ELSA-2009-0003

ELSA-2009-0003 - xen security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2009-01-07

Description



[3.0.3-64.el5_2.9]
- More fixes for Xenstore unsafe data access (CVE-2008-4405, rhbz #464817)
- Fix block-detach regression due to (CVE-2008-4405, rhbz #473882)

[3.0.3-64.el5_2.8]
- Remove unneccessary patch & rebuild

[3.0.3-64.el5_2.7]
- Fix reboots after CVE-2008-4405 changes (rhbz #471588)

[3.0.3-64.el5_2.6]
- Remove qemu-dm.debug wrapper script (CVE-2008-4993, rhbz #470795)

[3.0.3-64.el5_2.5]
- Fix unsafe use of xenstore data (CVE-2008-4405, rhbz #464817)

[3.0.3-64.el5_2.4]
- Don't clobber wallclock on restore (rhbz #464455)


Related CVEs


CVE-2008-4405
CVE-2008-4993

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) xen-3.0.3-64.el5_2.9.src.rpm62b24186e96c9a546626b2ef6c90f2acELSA-2016-2963
xen-3.0.3-64.el5_2.9.i386.rpm5c339c834b77c09989155d3d1ec663d1ELSA-2016-2963
xen-devel-3.0.3-64.el5_2.9.i386.rpm498093bba03557b4be580552626dc1b3ELSA-2016-2963
xen-libs-3.0.3-64.el5_2.9.i386.rpm37d0a02eda5c2f070446fbd253b97a65ELSA-2016-2963
Oracle Linux 5 (x86_64) xen-3.0.3-64.el5_2.9.src.rpm62b24186e96c9a546626b2ef6c90f2acELSA-2016-2963
xen-3.0.3-64.el5_2.9.x86_64.rpm43e48dc0702d87e614c3e6367dd0a5f6ELSA-2016-2963
xen-devel-3.0.3-64.el5_2.9.i386.rpm498093bba03557b4be580552626dc1b3ELSA-2016-2963
xen-devel-3.0.3-64.el5_2.9.x86_64.rpm4fae5a5267e0aae61dda2e290d33432dELSA-2016-2963
xen-libs-3.0.3-64.el5_2.9.i386.rpm37d0a02eda5c2f070446fbd253b97a65ELSA-2016-2963
xen-libs-3.0.3-64.el5_2.9.x86_64.rpm8d61490bc6d5107fc5c3ad98adbd4e22ELSA-2016-2963



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete