VDB
SUSE-SU-2018%3A0019-1
SUSE-SU-2018%3A0019-1
PUBLISHED
CVSS 6.5 MEDIUM
This update for kvm fixes the following issues: Also a mitigation for a security flaw has been applied: - CVE-2017-5715: QEMU was updated to allow passing through new MSR and CPUID flags from the host VM to the CPU, to allow enabling/disabling branch prediction features in the Intel CPU. (bsc#1068032) Security fixes have been applied: - CVE-2017-2633: Fix various out of bounds access issues in the QEMU vnc infrastructure (bsc#1026612)
Risk Scores
CVSS 3.1
6.5
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SUSE Linux Enterprise Server for SAP Applications 11 SP4 | ||
| SUSE Linux Enterprise Server 11 SP4 | ||
| kvm |
Timeline
- Jan 4, 2018 CVE Published
- Feb 4, 2026 CVE Updated
References
- https://www.suse.com/support/security/rating/ url
- https://ftp.suse.com/pub/projects/security/csaf/suse-su-2018_0019-1.json advisory
- https://www.suse.com/support/update/announcement/2018/suse-su-20180019-1/ advisory
- https://lists.suse.com/pipermail/sle-security-updates/2018-January/003571.html advisory
- https://bugzilla.suse.com/1026612 advisory
- https://bugzilla.suse.com/1068032 advisory
- https://www.suse.com/security/cve/CVE-2017-2633/ advisory
- https://www.suse.com/security/cve/CVE-2017-5715/ advisory