-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 27 Nov 2021 15:09:47 +0100 Source: xen Architecture: source Version: 4.14.3+32-g9de3671772-1 Distribution: unstable Urgency: medium Maintainer: Debian Xen Team <pkg-xen-devel@lists.alioth.debian.org> Changed-By: Hans van Kranenburg <hans@knorrie.org> Closes: 994899 Changes: xen (4.14.3+32-g9de3671772-1) unstable; urgency=medium . * Update to new upstream version 4.14.3+32-g9de3671772, which also contains security fixes for the following issues: - guests may exceed their designated memory limit XSA-385 CVE-2021-28706 - PCI devices with RMRRs not deassigned correctly XSA-386 CVE-2021-28702 - PoD operations on misaligned GFNs XSA-388 CVE-2021-28704 CVE-2021-28707 CVE-2021-28708 - issues with partially successful P2M updates on x86 XSA-389 CVE-2021-28705 CVE-2021-28709 * Note that the following XSA are not listed, because... - XSA-387 only applies to Xen 4.13 and older - XSA-390 only applies to Xen 4.15 * Pick the following upstream commits to fix a regression which prevents amd64 type hardware to fully power off. The issue was introduced in version 4.14.0+88-g1d1d1f5391-1 after including upstream commits to improve Raspberry Pi 4 support. (Closes: #994899): - 8b6d55c126 ("x86/ACPI: fix mapping of FACS") - f390941a92 ("x86/DMI: fix table mapping when one lives above 1Mb") - 0f089bbf43 ("x86/ACPI: fix S3 wakeup vector mapping") - 16ca5b3f87 ("x86/ACPI: don't invalidate S5 data when S3 wakeup vector cannot be determined") Checksums-Sha1: f669e0f14ab1d3d93624acc9e5e59e31dfeda2d8 4249 xen_4.14.3+32-g9de3671772-1.dsc cdf8aefcc59b63d6a047e5e681475c861a0002a0 4368880 xen_4.14.3+32-g9de3671772.orig.tar.xz 72d20f37e1999894cc9907d8957126b38331e65c 142888 xen_4.14.3+32-g9de3671772-1.debian.tar.xz Checksums-Sha256: 9d222c54fa742e613b85cfe62fa055881afe35b5850c21b1afedf4a58d742cff 4249 xen_4.14.3+32-g9de3671772-1.dsc 82aa1d0ed09870cbfeb5d857204d357e308c80ecc4bd1cd7ea1290784e8b95b0 4368880 xen_4.14.3+32-g9de3671772.orig.tar.xz 32d0c5d5df19df395b6892c13ae78f1d15748e6c4f331b41c7d3f884b6f9c942 142888 xen_4.14.3+32-g9de3671772-1.debian.tar.xz Files: 48c5bd306107d0bfab16d033d1722b05 4249 admin optional xen_4.14.3+32-g9de3671772-1.dsc 7a3a8d932c28afbc727cc9ad4d8a8672 4368880 admin optional xen_4.14.3+32-g9de3671772.orig.tar.xz 0704e2185e343f80d361f784d57c3867 142888 admin optional xen_4.14.3+32-g9de3671772-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEESWyddwNaG9637koYssHfcmNhX2wFAmGj6LUACgkQssHfcmNh X2xgKg/+P4BXBZnGtqTwjTy2xPEuyOjmcH2Ik39T9kd4q8nXwDfsIHzT+81LSjOk G1qkhAZxa9+geYOU4I+xbd1GTDnKktuInuznSqJA9dK2WcQm9apjNph5zj7JzPMq hhQgEcvvVZie3IC5rTmf8W+iqdnt6LjWuV80k/2HePsnwGg8wJt5705qvX1U/aXD WcDWCv3qWSnaXqKsTXT/jwZmDu1FebrZgtiuYGiKRy68bwtRIkOwfX70JLLQwwdk R9i0DX+LDdYnAqGburMxZSTeONIGw8V+xApPn6NS6Dqkc4ktTkN9vF0Cx6bA6Nof oAiy0HDYXI7MAXh9doBxHjF5QtcTjSF01elvVwUU+qt7tFlvytZ9SgH9elElHiJk tkkkkQfAVonVvMKSB14AICGn5Hmegf6I/WaYmUs7qWtI+ATFThv/nsMQXoi5GauY xqkInyEqIwCvfzRZ/GuN0+RmlkKpNli38YjwOJdIXijk8SmAZvJj2a8VbTLUBoMu lE9npnBe4rT36cFK3tvOCNyCmRNv2wIMXOxSY8Pe0L7fcxRWIF+VnvmF9J5x1xyx FjVWzGQK54biCD8sVXb0nw9oefEuE2fBRqb/RsxNgLfYpKy2SpeZSzY+xLBNqgtq BVKZvBSYltLmASfwMY0gnX3aVjSXJAj57e7RfGqo50tYz5mxnsU= =JfN3 -----END PGP SIGNATURE-----