drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Mehrere Probleme in Xen
Name: |
Mehrere Probleme in Xen |
|
ID: |
FEDORA-2013-23251 |
|
Distribution: |
Fedora |
|
Plattformen: |
Fedora 20 |
|
Datum: |
So, 22. Dezember 2013, 20:17 |
|
Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4553
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4554
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6375
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6400 |
|
Applikationen: |
Xen |
|
Originalnachricht |
Name : xen Product : Fedora 20 Version : 4.3.1 Release : 6.fc20 URL : http://xen.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor
------------------------------------------------------------------------------- - Update Information:
Disaggregated domain management security status update, IOMMU TLB flushing may be inadvertently suppressed Lock order reversal between page_alloc_lock and mm_rwlock, Hypercalls exposed to privilege rings 1 and 2 of HVM guests Insufficient TLB flushing in VT-d (iommu) code ------------------------------------------------------------------------------- - ChangeLog:
* Wed Dec 11 2013 Michael Young <m.a.young@durham.ac.uk> - 4.3.1-6 - Disaggregated domain management security status update [XSA-77] - IOMMU TLB flushing may be inadvertently suppressed [XSA-80, CVE-2013-6400] (#1040024) * Mon Dec 2 2013 Michael Young <m.a.young@durham.ac.uk> - 4.3.1-5 - HVM guest triggerable AMD CPU erratum may cause host hang [XSA-82, CVE-2013-6885] * Tue Nov 26 2013 Michael Young <m.a.young@durham.ac.uk> - 4.3.1-4 - Lock order reversal between page_alloc_lock and mm_rwlock [XSA-74, CVE-2013-4553] (#1034925) - Hypercalls exposed to privilege rings 1 and 2 of HVM guests [XSA-76, CVE-2013-4554] (#1034923) * Thu Nov 21 2013 Michael Young <m.a.young@durham.ac.uk> - 4.3.1-3 - Insufficient TLB flushing in VT-d (iommu) code [XSA-78, CVE-2013-6375] (#1033149) ------------------------------------------------------------------------------- - References:
[ 1 ] Bug #1035811 - CVE-2013-6400 xen: IOMMU TLB flushing may be inadvertently suppressed https://bugzilla.redhat.com/show_bug.cgi?id=1035811 [ 2 ] Bug #1029120 - CVE-2013-4553 kernel: xen: lock order reversal between page_alloc_lock and mm_rwlock https://bugzilla.redhat.com/show_bug.cgi?id=1029120 [ 3 ] Bug #1029111 - CVE-2013-4554 kernel: xen: hypercalls exposed to privilege rings 1 and 2 of HVM guests https://bugzilla.redhat.com/show_bug.cgi?id=1029111 [ 4 ] Bug #1033138 - CVE-2013-6375 xen: Insufficient TLB flushing in VT-d (iommu) code https://bugzilla.redhat.com/show_bug.cgi?id=1033138 ------------------------------------------------------------------------------- -
This update can be installed with the "yum" update program. Use su -c 'yum update xen' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys ------------------------------------------------------------------------------- - _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-announce
|
|
|
|