openSUSE-SU-2022:0940-1
Dashboard / Vulnerabilities / openSUSE-SU-2022:0940-1
openSUSE-SU-2022:0940-1
Summary: Security update for xen
Details: This update for xen fixes the following issues: Update Xen to version 4.14.4 (bsc#1027519) Transient execution side-channel attacks attacking the Branch History Buffer (BHB), named 'Branch Target Injection' and 'Intra-Mode Branch History Injection' are now mitigated. Security issues fixed: - CVE-2022-0001, CVE-2022-0002, CVE-2021-26401: BHB speculation issues (bsc#1196915). Non-security issues fixed: - Fixed issue around xl and virsh operation - virsh list not giving any output (bsc#1191668).
References: https://lists.opensuse.org/archives/list/[email protected]/thread/NXODJTCX5G5LLTBOEFVBOCIWYKEGYAMP/, https://bugzilla.suse.com/1027519, https://bugzilla.suse.com/1191668, https://bugzilla.suse.com/1194267, https://bugzilla.suse.com/1196915, https://www.suse.com/security/cve/CVE-2021-26401, https://www.suse.com/security/cve/CVE-2022-0001, https://www.suse.com/security/cve/CVE-2022-0002
Affected packages
Package
Name: xen
Purl: pkg:rpm/opensuse/xen&distro=openSUSE%20Leap%2015.3
Affected ranges
Type: ECOSYSTEM
Events:
