[Pkg-xen-devel] Bug#780227: XSA-123 / CVE-2015-2151 Hypervisor memory corruption due to x86 emulator flaw

Josip Rodin joy at debbugs.entuzijast.net
Tue Mar 10 19:17:46 UTC 2015


Package: xen-hypervisor-4.1-amd64
Version: 4.1.4-3+deb7u4
Severity: critical

Hi,

Not sure how come I'm the first one to file this kind of a bug report :)
but here goes JFTR...

http://xenbits.xen.org/xsa/advisory-123.html was embargoed, but advance
warning was given to several big Xen VM farms, which led to e.g.
https://aws.amazon.com/premiumsupport/maintenance-2015-03/
http://status.linode.com/incidents/2dyvn29ds5mz

I'm guessing the security team is on top of this...?
https://security-tracker.debian.org/tracker/CVE-2015-2151

TIA.

-- 
     2. That which causes joy or happiness.



More information about the Pkg-xen-devel mailing list