x86: shadow stack vs exceptions from emulation stubs. (CVE-2023-46841) x86: Register File Data Sampling. (CVE-2023-28746) GhostRace: Speculative Race Conditions. (CVE-2024-2193) References: . MGASA-2024-0115 - Updated xen packages fix security vulnerabilities Publication date: 10 Apr 2024 URL: https://advisories.mageia.org/MGASA-2024-0115.html Type: security Affected Mageia releases: 9 CVE: CVE-2023-46841, CVE-2023-28746, CVE-2024-2193 x86: shadow stack vs exceptions from emulation stubs. (CVE-2023-46841) x86: Register File Data Sampling. (CVE-2023-28746) GhostRace: Speculative Race Conditions. (CVE-2024-2193) References: - https://bugs.mageia.org/show_bug.cgi?id=32905 - https://www.openwall.com/lists/oss-security/2024/02/27/2 - https://www.openwall.com/lists/oss-security/2024/03/12/13 - https://www.openwall.com/lists/oss-security/2024/03/12/14 - https://www.cve.org/CVERecord?id=CVE-2023-46841 - https://www.cve.org/CVERecord?id=CVE-2023-28746 - https://www.cve.org/CVERecord?id=CVE-2024-2193 SRPMS: - 9/core/xen-4.17.3-1.1.mga9 . Enhanced xen packages released to resolve significant security vulnerabilities in Mageia 9. Announcement date is April 10, 2024. Further information included.. Mageia Security Update, Xen Critical Advisory, Security Patch Mageia. . Severity: Critical. LinuxSecurity.com Team
x86: shadow stack vs exceptions from emulation stubs - [XSA-451, CVE-2023-46841] (#2266326). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-0da80aa623 2024-03-14 01:38:51.491768 -------------------------------------------------------------------------------- Name : xen Product : Fedora 38 Version : 4.17.2 Release : 7.fc38 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor -------------------------------------------------------------------------------- Update Information: x86: shadow stack vs exceptions from emulation stubs - [XSA-451, CVE-2023-46841] (#2266326) -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 27 2024 Michael Young - 4.17.2-7 - x86: shadow stack vs exceptions from emulation stubs - [XSA-451, CVE-2023-46841] (#2266326) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2266325 - CVE-2023-46841 xen: x86 shadow stack vs exceptions from emulation stubs https://bugzilla.redhat.com/show_bug.cgi?id=2266325 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-0da80aa623' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list--
x86: shadow stack vs exceptions from emulation stubs - [XSA-451, CVE-2023-46841] (#2266326). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-aca9ed1eb1 2024-03-14 01:07:19.210138 -------------------------------------------------------------------------------- Name : xen Product : Fedora 39 Version : 4.17.2 Release : 7.fc39 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor -------------------------------------------------------------------------------- Update Information: x86: shadow stack vs exceptions from emulation stubs - [XSA-451, CVE-2023-46841] (#2266326) -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 27 2024 Michael Young - 4.17.2-7 - x86: shadow stack vs exceptions from emulation stubs - [XSA-451, CVE-2023-46841] (#2266326) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2266325 - CVE-2023-46841 xen: x86 shadow stack vs exceptions from emulation stubs https://bugzilla.redhat.com/show_bug.cgi?id=2266325 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-aca9ed1eb1' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list--
Get the latest Linux and open source security news straight to your inbox.