xen (4.11.4+
57-g41a822c392-1) buster-security; urgency=high
* Update to new upstream version 4.11.4+
57-g41a822c392, which also contains
security fixes for the following issues:
- x86: Race condition in Xen mapping code
XSA-345 (CVE-2020-27672)
- undue deferral of IOMMU TLB flushes
XSA-346 (CVE-2020-27671)
- unsafe AMD IOMMU page table updates
XSA-347 (CVE-2020-27670)
- x86 PV guest INVLPG-like flushes may leave stale TLB entries
XSA-286 (CVE-2020-27674)
- Information leak via power sidechannel
XSA-351 (CVE-2020-28368)
- stack corruption from XSA-346 change
XSA-355 (CVE-2020-29040)
[dgit import unpatched xen 4.11.4+
57-g41a822c392-1]
Import xen_4.11.4+
57-g41a822c392.orig.tar.xz
[dgit import orig xen_4.11.4+
57-g41a822c392.orig.tar.xz]
Import xen_4.11.4+
57-g41a822c392-1.debian.tar.xz
[dgit import tarball xen 4.11.4+
57-g41a822c392-1 xen_4.11.4+
57-g41a822c392-1.debian.tar.xz]