VYPR

rpm package

suse/xen&distro=SUSE Linux Enterprise High Performance Computing 15-ESPOS

pkg:rpm/suse/xen&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOS

Vulnerabilities (88)

  • CVE-2022-23825Jul 14, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.

  • CVE-2022-29900Jul 12, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions.

  • CVE-2022-21166Jun 15, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2022-21125Jun 15, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2022-21123Jun 15, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2022-26362Jun 9, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in addition to a regular reference count. This scheme is used to maintain invariants required for Xen's safety, e.g. PV guests may not have direct writeable access to pagetables; updates

  • CVE-2022-26364Jun 9, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    x86 pv: Insufficient care with non-coherent mappings T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen maintains a type reference count for pages, in addition to a regular reference count. This sch

  • CVE-2022-26363Jun 9, 2022
    affected < 4.10.4_36-150000.3.77.1fixed 4.10.4_36-150000.3.77.1

    x86 pv: Insufficient care with non-coherent mappings T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen maintains a type reference count for pages, in addition to a regular reference count. This sch

  • CVE-2022-26361Apr 5, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Rese

  • CVE-2022-26360Apr 5, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Rese

  • CVE-2022-26359Apr 5, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Rese

  • CVE-2022-26358Apr 5, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Rese

  • CVE-2022-26357Apr 5, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    race in VT-d domain ID cleanup Xen domain IDs are up to 15 bits wide. VT-d hardware may allow for only less than 15 bits to hold a domain ID associating a physical device with a particular domain. Therefore internally Xen domain IDs are mapped to the smaller value range. The clea

  • CVE-2022-26356Apr 5, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    Racy interactions between dirty vram tracking and paging log dirty hypercalls Activation of log dirty mode done by XEN_DMOP_track_dirty_vram (was named HVMOP_track_dirty_vram before Xen 4.9) is racy with ongoing log dirty hypercalls. A suitably timed call to XEN_DMOP_track_dirty_

  • CVE-2022-0002Mar 11, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    Non-transparent sharing of branch predictor within a context in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

  • CVE-2021-26401Mar 11, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    LFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.

  • CVE-2022-0001Mar 11, 2022
    affected < 4.10.4_34-150000.3.74.1fixed 4.10.4_34-150000.3.74.1

    Non-transparent sharing of branch predictor selectors between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

  • CVE-2022-23035Jan 25, 2022
    affected < 4.10.4_32-3.71.1fixed 4.10.4_32-3.71.1

    Insufficient cleanup of passed-through device IRQs The management of IRQs associated with physical devices exposed to x86 HVM guests involves an iterative operation in particular when cleaning up after the guest's use of the device. In the case where an interrupt is not quiescent

  • CVE-2022-23034Jan 25, 2022
    affected < 4.10.4_32-3.71.1fixed 4.10.4_32-3.71.1

    A PV guest could DoS Xen while unmapping a grant To address XSA-380, reference counting was introduced for grant mappings for the case where a PV guest would have the IOMMU enabled. PV guests can request two forms of mappings. When both are in use for any individual mapping, unma

  • CVE-2021-28709Nov 24, 2021
    affected < 4.10.4_30-3.68.1fixed 4.10.4_30-3.68.1

    issues with partially successful P2M updates on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them t

Page 2 of 5