--------------------------------------------------------------------------------Fedora Update Notification
FEDORA-2017-f2577f2108
2017-12-12 13:48:05.815461
--------------------------------------------------------------------------------Name        : xen
Product     : Fedora 25
Version     : 4.7.4
Release     : 1.fc25
URL         : https://xenproject.org/
Summary     : Xen is a virtual machine monitor
Description :
This package contains the XenD daemon and xm command line
tools, needed to manage virtual machines running under the
Xen hypervisor

--------------------------------------------------------------------------------Update Information:

update to xen-4.7.4 update Source0 location  ----  fix an issue in patch for
[XSA-240, CVE-2017-15595] that might be a security issue fix for [XSA-243,
CVE-2017-15592] could cause hypervisor crash (DOS)
--------------------------------------------------------------------------------References:

  [ 1 ] Bug #1499823 - CVE-2017-15592 xsa243 xen: x86: Incorrect handling of self-linear shadow mappings with translated guests (XSA-243)
        https://bugzilla.redhat.com/show_bug.cgi?id=1499823
  [ 2 ] Bug #1499820 - CVE-2017-15595 xsa240 xen: Unlimited recursion in linear pagetable de-typing (XSA-240)
        https://bugzilla.redhat.com/show_bug.cgi?id=1499820
--------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade xen' at the command line.
For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora 25: xen Security Update 2017-f2577f2108

December 12, 2017
update to xen-4.7.4 update Source0 location ---- fix an issue in patch for [XSA-240, CVE-2017-15595] that might be a security issue fix for [XSA-243, CVE-2017-15592] could cause hy...

Summary

This package contains the XenD daemon and xm command line

tools, needed to manage virtual machines running under the

Xen hypervisor

update to xen-4.7.4 update Source0 location ---- fix an issue in patch for

[XSA-240, CVE-2017-15595] that might be a security issue fix for [XSA-243,

CVE-2017-15592] could cause hypervisor crash (DOS)

[ 1 ] Bug #1499823 - CVE-2017-15592 xsa243 xen: x86: Incorrect handling of self-linear shadow mappings with translated guests (XSA-243)

https://bugzilla.redhat.com/show_bug.cgi?id=1499823

[ 2 ] Bug #1499820 - CVE-2017-15595 xsa240 xen: Unlimited recursion in linear pagetable de-typing (XSA-240)

https://bugzilla.redhat.com/show_bug.cgi?id=1499820

su -c 'dnf upgrade xen' at the command line.

For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

FEDORA-2017-f2577f2108 2017-12-12 13:48:05.815461 Product : Fedora 25 Version : 4.7.4 Release : 1.fc25 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor update to xen-4.7.4 update Source0 location ---- fix an issue in patch for [XSA-240, CVE-2017-15595] that might be a security issue fix for [XSA-243, CVE-2017-15592] could cause hypervisor crash (DOS) [ 1 ] Bug #1499823 - CVE-2017-15592 xsa243 xen: x86: Incorrect handling of self-linear shadow mappings with translated guests (XSA-243) https://bugzilla.redhat.com/show_bug.cgi?id=1499823 [ 2 ] Bug #1499820 - CVE-2017-15595 xsa240 xen: Unlimited recursion in linear pagetable de-typing (XSA-240) https://bugzilla.redhat.com/show_bug.cgi?id=1499820 su -c 'dnf upgrade xen' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
Product : Fedora 25
Version : 4.7.4
Release : 1.fc25
URL : https://xenproject.org/
Summary : Xen is a virtual machine monitor

Related News