SUSE-SU-2018:0279-1
Dashboard / Vulnerabilities / SUSE-SU-2018:0279-1
SUSE-SU-2018:0279-1
Summary: Security update for libvirt
Details: This update for libvirt provides several fixes. This security issue was fixed: - CVE-2018-5748: Prevent resource exhaustion via qemuMonitorIORead() method which allowed to cause DoS (bsc#1076500). These security issues were fixed: - Add a qemu hook script providing functionality similar to Xen's block-dmmd script. (fate#324177) - schema: Make disk driver name attribute optional. (bsc#1073973) - virt-create-rootfs: Handle all SLE 12 versions. (bsc#1072887) - libvirt-guests: Fix the 'stop' operation when action is 'suspend'. (bsc#1070130) - s390: Fix missing host cpu model info. (bsc#1065766) - cpu: Add new EPYC CPU model. (bsc#1052825, fate#324038) - pci: Fix the detection of the link's maximum speed. (bsc#1064947) - nodedev: Increase the netlink socket buffer size. (bsc#1035442) - storage: Fix a race between the volume creation and the pool refresh. (bsc#1062571) - daemon: Drop the minsize directive from hypervisor logrotate files. (bsc#1062760)
References: https://www.suse.com/support/update/announcement/2018/suse-su-20180279-1/, https://bugzilla.suse.com/1035442, https://bugzilla.suse.com/1052825, https://bugzilla.suse.com/1062571, https://bugzilla.suse.com/1062760, https://bugzilla.suse.com/1064947, https://bugzilla.suse.com/1065766, https://bugzilla.suse.com/1070130, https://bugzilla.suse.com/1072887, https://bugzilla.suse.com/1073973, https://bugzilla.suse.com/1076500, https://www.suse.com/security/cve/CVE-2018-5748
Affected packages
Package
Name: libvirt
Purl: pkg:rpm/suse/libvirt&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
