<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:cpe="http://cpe.mitre.org/language/2.0" xmlns:cvrf="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf" xmlns:cvrf-common="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/common" xmlns:cvssv2="http://scap.nist.gov/schema/cvss-v2/1.0" xmlns:cvssv3="https://www.first.org/cvss/cvss-v3.0.xsd" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:ns0="http://purl.org/dc/elements/1.1/" xmlns:prod="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/prod" xmlns:scap-core="http://scap.nist.gov/schema/scap-core/1.0" xmlns:sch="http://purl.oclc.org/dsdl/schematron" xmlns:vuln="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf">
  <DocumentTitle xml:lang="en">Security update for the Linux Kernel</DocumentTitle>
  <DocumentType>SUSE Patch</DocumentType>
  <DocumentPublisher Type="Vendor">
    <ContactDetails>security@suse.de</ContactDetails>
    <IssuingAuthority>SUSE Security Team</IssuingAuthority>
  </DocumentPublisher>
  <DocumentTracking>
    <Identification>
      <ID>SUSE-SU-2019:0828-1</ID>
    </Identification>
    <Status>Final</Status>
    <Version>1</Version>
    <RevisionHistory>
      <Revision>
        <Number>1</Number>
        <Date>2019-04-01T09:28:05Z</Date>
        <Description>current</Description>
      </Revision>
    </RevisionHistory>
    <InitialReleaseDate>2019-04-01T09:28:05Z</InitialReleaseDate>
    <CurrentReleaseDate>2019-04-01T09:28:05Z</CurrentReleaseDate>
    <Generator>
      <Engine>cve-database/bin/generate-cvrf.pl</Engine>
      <Date>2017-02-24T01:00:00Z</Date>
    </Generator>
  </DocumentTracking>
  <DocumentNotes>
    <Note Title="Topic" Type="Summary" Ordinal="1" xml:lang="en">Security update for the Linux Kernel</Note>
    <Note Title="Details" Type="General" Ordinal="2" xml:lang="en">

The SUSE Linux Enterprise 12 SP2 LTSS kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

- CVE-2019-2024: A use-after-free when disconnecting a source was fixed which could lead to crashes. bnc#1129179).
- CVE-2019-9213: expand_downwards in mm/mmap.c lacked a check for the mmap minimum address, which made it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task (bnc#1128166).
- CVE-2018-14633: A security flaw was found in the chap_server_compute_md5() function in the ISCSI target code in the Linux kernel in a way an authentication request from an ISCSI initiator is processed. (bnc#1107829).
- CVE-2019-7221: The KVM implementation in the Linux kernel had a Use-after-Free (bnc#1124732).
- CVE-2019-7222: The KVM implementation in the Linux kernel had an Information Leak (bnc#1124735).
- CVE-2019-6974: kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandled reference counting because of a race condition, which led to a use-after-free (bnc#1124728).

The following non-security bugs were fixed:

- copy_mount_string: Limit string length to PATH_MAX (bsc#1082943).
- enic: add wq clean up budget (bsc#1075697, bsc#1120691. bsc#1102959).
- ibmvscsi: Fix empty event pool access during host removal (bsc#1119019).
- ipv4: ipv6: Adjust the frag mem limit after truesize has been changed (bsc#1110286).
- kmps: obsolete older KMPs of the same flavour (bsc#1127155, bsc#1109137).
- netfilter: ipv6: Adjust the frag mem limit after truesize has been changed (bsc#1110286).
- perf/x86: Add sysfs entry to freeze counters on SMI (bsc#1121805).
- perf/x86/intel: Delay memory deallocation until x86_pmu_dead_cpu() (bsc#1121805).
- perf/x86/intel: Do not enable freeze-on-smi for PerfMon V1 (bsc#1121805).
- perf/x86/intel: Fix memory corruption (bsc#1121805).
- perf/x86/intel: Generalize dynamic constraint creation (bsc#1121805).
- perf/x86/intel: Implement support for TSX Force Abort (bsc#1121805).
- perf/x86/intel: Make cpuc allocations consistent (bsc#1121805).
- pseries/energy: Use OF accessor function to read ibm,drc-indexes (bsc#1129080).
- restore cond_resched() in shrink_dcache_parent() (bsc#1098599, bsc#1105402, bsc#1127758).
- rps: flow_dissector: Fix uninitialized flow_keys used in __skb_get_hash possibly (bsc#1108145).
- scsi: megaraid_sas: Send SYNCHRONIZE_CACHE for VD to firmware (bsc#1121698).
- scsi: sym53c8xx: fix NULL pointer dereference panic in sym_int_sir() (bsc#1125315).
- x86: Add TSX Force Abort CPUID/MSR (bsc#1121805).
- x86: respect memory size limiting via mem= parameter (bsc#1117645).
- x86/spectre_v2: Do not check microcode versions when running under hypervisors (bsc#1122821).
- x86/xen: dont add memory above max allowed allocation (bsc#1117645).
- xen-netfront: Fix hang on device removal (bnc#1012382).
- xfrm: use complete IPv6 addresses for hash (bsc#1109330).
- xfs: remove filestream item xfs_inode reference (bsc#1127961).
</Note>
    <Note Title="Terms of Use" Type="Legal Disclaimer" Ordinal="3" xml:lang="en">The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).</Note>
    <Note Title="Patchnames" Type="Details" Ordinal="4" xml:lang="en">SUSE-2019-828,SUSE-OpenStack-Cloud-7-2019-828,SUSE-OpenStack-Cloud-Magnum-Orchestration-7-2019-828,SUSE-SLE-HA-12-SP2-2019-828,SUSE-SLE-SAP-12-SP2-2019-828,SUSE-SLE-SERVER-12-SP2-2019-828,SUSE-SLE-SERVER-12-SP2-BCL-2019-828,SUSE-Storage-4-2019-828</Note>
  </DocumentNotes>
  <DocumentDistribution xml:lang="en">Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)</DocumentDistribution>
  <DocumentReferences>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/</URL>
      <Description>Link for SUSE-SU-2019:0828-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2019-April/005273.html</URL>
      <Description>E-Mail link for SUSE-SU-2019:0828-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/security/rating/</URL>
      <Description>SUSE Security Ratings</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1012382</URL>
      <Description>SUSE Bug 1012382</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1075697</URL>
      <Description>SUSE Bug 1075697</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1082943</URL>
      <Description>SUSE Bug 1082943</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1098599</URL>
      <Description>SUSE Bug 1098599</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1102959</URL>
      <Description>SUSE Bug 1102959</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1105402</URL>
      <Description>SUSE Bug 1105402</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1107829</URL>
      <Description>SUSE Bug 1107829</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1108145</URL>
      <Description>SUSE Bug 1108145</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1109137</URL>
      <Description>SUSE Bug 1109137</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1109330</URL>
      <Description>SUSE Bug 1109330</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1110286</URL>
      <Description>SUSE Bug 1110286</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1117645</URL>
      <Description>SUSE Bug 1117645</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1119019</URL>
      <Description>SUSE Bug 1119019</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1120691</URL>
      <Description>SUSE Bug 1120691</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1121698</URL>
      <Description>SUSE Bug 1121698</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1121805</URL>
      <Description>SUSE Bug 1121805</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1122821</URL>
      <Description>SUSE Bug 1122821</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1124728</URL>
      <Description>SUSE Bug 1124728</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1124732</URL>
      <Description>SUSE Bug 1124732</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1124735</URL>
      <Description>SUSE Bug 1124735</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1125315</URL>
      <Description>SUSE Bug 1125315</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1127155</URL>
      <Description>SUSE Bug 1127155</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1127758</URL>
      <Description>SUSE Bug 1127758</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1127961</URL>
      <Description>SUSE Bug 1127961</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1128166</URL>
      <Description>SUSE Bug 1128166</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1129080</URL>
      <Description>SUSE Bug 1129080</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1129179</URL>
      <Description>SUSE Bug 1129179</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-14633/</URL>
      <Description>SUSE CVE CVE-2018-14633 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-2024/</URL>
      <Description>SUSE CVE CVE-2019-2024 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-6974/</URL>
      <Description>SUSE CVE CVE-2019-6974 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-7221/</URL>
      <Description>SUSE CVE CVE-2019-7221 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-7222/</URL>
      <Description>SUSE CVE CVE-2019-7222 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-9213/</URL>
      <Description>SUSE CVE CVE-2019-9213 page</Description>
    </Reference>
  </DocumentReferences>
  <ProductTree xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/prod">
    <Branch Type="Product Family" Name="SUSE Enterprise Storage 4">
      <Branch Type="Product Name" Name="SUSE Enterprise Storage 4">
        <FullProductName ProductID="SUSE Enterprise Storage 4" CPE="cpe:/o:suse:ses:4">SUSE Enterprise Storage 4</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise High Availability Extension 12 SP2">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise High Availability Extension 12 SP2">
        <FullProductName ProductID="SUSE Linux Enterprise High Availability Extension 12 SP2" CPE="cpe:/o:suse:sle-ha:12:sp2">SUSE Linux Enterprise High Availability Extension 12 SP2</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server 12 SP2-BCL">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server 12 SP2-BCL">
        <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL" CPE="cpe:/o:suse:sles-bcl:12:sp2">SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server 12 SP2-LTSS">
        <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS" CPE="cpe:/o:suse:sles-ltss:12:sp2">SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
        <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2" CPE="cpe:/o:suse:sles_sap:12:sp2">SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE OpenStack Cloud 7">
      <Branch Type="Product Name" Name="SUSE OpenStack Cloud 7">
        <FullProductName ProductID="SUSE OpenStack Cloud 7" CPE="cpe:/o:suse:suse-openstack-cloud:7">SUSE OpenStack Cloud 7</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Version" Name="cluster-md-kmp-debug-4.4.121-92.104.1">
      <FullProductName ProductID="cluster-md-kmp-debug-4.4.121-92.104.1">cluster-md-kmp-debug-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cluster-md-kmp-default-4.4.121-92.104.1">
      <FullProductName ProductID="cluster-md-kmp-default-4.4.121-92.104.1">cluster-md-kmp-default-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cluster-md-kmp-vanilla-4.4.121-92.104.1">
      <FullProductName ProductID="cluster-md-kmp-vanilla-4.4.121-92.104.1">cluster-md-kmp-vanilla-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cluster-network-kmp-debug-4.4.121-92.104.1">
      <FullProductName ProductID="cluster-network-kmp-debug-4.4.121-92.104.1">cluster-network-kmp-debug-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cluster-network-kmp-default-4.4.121-92.104.1">
      <FullProductName ProductID="cluster-network-kmp-default-4.4.121-92.104.1">cluster-network-kmp-default-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cluster-network-kmp-vanilla-4.4.121-92.104.1">
      <FullProductName ProductID="cluster-network-kmp-vanilla-4.4.121-92.104.1">cluster-network-kmp-vanilla-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="dlm-kmp-debug-4.4.121-92.104.1">
      <FullProductName ProductID="dlm-kmp-debug-4.4.121-92.104.1">dlm-kmp-debug-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="dlm-kmp-default-4.4.121-92.104.1">
      <FullProductName ProductID="dlm-kmp-default-4.4.121-92.104.1">dlm-kmp-default-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="dlm-kmp-vanilla-4.4.121-92.104.1">
      <FullProductName ProductID="dlm-kmp-vanilla-4.4.121-92.104.1">dlm-kmp-vanilla-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gfs2-kmp-debug-4.4.121-92.104.1">
      <FullProductName ProductID="gfs2-kmp-debug-4.4.121-92.104.1">gfs2-kmp-debug-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gfs2-kmp-default-4.4.121-92.104.1">
      <FullProductName ProductID="gfs2-kmp-default-4.4.121-92.104.1">gfs2-kmp-default-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gfs2-kmp-vanilla-4.4.121-92.104.1">
      <FullProductName ProductID="gfs2-kmp-vanilla-4.4.121-92.104.1">gfs2-kmp-vanilla-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-debug-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-debug-4.4.121-92.104.1">kernel-debug-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-debug-base-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-debug-base-4.4.121-92.104.1">kernel-debug-base-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-debug-devel-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-debug-devel-4.4.121-92.104.1">kernel-debug-devel-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-debug-extra-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-debug-extra-4.4.121-92.104.1">kernel-debug-extra-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-debug-kgraft-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-debug-kgraft-4.4.121-92.104.1">kernel-debug-kgraft-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-default-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-default-4.4.121-92.104.1">kernel-default-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-default-base-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-default-base-4.4.121-92.104.1">kernel-default-base-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-default-devel-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-default-devel-4.4.121-92.104.1">kernel-default-devel-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-default-extra-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-default-extra-4.4.121-92.104.1">kernel-default-extra-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-default-kgraft-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-default-kgraft-4.4.121-92.104.1">kernel-default-kgraft-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-default-man-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-default-man-4.4.121-92.104.1">kernel-default-man-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-devel-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-devel-4.4.121-92.104.1">kernel-devel-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-docs-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-docs-4.4.121-92.104.1">kernel-docs-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-docs-html-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-docs-html-4.4.121-92.104.1">kernel-docs-html-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-docs-pdf-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-docs-pdf-4.4.121-92.104.1">kernel-docs-pdf-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-macros-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-macros-4.4.121-92.104.1">kernel-macros-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-obs-build-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-obs-build-4.4.121-92.104.1">kernel-obs-build-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-obs-qa-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-obs-qa-4.4.121-92.104.1">kernel-obs-qa-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-source-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-source-4.4.121-92.104.1">kernel-source-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-source-vanilla-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-source-vanilla-4.4.121-92.104.1">kernel-source-vanilla-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-syms-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-syms-4.4.121-92.104.1">kernel-syms-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-vanilla-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-vanilla-4.4.121-92.104.1">kernel-vanilla-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-vanilla-base-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-vanilla-base-4.4.121-92.104.1">kernel-vanilla-base-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-vanilla-devel-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-vanilla-devel-4.4.121-92.104.1">kernel-vanilla-devel-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kernel-zfcpdump-4.4.121-92.104.1">
      <FullProductName ProductID="kernel-zfcpdump-4.4.121-92.104.1">kernel-zfcpdump-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kgraft-patch-4_4_121-92_104-default-1-3.3.1">
      <FullProductName ProductID="kgraft-patch-4_4_121-92_104-default-1-3.3.1">kgraft-patch-4_4_121-92_104-default-1-3.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="ocfs2-kmp-debug-4.4.121-92.104.1">
      <FullProductName ProductID="ocfs2-kmp-debug-4.4.121-92.104.1">ocfs2-kmp-debug-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="ocfs2-kmp-default-4.4.121-92.104.1">
      <FullProductName ProductID="ocfs2-kmp-default-4.4.121-92.104.1">ocfs2-kmp-default-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="ocfs2-kmp-vanilla-4.4.121-92.104.1">
      <FullProductName ProductID="ocfs2-kmp-vanilla-4.4.121-92.104.1">ocfs2-kmp-vanilla-4.4.121-92.104.1</FullProductName>
    </Branch>
    <Relationship ProductReference="kernel-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kernel-default-4.4.121-92.104.1">kernel-default-4.4.121-92.104.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-base-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kernel-default-base-4.4.121-92.104.1">kernel-default-base-4.4.121-92.104.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kernel-default-devel-4.4.121-92.104.1">kernel-default-devel-4.4.121-92.104.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kernel-devel-4.4.121-92.104.1">kernel-devel-4.4.121-92.104.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-macros-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kernel-macros-4.4.121-92.104.1">kernel-macros-4.4.121-92.104.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-source-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kernel-source-4.4.121-92.104.1">kernel-source-4.4.121-92.104.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-syms-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kernel-syms-4.4.121-92.104.1">kernel-syms-4.4.121-92.104.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="kgraft-patch-4_4_121-92_104-default-1-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 4">
      <FullProductName ProductID="SUSE Enterprise Storage 4:kgraft-patch-4_4_121-92_104-default-1-3.3.1">kgraft-patch-4_4_121-92_104-default-1-3.3.1 as a component of SUSE Enterprise Storage 4</FullProductName>
    </Relationship>
    <Relationship ProductReference="cluster-md-kmp-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Availability Extension 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-md-kmp-default-4.4.121-92.104.1">cluster-md-kmp-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise High Availability Extension 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="cluster-network-kmp-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Availability Extension 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-network-kmp-default-4.4.121-92.104.1">cluster-network-kmp-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise High Availability Extension 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="dlm-kmp-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Availability Extension 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise High Availability Extension 12 SP2:dlm-kmp-default-4.4.121-92.104.1">dlm-kmp-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise High Availability Extension 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="gfs2-kmp-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Availability Extension 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise High Availability Extension 12 SP2:gfs2-kmp-default-4.4.121-92.104.1">gfs2-kmp-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise High Availability Extension 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="ocfs2-kmp-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Availability Extension 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise High Availability Extension 12 SP2:ocfs2-kmp-default-4.4.121-92.104.1">ocfs2-kmp-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise High Availability Extension 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-4.4.121-92.104.1">kernel-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-base-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-base-4.4.121-92.104.1">kernel-default-base-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-devel-4.4.121-92.104.1">kernel-default-devel-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL:kernel-devel-4.4.121-92.104.1">kernel-devel-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-macros-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL:kernel-macros-4.4.121-92.104.1">kernel-macros-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-source-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL:kernel-source-4.4.121-92.104.1">kernel-source-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-syms-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-BCL:kernel-syms-4.4.121-92.104.1">kernel-syms-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-4.4.121-92.104.1">kernel-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-base-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-base-4.4.121-92.104.1">kernel-default-base-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-devel-4.4.121-92.104.1">kernel-default-devel-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-man-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-man-4.4.121-92.104.1">kernel-default-man-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-devel-4.4.121-92.104.1">kernel-devel-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-macros-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-macros-4.4.121-92.104.1">kernel-macros-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-source-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-source-4.4.121-92.104.1">kernel-source-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-syms-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-syms-4.4.121-92.104.1">kernel-syms-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kgraft-patch-4_4_121-92_104-default-1-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP2-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP2-LTSS:kgraft-patch-4_4_121-92_104-default-1-3.3.1">kgraft-patch-4_4_121-92_104-default-1-3.3.1 as a component of SUSE Linux Enterprise Server 12 SP2-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-4.4.121-92.104.1">kernel-default-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-base-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-base-4.4.121-92.104.1">kernel-default-base-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-devel-4.4.121-92.104.1">kernel-default-devel-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-devel-4.4.121-92.104.1">kernel-devel-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-macros-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-macros-4.4.121-92.104.1">kernel-macros-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-source-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-source-4.4.121-92.104.1">kernel-source-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-syms-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-syms-4.4.121-92.104.1">kernel-syms-4.4.121-92.104.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kgraft-patch-4_4_121-92_104-default-1-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 12 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 12 SP2:kgraft-patch-4_4_121-92_104-default-1-3.3.1">kgraft-patch-4_4_121-92_104-default-1-3.3.1 as a component of SUSE Linux Enterprise Server for SAP Applications 12 SP2</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-default-4.4.121-92.104.1">kernel-default-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-base-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-default-base-4.4.121-92.104.1">kernel-default-base-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-default-devel-4.4.121-92.104.1">kernel-default-devel-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-default-man-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-default-man-4.4.121-92.104.1">kernel-default-man-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-devel-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-devel-4.4.121-92.104.1">kernel-devel-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-macros-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-macros-4.4.121-92.104.1">kernel-macros-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-source-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-source-4.4.121-92.104.1">kernel-source-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kernel-syms-4.4.121-92.104.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kernel-syms-4.4.121-92.104.1">kernel-syms-4.4.121-92.104.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
    <Relationship ProductReference="kgraft-patch-4_4_121-92_104-default-1-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE OpenStack Cloud 7">
      <FullProductName ProductID="SUSE OpenStack Cloud 7:kgraft-patch-4_4_121-92_104-default-1-3.3.1">kgraft-patch-4_4_121-92_104-default-1-3.3.1 as a component of SUSE OpenStack Cloud 7</FullProductName>
    </Relationship>
  </ProductTree>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="1">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">A security flaw was found in the chap_server_compute_md5() function in the ISCSI target code in the Linux kernel in a way an authentication request from an ISCSI initiator is processed. An unauthenticated remote attacker can cause a stack buffer overflow and smash up to 17 bytes of the stack. The attack requires the iSCSI target to be enabled on the victim host. Depending on how the target's code was built (i.e. depending on a compiler, compile flags and hardware architecture) an attack may lead to a system crash and thus to a denial-of-service or possibly to a non-authorized access to data exported by an iSCSI target. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although we believe it is highly unlikely. Kernel versions 4.18.x, 4.14.x and 3.10.x are believed to be vulnerable.</Note>
    </Notes>
    <CVE>CVE-2018-14633</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 4:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-md-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-network-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:dlm-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:gfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:ocfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>8.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:P/I:P/A:C</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>8.8</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-14633.html</URL>
        <Description>CVE-2018-14633</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1107829</URL>
        <Description>SUSE Bug 1107829</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1107832</URL>
        <Description>SUSE Bug 1107832</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="2">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In em28xx_unregister_dvb of em28xx-dvb.c, there is a possible use after free issue. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-111761954References: Upstream kernel</Note>
    </Notes>
    <CVE>CVE-2019-2024</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 4:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-md-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-network-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:dlm-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:gfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:ocfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>7.2</BaseScoreV2>
        <VectorV2>AV:L/AC:L/Au:N/C:C/I:C/A:C</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>6.2</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-2024.html</URL>
        <Description>CVE-2019-2024</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1129179</URL>
        <Description>SUSE Bug 1129179</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="3">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because of a race condition, leading to a use-after-free.</Note>
    </Notes>
    <CVE>CVE-2019-6974</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 4:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-md-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-network-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:dlm-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:gfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:ocfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>6.8</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:P/I:P/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>7.8</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-6974.html</URL>
        <Description>CVE-2019-6974</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1124728</URL>
        <Description>SUSE Bug 1124728</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1124729</URL>
        <Description>SUSE Bug 1124729</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="4">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free.</Note>
    </Notes>
    <CVE>CVE-2019-7221</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 4:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-md-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-network-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:dlm-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:gfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:ocfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.6</BaseScoreV2>
        <VectorV2>AV:L/AC:L/Au:N/C:P/I:P/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>7.5</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-7221.html</URL>
        <Description>CVE-2019-7221</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1124732</URL>
        <Description>SUSE Bug 1124732</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1124734</URL>
        <Description>SUSE Bug 1124734</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="5">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak.</Note>
    </Notes>
    <CVE>CVE-2019-7222</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 4:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-md-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-network-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:dlm-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:gfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:ocfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>2.1</BaseScoreV2>
        <VectorV2>AV:L/AC:L/Au:N/C:P/I:N/A:N</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>2.8</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-7222.html</URL>
        <Description>CVE-2019-7222</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1124735</URL>
        <Description>SUSE Bug 1124735</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="6">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.</Note>
    </Notes>
    <CVE>CVE-2019-9213</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 4:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Enterprise Storage 4:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-md-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:cluster-network-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:dlm-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:gfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Availability Extension 12 SP2:ocfs2-kmp-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-BCL:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP2-LTSS:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 12 SP2:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-base-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-default-man-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-devel-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-macros-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-source-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kernel-syms-4.4.121-92.104.1</ProductID>
        <ProductID>SUSE OpenStack Cloud 7:kgraft-patch-4_4_121-92_104-default-1-3.3.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.9</BaseScoreV2>
        <VectorV2>AV:L/AC:L/Au:N/C:N/I:N/A:C</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>5.5</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-9213.html</URL>
        <Description>CVE-2019-9213</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1128166</URL>
        <Description>SUSE Bug 1128166</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1128378</URL>
        <Description>SUSE Bug 1128378</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1129016</URL>
        <Description>SUSE Bug 1129016</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
</cvrfdoc>
