[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252588

 
 

909

 
 

196930

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2022:3768-1 -- SLES qemu, qemu-guest-agent

ID: oval:org.secpod.oval:def:89047702Date: (C)2022-10-28   (M)2024-05-22
Class: PATCHFamily: unix




This update for qemu fixes the following issues: - CVE-2021-3409: Fixed an incomplete fix for CVE-2020-17380 and CVE-2020-25085 in sdhi controller. - CVE-2021-4206: Fixed an integer overflow in cursor_alloc which can lead to heap buffer overflow. - CVE-2021-4207: Fixed a double fetch in qxl_cursor ehich can lead to heap buffer overflow. - CVE-2022-0216: Fixed a use after free issue found in hw/scsi/lsi53c895a.c. - CVE-2022-35414: Fixed an uninitialized read during address translation that leads to a crash. - CVE-2021-3507: Fixed a heap buffer overflow in DMA read data transfers. - CVE-2020-17380: Fixed a heap buffer overflow in sdhci_sdma_transfer_multi_blocks

Platform:
SUSE Linux Enterprise Server 15 SP1
Product:
qemu
qemu-guest-agent
Reference:
SUSE-SU-2022:3768-1
CVE-2020-17380
CVE-2021-3409
CVE-2021-3507
CVE-2021-4206
CVE-2021-4207
CVE-2022-0216
CVE-2022-35414
CVE    7
CVE-2021-3507
CVE-2021-3409
CVE-2021-4207
CVE-2021-4206
...
CPE    3
cpe:/a:qemu:qemu
cpe:/a:kvm_group:qemu_guest_agent
cpe:/o:suse:suse_linux_enterprise_server:15:sp1

© SecPod Technologies