[Oraclevm-errata] OVMSA-2009-0001 Moderate: Oracle VM 2.1 xen security and bug fix update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Wed Feb 18 16:35:52 PST 2009


Oracle VM Security Advisory OVMSA-2009-0001

The following updated rpms for Oracle VM 2.1 have been uploaded to the 
Unbreakable Linux Network:

i386:
xen-3.1.4-0.1.29.el5.i386.rpm
xen-64-3.1.4-0.1.29.el5.noarch.rpm
xen-debugger-3.1.4-0.1.29.el5.noarch.rpm
xen-tools-3.1.4-0.1.29.el5.i386.rpm
xen-devel-3.1.4-0.1.29.el5.i386.rpm
xen-pvhvm-devel-3.1.4-0.1.29.el5.i386.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/SRPMS-updates/xen-3.1.4-0.1.29.el5.src.rpm


Description of changes:

[3.1.4-0.1.29.el5]
- Fix permissions problem with VM.GuestMetrics 
(zhigang.x.wang at oracle.com) [bugz 7265]

[3.1.4-0.1.28.el5]
- Disable ovs-disabled-create-netif-if-vif-type-set-ioemu.patch
- Include proper patch for bugz 7807

[3.1.4-0.1.27.el5]
- Implement VM.GuestMetrics to communicate info with guest OS
  (zhigang.x.wang at oracle.com) [bugz 7265]
- Support long command line (zhigang.x.wang at oracle.com) [bugz 7264]
- Fix bug in valid_object function in XendAPI.py 
(zhigang.x.wang at oracle.com) [bugz 7363]
- Update MAC address for HVM guest after live migration [bugz 7978] [bug 
7573550]
- Fix problem preventing guest from rebooting after migration [bugz 7807]

[3.1.4-0.1.26.el5]
- Fix guest hang when migrating HVM guests in parallel [bugz #7816] 
(zhigang.x.wang at oracle.com)
- Disable creating backend network device when vif type set ioemu [bugz 
#7592] (joe.jin at oracle.com

[3.1.4-0.1.25.el5]
- pull in cs18449 from xen-3.3-stable (jfehlig at novell.com)

[3.1.4-0.1.24.el5]
- fix invalid reference to XendDomain.VMROOT (kurt.hackel at oracle.com)

[3.1.4-0.1.23.el5]
- Updates from EL5U2 for CVE-2008-4405 and CVE-2008-4993 
(berrange at redhat.com)
- Fix unsafe use of xenstore data (CVE-2008-4405)
- Remove qemu-dm.debug wrapper script (CVE-2008-4993)
- Fix reboots after CVE-2008-4405 changes
- Fix block-detach regression due to (CVE-2008-4405)

[3.1.4-0.1.22.el5]
- make coredump-[destroy|restart] work through traditional domU config,
  back ported from xen unstable cs16989 (zhigang.x.wang at oracle.com) 
[bugz 7266]




More information about the Oraclevm-errata mailing list