OVMBA-2019-0003

OVMBA-2019-0003 - xen bug fix update

Type:BUG
Impact:NA
Release Date:2019-02-04

Description


[4.4.4-155.0.68.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=1b24fac537efe5f5480fc77f771edb11bd308de1
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- tools/libxc: Expose X86_FEATURE_ARCH_CAPS to guests (Patrick Colp) [Orabug: 29292333]
- x86/spec-ctrl: Dont frob SPEC_CTRL MSR on idle if we have EIBRS (Patrick Colp) [Orabug: 29292333]
- x86/spec-ctrl: Enable enhanced IBRS and make it the default (Patrick Colp) [Orabug: 29292333]
- x86/spec-ctrl: Add functions for supporting enhanced IBRS (Patrick Colp) [Orabug: 29292333]

[4.4.4-155.0.67.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=c7a51043fd200a42af231cb82f19a2bd804731e4
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- retpoline: disable jump tables (Norbert Manthey) [Orabug: 29193117] {CVE-2017-5753}
- x86: assorted array_index_nospec() insertions (Jan Beulich) [Orabug: 29193117] {CVE-2017-5753}
- xen: Port the array_index_nospec() infrastructure from Linux (Andrew Cooper) [Orabug: 29193117] {CVE-2017-5753}

[4.4.4-155.0.66.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=8dccdd881e21695aeb33913094061c9497546950
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- x86/spec-ctrl: Dont mask off CPUID7.edx[31] (SSBD bit) (Boris Ostrovsky) [Orabug: 29139206]

[4.4.4-155.0.65.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=71ee395559ac03701ac2f090e82c928b6c2ce794
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- Red-tape: Update the repo with CVE for XSA-280 (Patrick Colp) [Orabug: 28945152] {CVE-2018-19966}
- Red-tape: Update the repo with CVE for XSA-279 (Patrick Colp) [Orabug: 28945119] {CVE-2018-19965}
- Red-tape: Update the repo with CVE for XSA-275 (Elena Ufimtseva) [Orabug: 28951148] {CVE-2018-19961}
- Red-tape: Update the repo with CVE XSA-282 (Ross Philipson) [Orabug: 28924128] {CVE-2018-19967}

[4.4.4-155.0.64.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=da5606738509aab67eb02e13b15c975ae2425b43
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- AMD/IOMMU: suppress PTE merging after initial table creation (Jan Beulich) [Orabug: 28951148]
- amd/iommu: fix flush checks (Roger Pau Monne) [Orabug: 28951148]
- xen: Fix determining when domain creation is complete (Andrew Cooper)
- x86/shadow: shrink struct page_infos shadow_flags to 16 bits (Jan Beulich) [Orabug: 28945152]
- x86/shadow: move OOS flag bit positions (Jan Beulich) [Orabug: 28945152]
- x86/mm: Dont perform flush after failing to update a guests L1e (Andrew Cooper) [Orabug: 28945119]

[4.4.4-155.0.63.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=a294b50358698ed212dc8f1bdbb7f5cf3351cb44
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- x86: work around HLE host lockup erratum (Jan Beulich) [Orabug: 28924128]
- x86: extend get_platform_badpages() interface (Jan Beulich) [Orabug: 28924128]

[4.4.4-155.0.62.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=159d3f21f493caa64718b0f43b9591cb3079009c
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- rebuild with new secureboot key [Orabug: 28900807]

[4.4.4-155.0.61.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=159d3f21f493caa64718b0f43b9591cb3079009c
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- xend: remove extraneous waitForDevices() call in soft_reset (Eric DeVolder) [Orabug: 28783430]
- xend: detect and correct race condition in DevController hotplug (Eric DeVolder) [Orabug: 28783430]

[4.4.4-155.0.60.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=67eb9ea16555eb3a827fa1bbfc7297115eed8bf5
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- xend: use DevController waitFor() methods for non-hotplug devices (Eric DeVolder)
- xend: mark appropriate DevController subclasses as not hotplug (Eric DeVolder) [Orabug: 28838569]

[4.4.4-155.0.59.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=3048fd22c26d095de82291de9018134b4c68294f
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- xend: prevent scrubbing stall during kexec soft_reset (Eric DeVolder) [Orabug: 28817482]

[4.4.4-155.0.58.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=8b7eb64047256b59d5fd3fdb3a05e2c989352082
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- xend: Properly wait for hot plug devices to complete (Eric DeVolder) [Orabug: 27338786] [Orabug: 27927358]
- xend: Mark vfb and vkbd devices as not hot plug (Eric DeVolder)

[4.4.4-155.0.57.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=4b6b4867ac0a5d97bfbd6cf4dde94c31e8a50f42
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- one-off build

[4.4.4-155.0.56.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=4b6b4867ac0a5d97bfbd6cf4dde94c31e8a50f42
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- xend: do not raise an exception if xc_domain_setsmt fails (Eric DeVolder) [Orabug: 28717409]

[4.4.4-155.0.55.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=687c20b5e9067641e09f7870fa248ab392386012
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- x86/EFI: further correct FPU state handling around runtime calls (Jan Beulich) [Orabug: 28735776]
- x86/EFI: fix FPU state handling around runtime calls (Jan Beulich) [Orabug: 28735776]

[4.4.4-155.0.54.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=a020f11d51785a57ee70b8273b7da392e8cffd08
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- Xend: Close race condition between python threads during kexec (Eric DeVolder) [Orabug: 28440062] [Orabug: 28748880]

[4.4.4-155.0.53.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=6b233578f5ce09d4beec9e97754321d5f13da836
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- xend: fix exceptions thrown in setTopology() (Eric DeVolder) [Orabug: 28717409]
- Revert 'x86/EFI: fix FPU state handling around runtime calls' (Ross Philipson) [Orabug: 28735776]
- Revert 'x86/EFI: further correct FPU state handling around runtime calls' (Ross Philipson) [Orabug: 28735776]

[4.4.4-155.0.52.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=a65957cb5342221720e7a6dd89a081631db75289
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- vnuma: check cpus option is suitable for vnuma (Elena Ufimtseva) [Orabug: 28632335]

[4.4.4-155.0.51.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=962c2c7bd087f5fa6ed3971e59c3b34b761ba105
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- x86/spec-ctrl: command line handling adjustments (Jan Beulich) [Orabug: 28696342]
- x86/HVM: dont cause #NM to be raised in Xen (Jan Beulich) [Orabug: 28696342]
- x86/EFI: further correct FPU state handling around runtime calls (Jan Beulich) [Orabug: 28696342]
- x86/EFI: fix FPU state handling around runtime calls (Jan Beulich) [Orabug: 28696342]

[4.4.4-155.0.50.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=47eb65bf41acb5de51b26ac7149fb2ffaf8cf26c
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- Xend: Add support for changing backend vbd device (Bhavesh Davda) [Orabug: 28688170]

[4.4.4-155.0.49.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=deddf994efb7b742ed9bc83478892163448c0623
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- vnuma: dont fail guest creation when cpus are defined incorrectly (Elena Ufimtseva) [Orabug: 28632335]
- xend: fix migration code path for XendDomainInfo memory leakage (Manjunath Patil) [Orabug: 28294063]
- xend: fix memory leak of XendDomainInfo attributes (Manjunath Patil)

[4.4.4-155.0.48.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=9876b869fa5d650b4352a161d9956e43d8a2c2ca
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- intel/microcode: Synchronize update signature (Boris Ostrovsky) [Orabug: 28610312]

[4.4.4-155.0.47.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=6cb2b10c6652066e87dedba104a963189b8f5705
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- x86/vtx: Fix the checking for unknown/invalid MSR_DEBUGCTL bits (Andrew Cooper) [Orabug: 28432092] {CVE-2018-15468}

[4.4.4-155.0.46.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=37c139ca51ded61f1aa064d0718643054cdb852a
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- x86/spectre: Fix SPEC_CTRL_ENTRY_FROM_INTR_IST macro (Boris Ostrovsky) [Orabug: 28537443]

[4.4.4-155.0.45.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=016c69c5931e1e93ee2271fc6ba83f274023ad6c
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- x86/microcode: Synchronize late microcode loading (Boris Ostrovsky) [Orabug: 28526227]
- Revert 'microcode: pin the sibling while updating microcode on a core' (Boris Ostrovsky) [Orabug: 28526227]

[4.4.4-155.0.44.el6]
- BUILDINFO: OVMF commit=173bf5c847e3ca8b42c11796ce048d8e2e916ff8
- BUILDINFO: xen commit=6b194035640b39c1a49372c0412f92d6ccfe2071
- BUILDINFO: QEMU upstream commit=8bff6989bd0bafcc0ddf859c23ce6a2ff21a80ff
- BUILDINFO: QEMU traditional commit=346fdd7edd73f8287d0d0a2bab9c67b71bc6b8ba
- BUILDINFO: IPXE commit=9a93db3f0947484e30e753bbd61a10b17336e20e
- BUILDINFO: SeaBIOS commit=7d9cbe613694924921ed1a6f8947d711c5832eee
- microcode: pin the sibling while updating microcode on a core (Boris Ostrovsky) [Orabug: 28518195]




Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3.4 (x86_64) xen-4.4.4-155.0.68.el6.src.rpm405016dcf5a7ddc06d1ca7e32a652821e4ed2ba68aebd08127b541e947c1dab9OVMBA-2024-0012ovm34_x86_64_latest
xen-4.4.4-155.0.68.el6.x86_64.rpmf1ab065ea94d90c5301f9fc12fec0743e434fcf746315ba8266ad74414ffe13bOVMBA-2024-0012ovm34_x86_64_latest
xen-tools-4.4.4-155.0.68.el6.x86_64.rpm99836c49cf2f4c7ac6f6c58170a3ed32117de15b14802c8aecdd09b926fb0631OVMBA-2024-0012ovm34_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete