/81549
http://www.openwall.com/lists/oss-security/2016/01/19/10
http://www.openwall.com/lists/oss-security/2016/01/22/1
https://lists.gnu.org/archive/html/qemu-devel/2016-01/msg03454.html
RedHat Security Advisories: RHSA-2016:2585
http://rhn.redhat.com/errata/RHSA-2016-2585.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-2198
https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html
http://www.openwall.com/lists/oss-security/2016/01/29/6
http://www.openwall.com/lists/oss-security/2016/01/30/2
https://lists.gnu.org/archive/html/qemu-devel/2016-01/msg05899.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-2538
BugTraq ID: 83336
http://www.securityfocus.com/bid/83336
https://lists.debian.org/debian-lts-announce/2018/11/msg00038.html
http://www.openwall.com/lists/oss-security/2016/02/22/3
https://lists.gnu.org/archive/html/qemu-devel/2016-02/msg03658.html
http://lists.nongnu.org/archive/html/qemu-stable/2016-03/msg00064.html
http://www.ubuntu.com/usn/USN-2974-1
Common Vulnerability Exposure (CVE) ID: CVE-2016-2841
BugTraq ID: 84028
http://www.securityfocus.com/bid/84028
https://security.gentoo.org/glsa/201609-01
http://www.openwall.com/lists/oss-security/2016/03/02/8
https://lists.gnu.org/archive/html/qemu-devel/2016-02/msg06126.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-2857
BugTraq ID: 84130
http://www.securityfocus.com/bid/84130
http://www.openwall.com/lists/oss-security/2016/03/03/9
http://www.openwall.com/lists/oss-security/2016/03/07/3
RedHat Security Advisories: RHSA-2017:0083
http://rhn.redhat.com/errata/RHSA-2017-0083.html
RedHat Security Advisories: RHSA-2017:0309
http://rhn.redhat.com/errata/RHSA-2017-0309.html
RedHat Security Advisories: RHSA-2017:0334
http://rhn.redhat.com/errata/RHSA-2017-0334.html
RedHat Security Advisories: RHSA-2017:0344
http://rhn.redhat.com/errata/RHSA-2017-0344.html
RedHat Security Advisories: RHSA-2017:0350
http://rhn.redhat.com/errata/RHSA-2017-0350.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-2858
BugTraq ID: 84134
http://www.securityfocus.com/bid/84134
http://www.openwall.com/lists/oss-security/2016/03/04/1
http://www.openwall.com/lists/oss-security/2016/03/07/4
Common Vulnerability Exposure (CVE) ID: CVE-2016-3710
BugTraq ID: 90316
http://www.securityfocus.com/bid/90316
Debian Security Information: DSA-3573 (Google Search)
http://www.debian.org/security/2016/dsa-3573
https://lists.gnu.org/archive/html/qemu-devel/2016-05/msg01197.html
http://www.openwall.com/lists/oss-security/2016/05/09/3
RedHat Security Advisories: RHSA-2016:0724
http://rhn.redhat.com/errata/RHSA-2016-0724.html
RedHat Security Advisories: RHSA-2016:0725
http://rhn.redhat.com/errata/RHSA-2016-0725.html
RedHat Security Advisories: RHSA-2016:0997
http://rhn.redhat.com/errata/RHSA-2016-0997.html
RedHat Security Advisories: RHSA-2016:0999
http://rhn.redhat.com/errata/RHSA-2016-0999.html
RedHat Security Advisories: RHSA-2016:1000
http://rhn.redhat.com/errata/RHSA-2016-1000.html
RedHat Security Advisories: RHSA-2016:1001
http://rhn.redhat.com/errata/RHSA-2016-1001.html
RedHat Security Advisories: RHSA-2016:1002
http://rhn.redhat.com/errata/RHSA-2016-1002.html
RedHat Security Advisories: RHSA-2016:1019
http://rhn.redhat.com/errata/RHSA-2016-1019.html
RedHat Security Advisories: RHSA-2016:1224
https://access.redhat.com/errata/RHSA-2016:1224
RedHat Security Advisories: RHSA-2016:1943
http://rhn.redhat.com/errata/RHSA-2016-1943.html
http://www.securitytracker.com/id/1035794
Common Vulnerability Exposure (CVE) ID: CVE-2016-3712
BugTraq ID: 90314
http://www.securityfocus.com/bid/90314
https://lists.gnu.org/archive/html/qemu-devel/2016-05/msg01196.html
http://www.openwall.com/lists/oss-security/2016/05/09/4
RedHat Security Advisories: RHSA-2017:0621
http://rhn.redhat.com/errata/RHSA-2017-0621.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-4001
BugTraq ID: 85976
http://www.securityfocus.com/bid/85976
http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183275.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184209.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/183350.html
http://www.openwall.com/lists/oss-security/2016/04/11/4
http://www.openwall.com/lists/oss-security/2016/04/12/6
https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg01334.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-4002
BugTraq ID: 85992
http://www.securityfocus.com/bid/85992
https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg01131.html
http://www.openwall.com/lists/oss-security/2016/04/11/6
http://www.openwall.com/lists/oss-security/2016/04/12/7
Common Vulnerability Exposure (CVE) ID: CVE-2016-4020
BugTraq ID: 86067
http://www.securityfocus.com/bid/86067
https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg01118.html
https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg01106.html
RedHat Security Advisories: RHSA-2017:1856
https://access.redhat.com/errata/RHSA-2017:1856
RedHat Security Advisories: RHSA-2017:2392
https://access.redhat.com/errata/RHSA-2017:2392
RedHat Security Advisories: RHSA-2017:2408
https://access.redhat.com/errata/RHSA-2017:2408
Common Vulnerability Exposure (CVE) ID: CVE-2016-4037
BugTraq ID: 86283
http://www.securityfocus.com/bid/86283
http://www.openwall.com/lists/oss-security/2016/04/18/3
http://www.openwall.com/lists/oss-security/2016/04/18/6
https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg02734.html
https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg02691.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-4439
BugTraq ID: 90760
http://www.securityfocus.com/bid/90760
http://www.openwall.com/lists/oss-security/2016/05/19/3
https://lists.gnu.org/archive/html/qemu-devel/2016-05/msg03273.html
http://www.ubuntu.com/usn/USN-3047-1
http://www.ubuntu.com/usn/USN-3047-2
Common Vulnerability Exposure (CVE) ID: CVE-2016-4441
BugTraq ID: 90762
http://www.securityfocus.com/bid/90762
http://www.openwall.com/lists/oss-security/2016/05/19/4
https://lists.gnu.org/archive/html/qemu-devel/2016-05/msg03274.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-4952
http://www.openwall.com/lists/oss-security/2016/05/23/1
http://www.openwall.com/lists/oss-security/2016/05/23/4
https://lists.gnu.org/archive/html/qemu-devel/2016-05/msg03774.html
CopyrightCopyright (C) 2016 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.