[SUSE-SU-2023:3395-1] Security update for xen

Severity Moderate
Affected Packages 17
CVEs 3

Security update for xen

This update for xen fixes the following issues:

  • CVE-2023-20569: Fixed side channel attack Inception or RAS Poisoning. (bsc#1214082, XSA-434)
  • CVE-2022-40982: Fixed transient execution attack called 'Gather Data Sampling'. (bsc#1214083, XSA-435)
  • CVE-2023-20593: Fixed a ZenBleed issue in 'Zen 2' CPUs that could allow an attacker to potentially access sensitive information. (bsc#1213616, XSA-433)
Package Affected Version
pkg:rpm/suse/xen?arch=x86_64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen?arch=aarch64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-tools?arch=x86_64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-tools?arch=aarch64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-tools-xendomains-wait-disk?arch=noarch&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-tools-domU?arch=x86_64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-tools-domU?arch=aarch64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-libs?arch=x86_64&distro=slem-5 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-libs?arch=x86_64&distro=opensuse-leap-micro-5.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-libs?arch=x86_64&distro=opensuse-leap-micro-5.3 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-libs?arch=x86_64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-libs?arch=aarch64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-libs-32bit?arch=x86_64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-doc-html?arch=x86_64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-doc-html?arch=aarch64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-devel?arch=x86_64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
pkg:rpm/suse/xen-devel?arch=aarch64&distro=opensuse-leap-15.4 < 4.16.5_02-150400.4.31.1
ID
SUSE-SU-2023:3395-1
Severity
moderate
URL
https://www.suse.com/support/update/announcement/2023/suse-su-20233395-1/
Published
2023-08-23T16:11:33
(13 months ago)
Modified
2023-08-23T16:11:33
(13 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/xen?arch=x86_64&distro=opensuse-leap-15.4 suse xen < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/xen?arch=aarch64&distro=opensuse-leap-15.4 suse xen < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/xen-tools?arch=x86_64&distro=opensuse-leap-15.4 suse xen-tools < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/xen-tools?arch=aarch64&distro=opensuse-leap-15.4 suse xen-tools < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/xen-tools-xendomains-wait-disk?arch=noarch&distro=opensuse-leap-15.4 suse xen-tools-xendomains-wait-disk < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/xen-tools-domU?arch=x86_64&distro=opensuse-leap-15.4 suse xen-tools-domU < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/xen-tools-domU?arch=aarch64&distro=opensuse-leap-15.4 suse xen-tools-domU < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/xen-libs?arch=x86_64&distro=slem-5 suse xen-libs < 4.16.5_02-150400.4.31.1 slem-5 x86_64
Affected pkg:rpm/suse/xen-libs?arch=x86_64&distro=opensuse-leap-micro-5.4 suse xen-libs < 4.16.5_02-150400.4.31.1 opensuse-leap-micro-5.4 x86_64
Affected pkg:rpm/suse/xen-libs?arch=x86_64&distro=opensuse-leap-micro-5.3 suse xen-libs < 4.16.5_02-150400.4.31.1 opensuse-leap-micro-5.3 x86_64
Affected pkg:rpm/suse/xen-libs?arch=x86_64&distro=opensuse-leap-15.4 suse xen-libs < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/xen-libs?arch=aarch64&distro=opensuse-leap-15.4 suse xen-libs < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/xen-libs-32bit?arch=x86_64&distro=opensuse-leap-15.4 suse xen-libs-32bit < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/xen-doc-html?arch=x86_64&distro=opensuse-leap-15.4 suse xen-doc-html < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/xen-doc-html?arch=aarch64&distro=opensuse-leap-15.4 suse xen-doc-html < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/xen-devel?arch=x86_64&distro=opensuse-leap-15.4 suse xen-devel < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/xen-devel?arch=aarch64&distro=opensuse-leap-15.4 suse xen-devel < 4.16.5_02-150400.4.31.1 opensuse-leap-15.4 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...