Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [SECURITY] [DSA 5378-1] xen security update

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [SECURITY] [DSA 5378-1] xen security update


Chronologisch Thread  
  • From: Moritz Muehlenhoff <jmm AT debian.org>
  • To: debian-security-announce AT lists.debian.org
  • Subject: [IT-SecNots] [SECURITY] [DSA 5378-1] xen security update
  • Date: Sat, 25 Mar 2023 16:27:19 +0000
  • Authentication-results: mail.piratenpartei.de; dkim=none; spf=none (mail.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 2001:41b8:202:deb:216:36ff:fe40:4002) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"; dmarc=none
  • List-archive: https://lists.debian.org/msgid-search/ZB8g5z7ur1vlnVGF AT seger.debian.org
  • List-id: <debian-security-announce.lists.debian.org>
  • List-url: <http://lists.debian.org/debian-security-announce/>
  • Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From:Date :Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=ENPGoECaj+s+7CYBrMz+C6IudwGV/UHh7Gsw7io7Nbc=; b=iP tzY5fumiWMLMM4grG0ldWwp6tfSoRmHe7UOxwEFqEjDC20Uw42GeT/9jPq1tDx1SQOKg9xbs4Us/4 9mLTltYBOYE7zHrziRC5aLoKX6N7KOdxYHKOW7xX+gUCMJtYU3s3wVNfYz5ck9szidOOuLwh1hkbU EkkXNuXZatK91H8MTHKNywgLY4ldn8j8ocmia7iu2DAXDthuXOiDpNFe6wiEbSdiEJunQ7tGVE8FH ZewQGnbTVl2FrJXhcSwjxLhi1ODojzezFEdFMQ2ESA1AqHemjVrOrlfqgR+NnRM5wCCaCJXrbkPhT lWZ8disXEED35MJ7TYItGyt3omdl16yA==;
  • Old-return-path: <jmm AT seger.debian.org>
  • Priority: urgent
  • Resent-date: Sat, 25 Mar 2023 16:27:46 +0000 (UTC)
  • Resent-from: debian-security-announce AT lists.debian.org
  • Resent-message-id: <Qreuoat2rvP.A.igE.CEyHkB@bendel>
  • Resent-sender: debian-security-announce-request AT lists.debian.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-5378-1 security AT debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
March 25, 2023 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : xen
CVE ID : CVE-2022-23824 CVE-2022-42331 CVE-2022-42332 CVE-2022-42333
CVE-2022-42334
Debian Bug : 1033297

Multiple vulnerabilities have been discovered in the Xen hypervisor,
which could result in privilege escalation, denial of service or
information leaks.

For the stable distribution (bullseye), these problems have been fixed in
version 4.14.5+94-ge49571868d-1.

We recommend that you upgrade your xen packages.

For the detailed security status of xen please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/xen

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
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=rbBS
-----END PGP SIGNATURE-----



  • [IT-SecNots] [SECURITY] [DSA 5378-1] xen security update, Moritz Muehlenhoff, 25.03.2023

Archiv bereitgestellt durch MHonArc 2.6.24.

Seitenanfang