it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Moritz Muehlenhoff <jmm AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 5836-1] xen security update
- Date: Thu, 26 Dec 2024 14:50:58 +0000
- Authentication-results: lists.piratenpartei.de; dkim=none; spf=none (lists.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 82.195.75.100) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"; dmarc=none
- List-archive: https://lists.debian.org/msgid-search/Z21tUubs+GlejZvG AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From:Date :Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=Z9nWkRDpFT+xfVewv+67P9kV+dnqLMCSCTXX/VMRhio=; b=de q8wmJkTJgNKseu4WHmbJ62D96Jw7o6q/JhVduLVgEITeQCC2jaSG0j5wiB+azDU724EPVwErgFPoK K5CfKFMTzIEdXO39SxmndjE0LE17tT6caMbWv+SfBumtqyFFhazee0lBBwk3TcN9QesF6coRKZpZ3 cQAfb2F6pKheMFk/+y11S5i3gwUy+oSzIlzI5CfQV194Qou492zTjBmUEbnAcPBXN4/VuXyb+U7K1 FRkaqSHH4MUuMv9ndrnx0TCKf1aouQvI/swea3qeOfpHmOh49wsxxziltbHmS6rww/SllG3x7PN3n cLqmMVsPu1Lf/hS59NoAq/cLgVx2xHLA==;
- Old-return-path: <jmm AT seger.debian.org>
- Priority: urgent
- Resent-date: Thu, 26 Dec 2024 14:51:36 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <pPcLxQiAOZL.A.Wm8M.41WbnB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5836-1 security AT debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
December 26, 2024 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : xen
CVE ID : CVE-2023-28746 CVE-2023-46841 CVE-2023-46842 CVE-2024-2193
CVE-2024-2201 CVE-2024-31142 CVE-2024-31143 CVE-2024-31145
CVE-2024-31146 CVE-2024-45817 CVE-2024-45818 CVE-2024-45819
Multiple vulnerabilities have been discovered in the Xen hypervisor,
which could result in privilege escalation, denial of service or
information leaks.
For the stable distribution (bookworm), these problems have been fixed in
version 4.17.5+23-ga4e5191dc0-1.
We recommend that you upgrade your xen packages.
For the detailed security status of xen please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/xen
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmdta3MACgkQEMKTtsN8
Tja94g//QFsowABFRrftfZNquAQD71MSWj3gNjiZpByYp9OglHMvDklWiDCCV9bR
JRNRTjPHhssDwfJha5EpuK7fXug3fW9ugJ+uw25DY6WVT1PfdTiA92wF1qw3RhtL
ylbt+zMAMn53HPlxhMateHkbWps47noBpGPtUzUH4MRAjf3pTjhoEPiRc/cR3+C2
7O5VCiUpE3kzTC1CcZ7ldjgVmrKnvrQ8crJxq+6aU536JJ+EEEOawYVxqvQ3cq84
ZJHe47P/bzLO17cu4nLSDYr4uK5ikKW50g14xEGVjzx4MuieCgDmtw0OPdM9x87z
CYQRhHZZ7M85+1ChYhzn8tb4+yhS049Smve49Jz8XZRRXRku4L0yJi5kkEMlNbJB
kTn+rz5WQ3hFqWcrKgLt67VtKN1ysVV6hlOAuOcAs+/82kQVXm1RvOa9hZqSQUKN
zGgjDY40nXDJ88npOWMFBTaNeCqQdKKulzR9Sd6OJLAKoNpjgsS/uHqPhcG71LyF
imq7//xrbwIopupQjtAkpsVsKC6/QtLGRkBZmclupgNSw54UxoGj7usG4Dv0hz2m
WQTvj4YR2l4QBTBHx3lN0uwYl9MzyYH0TwYwpZrV6uCT96JAXm8/6m0nuX2BJi51
NUm3j/54ADnH2F7yn6f9VXk2lwguiH0wrmocN1XcCd61lq0HlXM=
=h1/H
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 5836-1] xen security update, Moritz Muehlenhoff, 26.12.2024
Archiv bereitgestellt durch MHonArc 2.6.19+.