xen (4.11.4+57-g41a822c392-1) buster-security; urgency=high
authorHans van Kranenburg <hans@knorrie.org>
Thu, 3 Dec 2020 12:56:29 +0000 (12:56 +0000)
committerHans van Kranenburg <hans@knorrie.org>
Thu, 3 Dec 2020 12:56:29 +0000 (12:56 +0000)
commita0ce13c0d08e7fee1e77f99113792aae9290bdc2
tree26f1bb84d2bfab14acbd7baaa7b38f9cce86d3db
parent77ea6735024b137af53874b93414196fa5a94b94
parent53862e176feb9841476d9728be68c203e400d0f0
xen (4.11.4+57-g41a822c392-1) buster-security; urgency=high

  * Update to new upstream version 4.11.4+57-g41a822c392, which also contains
    security fixes for the following issues:
    - x86: Race condition in Xen mapping code
      XSA-345 (CVE-2020-27672)
    - undue deferral of IOMMU TLB flushes
      XSA-346 (CVE-2020-27671)
    - unsafe AMD IOMMU page table updates
      XSA-347 (CVE-2020-27670)
    - x86 PV guest INVLPG-like flushes may leave stale TLB entries
      XSA-286 (CVE-2020-27674)
    - Information leak via power sidechannel
      XSA-351 (CVE-2020-28368)
    - stack corruption from XSA-346 change
      XSA-355 (CVE-2020-29040)

[dgit import unpatched xen 4.11.4+57-g41a822c392-1]
125 files changed:
debian/NEWS
debian/README.md
debian/changelog
debian/compat
debian/control
debian/control.md5sum
debian/copyright
debian/gitignore-old
debian/installsharedlibs
debian/libxen-V.bug-control.vsn-in
debian/libxen-dev.install
debian/libxencall1.install
debian/libxendevicemodel1.install
debian/libxenevtchn1.install
debian/libxenforeignmemory1.install
debian/libxengnttab1.install
debian/libxenmiscV.install.vsn-in
debian/libxenmiscV.lintian-overrides.vsn-in
debian/libxenstore3.0.install
debian/libxenstore3.0.symbols
debian/libxentoolcore1.install
debian/libxentoollog1.install
debian/not-installed
debian/patches/0001-docs-man-Fix-two-typos-detected-by-the-Debian-lintia.patch
debian/patches/0002-tools-xentrace-xenalyze-Fix-typos-detected-by-lintia.patch
debian/patches/0003-Various-Fix-typos-unkown-retreive-detected-by-lintia.patch
debian/patches/0004-Various-Fix-typo-occured.patch
debian/patches/0005-Various-Fix-typo-reseting.patch
debian/patches/0006-tools-python-xen-lowlevel-Fix-typo-sucess.patch
debian/patches/0007-Various-Fix-typo-infomation.patch
debian/patches/0008-Various-Fix-typo-mappping.patch
debian/patches/0009-tools-Rules.mk-Honour-PREPEND_LDFLAGS_XEN_TOOLS.patch
debian/patches/0010-INSTALL-Mention-kconfig.patch
debian/patches/0011-docs-man-Provide-properly-formatted-NAME-sections.patch
debian/patches/0012-docs-man-xen-pv-channel.pod.7-Remove-a-spurious-blan.patch
debian/patches/0013-tools-xenstat-Fix-shared-library-version.patch
debian/patches/0014-gdbsx-Honour-LDFLAGS-when-linking.patch
debian/patches/0015-libfsimage-Honour-general-LDFLAGS.patch
debian/patches/0016-pygrub-fsimage.so-Honour-LDFLAGS-when-building.patch
debian/patches/0017-xenmon-Install-as-xenmon-not-xenmon.py.patch
debian/patches/0018-tools-debugger-kdd-Install-as-xen-kdd-not-just-kdd.patch
debian/patches/0021-Delete-config.sub-and-config.guess.patch
debian/patches/0022-Delete-configure-output.patch
debian/patches/0023-xenpmd-make-32-bit-gcc-8.1-non-debug-build-work.patch
debian/patches/0024-tools-Move-ARRAY_SIZE-into-xen-tools-libs.h.patch
debian/patches/0025-libxl-arm-Fix-build-on-arm64-acpi-w-gcc-8.2.patch
debian/patches/0026-tools-kdd-mute-spurious-gcc-warning.patch
debian/patches/0029-Do-not-ship-COPYING-into-usr-include.patch
debian/patches/0033-Do-not-build-the-instruction-emulator.patch
debian/patches/0036-autoconf-Provide-libexec_libdir_suffix.patch
debian/patches/0037-.gitignore-Add-configure-output-which-we-always-dele.patch
debian/patches/0038-tools-firmware-Makfile-Respect-caller-s-CONFIG_PV_SH.patch
debian/patches/0039-shim-Provide-separate-install-shim-target.patch
debian/patches/0040-tools-firmware-Makefile-CONFIG_PV_SHIM-enable-only-o.patch
debian/patches/0041-docs-man-xen-vbd-interface.7-Provide-properly-format.patch
debian/patches/0042-Revert-tools-xenstore-compatibility.diff.patch
debian/patches/0043-Fix-empty-fields-in-first-hypervisor-log-line.patch
debian/patches/0044-vif-common-disable-handle_iptable.patch
debian/patches/0045-sysconfig.xencommons.in-Strip-and-debianize.patch
debian/patches/0046-hotplug-common-Do-not-adjust-LD_LIBRARY_PATH.patch
debian/patches/0047-pygrub-Set-sys.path.patch
debian/patches/0048-pygrub-Specify-rpath-LIBEXEC_LIB-when-building-fsima.patch
debian/patches/0049-tools-xl-bash-completion-also-complete-xen.patch
debian/patches/misc/tools-pygrub-remove-static-solaris-support
debian/patches/misc/tools-xenmon-install.diff
debian/patches/misc/toolstestsx86_emulator-pass--no-pie--fno.patch
debian/patches/misc/version.diff
debian/patches/prefix-abiname/config-prefix.diff
debian/patches/prefix-abiname/tools-libfsimage-abiname.diff
debian/patches/prefix-abiname/tools-libfsimage-prefix.diff
debian/patches/series
debian/patches/xenstore/tools-fake-xs-restrict.patch
debian/patches/xenstore/tools-xenstore-compatibility.diff
debian/pycompat
debian/rules
debian/scripts/Makefile
debian/scripts/qemu-ifup
debian/scripts/xen
debian/scripts/xen-dir
debian/scripts/xen-init-list
debian/scripts/xen-init-name
debian/scripts/xen-toolstack
debian/scripts/xen-toolstack-wrapper
debian/scripts/xen-utils-wrapper
debian/scripts/xen-version
debian/shuffle-binaries
debian/shuffle-boot-files
debian/source/format
debian/template-subst
debian/tree/xen-hypervisor-common/etc/default/grub.d/xen.cfg
debian/ucf-remove-fixup
debian/xen-doc.doc-base
debian/xen-doc.install
debian/xen-doc.links
debian/xen-doc.lintian-overrides
debian/xen-hypervisor-V-F.install.vsn-in
debian/xen-hypervisor-V-F.lintian-overrides.vsn-in
debian/xen-hypervisor-V-F.postinst.vsn-in
debian/xen-hypervisor-V-F.postrm
debian/xen-hypervisor-V.bug-control.vsn-in
debian/xen-hypervisor-V.postinst.vsn-in
debian/xen-hypervisor-V.postrm.vsn-in
debian/xen-hypervisor-common.install
debian/xen-kconfig
debian/xen-utils-V.README.Debian.vsn-in
debian/xen-utils-V.bug-control.vsn-in
debian/xen-utils-V.install.vsn-in
debian/xen-utils-V.lintian-overrides.vsn-in
debian/xen-utils-V.postinst.vsn-in
debian/xen-utils-V.prerm.vsn-in
debian/xen-utils-common.README.Debian
debian/xen-utils-common.dirs
debian/xen-utils-common.examples
debian/xen-utils-common.install
debian/xen-utils-common.links
debian/xen-utils-common.maintscript
debian/xen-utils-common.postinst
debian/xen-utils-common.postrm
debian/xen-utils-common.preinst
debian/xen-utils-common.ucf
debian/xen-utils-common.xen.init
debian/xen-utils-common.xendomains.default
debian/xen-utils-common.xendomains.init
debian/xenstore-utils.install
debian/xenstore-utils.lintian-overrides