Rebuilt for Python 3.14.0rc3 bytecode Mutiple vulnerabilities in the Viridian interface [XSA-472, CVE-2025-27466, CVE-2025-58142, CVE-2025-58143] Arm issues with page refcounting [XSA-473, CVE-2025-58144, CVE-2025-58145]. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-873ad6df70 2025-10-03 00:14:50.085799+00:00 -------------------------------------------------------------------------------- Name : xen Product : Fedora 43 Version : 4.20.1 Release : 6.fc43 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor -------------------------------------------------------------------------------- Update Information: Rebuilt for Python 3.14.0rc3 bytecode Mutiple vulnerabilities in the Viridian interface [XSA-472, CVE-2025-27466, CVE-2025-58142, CVE-2025-58143] Arm issues with page refcounting [XSA-473, CVE-2025-58144, CVE-2025-58145] -------------------------------------------------------------------------------- ChangeLog: * Fri Sep 19 2025 Python Maint - 4.20.1-6 - Rebuilt for Python 3.14.0rc3 bytecode * Wed Sep 10 2025 Michael Young - 4.20.1-5 - Mutiple vulnerabilities in the Viridian interface [XSA-472, CVE-2025-27466, CVE-2025-58142, CVE-2025-58143] - Arm issues with page refcounting [XSA-473, CVE-2025-58144, CVE-2025-58145] * Tue Sep 2 2025 Michael Young - 4.20.1-4 - tools/xl: don't crash on NULL command line -------------------------------------------------------------------------------- References: [ 1 ] Bug #2397373 - xen: Please build in Fedora 43 https://bugzilla.redhat.com/show_bug.cgi?id=2397373 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2025-873ad6df70' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Mutiple vulnerabilities in the Viridian interface [XSA-472, CVE-2025-27466, CVE-2025-58142, CVE-2025-58143] Arm issues with page refcounting [XSA-473, CVE-2025-58144, CVE-2025-58145]. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-7a1f93f58a 2025-09-19 01:37:20.892560+00:00 -------------------------------------------------------------------------------- Name : xen Product : Fedora 42 Version : 4.19.3 Release : 4.fc42 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor -------------------------------------------------------------------------------- Update Information: Mutiple vulnerabilities in the Viridian interface [XSA-472, CVE-2025-27466, CVE-2025-58142, CVE-2025-58143] Arm issues with page refcounting [XSA-473, CVE-2025-58144, CVE-2025-58145] -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 15 2025 Michael Young - 4.19.3-4 - Mutiple vulnerabilities in the Viridian interface [XSA-472, CVE-2025-27466, CVE-2025-58142, CVE-2025-58143] - Arm issues with page refcounting [XSA-473, CVE-2025-58144, CVE-2025-58145] -------------------------------------------------------------------------------- References: [ 1 ] Bug #2395132 - CVE-2025-58145 xen: Arm issues with page refcounting [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2395132 [ 2 ] Bug #2395134 - CVE-2025-58144 xen: Arm issues with page refcounting [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2395134 [ 3 ] Bug #2395158 - CVE-2025-58142 xen: NULL pointer dereference by assuming the SIM page is mapped when a synthetic timer message has to be delivered [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2395158 [ 4 ] Bug#2395160 - CVE-2025-58143 xen: race condition when the mapping of the reference TSC page [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2395160 [ 5 ] Bug #2395162 - CVE-2025-27466 xen: A NULL pointer dereference in the updating of the reference TSC area [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2395162 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-7a1f93f58a' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.