VYPR

rpm package

suse/xen&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP5

pkg:rpm/suse/xen&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5

Vulnerabilities (140)

  • CVE-2022-26360Apr 5, 2022
    affected < 4.12.4_22-3.66.1fixed 4.12.4_22-3.66.1

    IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Rese

  • CVE-2022-26359Apr 5, 2022
    affected < 4.12.4_22-3.66.1fixed 4.12.4_22-3.66.1

    IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Rese

  • CVE-2022-26358Apr 5, 2022
    affected < 4.12.4_22-3.66.1fixed 4.12.4_22-3.66.1

    IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Rese

  • CVE-2022-26357Apr 5, 2022
    affected < 4.12.4_22-3.66.1fixed 4.12.4_22-3.66.1

    race in VT-d domain ID cleanup Xen domain IDs are up to 15 bits wide. VT-d hardware may allow for only less than 15 bits to hold a domain ID associating a physical device with a particular domain. Therefore internally Xen domain IDs are mapped to the smaller value range. The clea

  • CVE-2022-26356Apr 5, 2022
    affected < 4.12.4_22-3.66.1fixed 4.12.4_22-3.66.1

    Racy interactions between dirty vram tracking and paging log dirty hypercalls Activation of log dirty mode done by XEN_DMOP_track_dirty_vram (was named HVMOP_track_dirty_vram before Xen 4.9) is racy with ongoing log dirty hypercalls. A suitably timed call to XEN_DMOP_track_dirty_

  • CVE-2021-20257Mar 16, 2022
    affected < 4.12.4_09-3.39.3fixed 4.12.4_09-3.39.3

    An infinite loop flaw was found in the e1000 NIC emulator of the QEMU. This issue occurs while processing transmits (tx) descriptors in process_tx_desc if various descriptor fields are initialized with invalid values. This flaw allows a guest to consume CPU cycles on the host, re

  • CVE-2022-0002Mar 11, 2022
    affected < 4.12.4_20-3.61.1fixed 4.12.4_20-3.61.1

    Non-transparent sharing of branch predictor within a context in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

  • CVE-2021-26401Mar 11, 2022
    affected < 4.12.4_20-3.61.1fixed 4.12.4_20-3.61.1

    LFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.

  • CVE-2022-0001Mar 11, 2022
    affected < 4.12.4_20-3.61.1fixed 4.12.4_20-3.61.1

    Non-transparent sharing of branch predictor selectors between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

  • CVE-2022-23035Jan 25, 2022
    affected < 4.12.4_18-3.58.2fixed 4.12.4_18-3.58.2

    Insufficient cleanup of passed-through device IRQs The management of IRQs associated with physical devices exposed to x86 HVM guests involves an iterative operation in particular when cleaning up after the guest's use of the device. In the case where an interrupt is not quiescent

  • CVE-2022-23034Jan 25, 2022
    affected < 4.12.4_18-3.58.2fixed 4.12.4_18-3.58.2

    A PV guest could DoS Xen while unmapping a grant To address XSA-380, reference counting was introduced for grant mappings for the case where a PV guest would have the IOMMU enabled. PV guests can request two forms of mappings. When both are in use for any individual mapping, unma

  • CVE-2022-23033Jan 25, 2022
    affected < 4.12.4_18-3.58.2fixed 4.12.4_18-3.58.2

    arm: guest_physmap_remove_page not removing the p2m mappings The functions to remove one or more entries from a guest p2m pagetable on Arm (p2m_remove_mapping, guest_physmap_remove_page, and p2m_set_entry with mfn set to INVALID_MFN) do not actually clear the pagetable entry if t

  • CVE-2021-28709Nov 24, 2021
    affected < 4.12.4_16-3.55.1fixed 4.12.4_16-3.55.1

    issues with partially successful P2M updates on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them t

  • CVE-2021-28708Nov 24, 2021
    affected < 4.12.4_16-3.55.1fixed 4.12.4_16-3.55.1

    PoD operations on misaligned GFNs T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them to later easily hav

  • CVE-2021-28707Nov 24, 2021
    affected < 4.12.4_16-3.55.1fixed 4.12.4_16-3.55.1

    PoD operations on misaligned GFNs T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them to later easily hav

  • CVE-2021-28706Nov 24, 2021
    affected < 4.12.4_16-3.55.1fixed 4.12.4_16-3.55.1

    guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be able to issue hypercalls to increase its memory allocation beyond the administrator established limit. This is a result of a calculation done with 32-bit precisio

  • CVE-2021-28705Nov 24, 2021
    affected < 4.12.4_16-3.55.1fixed 4.12.4_16-3.55.1

    issues with partially successful P2M updates on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them t

  • CVE-2021-28704Nov 24, 2021
    affected < 4.12.4_16-3.55.1fixed 4.12.4_16-3.55.1

    PoD operations on misaligned GFNs T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them to later easily hav

  • CVE-2021-28702Oct 6, 2021
    affected < 4.12.4_16-3.55.1fixed 4.12.4_16-3.55.1

    PCI devices with RMRRs not deassigned correctly Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR"). These are typically used for platform tasks such as legacy USB emulation. If such a device is passed

  • CVE-2021-28701Sep 8, 2021
    affected < 4.12.4_14-3.52.1fixed 4.12.4_14-3.52.1

    Another race in XENMAPSPACE_grant_table handling Guests are permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire lifetime. Grant table v2 status pages, however, are de-allocated when a guest sw

Page 4 of 7