{"id":"SUSE-SU-2020:2768-1","summary":"Security update for dpdk","details":"This update for dpdk fixes the following issues:\n\n- dpdk was updated to 18.11.9. For a list of fixes check:\n  - CVE-2020-14374,CVE-2020-14375,CVE-2020-14376,CVE-2020-14377,CVE-2020-14378: Fixed multiple issues where a malicious guest could \n    harm the host using vhost crypto, including executing code in host (VM Escape), reading host application memory space to guest \n    and causing partially denial of service in the host(bsc#1176590).\nFor a list of fixes check:    \n    https://doc.dpdk.org/guides-18.11/rel_notes/release_18_11.html#fixes\t  \n","modified":"2026-02-04T03:58:14.683894Z","published":"2020-09-28T15:48:53Z","related":["CVE-2020-14374","CVE-2020-14375","CVE-2020-14376","CVE-2020-14377","CVE-2020-14378"],"upstream":["CVE-2020-14374","CVE-2020-14375","CVE-2020-14376","CVE-2020-14377","CVE-2020-14378"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2020/suse-su-20202768-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1176590"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14374"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14375"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14376"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14377"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14378"}],"affected":[{"package":{"name":"dpdk","ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP5","purl":"pkg:rpm/suse/dpdk&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.11.9-3.15.1"}]}],"ecosystem_specific":{"binaries":[{"dpdk-devel":"18.11.9-3.15.1","dpdk-thunderx-devel":"18.11.9-3.15.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2768-1.json"}},{"package":{"name":"dpdk-thunderx","ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP5","purl":"pkg:rpm/suse/dpdk-thunderx&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.11.9-3.15.1"}]}],"ecosystem_specific":{"binaries":[{"dpdk-devel":"18.11.9-3.15.1","dpdk-thunderx-devel":"18.11.9-3.15.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2768-1.json"}},{"package":{"name":"dpdk","ecosystem":"SUSE:Linux Enterprise Server 12 SP5","purl":"pkg:rpm/suse/dpdk&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.11.9-3.15.1"}]}],"ecosystem_specific":{"binaries":[{"dpdk-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx":"18.11.9-3.15.1","dpdk-tools":"18.11.9-3.15.1","dpdk":"18.11.9-3.15.1","libdpdk-18_11":"18.11.9-3.15.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2768-1.json"}},{"package":{"name":"dpdk-thunderx","ecosystem":"SUSE:Linux Enterprise Server 12 SP5","purl":"pkg:rpm/suse/dpdk-thunderx&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.11.9-3.15.1"}]}],"ecosystem_specific":{"binaries":[{"libdpdk-18_11":"18.11.9-3.15.1","dpdk-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx":"18.11.9-3.15.1","dpdk-tools":"18.11.9-3.15.1","dpdk":"18.11.9-3.15.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2768-1.json"}},{"package":{"name":"dpdk","ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP5","purl":"pkg:rpm/suse/dpdk&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.11.9-3.15.1"}]}],"ecosystem_specific":{"binaries":[{"dpdk-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx":"18.11.9-3.15.1","dpdk-tools":"18.11.9-3.15.1","dpdk":"18.11.9-3.15.1","libdpdk-18_11":"18.11.9-3.15.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2768-1.json"}},{"package":{"name":"dpdk-thunderx","ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP5","purl":"pkg:rpm/suse/dpdk-thunderx&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.11.9-3.15.1"}]}],"ecosystem_specific":{"binaries":[{"dpdk-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx-kmp-default":"18.11.9_k4.12.14_122.37-3.15.1","dpdk-thunderx":"18.11.9-3.15.1","dpdk-tools":"18.11.9-3.15.1","dpdk":"18.11.9-3.15.1","libdpdk-18_11":"18.11.9-3.15.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2768-1.json"}}],"schema_version":"1.7.3"}