* Update to new upstream version 4.11.1, which also contains:
- Fix: insufficient TLB flushing / improper large page mappings with AMD
IOMMUs
- XSA-275 (no CVE yet)
+ XSA-275 CVE-2018-19961 CVE-2018-19962
- Fix: resource accounting issues in x86 IOREQ server handling
- XSA-276 (no CVE yet)
+ XSA-276 CVE-2018-19963
- Fix: x86: incorrect error handling for guest p2m page removals
- XSA-277 (no CVE yet)
+ XSA-277 CVE-2018-19964
- Fix: x86: Nested VT-x usable even when disabled
XSA-278 CVE-2018-18883
- Fix: x86: DoS from attempting to use INVPCID with a non-canonical
addresses
- XSA-279 (no CVE yet)
+ XSA-279 CVE-2018-19965
- Fix for XSA-240 conflicts with shadow paging
- XSA-280 (no CVE yet)
+ XSA-280 CVE-2018-19966
- Fix: guest use of HLE constructs may lock up host
- XSA-282 (no CVE yet)
+ XSA-282 CVE-2018-19967
-- Hans van Kranenburg <hans@knorrie.org> Wed, 02 Jan 2019 20:59:40 +0100