OVMSA-2016-0012

OVMSA-2016-0012 - xen security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2016-02-12

Description


[3.4.0-0.2.25]
- XSA-125: Limit XEN_DOMCTL_memory_mapping hypercall to only process up to 64 GFNs (or less) (Jan Beulich) [20732412] {CVE-2015-2752}
- XSA-126: xen: limit guest control of PCI command register (Jan Beulich) [20739399] {CVE-2015-2756}
- XSA-128: xen: properly gate host writes of modified PCI CFG contents (Jan Beulich) [21157440] {CVE-2015-4103}
- XSA-129: xen: don't allow guest to control MSI mask register (Jan Beulich) [21158692] {CVE-2015-4104}
- XSA-130: xen/MSI-X: disable logging by default (Jan Beulich) [21159408] {CVE-2015-4105}
- XSA-131: [PATCH 1/8] xen/MSI: don't open-code pass-through of enable bit modifications (Jan Beulich) [21164529] {CVE-2015-4106}
- XSA-131: [PATCH 2/8] xen/pt: consolidate PM capability emu_mask [21164529] {CVE-2015-4106}
- XSA-131: [PATCH 3/8] xen/pt: correctly handle PM status bit [21164529] {CVE-2015-4106}
- XSA-131: [PATCH 4/8] xen/pt: split out calculation of throughable mask in PCI config space handling [21164529] {CVE-2015-4106}
- XSA-131: [PATCH 5/8] xen/pt: mark all PCIe capability bits read-only [21164529] {CVE-2015-4106}
- XSA-131: [PATCH 6/8] xen/pt: mark reserved bits in PCI config space fields [21164529] {CVE-2015-4106}
- XSA-131: [PATCH 7/8] xen/pt: add a few PCI config space field descriptions [21164529] {CVE-2015-4106}
- XSA-131: [PATCH 8/8] xen/pt: unknown PCI config space fields should be read-only [21164529] {CVE-2015-4106}


Related CVEs


CVE-2015-2756
CVE-2015-2752
CVE-2015-4103
CVE-2015-4104
CVE-2015-4105
CVE-2015-4106

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 2.2 (i386) xen-3.4.0-0.2.25.el5.src.rpm1ffb748ea9bc5da8c7f5def5cb9df9de-
xen-3.4.0-0.2.25.el5.i386.rpm79baa47f6c537a51dc9d229a6fd1f358-
xen-64-3.4.0-0.2.25.el5.noarch.rpm9d49a3f8f8913d9a24137c77b2bc9c2e-
xen-debugger-3.4.0-0.2.25.el5.noarch.rpmce80203c226bba0c9f06294bc130b003-
xen-devel-3.4.0-0.2.25.el5.i386.rpm0b0d8b34bb6714484d7c609d9bef8eef-
xen-pvhvm-devel-3.4.0-0.2.25.el5.i386.rpm3333b5d5f2881cc82014d5684d8854a2-
xen-tools-3.4.0-0.2.25.el5.i386.rpm66b621984e0343cade5017628a492f5f-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete