[Bug 1741282] Re: spectre/meltdown: Updates planned for *-microcode and xen-hpyervisor?

Jan Kellermann jan.kellermann at werk21.de
Sun Mar 4 17:32:57 UTC 2018


The Patches against meltdown (Kaiser/PTI) for xen 4.6 are marked as stable:
https://xenbits.xenproject.org/gitweb/?p=xen.git;a=shortlog;h=refs/heads/stable-4.6

https://xenbits.xenproject.org/gitweb/?p=xen.git;a=commit;h=c6e9e6095669b3c63b92d21fddb326441c73712c
https://xenbits.xenproject.org/gitweb/?p=xen.git;a=commit;h=a065841b3ae9f0ef49b9823cd205c79ee0c22b9c
https://xenbits.xenproject.org/gitweb/?p=xen.git;a=commit;h=91dc902fdf41659c210329d6f6578f8132ee4770
https://xenbits.xenproject.org/gitweb/?p=xen.git;a=commit;h=44ad7f6895da9861042d7a41e635d42d83cb2660

See http://xenbits.xen.org/xsa/xsa254/README.pti

Will xen-hypervisor 4.6 (Ubuntu LTS Xenial) will get this patches?

Will xen-hypervisor 4.9 (Ubuntu LTS Bionic) get the patches for PVH, PVH
shim or HVM shim? Or do you plan to change to 4.10 for sustainability?

PVH seems the best solution. Will Ubuntu LTS Bionic support this ?

Thank you and best regards.

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to intel-microcode in Ubuntu.
https://bugs.launchpad.net/bugs/1741282

Title:
  spectre/meltdown: Updates planned for *-microcode and xen-hpyervisor?

Status in intel-microcode package in Ubuntu:
  Confirmed
Status in xen package in Ubuntu:
  Confirmed

Bug description:
  In cve-tracker for spectre/meltdown (https://people.canonical.com
  /~ubuntu-security/cve/2017/CVE-2017-5753.html
  https://people.canonical.com/~ubuntu-
  security/cve/2017/CVE-2017-5715.html https://people.canonical.com
  /~ubuntu-security/cve/2017/CVE-2017-5754.html) i am missing the xen-
  packages like xen-hypervisor. See
  https://xenbits.xen.org/xsa/advisory-254.html

  Are also updates for *-microcode-packages planned an some
  documentation?

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/intel-microcode/+bug/1741282/+subscriptions



More information about the foundations-bugs mailing list