-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 13 Sep 2021 11:51:20 +0200 Source: xen Architecture: source Version: 4.14.3-1 Distribution: unstable Urgency: high Maintainer: Debian Xen Team <pkg-xen-devel@lists.alioth.debian.org> Changed-By: Hans van Kranenburg <hans@knorrie.org> Changes: xen (4.14.3-1) unstable; urgency=high . * Update to new upstream version 4.14.3, which also contains security fixes for the following issues: - IOMMU page mapping issues on x86 XSA-378 CVE-2021-28694 CVE-2021-28695 CVE-2021-28696 - grant table v2 status pages may remain accessible after de-allocation XSA-379 CVE-2021-28697 - long running loops in grant table handling XSA-380 CVE-2021-28698 - inadequate grant-v2 status frames array bounds check XSA-382 CVE-2021-28699 - xen/arm: No memory limit for dom0less domUs XSA-383 CVE-2021-28700 - Another race in XENMAPSPACE_grant_table handling XSA-384 CVE-2021-28701 Checksums-Sha1: 652105bde1fc0e337434100fcbae43b13835f39c 4129 xen_4.14.3-1.dsc 65f537c1fd25171a53572d8e252d0075b6f2e912 4368604 xen_4.14.3.orig.tar.xz 2766db4ad0368995343cb8478b2ef6ecb9770c40 139612 xen_4.14.3-1.debian.tar.xz Checksums-Sha256: 9ff6f033348fbc56df2c093aea37c5a9d00ac03613d9566d1fb852ebc9ecdbf6 4129 xen_4.14.3-1.dsc 838458902b54b0ce25f847a3e06a6dd50a6e6a36d4d3519939d2eabbde680271 4368604 xen_4.14.3.orig.tar.xz 874aee9e1f45a73c2767ffc6ce42826d1c0584a2f6f0dc385b5f5e37fb3eb4da 139612 xen_4.14.3-1.debian.tar.xz Files: 4b433108bc1f1ed360b1a1e090e01b86 4129 admin optional xen_4.14.3-1.dsc 678660ed617e90bcc1ed57a5cfaadce5 4368604 admin optional xen_4.14.3.orig.tar.xz 1269dfcfcd78d729d25cbf8512ef78e7 139612 admin optional xen_4.14.3-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEESWyddwNaG9637koYssHfcmNhX2wFAmE/X2sACgkQssHfcmNh X2z2zg//YFD0zw7+ikbtCtSMC/6NN2V25ujOArX5uvamzcK4d+B3w6FRtMv9PwyB EnYj/gpbFRJjpcGuG4o/N5iX4zY6CEvxKZfqICDYrmjRt5Hd30zJpfsr4PjE/ZFo sJg6SIdJ5/f8nS+E4KdoN/KLA1xCCNpMGUTYFCBd6STr7Uvb+9GIRm3ILWhAWtUX QUhxus616hhQJDteGDTWsg4uIpWKCASQnQa1bL8vipJDFHo0e8QXN+F8Sk5LP4qy mHjyGt/EuSlEIdj0/gtPdVlinQThNOFwmDZbhfcpzV0qWmvOXiGEIQ2ewPueCECg g+WZ6+oT6dS3XGFu9vdz1BOu8pCwJNwPkW6e45R+2H7jdrwcANBtGnnJw+L8gOG/ 7fdHIkNayjL/5wqlDGQOY14E/xkgBzY3xex4JIN0p1O5l1LjIUerSJIqKVVjqGDd M+pjxye9c/kxhqveby3AfkJeo1GkHnK5N8hwWHYjH5j8q8rdo3g/GnNszKQge7fj zEumsxIv8tf6RZN3Wgn028sigPLApLpv4EJtgdY9Cgk4A0fCxNPbxCYbDQjIzH6A vKhTpOTTeb5jeisNQdScLAUaMtzrnva6pQ6zHDLVingvtH2WrhRIoAC2IqLU6dGg rLEE52ju4yAbe7nDFkpqsVRWxPULyyfjskZrlcNOzCWDA5PLzII= =hoy0 -----END PGP SIGNATURE-----