[sle-beta] [ANNOUNCE] INTERNAL SLE 12 SP5 Product Family GMC2

SUSE Beta Program beta-programs at lists.suse.com
Fri Nov 15 03:07:46 MST 2019



We would like to share an important information about SLE 12 SP5 in
regard of recent news. As you might be aware, Intel and security
researchers published a number of security issues covering various
Intel hardware and software components.

If you want more information about this, please checkout our
dedicated blog post:

SUSE addresses Transactional Asynchronous Abort and Machine Check
Error on Page Size Changes issues[1]

Of course since this was disclosed before SLE 12 SP5 FCS, we had to
recreate a new GMC by cherry-picking these fixes and some others
important ones.

Please note that we won't share this "GMC2" publicly since we are close
to SLE 12 SP5 FCS date. However we are openly listing all changes
incorporated in this "GMC2". Of course this also mean that the "GMC"
version that was available for download, will therefore not be binary
identical to the final GM of SLE 12 SP5.

Detailed changes from GMC

Security fixes

Security update affecting the virtualization stack:

- Security update for qemu: CVE-2018-12207 CVE-2018-20126
CVE-2019-11135 CVE-2019-12068 CVE-2019-14378 CVE-2019-15890
- Security update for ucode-intel: CVE-2019-11135 CVE-2019-11139
- Security update for xen: CVE-2018-12207 CVE-2019-11135
CVE-2019-17340 CVE-2019-17341 CVE-2019-17342 CVE-2019-17343
CVE-2019-17344 CVE-2019-17345 CVE-2019-17346 CVE-2019-17347
CVE-2019-17348 CVE-2019-17349 CVE-2019-18420 CVE-2019-18421
CVE-2019-18422 CVE-2019-18423 CVE-2019-18424 CVE-2019-18425

Security update for kernel: CVE-2018-12207 CVE-2019-11135
CVE-2019-16232 CVE-2019-16234 CVE-2019-17666 CVE-2019-0155

Security update for Samba CVE-2019-10218 CVE-2019-14833

Other changes

- Updated btrfsmaintenance bsc#1155924 Addresses an issue in which
customers reported that systems were not responsive for a longer
amount of time (several minutes).
- Updated release-notes-sles with more records to the known issues
section
- Updated incorrect EOL date for SLED bsc#1155665
- Added rear23a to ppc64le as it was done via maintenance for older
releases bsc#1143589
- Corrected Vagrant image name to be in sync with other images
- Fixed signature in IBS for WSL image wsl-appx

Your SUSE Linux Enterprise Team

Do not hesitate to contact us at beta-programs at lists.suse.com if you
have any questions.

You received this email because you're signed up to get updates from
us. Click here to unsubscribe.[2]


[1]:https://www.suse.com/c/suse-addresses-transactional-async
hronous-abort-and-machine-check-error-on-page-size-changes-is
sues/

[2]:mailto:beta-programs at lists.suse.com?subject=Unsubscribe%2
0from%20SLE%20Beta&body=Unsubscribe%20from%20SLE%20Beta

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.suse.com/pipermail/sle-beta/attachments/20191115/b974d834/attachment.html>


More information about the sle-beta mailing list