-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 01 Oct 2020 14:50:58 +0200 Source: xen Binary: libxen-dev libxencall1 libxencall1-dbgsym libxendevicemodel1 libxendevicemodel1-dbgsym libxenevtchn1 libxenevtchn1-dbgsym libxenforeignmemory1 libxenforeignmemory1-dbgsym libxengnttab1 libxengnttab1-dbgsym libxenmisc4.11 libxenmisc4.11-dbgsym libxenstore3.0 libxenstore3.0-dbgsym libxentoolcore1 libxentoolcore1-dbgsym libxentoollog1 libxentoollog1-dbgsym xen-doc xen-hypervisor-4.11-amd64 xen-hypervisor-common xen-system-amd64 xen-utils-4.11 xen-utils-4.11-dbgsym xen-utils-common xen-utils-common-dbgsym xenstore-utils xenstore-utils-dbgsym Architecture: source amd64 all Version: 4.11.4+37-g3263f257ca-1 Distribution: buster-security Urgency: high Maintainer: Debian Xen Team <pkg-xen-devel@lists.alioth.debian.org> Changed-By: Hans van Kranenburg <hans@knorrie.org> Description: libxen-dev - Public headers and libs for Xen libxencall1 - Xen runtime library - libxencall libxendevicemodel1 - Xen runtime libraries - libxendevicemodel libxenevtchn1 - Xen runtime libraries - libxenevtchn libxenforeignmemory1 - Xen runtime libraries - libxenforeignmemory libxengnttab1 - Xen runtime libraries - libxengnttab libxenmisc4.11 - Xen runtime libraries - miscellaneous, versioned ABI libxenstore3.0 - Xen runtime libraries - libxenstore libxentoolcore1 - Xen runtime libraries - libxentoolcore libxentoollog1 - Xen runtime libraries - libxentoollog xen-doc - XEN documentation xen-hypervisor-4.11-amd64 - Xen Hypervisor on AMD64 xen-hypervisor-common - Xen Hypervisor - common files xen-system-amd64 - Xen System on AMD64 (metapackage) xen-utils-4.11 - XEN administrative tools xen-utils-common - Xen administrative tools - common files xenstore-utils - Xenstore command line utilities for Xen Changes: xen (4.11.4+37-g3263f257ca-1) buster-security; urgency=high . * Update to new upstream version 4.11.4+37-g3263f257ca, which also contains security fixes for the following issues: - x86 pv: Crash when handling guest access to MSR_MISC_ENABLE XSA-333 CVE-2020-25602 - race when migrating timers between x86 HVM vCPU-s XSA-336 CVE-2020-25604 - PCI passthrough code reading back hardware registers XSA-337 CVE-2020-25595 - once valid event channels may not turn invalid XSA-338 CVE-2020-25597 - x86 pv guest kernel DoS via SYSENTER XSA-339 CVE-2020-25596 - Missing memory barriers when accessing/allocating an event channel XSA-340 CVE-2020-25603 - out of bounds event channels available to 32-bit x86 domains XSA-342 CVE-2020-25600 - races with evtchn_reset() XSA-343 CVE-2020-25599 - lack of preemption in evtchn_reset() / evtchn_destroy() XSA-344 CVE-2020-25601 * Note that with this update, we will be detaching the Buster updates from the Xen version in Debian unstable, which will get a newer Xen version RSN. Checksums-Sha1: ebf28ed025a12404a923a9764e132ab7039ac71c 4082 xen_4.11.4+37-g3263f257ca-1.dsc 3c37c0c14b7260ca60efa7cb5a5e379925f6583b 4250380 xen_4.11.4+37-g3263f257ca.orig.tar.xz cee0f9a877cf9ae42418a506c9882568b6a12f79 134416 xen_4.11.4+37-g3263f257ca-1.debian.tar.xz fd961bd54a72f08f5acb0bbe723469491d412f28 722892 libxen-dev_4.11.4+37-g3263f257ca-1_amd64.deb 60c6846dc9494963a6a10bfbdf2e23d79ed425fa 13620 libxencall1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 6768e3a8bd81870f35aff1cab56d7193420ca739 34328 libxencall1_4.11.4+37-g3263f257ca-1_amd64.deb 7abf3aabb10604f7f7675890f9ccee43a202a0e1 17892 libxendevicemodel1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb f4f272ab09a598d2ba3c85a77e947c7e4463456a 35356 libxendevicemodel1_4.11.4+37-g3263f257ca-1_amd64.deb ff8c7f06df49d4a6a94c5dcfd11f1f5563f32d7b 8420 libxenevtchn1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 1f3fac2dfea4925af0c1ce67355e360eb35ed332 32912 libxenevtchn1_4.11.4+37-g3263f257ca-1_amd64.deb 774e07e6f81b159310cbb04ca1c43efb7cfccf8b 12496 libxenforeignmemory1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb f8f116e4be7a916b97f365125384462c2696611d 34784 libxenforeignmemory1_4.11.4+37-g3263f257ca-1_amd64.deb 2f6a43fe0ac2c1cc84b0fcec2421c8431ee192e6 14412 libxengnttab1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 45454b1643578a422da56f9a3fd811bdcfab6db6 34656 libxengnttab1_4.11.4+37-g3263f257ca-1_amd64.deb 197286fc9581e16c3b0092d7da718d16cdf9f316 2275832 libxenmisc4.11-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 3993c5f6e04b2b5bc166b1c429ab89f00192e21c 469200 libxenmisc4.11_4.11.4+37-g3263f257ca-1_amd64.deb d71231e0f5dc782a47b9ad3f283da09ea1543576 33724 libxenstore3.0-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb c0252da8c90d1cf8cee30c792aec804bccd24b3c 41772 libxenstore3.0_4.11.4+37-g3263f257ca-1_amd64.deb 3d5a6568f557278d5cd7fb2307dfae0fbe7dc8c6 5124 libxentoolcore1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 13be7edbd6da08180ff3ae21f4a885e622dcc456 32368 libxentoolcore1_4.11.4+37-g3263f257ca-1_amd64.deb 8fd68f3fea8358b1937577cf0ed557e05d2ba15e 11332 libxentoollog1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb fae03eb91bf5ef1323fddb5f1266c279b49159f0 34184 libxentoollog1_4.11.4+37-g3263f257ca-1_amd64.deb d05afe7b0fe6e17ed302c8430ebe73a4ef4634c9 434076 xen-doc_4.11.4+37-g3263f257ca-1_amd64.deb 9f8ff8b28963a489d36d3ef0fd272cf683ad2832 15035268 xen-hypervisor-4.11-amd64_4.11.4+37-g3263f257ca-1_amd64.deb 0ab2a21d8ed8656417bcb47d4ec781d38b036b05 32184 xen-hypervisor-common_4.11.4+37-g3263f257ca-1_all.deb d7981b194d69d5b1bdeb6c85200a6155d64df109 30320 xen-system-amd64_4.11.4+37-g3263f257ca-1_amd64.deb 0004efa217c7f4b34f60cd9a65f302341cf3af7e 1060068 xen-utils-4.11-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb f3d47db9c634aba0829ab12f4c194834c1b4a978 7119500 xen-utils-4.11_4.11.4+37-g3263f257ca-1_amd64.deb 92b205cbf51ace1ae2d31bd474a053e8ae9edb45 259636 xen-utils-common-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 97954b7968521c28e52cb7e84c4bfdda8c459e54 275524 xen-utils-common_4.11.4+37-g3263f257ca-1_amd64.deb 67ece1bfc841bea57424aeea71035c22541772c2 18098 xen_4.11.4+37-g3263f257ca-1_amd64.buildinfo 0b58a2782d858cee0c2503afb3cf4f28f1279f01 19864 xenstore-utils-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 5c400dd6d3ba0d84b0ae63379d1105beea475b2e 45540 xenstore-utils_4.11.4+37-g3263f257ca-1_amd64.deb Checksums-Sha256: 38a2e713017efb3d78c4723f091d7d75a9a90e321bbb0b8113e6bc55708edc26 4082 xen_4.11.4+37-g3263f257ca-1.dsc 4c28f0c60676be2bf988230fa55d7071755549b229149213b175f4c1ab6e45bc 4250380 xen_4.11.4+37-g3263f257ca.orig.tar.xz fe2f21eb4470d7516f754ad5fdb53d1df8fe74682eadaf6168803eac02cffb35 134416 xen_4.11.4+37-g3263f257ca-1.debian.tar.xz e2b23def98a7e6b1bbe0d8d0bbe2215b84fc54b480f5ea92e8ae9a923b685776 722892 libxen-dev_4.11.4+37-g3263f257ca-1_amd64.deb 2eebc570da6dcb1a30a766ea6a492733ec376f69c73172350b956333e67bd129 13620 libxencall1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb dab6ea5aa59fe60310f9c704af939afefb0cba8cb9275aca0a7e876cd3dfd190 34328 libxencall1_4.11.4+37-g3263f257ca-1_amd64.deb 2a156271c5b00fcbca70dcdaee90f87169a5bc9a44780c672997286f1d27c006 17892 libxendevicemodel1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 2d68098e2768773aca26ec79e45302d3560ee095cc59e3511e00a82ee38af47c 35356 libxendevicemodel1_4.11.4+37-g3263f257ca-1_amd64.deb 50ca70a3679122826b0b3d3bf2542f662b0669157b66623f4d6154b14f3e9334 8420 libxenevtchn1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 0b5737f40569f7e65c3140e97b73d89d52db59b4d6ee191bedfd616b20390b45 32912 libxenevtchn1_4.11.4+37-g3263f257ca-1_amd64.deb 5a4c060ee8926b6b73c25d07ba37383975ddeba90ed39d4965ee0072f12bd26a 12496 libxenforeignmemory1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 9379f7032a2d0e4a2c64136e65d986422106c8ef14f699a23bfd970a2e0e782a 34784 libxenforeignmemory1_4.11.4+37-g3263f257ca-1_amd64.deb c9dc1e58cc91815ba50d592517148fe432807ebd947636fe9cd75e18b4812ae0 14412 libxengnttab1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb d3209c8dbcc92069fd27c9c22c7aef9d51e7d0b23b34411a02c3cd6dbe974ac6 34656 libxengnttab1_4.11.4+37-g3263f257ca-1_amd64.deb b74c83614b839b494c5bfbc3a4fe1372d8a37ab630ccc9d5c86c48b8c5cae5bc 2275832 libxenmisc4.11-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb bd22e93d2820df7ff68d95a176e5a56c999dbd3603057290df67dd468a2b063a 469200 libxenmisc4.11_4.11.4+37-g3263f257ca-1_amd64.deb 04b4c9934293c7cb4c55fa5a851e791d76f2d033479a364fd8d246c2e5a33ab2 33724 libxenstore3.0-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 71f308f77da0128d8c75121e312b90f6bc71ef634e00f12aeb621a49c7659fd6 41772 libxenstore3.0_4.11.4+37-g3263f257ca-1_amd64.deb 507060cd0c7e418208d0c90ee0613af087eec004281d5fd4d2a760f5d26259b4 5124 libxentoolcore1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 11ce36278ea5c6b64d8406839461ba81c04cb9bb3ed2faf543814791b2120510 32368 libxentoolcore1_4.11.4+37-g3263f257ca-1_amd64.deb efebdb1ac707b60d70b1e87603ca075818b4ba1de3ed750f33a47ba2c9348ec9 11332 libxentoollog1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 7e53afbd9284728de47635ea7980b993837766b100367dc03084a8b83d4e2d1c 34184 libxentoollog1_4.11.4+37-g3263f257ca-1_amd64.deb 3bb13805627d8f0c771143b3fdca1791567572dc59a6747f86aaaa10a5af8a4a 434076 xen-doc_4.11.4+37-g3263f257ca-1_amd64.deb cf5f03c6f300436672169a7f7b36ea4ad6641750fb66d2c91505fa744b5ead86 15035268 xen-hypervisor-4.11-amd64_4.11.4+37-g3263f257ca-1_amd64.deb 1dccba2ec7f8bcbf0a18fa40d50d23f5fc4e11b1170dc2b42a462311509f06c3 32184 xen-hypervisor-common_4.11.4+37-g3263f257ca-1_all.deb 2b221c97321d6f0285cb19f1c2350a3104206b4fe869118e722500b9fccb0f29 30320 xen-system-amd64_4.11.4+37-g3263f257ca-1_amd64.deb 98c90aab124f9ea16213e02a3b3933069f857003d0afe50d4ce9b287cd3cb4e5 1060068 xen-utils-4.11-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 02db810a0df2274bb8fa93f741079a5f15db3321f9b20a4845490ec66c156708 7119500 xen-utils-4.11_4.11.4+37-g3263f257ca-1_amd64.deb ff34005b4ddbe1c5f570c76e184eb2f85ccf6102a73d3084d99c949ce3d98eaf 259636 xen-utils-common-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb e3c5e162bcaf27dc0bba05dbc80186f0a4cd5b71cac987b63a7a2d461f15b634 275524 xen-utils-common_4.11.4+37-g3263f257ca-1_amd64.deb 951850c6b0a8e2a8c98045ec8be3670a201bb82148d8a3611eb9b245821f655b 18098 xen_4.11.4+37-g3263f257ca-1_amd64.buildinfo 2d400d61237478e78973d997b194e508a49c1e160caf3449e94a7113ec7bcbe6 19864 xenstore-utils-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 4a0fa3d2990a3bdc48911a2497bff1e11a8b48ca03136e8ee553cc3cb7e75f68 45540 xenstore-utils_4.11.4+37-g3263f257ca-1_amd64.deb Files: 5d8dac3e5d0bf95b092ea78b4f075bad 4082 admin optional xen_4.11.4+37-g3263f257ca-1.dsc cbb2c1a790edd04c3313c0e8282ed09c 4250380 admin optional xen_4.11.4+37-g3263f257ca.orig.tar.xz e24afb3f80000c9945295ead8116712f 134416 admin optional xen_4.11.4+37-g3263f257ca-1.debian.tar.xz 473710dfac91b6b98053b9b36cbb903c 722892 libdevel optional libxen-dev_4.11.4+37-g3263f257ca-1_amd64.deb 2253d56aac8579ec1c0a291c7803d1a7 13620 debug optional libxencall1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 56df4c27cb86afbc0298cd56c73dadc4 34328 libs optional libxencall1_4.11.4+37-g3263f257ca-1_amd64.deb e987ea5500fae0a1ab59636a2fa0c63e 17892 debug optional libxendevicemodel1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 9fa767eea902a93b48be526e9eb1011c 35356 libs optional libxendevicemodel1_4.11.4+37-g3263f257ca-1_amd64.deb fa96e6a430b57a86b8b8dd98c6cbab20 8420 debug optional libxenevtchn1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb aadacfa9ad80aff48f7c971df09dc641 32912 libs optional libxenevtchn1_4.11.4+37-g3263f257ca-1_amd64.deb 288664500feecc54d68c24a4b72b198c 12496 debug optional libxenforeignmemory1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb e87d92c5b150ec15a5029d7acdc1427f 34784 libs optional libxenforeignmemory1_4.11.4+37-g3263f257ca-1_amd64.deb 024dfccf97a05f664266625baa76d58a 14412 debug optional libxengnttab1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb e0d80080a46aa76926d1c804b5d9c51f 34656 libs optional libxengnttab1_4.11.4+37-g3263f257ca-1_amd64.deb d3638d76732c868739617f7a1bd53b45 2275832 debug optional libxenmisc4.11-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 4ff5a4cc4a9fe39c8677a1fd3fcc0d4b 469200 libs optional libxenmisc4.11_4.11.4+37-g3263f257ca-1_amd64.deb 9074dd636bc137067c56e96ef6b17c03 33724 debug optional libxenstore3.0-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb ef46dd2a80595ad7444272fff6530e28 41772 libs optional libxenstore3.0_4.11.4+37-g3263f257ca-1_amd64.deb 61f7840925ef8908b82c5ade6a788279 5124 debug optional libxentoolcore1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb fc2db6076284a7348235f150aa113cba 32368 libs optional libxentoolcore1_4.11.4+37-g3263f257ca-1_amd64.deb e24f426412dc2f349a31ced1410a5741 11332 debug optional libxentoollog1-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 53243cf11d883f51e94a71c3ad782be8 34184 libs optional libxentoollog1_4.11.4+37-g3263f257ca-1_amd64.deb cbbb5a5b2907bbf72b834e93a5a93b1c 434076 doc optional xen-doc_4.11.4+37-g3263f257ca-1_amd64.deb 506318bec90f96805b3e521199725d4d 15035268 kernel optional xen-hypervisor-4.11-amd64_4.11.4+37-g3263f257ca-1_amd64.deb 0153000f3b209eede36b996d63600c29 32184 kernel optional xen-hypervisor-common_4.11.4+37-g3263f257ca-1_all.deb f1334e6ee6ee617bffa75ea805355180 30320 admin optional xen-system-amd64_4.11.4+37-g3263f257ca-1_amd64.deb 7a4d6e5eb6a642d67bdc8d9e78be3933 1060068 debug optional xen-utils-4.11-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 7ef3eea7bccab98fb491ff13dfa533bc 7119500 admin optional xen-utils-4.11_4.11.4+37-g3263f257ca-1_amd64.deb 0e93fc94d56286f0bd0b45f631d6f775 259636 debug optional xen-utils-common-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb b40a0239f798ceb7b9cec2a6a31a9659 275524 admin optional xen-utils-common_4.11.4+37-g3263f257ca-1_amd64.deb 796bea32c63bed533a4ed79ab0ec944b 18098 admin optional xen_4.11.4+37-g3263f257ca-1_amd64.buildinfo c07c32f5f8251fef874bcce3a7c5d7d5 19864 debug optional xenstore-utils-dbgsym_4.11.4+37-g3263f257ca-1_amd64.deb 7b216c94a11b71a10de3e4d157696e26 45540 admin optional xenstore-utils_4.11.4+37-g3263f257ca-1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAl92M6wACgkQEMKTtsN8 TjZaihAApO04mBVK5Q/8Q2+HM+QLQmxHkRdJI0kcj1wgV9Xz2tgi93T28SWIrCTM /uEBYhgIEz1+/OG7ByWvlZN5WyxRo8udw2bbVePSz1vqZaQ5WlcdDQZMorlzr0sN hvUzZBJMx01fQM74Tro+ZISaNJKZvqTTKNEuUiM15lVZFcSJAP9ZAdAZN7+MyOae KhtBscSgEJXkO6YeJ+NLk6JKkZ+jU5sycc7XfifSbijd2xhT9pNnqrM7bE3paY5b k36S4YugrHqy5w+YCj5YZSQgnj8xHP+aXqw1JmfdNUNVPD7Tz+dYrCb40o2kn79L 9BQLD1EMKFocsZmEHIbeRiKD9TRGgco7UAhONC1wjpsFmX5l5+LIA7MQF2E/UWSh 56cKKwECgbDLVzWBo6FEOnnFHv+0eKAW5zPld15DSZD7a2KjcwOeh0nZee7ylJnL K3motIxwPlLC1yCUibvHp+a187E0jszq1XA8Tpjil8XGpay5dmdAYG61ekW1BcKC L6tpCIW3vFoOSOVIn5odDk657oiev/cHu6BBv095fRFwQeFhfK5UrE0sLIpLhiIy TLOBCkqQ1yPkGXfj53CudAQsZ8Oy3QI21X+73j5+UmdVJI0oHE6ikm+B9kvq7I4T Li2yv20x36+d2yUEzcuhUQvTa+/7trdWrqokoS2v6l7qEq9tsRU= =CJkO -----END PGP SIGNATURE-----