FlawAtlas
Search the atlas
SUSE-SU-2015:1384-1 Not scored

security update for xen

This security update of Xen fixes the following issues: * bsc#939712 (XSA-140): QEMU leak of uninitialized heap memory in rtl8139 device model (CVE-2015-5165) * bsc#939709 (XSA-139): Use after free in QEMU/Xen block unplug protocol (CVE-2015-5166)

Exploit probability Not scored
Published August 11, 2015
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Software Development Kit 12 xen
SUSE:Linux Enterprise Desktop 12 xen
SUSE:Linux Enterprise Server 12 xen
SUSE:Linux Enterprise Server for SAP Applications 12 xen

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2015:1384-1

This security update of Xen fixes the following issues: * bsc#939712 (XSA-140): QEMU leak of uninitialized heap memory in rtl8139 device model (CVE-2015-5165) * bsc#939709 (XSA-139): Use after free in QEMU/Xen block unplug protocol (CVE-2015-5166)

View original source

05 / REFERENCES

Further evidence