Lucene search

K
suseSuseOPENSUSE-SU-2022:0940-1
HistoryMar 23, 2022 - 12:00 a.m.

Security update for xen (important)

2022-03-2300:00:00
lists.opensuse.org
34

0.0005 Low

EPSS

Percentile

18.0%

An update that solves three vulnerabilities and has one
errata is now available.

Description:

This update for xen fixes the following issues:

Update Xen to version 4.14.4 (bsc#1027519)

Transient execution side-channel attacks attacking the Branch History
Buffer (BHB), named โ€œBranch Target Injectionโ€ and โ€œIntra-Mode Branch
History Injectionโ€ are now mitigated.

Security issues fixed:

  • CVE-2022-0001, CVE-2022-0002, CVE-2021-26401: BHB speculation issues
    (bsc#1196915).

Non-security issues fixed:

  • Fixed issue around xl and virsh operation - virsh list not giving any
    output (bsc#1191668).

Special Instructions and Notes:

Please reboot the system after installing this update.

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or โ€œzypper patchโ€.

Alternatively you can run the command listed for your product:

  • openSUSE Leap 15.3:

    zypper in -t patch openSUSE-SLE-15.3-2022-940=1

OSVersionArchitecturePackageVersionFilename
openSUSE Leap15.3aarch64<ย - openSUSE Leap 15.3 (aarch64 x86_64):- openSUSE Leap 15.3 (aarch64 x86_64):.aarch64.rpm
openSUSE Leap15.3x86_64<ย - openSUSE Leap 15.3 (aarch64 x86_64):- openSUSE Leap 15.3 (aarch64 x86_64):.x86_64.rpm
openSUSE Leap15.3x86_64<ย - openSUSE Leap 15.3 (x86_64):- openSUSE Leap 15.3 (x86_64):.x86_64.rpm
openSUSE Leap15.3noarch<ย - openSUSE Leap 15.3 (noarch):- openSUSE Leap 15.3 (noarch):.noarch.rpm