SUSE Security Update: Security update for qemu
Announcement ID: SUSE-SU-2012:1203-1
Rating: important
References: #777084
Cross-References: CVE-2012-3515
Affected Products:
SUSE Linux Enterprise Software Development Kit 11 SP2
SUSE Linux Enterprise Point of Service 11 SP2
An update that fixes one vulnerability is now available.
The qemu vt100 emulation is affected by a problem where
specific vt100 sequences could have been used by guest
users to affect the host. (CVE-2012-3515 aka XSA-17).
Security Issue references:
* CVE-2012-3515
Patch Instructions:
To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- SUSE Linux Enterprise Software Development Kit 11 SP2:
zypper in -t patch sdksp2-qemu-6765
- SUSE Linux Enterprise Point of Service 11 SP2:
zypper in -t patch sleposp2-qemu-6765
To bring your system up-to-date, use "zypper patch".
Package List:
- SUSE Linux Enterprise Software Development Kit 11 SP2 (i586 x86_64):
- SUSE Linux Enterprise Point of Service 11 SP2 (i586 x86_64):
To unsubscribe, e-mail: Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
For additional commands, e-mail: Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
SUSE Security Update: Security update for kvm
Announcement ID: SUSE-SU-2012:1205-1
Rating: important
References: #770153 #772586 #777084
Cross-References: CVE-2012-3515
Affected Products:
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Desktop 11 SP2
An update that solves one vulnerability and has two fixes
is now available.
The kvm qemu vt100 emulation was affected by a problem
where specific vt100 sequences could have been used by
guest users to affect the host. (CVE-2012-3515 aka XSA-17).
Also the following non security bugs have been fixed:
* permit qemu-kvm -device "?" even when no /dev/kvm
* SLES11SP2 KVM Virtio: on kvm guest, scsi inquiry was
still ok on the disabled subpaths. (bnc#770153)
Security Issue reference:
* CVE-2012-3515
Patch Instructions:
To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- SUSE Linux Enterprise Server 11 SP2:
zypper in -t patch slessp2-kvm-6755
- SUSE Linux Enterprise Desktop 11 SP2:
zypper in -t patch sledsp2-kvm-6755
To bring your system up-to-date, use "zypper patch".
Package List:
- SUSE Linux Enterprise Server 11 SP2 (i586 x86_64):
- SUSE Linux Enterprise Desktop 11 SP2 (i586 x86_64):
To unsubscribe, e-mail: Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
For additional commands, e-mail: Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
SUSE Security Update: Security update for kvm
Announcement ID: SUSE-SU-2012:1202-1
Rating: important
References: #764526 #777084
Cross-References: CVE-2012-2652 CVE-2012-3515
Affected Products:
SUSE Studio Extension for System z 1.2
An update that fixes two vulnerabilities is now available.
The kvm qemu vt100 emulation was affected by a problem
where specific vt100 sequences could have been used by
guest users to affect the host. (CVE-2012-3515 aka XSA-17).
Also a temp file race has been fixed. (CVE-2012-2652)
Security Issue references:
* CVE-2012-3515
* CVE-2012-2652
Patch Instructions:
To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- SUSE Studio Extension for System z 1.2:
zypper in -t patch slestso12-kvm-6757
To bring your system up-to-date, use "zypper patch".
Package List:
- SUSE Studio Extension for System z 1.2 (s390x):
To unsubscribe, e-mail: Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
For additional commands, e-mail: Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
Posljednje sigurnosne preporuke