FlawAtlas
Search the atlas
SUSE-SU-2016:2053-1 Not scored

Security update for libvirt

This update for libvirt fixes one security issue: - CVE-2016-5008: Empty VNC password disables authentication. (bsc#987527) Additionally, the update includes the following non-security fixes: - Improve waiting for block job readines in virsh. (bsc#989755) - Parse negative values in augeas lenses. (bsc#975729) - Restart daemons in %posttrans after connection drivers have been processed. (bsc#854343, bsc#968483)

Exploit probability Not scored
Published August 11, 2016
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Workstation Extension 12 SP1 libvirt
SUSE:Linux Enterprise Desktop 12 SP1 libvirt
SUSE:Linux Enterprise Server 12 SP1 libvirt
SUSE:Linux Enterprise Server for SAP Applications 12 SP1 libvirt
SUSE:Linux Enterprise Software Development Kit 12 SP1 libvirt

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2016:2053-1

This update for libvirt fixes one security issue: - CVE-2016-5008: Empty VNC password disables authentication. (bsc#987527) Additionally, the update includes the following non-security fixes: - Improve waiting for block job readines in virsh. (bsc#989755) - Parse negative values in augeas lenses. (bsc#975729) - Restart daemons in %posttrans after connection drivers have been processed. (bsc#854343, bsc#968483)

View original source

05 / REFERENCES

Further evidence