[ubuntu/trusty-updates] xen 4.4.2-0ubuntu0.14.04.14 (Accepted)
Ubuntu Archive Robot
cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Mon Oct 16 13:28:27 UTC 2017
xen (4.4.2-0ubuntu0.14.04.14) trusty-security; urgency=medium
* Applying Xen Security Advisories:
- CVE-2017-14316 / XSA-231
- xen/mm: make sure node is less than MAX_NUMNODES
- CVE-2017-14317 / XSA-233
- tools/xenstore: dont unlink connection object twice
- CVE-2017-14319 / XSA-234
- gnttab: also validate PTE permissions upon destroy/replace
- XSA-235
- arm/mm: release grant lock on xenmem_add_to_physmap_one() error paths
- XSA-237
- x86: don't allow MSI pIRQ mapping on unowned device
- x86: enforce proper privilege when (un)mapping pIRQ-s
- x86/MSI: disallow redundant enabling
- x86/MSI: fix error handling
- x86/IRQ: conditionally preserve irq <-> pirq mapping on map error
paths
- x86/FLASK: fix unmap-domain-IRQ XSM hook
- XSA-239
- x86/HVM: prefill partially used variable on emulation paths
- XSA-240
- x86: limit linear page table use to a single level
- x86/mm: Disable PV linear pagetables by default
- XSA-241
- x86: don't store possibly stale TLB flush time stamp
- XSA-242
- x86: don't allow page_unlock() to drop the last type reference
- XSA-243
- x86: Disable the use of auto-translated PV guestsx86: Disable the use
of auto-translated PV guests
- x86/shadow: Don't create self-linear shadow mappings for 4-level
translated guests
- XSA-244
- x86/cpu: Fix IST handling during PCPU bringup
xen (4.4.2-0ubuntu0.14.04.13) trusty-security; urgency=medium
* Applying Xen Security Advisories:
- XSA-226 / CVE-2017-12135
- gnttab: don't use possibly unbounded tail calls
- gnttab: fix transitive grant handling
- XSA-227 / CVE-2017-12137
- x86/grant: Disallow misaligned PTEs
- XSA-230 / CVE-2017-12855
- gnttab: correct pin status fixup for copy
Date: 2017-10-13 15:45:42.443900+00:00
Changed-By: Stefan Bader <stefan.bader at canonical.com>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/+source/xen/4.4.2-0ubuntu0.14.04.14
-------------- next part --------------
Sorry, changesfile not available.
More information about the Trusty-changes
mailing list