This update for xen to version 4.11.2 fixes the following issues:
Security issues fixed:
CVE-2019-15890: Fixed a use-after-free in SLiRP networking implementation of QEMU emulator
which could have led to Denial of Service (bsc#1149813).
CVE-2019-12068: Fixed an issue in lsi which could lead to an infinite loop and denial of
service (bsc#1146874).
CVE-2019-14378: Fixed a heap buffer overflow in SLiRp networking implementation of QEMU
emulator which could have led to execution of arbitrary code with privileges of the
QEMU process (bsc#1143797).
Other issues fixed:
Fixed an HPS bug which did not allow to install Windows Server 2016 with 2 CPUs setting or above
(bsc#1137717).
Fixed a segmentation fault in Libvrtd during live migration to a VM (bsc#1145774).
Fixed an issue where libxenlight could not create new domain (bsc#1131811).
Fixed an issue where attached pci devices were lost after reboot (bsc#1129642).
Fixed an issue where Xen could not pre-allocate 1 shadow page (bsc#1145240).