{"schema_version":"1.7.3","id":"SUSE-SU-2019:13921-1","published":"2019-01-02T10:40:18Z","modified":"2026-02-04T04:03:43.135956Z","related":["CVE-2017-13672","CVE-2018-10839","CVE-2018-17958","CVE-2018-17962","CVE-2018-17963","CVE-2018-18438","CVE-2018-18849","CVE-2018-19665","CVE-2018-19961","CVE-2018-19962","CVE-2018-19965","CVE-2018-19966","CVE-2018-19967"],"upstream":["CVE-2017-13672","CVE-2018-10839","CVE-2018-17958","CVE-2018-17962","CVE-2018-17963","CVE-2018-18438","CVE-2018-18849","CVE-2018-19665","CVE-2018-19961","CVE-2018-19962","CVE-2018-19965","CVE-2018-19966","CVE-2018-19967"],"summary":"Security update for xen","details":"This update for xen fixes the following issues:\n\nSecurity vulnerabilities fixed:\n\n- CVE-2018-19961, CVE-2018-19962: Fixed an issue related to insufficient TLB\n  flushing with AMD IOMMUs, which potentially allowed a guest to escalate its\n  privileges, may cause a Denial of Service (DoS) affecting the entire host, or\n  may be able to access data it is not supposed to access. (XSA-275)\n  (bsc#1115040)\n- CVE-2018-19965: Fixed an issue related to the INVPCID instruction in case\n  non-canonical addresses are accessed, which may allow a guest to cause Xen to\n  crash, resulting in a Denial of Service (DoS) affecting the entire host.\n  (XSA-279) (bsc#1115045)\n- CVE-2018-19966: Fixed an issue related to a previous fix for XSA-240, which\n  conflicted with shadow paging and allowed a guest to cause Xen to crash,\n  resulting in a Denial of Service (DoS) (XSA-280) (bsc#1115047)\n- CVE-2018-19967: Fixed HLE constructs that allowed guests to lock up the host,\n  resulting in a Denial of Service (DoS). (XSA-282) (bsc#1114988)\n- CVE-2018-19665: Fixed an integer overflow resulting in memory corruption in\n  various Bluetooth functions, allowing this to crash qemu process resulting in\n  Denial of Service (DoS). (bsc#1117756).\n- CVE-2018-18849: Fixed an out of bounds memory access in the LSI53C895A SCSI\n  host bus adapter emulation, which allowed a user and/or process to crash the\n  qemu process resulting in a Denial of Service (DoS). (bsc#1114423)\n- Fixed an integer overflow in ccid_card_vscard_read(), which allowed for\n  memory corruption. (bsc#1112188)\n- CVE-2017-13672: Fixed an out of bounds read access during display update\n  (bsc#1056336)\n- CVE-2018-17958: Fixed an integer overflow leading to a buffer overflow in the\n  rtl8139 component (bsc#1111007)\n- CVE-2018-17962: Fixed an integer overflow leading to a buffer overflow in the\n  pcnet component (bsc#1111011)\n- CVE-2018-17963: Fixed an integer overflow in relation to large packet sizes,\n  leading to a denial of service (DoS). (bsc#1111014)\n- CVE-2018-10839: Fixed an integer overflow leading to a buffer overflow in\n  the ne2000 component (bsc#1110924)\n\nOther bugs fixed:\n\n- Fixed an issue related to a domU hang on SLE12-SP3 HV (bsc#1108940)\n- Upstream bug fixes (bsc#1027519)\n- Fixed crashing VMs when migrating between dom0 hosts (bsc#1031382)\n- Fixed an issue with xpti=no-dom0 not working as expected (bsc#1105528)\n","affected":[{"package":{"name":"xen","ecosystem":"SUSE:Linux Enterprise Software Development Kit 11 SP4","purl":"pkg:rpm/suse/xen&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.4.4_38-61.40.1"}]}],"ecosystem_specific":{"binaries":[{"xen-devel":"4.4.4_38-61.40.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2019:13921-1.json"}},{"package":{"name":"xen","ecosystem":"SUSE:Linux Enterprise Server 11 SP4","purl":"pkg:rpm/suse/xen&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.4.4_38-61.40.1"}]}],"ecosystem_specific":{"binaries":[{"xen":"4.4.4_38-61.40.1","xen-doc-html":"4.4.4_38-61.40.1","xen-kmp-default":"4.4.4_38_3.0.101_108.84-61.40.1","xen-kmp-pae":"4.4.4_38_3.0.101_108.84-61.40.1","xen-libs":"4.4.4_38-61.40.1","xen-libs-32bit":"4.4.4_38-61.40.1","xen-tools":"4.4.4_38-61.40.1","xen-tools-domU":"4.4.4_38-61.40.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2019:13921-1.json"}},{"package":{"name":"xen","ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 11 SP4","purl":"pkg:rpm/suse/xen&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.4.4_38-61.40.1"}]}],"ecosystem_specific":{"binaries":[{"xen":"4.4.4_38-61.40.1","xen-doc-html":"4.4.4_38-61.40.1","xen-kmp-default":"4.4.4_38_3.0.101_108.84-61.40.1","xen-kmp-pae":"4.4.4_38_3.0.101_108.84-61.40.1","xen-libs":"4.4.4_38-61.40.1","xen-libs-32bit":"4.4.4_38-61.40.1","xen-tools":"4.4.4_38-61.40.1","xen-tools-domU":"4.4.4_38-61.40.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2019:13921-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2019/suse-su-201913921-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1027519"},{"type":"REPORT","url":"https://bugzilla.suse.com/1031382"},{"type":"REPORT","url":"https://bugzilla.suse.com/1056336"},{"type":"REPORT","url":"https://bugzilla.suse.com/1105528"},{"type":"REPORT","url":"https://bugzilla.suse.com/1108940"},{"type":"REPORT","url":"https://bugzilla.suse.com/1110924"},{"type":"REPORT","url":"https://bugzilla.suse.com/1111007"},{"type":"REPORT","url":"https://bugzilla.suse.com/1111011"},{"type":"REPORT","url":"https://bugzilla.suse.com/1111014"},{"type":"REPORT","url":"https://bugzilla.suse.com/1112188"},{"type":"REPORT","url":"https://bugzilla.suse.com/1114423"},{"type":"REPORT","url":"https://bugzilla.suse.com/1114988"},{"type":"REPORT","url":"https://bugzilla.suse.com/1115040"},{"type":"REPORT","url":"https://bugzilla.suse.com/1115045"},{"type":"REPORT","url":"https://bugzilla.suse.com/1115047"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117756"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-13672"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-10839"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-17958"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-17962"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-17963"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-18438"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-18849"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19665"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19961"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19962"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19965"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19966"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19967"}]}