{"id":"SUSE-SU-2021:14848-1","summary":"Security update for xen","details":"This update for xen fixes the following issues:\n\n- CVE-2021-0089: Fixed Speculative Code Store Bypass (XSA-375) (bsc#1186433).\n- CVE-2021-20255: Fixed stack overflow via infinite recursion in eepro100 (bsc#1182654).\n- CVE-2021-28690: Fixed x86 TSX Async Abort protections not restored after S3 (XSA-377) (bsc#1186434).\n- CVE-2021-28692: Fixed inappropriate x86 IOMMU timeout detection / handling (XSA-373) (bsc#1186429).\n- CVE-2021-28697: Fixed grant table v2 status pages may remain accessible after de-allocation (XSA-379) (bsc#1189376).\n- CVE-2021-28698: Fixed long running loops in grant table handling. (XSA-380) (bsc#1189378).\n- CVE-2021-28701: Fixed race condition in XENMAPSPACE_grant_table handling (XSA-384) (bsc#1189632).\n- CVE-2021-28703: Fixed grant table v2 status pages may remain accessible after de-allocation (take two) (XSA-387) (bsc#1192555).\n- CVE-2021-28705, CVE-2021-28709: Fixed issues with partially successful P2M updates on x86 (XSA-389) (bsc#1192559).\n- CVE-2021-28706: Fixed guests may exceed their designated memory limit (XSA-385) (bsc#1192554).\n- CVE-2021-3527: Fixed unbounded stack allocation in usbredir (bsc#1186013).\n- CVE-2021-3592: Fixed invalid pointer initialization may lead to information disclosure in slirp (bootp) (bsc#1187369).\n- CVE-2021-3594: Fixed invalid pointer initialization may lead to information disclosure in slirp (udp) (bsc#1187378).\n- CVE-2021-3595: Fixed invalid pointer initialization may lead to information disclosure in slirp (tftp) (bsc#1187376).\n- CVE-2021-3682: Fixed free call on invalid pointer in usbredir bufp_alloc (bsc#1189150).\n- CVE-2021-3930: Fixed off-by-one error in mode_sense_page() in hw/scsi/scsi-disk.c (bsc#1192526).\n","modified":"2026-03-11T07:16:37.585889Z","published":"2021-12-01T15:57:08Z","related":["CVE-2021-0089","CVE-2021-20255","CVE-2021-28690","CVE-2021-28692","CVE-2021-28697","CVE-2021-28698","CVE-2021-28701","CVE-2021-28703","CVE-2021-28705","CVE-2021-28706","CVE-2021-28709","CVE-2021-3527","CVE-2021-3592","CVE-2021-3594","CVE-2021-3595","CVE-2021-3682","CVE-2021-3930"],"upstream":["CVE-2021-0089","CVE-2021-20255","CVE-2021-28690","CVE-2021-28692","CVE-2021-28697","CVE-2021-28698","CVE-2021-28701","CVE-2021-28703","CVE-2021-28705","CVE-2021-28706","CVE-2021-28709","CVE-2021-3527","CVE-2021-3592","CVE-2021-3594","CVE-2021-3595","CVE-2021-3682","CVE-2021-3930"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2021/suse-su-202114848-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1182654"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186013"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186429"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186433"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186434"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187369"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187376"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187378"},{"type":"REPORT","url":"https://bugzilla.suse.com/1189150"},{"type":"REPORT","url":"https://bugzilla.suse.com/1189376"},{"type":"REPORT","url":"https://bugzilla.suse.com/1189378"},{"type":"REPORT","url":"https://bugzilla.suse.com/1189632"},{"type":"REPORT","url":"https://bugzilla.suse.com/1192526"},{"type":"REPORT","url":"https://bugzilla.suse.com/1192554"},{"type":"REPORT","url":"https://bugzilla.suse.com/1192555"},{"type":"REPORT","url":"https://bugzilla.suse.com/1192559"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-0089"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-20255"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28690"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28692"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28697"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28698"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28701"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28703"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28705"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28706"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-28709"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3527"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3592"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3594"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3595"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3682"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3930"}],"affected":[{"package":{"name":"xen","ecosystem":"SUSE:Linux Enterprise Server 11 SP4-LTSS","purl":"pkg:rpm/suse/xen&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4-LTSS"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.4.4_50-61.67.1"}]}],"ecosystem_specific":{"binaries":[{"xen-libs-32bit":"4.4.4_50-61.67.1","xen-libs":"4.4.4_50-61.67.1","xen-tools-domU":"4.4.4_50-61.67.1","xen-tools":"4.4.4_50-61.67.1","xen":"4.4.4_50-61.67.1","xen-doc-html":"4.4.4_50-61.67.1","xen-kmp-default":"4.4.4_50_3.0.101_108.129-61.67.1","xen-kmp-pae":"4.4.4_50_3.0.101_108.129-61.67.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2021:14848-1.json"}}],"schema_version":"1.7.5"}