[Pkg-xen-devel] Xen security update for XSA-238, XSA-250, XSA-251, XSA-249 / Meltdown shim?

Ian Jackson ijackson at chiark.greenend.org.uk
Wed Feb 7 18:22:49 UTC 2018


Moritz Muehlenhoff writes ("Re: Xen security update for XSA-238, XSA-250, XSA-251, XSA-249 / Meltdown shim?"):
> On Tue, Jan 16, 2018 at 06:59:11PM +0000, Ian Jackson wrote:
> > Hi.  I think I can probably find time to do that soon.
> > We (upstream) have a possible PTI-style Meltdown mitigation too but
> > it's not in today's update.
> 
> Great!

I have just sent
  xen 4.8.3+comet2+shim4.10.0+comet3-1+deb9u4
(yes, really!) to security-master-unembargoed.

I have run the amd64 build through my usual tests.  The underlying
code is straight from upstream, although I did have to merge two
separate branches to gain both the PTI and Comet mitigations for
Meltdown.

Ian.




More information about the Pkg-xen-devel mailing list