Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":550,"type":"x","order":1,"pct":78.57,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.29,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 24: 2017-c9d71f0860 Critical: Xen Guest Breakout and Memory Issues

xen: various flaws (#1447345) x86: 64bit PV guest breakout via pagetable use- after-mode-change [XSA-213] grant transfer allows PV guest to elevate privileges [XSA-214] possible memory corruption via failsafe callback [XSA-215]. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-c9d71f0860 2017-05-14 20:15:03.388249 --------------------------------------------------------------------------------Name : xen Product : Fedora 24 Version : 4.6.5 Release : 6.fc24 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor --------------------------------------------------------------------------------Update Information: xen: various flaws (#1447345) x86: 64bit PV guest breakout via pagetable use-after-mode-change [XSA-213] grant transfer allows PV guest to elevate privileges [XSA-214] possible memory corruption via failsafe callback [XSA-215] --------------------------------------------------------------------------------References: [ 1 ] Bug #1443220 - CVE-2017-8905 xsa215 xen: possible memory corruption via failsafe callback (XSA-215) https://bugzilla.redhat.com/show_bug.cgi?id=1443220 [ 2 ] Bug #1443222 - CVE-2017-8903 xsa213 xen: x86: 64bit PV guest breakout via pagetable use-after-mode-change (XSA-213) https://bugzilla.redhat.com/show_bug.cgi?id=1443222 [ 3 ] Bug #1443223 - CVE-2017-8904 xsa214 xen: grant transfer allows PV guest to elevate privileges (XSA-214) https://bugzilla.redhat.com/show_bug.cgi?id=1443223 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade xen' at the command line. For more information, refer to the dnf documentation availableat https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Upgrade Fedora 24 with xen: Address memory errors and guest escape threats from alert 2017-c9d71f0860.. Fedora Update, Xen Hypervisor, Memory Issues, Security Notification, Virtualization. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 15, 2017 Critical Fedora
89

Fedora 25: 2017-5ae70ac6a5 Critical Privilege Elevation in Xen

xen: various flaws (#1447345) x86: 64bit PV guest breakout via pagetable use- after-mode-change [XSA-213] grant transfer allows PV guest to elevate privileges [XSA-214]. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-5ae70ac6a5 2017-05-12 04:05:28.497585 --------------------------------------------------------------------------------Name : xen Product : Fedora 25 Version : 4.7.2 Release : 6.fc25 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor --------------------------------------------------------------------------------Update Information: xen: various flaws (#1447345) x86: 64bit PV guest breakout via pagetable use-after-mode-change [XSA-213] grant transfer allows PV guest to elevate privileges [XSA-214] --------------------------------------------------------------------------------References: [ 1 ] Bug #1443222 - xsa213 xen: x86: 64bit PV guest breakout via pagetable use-after-mode-change (XSA-213) https://bugzilla.redhat.com/show_bug.cgi?id=1443222 [ 2 ] Bug #1443223 - xsa214 xen: grant transfer allows PV guest to elevate privileges (XSA-214) https://bugzilla.redhat.com/show_bug.cgi?id=1443223 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade xen' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Critical Fedora 25 Security Patch: resolves xen flaws ensuring your virtualization infrastructure remains protected. Fedora 25 Security Update,xen Virtualization Issues,Privilege Escalation in Xen,Guest Breakout Vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 12, 2017 Critical Fedora
89

Fedora 26: 2017-77ca39d254 Severe: Xen Security Flaws Fix Overview

xen: various flaws (#1447345) x86: 64bit PV guest breakout via pagetable use- after-mode-change [XSA-213] grant transfer allows PV guest to elevate privileges [XSA-214]. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-77ca39d254 2017-05-08 14:18:31.664425 --------------------------------------------------------------------------------Name : xen Product : Fedora 26 Version : 4.8.1 Release : 2.fc26 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor --------------------------------------------------------------------------------Update Information: xen: various flaws (#1447345) x86: 64bit PV guest breakout via pagetable use-after-mode-change [XSA-213] grant transfer allows PV guest to elevate privileges [XSA-214] --------------------------------------------------------------------------------References: [ 1 ] Bug #1443222 - xsa213 xen: x86: 64bit PV guest breakout via pagetable use-after-mode-change (XSA-213) https://bugzilla.redhat.com/show_bug.cgi?id=1443222 [ 2 ] Bug #1443223 - xsa214 xen: grant transfer allows PV guest to elevate privileges (XSA-214) https://bugzilla.redhat.com/show_bug.cgi?id=1443223 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade xen' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Fedora 26 enhances system security by implementing Xen security patches that rectify privilege escalation vulnerabilities and guest breakout issues.. Fedora Xen Security, Guest Breakout Flaw, Privilege Escalation Fix, Security Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 08, 2017 Important Fedora
89

Fedora 25: 2017-054729ab08 Critical: Xen Memory Leakage and Breakout

Qemu: 9pfs: host memory leakage via v9fs_create [CVE-2017-7377] (#1437873) x86: broken check in memory_exchange() permits PV guest breakout [XSA-212, CVE-2017-7228] (#1438804). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-054729ab08 2017-04-08 21:44:40.561326 -------------------------------------------------------------------------------- Name : xen Product : Fedora 25 Version : 4.7.2 Release : 5.fc25 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor -------------------------------------------------------------------------------- Update Information: Qemu: 9pfs: host memory leakage via v9fs_create [CVE-2017-7377] (#1437873) x86: broken check in memory_exchange() permits PV guest breakout [XSA-212, CVE-2017-7228] (#1438804) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1437871 - CVE-2017-7377 Qemu: 9pfs: host memory leakage via v9fs_create https://bugzilla.redhat.com/show_bug.cgi?id=1437871 [ 2 ] Bug #1434741 - CVE-2017-7228 xsa212 xen: x86: broken check in memory_exchange() permits PV guest breakout (XSA-212) https://bugzilla.redhat.com/show_bug.cgi?id=1434741 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade xen' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Uncover the Fedora 25 xen security patch targeting issues of host memory leaks and guest escape threats.. Fedora Security Update,Xen Hypervisor,Memory Leak,Open Source Security. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 09, 2017 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":550,"type":"x","order":1,"pct":78.57,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.29,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here