You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa xen

Sigurnosni nedostaci programskog paketa xen

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2016-4c407cd849
2016-10-13 17:12:37.428326
——————————————————————————–

Name : xen
Product : Fedora 24
Version : 4.6.3
Release : 6.fc24
URL : http://xen.org/
Summary : Xen is a virtual machine monitor
Description :
This package contains the XenD daemon and xm command line
tools, needed to manage virtual machines running under the
Xen hypervisor

——————————————————————————–
Update Information:

qemu-kvm: Directory traversal flaw in 9p virtio backend [CVE-2016-7116] qemu:
hw: net: Heap overflow in xlnx.xps-ethernetlite [CVE-2016-7161] CR0.TS and
CR0.EM not always honored for x86 HVM guest [XSA-190, CVE-2016-7777]
——————————————————————————–
References:

[ 1 ] Bug #1346349 – CVE-2016-7116 Qemu: 9p: directory traversal flaw in 9p virtio backend
https://bugzilla.redhat.com/show_bug.cgi?id=1346349
[ 2 ] Bug #1379297 – CVE-2016-7161 qemu: hw: net: Heap overflow in xlnx.xps-ethernetlite
https://bugzilla.redhat.com/show_bug.cgi?id=1379297
[ 3 ] Bug #1377789 – CVE-2016-7777 xsa190 xen: CR0.TS and CR0.EM not always honored for x86 HVM guests (XSA-190)
https://bugzilla.redhat.com/show_bug.cgi?id=1377789
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update xen’ at the command line.
For more information, refer to “Managing Software with yum”,
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2016-689f240960
2016-10-13 17:12:25.216133
——————————————————————————–

Name : xen
Product : Fedora 23
Version : 4.5.5
Release : 2.fc23
URL : http://xen.org/
Summary : Xen is a virtual machine monitor
Description :
This package contains the XenD daemon and xm command line
tools, needed to manage virtual machines running under the
Xen hypervisor

——————————————————————————–
Update Information:

qemu-kvm: Directory traversal flaw in 9p virtio backend [CVE-2016-7116] qemu:
hw: net: Heap overflow in xlnx.xps-ethernetlite [CVE-2016-7161] CR0.TS and
CR0.EM not always honored for x86 HVM guest [XSA-190, CVE-2016-7777] —-
update to 4.5.5
——————————————————————————–
References:

[ 1 ] Bug #1346349 – CVE-2016-7116 Qemu: 9p: directory traversal flaw in 9p virtio backend
https://bugzilla.redhat.com/show_bug.cgi?id=1346349
[ 2 ] Bug #1379297 – CVE-2016-7161 qemu: hw: net: Heap overflow in xlnx.xps-ethernetlite
https://bugzilla.redhat.com/show_bug.cgi?id=1379297
[ 3 ] Bug #1377789 – CVE-2016-7777 xsa190 xen: CR0.TS and CR0.EM not always honored for x86 HVM guests (XSA-190)
https://bugzilla.redhat.com/show_bug.cgi?id=1377789
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update xen’ at the command line.
For more information, refer to “Managing Software with yum”,
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

AutorTomislav Protega
Cert idNCERT-REF-2016-10-0102-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostatak programskog paketa mariadb-galera

Otkriven je sigurnosni nedostatak u programskom paketu mariadb-galera za RHEL OpenStack Platform 6.0 (Juno) for RHEL 7, OpenStack Platform 5.0...

Close