Vulnerability Solutions

The Nimsoft Cloud Monitor Periodic Vulnerability Scan checks for the vulnerability below. To see the most recently added vulnerability solutions that are scanned by WatchMouse, go to the Vulnerability Solutions overview

Category: SuSE Local Security Checks Risk factor: High Added: 31 Jan 2012
Synopsis:

The remote SuSE system is missing a security patch for kvm

Description:

The following vulnerabilities have been fixed in KVM:

* buffer overflow in e1000 device emulation (CVE-2012-0029)
* missing initgroups() for -runas (CVE-2011-2527)

Security Issue references:

* CVE-2011-2527
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2527>
* CVE-2012-0029
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0029>

See also:

https://bugzilla.novell.com/show_bug.cgi?id=740165
https://bugzilla.novell.com/show_bug.cgi?id=705304
https://bugzilla.novell.com/show_bug.cgi?id=695510

Solution:

Install the kvm security patch by using 'yast', for example.

Risk factor:

High