[SUSE-SU-2023:3496-1] Security update for xen

Severity Important
Affected Packages 6
CVEs 3

Security update for xen

This update for xen fixes the following issues:

Update to Xen 4.13.5 bug fix release (bsc#1027519).

  • CVE-2023-20569: Fixed x86/AMD Speculative Return Stack Overflow (XSA-434) (bsc#1214082).
  • CVE-2022-40982: Fixed x86/Intel Gather Data Sampling (XSA-435) (bsc#1214083).
  • CVE-2023-20593: Fixed x86/AMD Zenbleed (XSA-433) (bsc#1213616).
ID
SUSE-SU-2023:3496-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2023/suse-su-20233496-1/
Published
2023-08-30T19:24:21
(12 months ago)
Modified
2023-08-30T19:24:21
(12 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/xen?arch=x86_64&distro=sles-15&sp=2 suse xen < 4.13.5_02-150200.3.74.1 sles-15 x86_64
Affected pkg:rpm/suse/xen-tools?arch=x86_64&distro=sles-15&sp=2 suse xen-tools < 4.13.5_02-150200.3.74.1 sles-15 x86_64
Affected pkg:rpm/suse/xen-tools-xendomains-wait-disk?arch=noarch&distro=sles-15&sp=2 suse xen-tools-xendomains-wait-disk < 4.13.5_02-150200.3.74.1 sles-15 noarch
Affected pkg:rpm/suse/xen-tools-domU?arch=x86_64&distro=sles-15&sp=2 suse xen-tools-domU < 4.13.5_02-150200.3.74.1 sles-15 x86_64
Affected pkg:rpm/suse/xen-libs?arch=x86_64&distro=sles-15&sp=2 suse xen-libs < 4.13.5_02-150200.3.74.1 sles-15 x86_64
Affected pkg:rpm/suse/xen-devel?arch=x86_64&distro=sles-15&sp=2 suse xen-devel < 4.13.5_02-150200.3.74.1 sles-15 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...