[Oraclevm-errata] OVMSA-2015-0027 Important: Oracle VM 2.2 xen security update
Errata Announcements for Oracle VM
oraclevm-errata at oss.oracle.com
Fri Mar 6 04:23:01 PST 2015
Oracle VM Security Advisory OVMSA-2015-0027
The following updated rpms for Oracle VM 2.2 have been uploaded to the
Unbreakable Linux Network:
i386:
xen-3.4.0-0.2.21.el5.i386.rpm
xen-64-3.4.0-0.2.21.el5.noarch.rpm
xen-debugger-3.4.0-0.2.21.el5.noarch.rpm
xen-devel-3.4.0-0.2.21.el5.i386.rpm
xen-pvhvm-devel-3.4.0-0.2.21.el5.i386.rpm
xen-tools-3.4.0-0.2.21.el5.i386.rpm
SRPMS:
http://oss.oracle.com/oraclevm/server/2.2/SRPMS-updates/xen-3.4.0-0.2.21.el5.src.rpm
Description of changes:
[3.4.0-0.2.21]
- XSA-122: pre-fill structures for certain HYPERVISOR_xen_version
sub-ops (Jan Beulich) [20588670] {CVE-2015-2045]
[3.4.0-0.2.20]
- XSA-121: return all ones on wrong-sized reads of system device I/O
ports (Jan Beulich) [20588358] {CVE-2015-2044]
More information about the Oraclevm-errata
mailing list