Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Производитель ПО
Наименование ПО
qemu
(any)
qemu-block-curl
(any)
qemu-block-curl-debuginfo
(any)
qemu-block-rbd
(any)
qemu-block-rbd-debuginfo
(any)
qemu-block-ssh
(any)
qemu-block-ssh-debuginfo
(any)
qemu-debugsource
(any)
qemu-guest-agent
(any)
qemu-guest-agent-debuginfo
(any)
qemu-ipxe
(any)
qemu-kvm
(any)
qemu-lang
(any)
qemu-ppc
(any)
qemu-ppc-debuginfo
(any)
qemu-s390
(any)
qemu-s390-debuginfo
(any)
qemu-seabios
(any)
qemu-sgabios-8
(any)
qemu-tools
(any)
qemu-tools-debuginfo
(any)
qemu-vgabios
(any)
qemu-x86
(any)
qemu-x86-debuginfo
(any)
Описание
Уведомление безопасности об уязвимостях SUSE OpenStack Cloud 7, SUSE Linux Enterprise Server for SAP 12-SP2, SUSE Linux Enterprise Server 12-SP2-LTSS, SUSE Enterprise Storage 4
Как исправить
Проблема может быть решена обновлением операционной системы до следующих версий пакетов в зависимости от архитектуры:
SUSE OpenStack Cloud 7:
s390x, x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu-kvm - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE OpenStack Cloud 7:
s390x:
qemu-s390 - 2.6.2-41.43.3
qemu-s390-debuginfo - 2.6.2-41.43.3
SUSE OpenStack Cloud 7:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
SUSE OpenStack Cloud 7:
x86_64:
qemu-block-rbd - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
x86_64:
qemu-kvm - 2.6.2-41.43.3
qemu-block-rbd - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
ppc64le, x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
ppc64le:
qemu-ppc-debuginfo - 2.6.2-41.43.3
qemu-ppc - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
x86_64:
qemu-block-rbd - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
s390x, x86_64:
qemu-kvm - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
ppc64le:
qemu-ppc-debuginfo - 2.6.2-41.43.3
qemu-ppc - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
s390x:
qemu-s390 - 2.6.2-41.43.3
qemu-s390-debuginfo - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
ppc64le, s390x, x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE Enterprise Storage 4:
x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-rbd - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu-kvm - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE Enterprise Storage 4:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
SUSE OpenStack Cloud 7:
s390x, x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu-kvm - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE OpenStack Cloud 7:
s390x:
qemu-s390 - 2.6.2-41.43.3
qemu-s390-debuginfo - 2.6.2-41.43.3
SUSE OpenStack Cloud 7:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
SUSE OpenStack Cloud 7:
x86_64:
qemu-block-rbd - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
x86_64:
qemu-kvm - 2.6.2-41.43.3
qemu-block-rbd - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
ppc64le, x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE Linux Enterprise Server for SAP 12-SP2:
ppc64le:
qemu-ppc-debuginfo - 2.6.2-41.43.3
qemu-ppc - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
x86_64:
qemu-block-rbd - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
s390x, x86_64:
qemu-kvm - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
ppc64le:
qemu-ppc-debuginfo - 2.6.2-41.43.3
qemu-ppc - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
s390x:
qemu-s390 - 2.6.2-41.43.3
qemu-s390-debuginfo - 2.6.2-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
SUSE Linux Enterprise Server 12-SP2-LTSS:
ppc64le, s390x, x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE Enterprise Storage 4:
x86_64:
qemu-block-ssh - 2.6.2-41.43.3
qemu-x86-debuginfo - 2.6.2-41.43.3
qemu-lang - 2.6.2-41.43.3
qemu-x86 - 2.6.2-41.43.3
qemu-block-ssh-debuginfo - 2.6.2-41.43.3
qemu-tools - 2.6.2-41.43.3
qemu-guest-agent - 2.6.2-41.43.3
qemu-debugsource - 2.6.2-41.43.3
qemu-guest-agent-debuginfo - 2.6.2-41.43.3
qemu-block-rbd - 2.6.2-41.43.3
qemu-block-curl - 2.6.2-41.43.3
qemu-kvm - 2.6.2-41.43.3
qemu-block-rbd-debuginfo - 2.6.2-41.43.3
qemu - 2.6.2-41.43.3
qemu-tools-debuginfo - 2.6.2-41.43.3
qemu-block-curl-debuginfo - 2.6.2-41.43.3
SUSE Enterprise Storage 4:
noarch:
qemu-vgabios - 1.9.1-41.43.3
qemu-seabios - 1.9.1-41.43.3
qemu-sgabios-8 - 41.43.3
qemu-ipxe - 1.0.0-41.43.3
Ссылки
http://lists.suse.com/pipermail/sle-security-updates/2018-October/004631.html
https://bugzilla.suse.com/1092885
https://bugzilla.suse.com/1096223
https://bugzilla.suse.com/1098735
Источник: CVE
Наименование: CVE-2018-12617
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-12617
Источник: CVE
Наименование: CVE-2018-11806
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-11806
Источник: CVE
Наименование: CVE-2018-3639
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-3639
https://bugzilla.suse.com/1092885
https://bugzilla.suse.com/1096223
https://bugzilla.suse.com/1098735
Источник: CVE
Наименование: CVE-2018-12617
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-12617
Источник: CVE
Наименование: CVE-2018-11806
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-11806
Источник: CVE
Наименование: CVE-2018-3639
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-3639