[Bug 1396068] Re: [Xen/xl] dom0 needs to run qemu for qcow access

Launchpad Bug Tracker 1396068 at bugs.launchpad.net
Fri Nov 28 14:29:49 UTC 2014


This bug was fixed in the package xen - 4.4.1-3ubuntu2

---------------
xen (4.4.1-3ubuntu2) vivid; urgency=low

  * Applying Xen Security Advisories:
    - CVE-2014-8594 / XSA-109
      * x86: don't allow page table updates on non-PV page tables in
        do_mmu_update()
    - CVE-2014-8595 / XSA-110
      * x86emul: enforce privilege level restrictions when loading CS
    - CVE-2014-8866 / XSA-111
      * x86: limit checks in hypercall_xlat_continuation() to actual arguments
    - CVE-2014-8867 / XSA-112
      * x86/HVM: confine internally handled MMIO to solitary regions
    - CVE-2014-9030 / XSA-113
      * x86/mm: fix a reference counting error in MMU_MACHPHYS_UPDATE
  * Pulling in Debian change to start qemu in dom0 (LP: #1396068)
  * Picking up Debian change to recommend grub-xen-host from xen-utils.
  * Picking up Debian change to really include xen-init-name.
 -- Stefan Bader <stefan.bader at canonical.com>   Wed, 19 Nov 2014 13:47:12 +0100

** Changed in: xen (Ubuntu)
       Status: Triaged => Fix Released

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-8594

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-8595

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-8866

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-8867

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-9030

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to xen in Ubuntu.
https://bugs.launchpad.net/bugs/1396068

Title:
  [Xen/xl] dom0 needs to run qemu for qcow access

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/xen/+bug/1396068/+subscriptions



More information about the Ubuntu-server-bugs mailing list