SuSE 11.3 Security Update : Xen (SAT Patch Number 10018)

High Nessus Plugin ID 80254


The remote SuSE 11 host is missing one or more security updates.


Xen has been updated to version 4.2.5 with additional patches to fix six security issues :

- Guest effectable page reference leak in MMU_MACHPHYS_UPDATE handling. (CVE-2014-9030)

- Insufficient bounding of 'REP MOVS' to MMIO emulated inside the hypervisor. (CVE-2014-8867)

- Excessive checking in compatibility mode hypercall argument translation. (CVE-2014-8866)

- Guest user mode triggerable VM exits not handled by hypervisor. (bnc#903850)

- Missing privilege level checks in x86 emulation of far branches. (CVE-2014-8595)

- Insufficient restrictions on certain MMU update hypercalls (CVE-2014-8594). These non-security issues have been fixed :

- Xen save/restore of HVM guests cuts off disk and networking. (bnc#866902)

- Windows 2012 R2 fails to boot up with greater than 60 vcpus. (bnc#882089)

- Increase limit domUloader to 32MB. (bnc#901317)

- Adjust xentop column layout. (bnc#896023)


Apply SAT patch number 10018.

See Also

Plugin Details

Severity: High

ID: 80254

File Name: suse_11_xen-11sp3-2014-11-26-141127.nasl

Version: $Revision: 1.1 $

Type: local

Agent: unix

Published: 2014/12/26

Modified: 2014/12/26

Dependencies: 12634

Risk Information

Risk Factor: High


Base Score: 7.1

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Information

CPE: p-cpe:/a:novell:suse_linux:11:xen, p-cpe:/a:novell:suse_linux:11:xen-doc-html, p-cpe:/a:novell:suse_linux:11:xen-doc-pdf, p-cpe:/a:novell:suse_linux:11:xen-kmp-default, p-cpe:/a:novell:suse_linux:11:xen-libs, p-cpe:/a:novell:suse_linux:11:xen-libs-32bit, p-cpe:/a:novell:suse_linux:11:xen-tools, p-cpe:/a:novell:suse_linux:11:xen-tools-domU, cpe:/o:novell:suse_linux:11

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 2014/11/27

Reference Information

CVE: CVE-2014-8594, CVE-2014-8595, CVE-2014-8866, CVE-2014-8867, CVE-2014-9030