[Oraclevm-errata] OVMSA-2015-0027 Important: Oracle VM 2.2 xen security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Fri Mar 6 04:23:01 PST 2015


Oracle VM Security Advisory OVMSA-2015-0027

The following updated rpms for Oracle VM 2.2 have been uploaded to the 
Unbreakable Linux Network:

i386:
xen-3.4.0-0.2.21.el5.i386.rpm
xen-64-3.4.0-0.2.21.el5.noarch.rpm
xen-debugger-3.4.0-0.2.21.el5.noarch.rpm
xen-devel-3.4.0-0.2.21.el5.i386.rpm
xen-pvhvm-devel-3.4.0-0.2.21.el5.i386.rpm
xen-tools-3.4.0-0.2.21.el5.i386.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/2.2/SRPMS-updates/xen-3.4.0-0.2.21.el5.src.rpm



Description of changes:

[3.4.0-0.2.21]
- XSA-122: pre-fill structures for certain HYPERVISOR_xen_version 
sub-ops (Jan Beulich) [20588670] {CVE-2015-2045]

[3.4.0-0.2.20]
- XSA-121: return all ones on wrong-sized reads of system device I/O 
ports (Jan Beulich) [20588358] {CVE-2015-2044]



More information about the Oraclevm-errata mailing list