[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-SUSE-SU-2016:1698-1":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":80,"duplicates":81,"related":82,"reserved_at":9,"published_at":116,"modified_at":117,"state":9,"summary":118,"references_raw":120,"kevs":405,"epss":9,"epss_history":406,"metrics":407,"affected":408},"SUSE-SU-2016:1698-1","Security update for kvm\n\nkvm was updated to fix 33 security issues.\n\nThese security issues were fixed:\n- CVE-2016-4439: Avoid OOB access in 53C9X emulation (bsc#980711)\n- CVE-2016-4441: Avoid OOB access in 53C9X emulation (bsc#980723)\n- CVE-2016-3710: Fixed VGA emulation based OOB access with potential for guest escape (bsc#978158)\n- CVE-2016-3712: Fixed VGa emulation based DOS and OOB read access exploit (bsc#978160)\n- CVE-2016-4037: Fixed USB ehci based DOS (bsc#976109) \n- CVE-2016-2538: Fixed potential OOB access in USB net device emulation (bsc#967969)\n- CVE-2016-2841: Fixed OOB access / hang in ne2000 emulation (bsc#969350)\n- CVE-2016-2858: Avoid potential DOS when using QEMU pseudo random number generator (bsc#970036)\n- CVE-2016-2857: Fixed OOB access when processing IP checksums (bsc#970037)\n- CVE-2016-4001: Fixed OOB access in Stellaris enet emulated nic (bsc#975128)\n- CVE-2016-4002: Fixed OOB access in MIPSnet emulated controller (bsc#975136)\n- CVE-2016-4020: Fixed possible host data leakage to guest from TPR access (bsc#975700)\n- CVE-2015-3214: Fixed OOB read in i8254 PIC (bsc#934069)\n- CVE-2014-9718: Fixed the handling of malformed or short ide PRDTs to avoid any opportunity for guest to cause DoS by abusing that interface (bsc#928393)\n- CVE-2014-3689: Fixed insufficient parameter validation in rectangle functions (bsc#901508)\n- CVE-2014-3615: The VGA emulator in QEMU allowed local guest users to read host memory by setting the display to a high resolution (bsc#895528).\n- CVE-2015-5239: Integer overflow in vnc_client_read() and protocol_client_msg() (bsc#944463).\n- CVE-2015-5278: Infinite loop in ne2000_receive() function (bsc#945989).\n- CVE-2015-5279: Heap-based buffer overflow in the ne2000_receive function in hw/net/ne2000.c in QEMU allowed guest OS users to cause a denial of service (instance crash) or possibly execute arbitrary code via vectors related to receiving packets (bsc#945987).\n- CVE-2015-5745: Buffer overflow in virtio-serial (bsc#940929).\n- CVE-2015-6855: hw/ide/core.c in QEMU did not properly restrict the commands accepted by an ATAPI device, which allowed guest users to cause a denial of service or possibly have unspecified other impact via certain IDE commands, as demonstrated by a WIN_READ_NATIVE_MAX command to an empty drive, which triggers a divide-by-zero error and instance crash (bsc#945404).\n- CVE-2015-7295: hw/virtio/virtio.c in the Virtual Network Device (virtio-net) support in QEMU, when big or mergeable receive buffers are not supported, allowed remote attackers to cause a denial of service (guest network consumption) via a flood of jumbo frames on the (1) tuntap or (2) macvtap interface (bsc#947159).\n- CVE-2015-7549: PCI null pointer dereferences (bsc#958917).\n- CVE-2015-8504: VNC floating point exception (bsc#958491).\n- CVE-2015-8558: Infinite loop in ehci_advance_state resulting in DoS (bsc#959005).\n- CVE-2015-8613: Wrong sized memset in megasas command handler (bsc#961358).\n- CVE-2015-8619: Potential DoS for long HMP sendkey command argument (bsc#960334).\n- CVE-2015-8743: OOB memory access in ne2000 ioport r/w functions (bsc#960725).\n- CVE-2016-1568: AHCI use-after-free in aio port commands (bsc#961332).\n- CVE-2016-1714: Potential OOB memory access in processing firmware configuration (bsc#961691).\n- CVE-2016-1922: NULL pointer dereference when processing hmp i/o command (bsc#962320).\n- CVE-2016-1981: Potential DoS (infinite loop) in e1000 device emulation by malicious privileged user within guest (bsc#963782).\n- CVE-2016-2198: Malicious privileged guest user were able to cause DoS by writing to read-only EHCI capabilities registers (bsc#964413).\n\nThis non-security issue was fixed:\n- Fix case of IDE interface needing busy status set before flush (bsc#936132)\n",null,[],[],[],[14,16,18,20,22,24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72,74,76,78],{"_key":15},"CVE-2014-3615",{"_key":17},"CVE-2014-3689",{"_key":19},"CVE-2014-9718",{"_key":21},"CVE-2015-3214",{"_key":23},"CVE-2015-5239",{"_key":25},"CVE-2015-5278",{"_key":27},"CVE-2015-5279",{"_key":29},"CVE-2015-5745",{"_key":31},"CVE-2015-6855",{"_key":33},"CVE-2015-7295",{"_key":35},"CVE-2015-7549",{"_key":37},"CVE-2015-8504",{"_key":39},"CVE-2015-8558",{"_key":41},"CVE-2015-8613",{"_key":43},"CVE-2015-8619",{"_key":45},"CVE-2015-8743",{"_key":47},"CVE-2016-1568",{"_key":49},"CVE-2016-1714",{"_key":51},"CVE-2016-1922",{"_key":53},"CVE-2016-1981",{"_key":55},"CVE-2016-2198",{"_key":57},"CVE-2016-2538",{"_key":59},"CVE-2016-2841",{"_key":61},"CVE-2016-2857",{"_key":63},"CVE-2016-2858",{"_key":65},"CVE-2016-3710",{"_key":67},"CVE-2016-3712",{"_key":69},"CVE-2016-4001",{"_key":71},"CVE-2016-4002",{"_key":73},"CVE-2016-4020",{"_key":75},"CVE-2016-4037",{"_key":77},"CVE-2016-4439",{"_key":79},"CVE-2016-4441",[],[],[83,84,85,86,87,88,89,90,91,92,93,94,95,96,97,98,99,100,101,102,103,104,105,106,107,108,109,110,111,112,113,114,115],{"_key":15},{"_key":17},{"_key":19},{"_key":21},{"_key":23},{"_key":25},{"_key":27},{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},{"_key":39},{"_key":41},{"_key":43},{"_key":45},{"_key":47},{"_key":49},{"_key":51},{"_key":53},{"_key":55},{"_key":57},{"_key":59},{"_key":61},{"_key":63},{"_key":65},{"_key":67},{"_key":69},{"_key":71},{"_key":73},{"_key":75},{"_key":77},{"_key":79},"2016-06-28T14:31:01Z","2026-02-04T03:07:16.951102Z",{"cisa_kev":119,"cisa_ransomware":119,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[121,127,132,136,140,144,148,152,156,160,164,168,172,176,180,184,188,192,196,200,204,208,212,216,220,224,228,232,236,240,244,248,252,256,260,264,268,272,277,281,285,289,293,297,301,305,309,313,317,321,325,329,333,337,341,345,349,353,357,361,365,369,373,377,381,385,389,393,397,401],{"url":122,"sources":123,"tags":125},"https://www.suse.com/support/update/announcement/2016/suse-su-20161698-1/",[124],"osv_suse",[126],"Advisory",{"url":128,"sources":129,"tags":130},"https://bugzilla.suse.com/895528",[124],[131],"REPORT",{"url":133,"sources":134,"tags":135},"https://bugzilla.suse.com/901508",[124],[131],{"url":137,"sources":138,"tags":139},"https://bugzilla.suse.com/928393",[124],[131],{"url":141,"sources":142,"tags":143},"https://bugzilla.suse.com/934069",[124],[131],{"url":145,"sources":146,"tags":147},"https://bugzilla.suse.com/936132",[124],[131],{"url":149,"sources":150,"tags":151},"https://bugzilla.suse.com/940929",[124],[131],{"url":153,"sources":154,"tags":155},"https://bugzilla.suse.com/944463",[124],[131],{"url":157,"sources":158,"tags":159},"https://bugzilla.suse.com/945404",[124],[131],{"url":161,"sources":162,"tags":163},"https://bugzilla.suse.com/945987",[124],[131],{"url":165,"sources":166,"tags":167},"https://bugzilla.suse.com/945989",[124],[131],{"url":169,"sources":170,"tags":171},"https://bugzilla.suse.com/947159",[124],[131],{"url":173,"sources":174,"tags":175},"https://bugzilla.suse.com/958491",[124],[131],{"url":177,"sources":178,"tags":179},"https://bugzilla.suse.com/958917",[124],[131],{"url":181,"sources":182,"tags":183},"https://bugzilla.suse.com/959005",[124],[131],{"url":185,"sources":186,"tags":187},"https://bugzilla.suse.com/960334",[124],[131],{"url":189,"sources":190,"tags":191},"https://bugzilla.suse.com/960725",[124],[131],{"url":193,"sources":194,"tags":195},"https://bugzilla.suse.com/961332",[124],[131],{"url":197,"sources":198,"tags":199},"https://bugzilla.suse.com/961333",[124],[131],{"url":201,"sources":202,"tags":203},"https://bugzilla.suse.com/961358",[124],[131],{"url":205,"sources":206,"tags":207},"https://bugzilla.suse.com/961556",[124],[131],{"url":209,"sources":210,"tags":211},"https://bugzilla.suse.com/961691",[124],[131],{"url":213,"sources":214,"tags":215},"https://bugzilla.suse.com/962320",[124],[131],{"url":217,"sources":218,"tags":219},"https://bugzilla.suse.com/963782",[124],[131],{"url":221,"sources":222,"tags":223},"https://bugzilla.suse.com/964413",[124],[131],{"url":225,"sources":226,"tags":227},"https://bugzilla.suse.com/967969",[124],[131],{"url":229,"sources":230,"tags":231},"https://bugzilla.suse.com/969350",[124],[131],{"url":233,"sources":234,"tags":235},"https://bugzilla.suse.com/970036",[124],[131],{"url":237,"sources":238,"tags":239},"https://bugzilla.suse.com/970037",[124],[131],{"url":241,"sources":242,"tags":243},"https://bugzilla.suse.com/975128",[124],[131],{"url":245,"sources":246,"tags":247},"https://bugzilla.suse.com/975136",[124],[131],{"url":249,"sources":250,"tags":251},"https://bugzilla.suse.com/975700",[124],[131],{"url":253,"sources":254,"tags":255},"https://bugzilla.suse.com/976109",[124],[131],{"url":257,"sources":258,"tags":259},"https://bugzilla.suse.com/978158",[124],[131],{"url":261,"sources":262,"tags":263},"https://bugzilla.suse.com/978160",[124],[131],{"url":265,"sources":266,"tags":267},"https://bugzilla.suse.com/980711",[124],[131],{"url":269,"sources":270,"tags":271},"https://bugzilla.suse.com/980723",[124],[131],{"url":273,"sources":274,"tags":275},"https://www.suse.com/security/cve/CVE-2014-3615",[124],[276],"WEB",{"url":278,"sources":279,"tags":280},"https://www.suse.com/security/cve/CVE-2014-3689",[124],[276],{"url":282,"sources":283,"tags":284},"https://www.suse.com/security/cve/CVE-2014-9718",[124],[276],{"url":286,"sources":287,"tags":288},"https://www.suse.com/security/cve/CVE-2015-3214",[124],[276],{"url":290,"sources":291,"tags":292},"https://www.suse.com/security/cve/CVE-2015-5239",[124],[276],{"url":294,"sources":295,"tags":296},"https://www.suse.com/security/cve/CVE-2015-5278",[124],[276],{"url":298,"sources":299,"tags":300},"https://www.suse.com/security/cve/CVE-2015-5279",[124],[276],{"url":302,"sources":303,"tags":304},"https://www.suse.com/security/cve/CVE-2015-5745",[124],[276],{"url":306,"sources":307,"tags":308},"https://www.suse.com/security/cve/CVE-2015-6855",[124],[276],{"url":310,"sources":311,"tags":312},"https://www.suse.com/security/cve/CVE-2015-7295",[124],[276],{"url":314,"sources":315,"tags":316},"https://www.suse.com/security/cve/CVE-2015-7549",[124],[276],{"url":318,"sources":319,"tags":320},"https://www.suse.com/security/cve/CVE-2015-8504",[124],[276],{"url":322,"sources":323,"tags":324},"https://www.suse.com/security/cve/CVE-2015-8558",[124],[276],{"url":326,"sources":327,"tags":328},"https://www.suse.com/security/cve/CVE-2015-8613",[124],[276],{"url":330,"sources":331,"tags":332},"https://www.suse.com/security/cve/CVE-2015-8619",[124],[276],{"url":334,"sources":335,"tags":336},"https://www.suse.com/security/cve/CVE-2015-8743",[124],[276],{"url":338,"sources":339,"tags":340},"https://www.suse.com/security/cve/CVE-2016-1568",[124],[276],{"url":342,"sources":343,"tags":344},"https://www.suse.com/security/cve/CVE-2016-1714",[124],[276],{"url":346,"sources":347,"tags":348},"https://www.suse.com/security/cve/CVE-2016-1922",[124],[276],{"url":350,"sources":351,"tags":352},"https://www.suse.com/security/cve/CVE-2016-1981",[124],[276],{"url":354,"sources":355,"tags":356},"https://www.suse.com/security/cve/CVE-2016-2198",[124],[276],{"url":358,"sources":359,"tags":360},"https://www.suse.com/security/cve/CVE-2016-2538",[124],[276],{"url":362,"sources":363,"tags":364},"https://www.suse.com/security/cve/CVE-2016-2841",[124],[276],{"url":366,"sources":367,"tags":368},"https://www.suse.com/security/cve/CVE-2016-2857",[124],[276],{"url":370,"sources":371,"tags":372},"https://www.suse.com/security/cve/CVE-2016-2858",[124],[276],{"url":374,"sources":375,"tags":376},"https://www.suse.com/security/cve/CVE-2016-3710",[124],[276],{"url":378,"sources":379,"tags":380},"https://www.suse.com/security/cve/CVE-2016-3712",[124],[276],{"url":382,"sources":383,"tags":384},"https://www.suse.com/security/cve/CVE-2016-4001",[124],[276],{"url":386,"sources":387,"tags":388},"https://www.suse.com/security/cve/CVE-2016-4002",[124],[276],{"url":390,"sources":391,"tags":392},"https://www.suse.com/security/cve/CVE-2016-4020",[124],[276],{"url":394,"sources":395,"tags":396},"https://www.suse.com/security/cve/CVE-2016-4037",[124],[276],{"url":398,"sources":399,"tags":400},"https://www.suse.com/security/cve/CVE-2016-4439",[124],[276],{"url":402,"sources":403,"tags":404},"https://www.suse.com/security/cve/CVE-2016-4441",[124],[276],[],[],[],[409,422],{"ecosystem":410,"name":411,"vendor":412,"product":413,"cpe_part":9,"purl_type":414,"purl_namespace":412,"purl_name":413,"source":9,"versions":415},"SUSE Linux Enterprise","kvm","suse","kvm&distro=SUSE Linux Enterprise Server 11 SP3-LTSS","rpm",[416],{"version":417,"is_range":418,"range_type":419,"version_start":9,"version_start_type":9,"version_end":420,"version_end_type":421,"fixed_in":9},"lt1_4_2_46_1",true,"ecosystem","1.4.2-46.1","excluding",{"ecosystem":410,"name":411,"vendor":412,"product":423,"cpe_part":9,"purl_type":414,"purl_namespace":412,"purl_name":423,"source":9,"versions":424},"kvm&distro=SUSE Linux Enterprise Server 11 SP3-TERADATA",[425],{"version":417,"is_range":418,"range_type":419,"version_start":9,"version_start_type":9,"version_end":420,"version_end_type":421,"fixed_in":9}]