[Oraclevm-errata] OVMSA-2012-0058 Important: Oracle VM 2.2 xen security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Wed Dec 5 09:11:20 PST 2012


Oracle VM Security Advisory OVMSA-2012-0058

The following updated rpms for Oracle VM 2.2 have been uploaded to the 
Unbreakable Linux Network:

i386:
xen-3.4.0-0.1.44.el5.i386.rpm
xen-64-3.4.0-0.1.44.el5.noarch.rpm
xen-debugger-3.4.0-0.1.44.el5.noarch.rpm
xen-devel-3.4.0-0.1.44.el5.i386.rpm
xen-pvhvm-devel-3.4.0-0.1.44.el5.i386.rpm
xen-tools-3.4.0-0.1.44.el5.i386.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/2.2/SRPMS-updates/xen-3.4.0-0.1.44.el5.src.rpm



Description of changes:

[3.4.0-0.1.44]
XSA-27: hvm: Limit the size of large HVM op batches [orabug 15907978] 
{CVE-2012-5511}
XSA-29: add missing guest address range checks to XENMEM_exchange 
handlers [orabug 15907996] {CVE-2012-5513}
XSA-30: xen: fix error handling of 
guest_physmap_mark_populate_on_demand() [orabug 15908008] {CVE-2012-5514}
XSA-31: memop: limit guest specified extent order [orabug 15908028] 
{CVE-2012-5515}




More information about the Oraclevm-errata mailing list