Fedora 29 : xen (2018-2fde555d91)

high Nessus Plugin ID 120328

Language:

Synopsis

The remote Fedora host is missing a security update.

Description

insufficient TLB flushing / improper large page mappings with AMD IOMMUs [XSA-275] (#1651665) resource accounting issues in x86 IOREQ server handling [XSA-276] x86: incorrect error handling for guest p2m page removals [XSA-277] x86: DoS from attempting to use INVPCID with a non-canonical addresses [XSA-279] Fix for XSA-240 conflicts with shadow paging [XSA-280]

Note that Tenable Network Security has extracted the preceding description block directly from the Fedora update system website.
Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.

Solution

Update the affected xen package.

See Also

https://bodhi.fedoraproject.org/updates/FEDORA-2018-2fde555d91

Plugin Details

Severity: High

ID: 120328

File Name: fedora_2018-2fde555d91.nasl

Version: 1.4

Type: local

Agent: unix

Published: 1/3/2019

Updated: 1/6/2021

Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Nessus Agent, Nessus

Vulnerability Information

CPE: p-cpe:/a:fedoraproject:fedora:xen, cpe:/o:fedoraproject:fedora:29

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list

Patch Publication Date: 11/22/2018

Vulnerability Publication Date: 11/22/2018

Reference Information