{"document":{"aggregate_severity":{"namespace":"https://www.suse.com/support/security/rating/","text":"moderate"},"category":"csaf_security_advisory","csaf_version":"2.0","distribution":{"text":"Copyright 2024 SUSE LLC. All rights reserved.","tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en","notes":[{"category":"summary","text":"Security update for Xen","title":"Title of the patch"},{"category":"description","text":"\nXen was updated to fix two security issues and a bug:\n\n    * CVE-2015-3456: A buffer overflow in the floppy drive emulation, which\n      could be used to carry out denial of service attacks or potential\n      code execution against the host. This vulnerability is also known as\n      VENOM.\n    * CVE-2015-3340: Xen did not initialize certain fields, which allowed\n      certain remote service domains to obtain sensitive information from\n      memory via a (1) XEN_DOMCTL_gettscinfo or (2)\n      XEN_SYSCTL_getdomaininfolist request.\n    * An exception in setCPUAffinity when restoring guests. (bsc#910441)\n\nSecurity Issues:\n\n    * CVE-2015-3456\n      <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3456>\n    * CVE-2015-3340\n      <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3340>\n\n","title":"Description of the patch"},{"category":"details","text":"sdksp3-xen,sledsp3-xen,slessp3-xen","title":"Patchnames"},{"category":"legal_disclaimer","text":"CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).","title":"Terms of use"}],"publisher":{"category":"vendor","contact_details":"https://www.suse.com/support/security/contact/","name":"SUSE Product Security Team","namespace":"https://www.suse.com/"},"references":[{"category":"external","summary":"SUSE ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"self","summary":"URL of this CSAF notice","url":"https://ftp.suse.com/pub/projects/security/csaf/suse-su-2015_0927-1.json"},{"category":"self","summary":"URL for SUSE-SU-2015:0927-1","url":"https://www.suse.com/support/update/announcement/2015/suse-su-20150927-1/"},{"category":"self","summary":"E-Mail link for SUSE-SU-2015:0927-1","url":"https://lists.suse.com/pipermail/sle-security-updates/2015-May/001400.html"},{"category":"self","summary":"SUSE Bug 910441","url":"https://bugzilla.suse.com/910441"},{"category":"self","summary":"SUSE Bug 927967","url":"https://bugzilla.suse.com/927967"},{"category":"self","summary":"SUSE Bug 929339","url":"https://bugzilla.suse.com/929339"},{"category":"self","summary":"SUSE CVE CVE-2015-3456 page","url":"https://www.suse.com/security/cve/CVE-2015-3456/"}],"title":"Security update for Xen","tracking":{"current_release_date":"2015-05-13T08:31:50Z","generator":{"date":"2015-05-13T08:31:50Z","engine":{"name":"cve-database.git:bin/generate-csaf.pl","version":"1"}},"id":"SUSE-SU-2015:0927-1","initial_release_date":"2015-05-13T08:31:50Z","revision_history":[{"date":"2015-05-13T08:31:50Z","number":"1","summary":"Current version"}],"status":"final","version":"1"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_version","name":"xen-devel-4.2.5_06-0.7.1.i586","product":{"name":"xen-devel-4.2.5_06-0.7.1.i586","product_id":"xen-devel-4.2.5_06-0.7.1.i586"}},{"category":"product_version","name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","product":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","product_id":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"}},{"category":"product_version","name":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","product":{"name":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","product_id":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"}},{"category":"product_version","name":"xen-libs-4.2.5_06-0.7.1.i586","product":{"name":"xen-libs-4.2.5_06-0.7.1.i586","product_id":"xen-libs-4.2.5_06-0.7.1.i586"}},{"category":"product_version","name":"xen-tools-domU-4.2.5_06-0.7.1.i586","product":{"name":"xen-tools-domU-4.2.5_06-0.7.1.i586","product_id":"xen-tools-domU-4.2.5_06-0.7.1.i586"}}],"category":"architecture","name":"i586"},{"branches":[{"category":"product_version","name":"xen-devel-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-devel-4.2.5_06-0.7.1.x86_64","product_id":"xen-devel-4.2.5_06-0.7.1.x86_64"}},{"category":"product_version","name":"xen-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-4.2.5_06-0.7.1.x86_64","product_id":"xen-4.2.5_06-0.7.1.x86_64"}},{"category":"product_version","name":"xen-doc-html-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-doc-html-4.2.5_06-0.7.1.x86_64","product_id":"xen-doc-html-4.2.5_06-0.7.1.x86_64"}},{"category":"product_version","name":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64","product_id":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64"}},{"category":"product_version","name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","product":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","product_id":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64"}},{"category":"product_version","name":"xen-libs-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-libs-4.2.5_06-0.7.1.x86_64","product_id":"xen-libs-4.2.5_06-0.7.1.x86_64"}},{"category":"product_version","name":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64","product_id":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64"}},{"category":"product_version","name":"xen-tools-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-tools-4.2.5_06-0.7.1.x86_64","product_id":"xen-tools-4.2.5_06-0.7.1.x86_64"}},{"category":"product_version","name":"xen-tools-domU-4.2.5_06-0.7.1.x86_64","product":{"name":"xen-tools-domU-4.2.5_06-0.7.1.x86_64","product_id":"xen-tools-domU-4.2.5_06-0.7.1.x86_64"}}],"category":"architecture","name":"x86_64"},{"branches":[{"category":"product_name","name":"SUSE Linux Enterprise Software Development Kit 11 SP3","product":{"name":"SUSE Linux Enterprise Software Development Kit 11 SP3","product_id":"SUSE Linux Enterprise Software Development Kit 11 SP3","product_identification_helper":{"cpe":"cpe:/a:suse:sle-sdk:11:sp3"}}},{"category":"product_name","name":"SUSE Linux Enterprise Desktop 11 SP3","product":{"name":"SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3","product_identification_helper":{"cpe":"cpe:/o:suse:suse_sled:11:sp3"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 11 SP3","product":{"name":"SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3","product_identification_helper":{"cpe":"cpe:/o:suse:suse_sles:11:sp3"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 11 SP3-TERADATA","product":{"name":"SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA","product_identification_helper":{"cpe":"cpe:/o:suse:sles:11:sp3:teradata"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 11 SP3","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:11:sp3"}}}],"category":"product_family","name":"SUSE Linux Enterprise"}],"category":"vendor","name":"SUSE"}],"relationships":[{"category":"default_component_of","full_product_name":{"name":"xen-devel-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Software Development Kit 11 SP3","product_id":"SUSE Linux Enterprise Software Development Kit 11 SP3:xen-devel-4.2.5_06-0.7.1.i586"},"product_reference":"xen-devel-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Software Development Kit 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-devel-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Software Development Kit 11 SP3","product_id":"SUSE Linux Enterprise Software Development Kit 11 SP3:xen-devel-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-devel-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Software Development Kit 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-html-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-html-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-libs-4.2.5_06-0.7.1.i586"},"product_reference":"xen-libs-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-html-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-html-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-libs-4.2.5_06-0.7.1.i586"},"product_reference":"xen-libs-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3","product_id":"SUSE Linux Enterprise Server 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-html-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-doc-html-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-html-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-doc-pdf-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-4.2.5_06-0.7.1.i586"},"product_reference":"xen-libs-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-32bit-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-domU-4.2.5_06-0.7.1.i586"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server 11 SP3-TERADATA","product_id":"SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-domU-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server 11 SP3-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"xen-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-html-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-html-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-doc-pdf-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64"},"product_reference":"xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586"},"product_reference":"xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-4.2.5_06-0.7.1.i586"},"product_reference":"xen-libs-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-libs-32bit-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.i586 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.i586","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"xen-tools-domU-4.2.5_06-0.7.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 11 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64"},"product_reference":"xen-tools-domU-4.2.5_06-0.7.1.x86_64","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 11 SP3"}]},"vulnerabilities":[{"cve":"CVE-2015-3456","ids":[{"system_name":"SUSE CVE Page","text":"https://www.suse.com/security/cve/CVE-2015-3456"}],"notes":[{"category":"general","text":"The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (out-of-bounds write and guest crash) or possibly execute arbitrary code via the (1) FD_CMD_READ_ID, (2) FD_CMD_DRIVE_SPECIFICATION_COMMAND, or other unspecified commands, aka VENOM.","title":"CVE description"}],"product_status":{"recommended":["SUSE Linux Enterprise Desktop 11 SP3:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Software Development Kit 11 SP3:xen-devel-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Software Development Kit 11 SP3:xen-devel-4.2.5_06-0.7.1.x86_64"]},"references":[{"category":"external","summary":"CVE-2015-3456","url":"https://www.suse.com/security/cve/CVE-2015-3456"},{"category":"external","summary":"SUSE Bug 929339 for CVE-2015-3456","url":"https://bugzilla.suse.com/929339"},{"category":"external","summary":"SUSE Bug 932770 for CVE-2015-3456","url":"https://bugzilla.suse.com/932770"},{"category":"external","summary":"SUSE Bug 935900 for CVE-2015-3456","url":"https://bugzilla.suse.com/935900"}],"remediations":[{"category":"vendor_fix","details":"To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n","product_ids":["SUSE Linux Enterprise Desktop 11 SP3:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Desktop 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Desktop 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3-TERADATA:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-doc-html-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-doc-pdf-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-default-4.2.5_06_3.0.101_0.47.52-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-kmp-pae-4.2.5_06_3.0.101_0.47.52-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-32bit-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-libs-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Server for SAP Applications 11 SP3:xen-tools-domU-4.2.5_06-0.7.1.x86_64","SUSE Linux Enterprise Software Development Kit 11 SP3:xen-devel-4.2.5_06-0.7.1.i586","SUSE Linux Enterprise Software Development Kit 11 SP3:xen-devel-4.2.5_06-0.7.1.x86_64"]}],"threats":[{"category":"impact","date":"2015-05-13T08:31:50Z","details":"moderate"}],"title":"CVE-2015-3456"}]}