-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 11 Dec 2020 22:10:09 +0100 Source: xen Binary: libxen-dev libxencall1 libxencall1-dbgsym libxendevicemodel1 libxendevicemodel1-dbgsym libxenevtchn1 libxenevtchn1-dbgsym libxenforeignmemory1 libxenforeignmemory1-dbgsym libxengnttab1 libxengnttab1-dbgsym libxenmisc4.11 libxenmisc4.11-dbgsym libxenstore3.0 libxenstore3.0-dbgsym libxentoolcore1 libxentoolcore1-dbgsym libxentoollog1 libxentoollog1-dbgsym xen-doc xen-hypervisor-4.11-arm64 xen-system-arm64 xen-utils-4.11 xen-utils-4.11-dbgsym xen-utils-common xen-utils-common-dbgsym xenstore-utils xenstore-utils-dbgsym Architecture: arm64 Version: 4.11.4+57-g41a822c392-2 Distribution: buster-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-02) Changed-By: Hans van Kranenburg Description: libxen-dev - Public headers and libs for Xen libxencall1 - Xen runtime library - libxencall libxendevicemodel1 - Xen runtime libraries - libxendevicemodel libxenevtchn1 - Xen runtime libraries - libxenevtchn libxenforeignmemory1 - Xen runtime libraries - libxenforeignmemory libxengnttab1 - Xen runtime libraries - libxengnttab libxenmisc4.11 - Xen runtime libraries - miscellaneous, versioned ABI libxenstore3.0 - Xen runtime libraries - libxenstore libxentoolcore1 - Xen runtime libraries - libxentoolcore libxentoollog1 - Xen runtime libraries - libxentoollog xen-doc - XEN documentation xen-hypervisor-4.11-arm64 - Xen Hypervisor on ARM64 xen-system-arm64 - Xen System on ARM64 (metapackage) xen-utils-4.11 - XEN administrative tools xen-utils-common - Xen administrative tools - common files xenstore-utils - Xenstore command line utilities for Xen Changes: xen (4.11.4+57-g41a822c392-2) buster-security; urgency=high . * Apply security fixes for the following issues: - oxenstored: permissions not checked on root node XSA-353 (CVE-2020-29479) - xenstore watch notifications lacking permission checks XSA-115 (CVE-2020-29480) - Xenstore: new domains inheriting existing node permissions XSA-322 (CVE-2020-29481) - Xenstore: wrong path length check XSA-323 (CVE-2020-29482) - Xenstore: guests can crash xenstored via watchs XSA-324 (CVE-2020-29484) - Xenstore: guests can disturb domain cleanup XSA-325 (CVE-2020-29483) - oxenstored memory leak in reset_watches XSA-330 (CVE-2020-29485) - oxenstored: node ownership can be changed by unprivileged clients XSA-352 (CVE-2020-29486) - undue recursion in x86 HVM context switch code XSA-348 (CVE-2020-29566) - FIFO event channels control block related ordering XSA-358 (CVE-2020-29570) - FIFO event channels control structure ordering XSA-359 (CVE-2020-29571) * Note that the following XSA are not listed, because... - XSA-349 and XSA-350 have patches for the Linux kernel - XSA-354 has patches for the XAPI toolstack - XSA-356 only applies to Xen 4.14 Checksums-Sha1: f85dd8624b8a4ad9671d2fa281b942951c2575e0 662884 libxen-dev_4.11.4+57-g41a822c392-2_arm64.deb 2a80e8f64158ed5fbfb6a2d5ba37f9e33c5538f6 13660 libxencall1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb de8495c5debb00e4ece1f9d5fcc5cfb8af4db4db 34636 libxencall1_4.11.4+57-g41a822c392-2_arm64.deb c3c328346b81b5d009ff81007296eb1a62936f5c 18240 libxendevicemodel1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb b5114a1aa0e7409bdc7efb153a618f775401b59d 35796 libxendevicemodel1_4.11.4+57-g41a822c392-2_arm64.deb 82d7fc7102cd8ffc1b41fa49164ece1af7957952 8436 libxenevtchn1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 297d917b94ea4b2afb5acfeeb00fb97287d5ec8e 33428 libxenevtchn1_4.11.4+57-g41a822c392-2_arm64.deb be36ca50352d20f9e886ec4d94b582619e14fe41 12648 libxenforeignmemory1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 6a03b75145dcdf306517b4cce5073aee9ffab7fb 35048 libxenforeignmemory1_4.11.4+57-g41a822c392-2_arm64.deb a81f86519059bc2fe01e01f9017afafbe9936563 14428 libxengnttab1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb d2c23174e8a02374471bec0e73afe10551e56ea5 35052 libxengnttab1_4.11.4+57-g41a822c392-2_arm64.deb 1302402a88288643987af6dd6c188fb9150b5e3c 2004660 libxenmisc4.11-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 351f422f3de50364e650dae40632d25b9313e750 383900 libxenmisc4.11_4.11.4+57-g41a822c392-2_arm64.deb bfaf1b7fa024d77e8fb5a9f85251ea8755d7a02a 33688 libxenstore3.0-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 07c79b6d484e67be5a22251d7dbcd8875ada8f31 41680 libxenstore3.0_4.11.4+57-g41a822c392-2_arm64.deb 5e29ade795fee874026073c97c530b51741ef7a1 5244 libxentoolcore1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb b785a530e46990225b4037aa4630f8a1dc558bd0 32900 libxentoolcore1_4.11.4+57-g41a822c392-2_arm64.deb d4cc02e6923b4b751f0cc555ff5540fbe71cf4d5 10668 libxentoollog1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 5e36b4d12b75060dd9d7312ee2fd95f2dca14153 34736 libxentoollog1_4.11.4+57-g41a822c392-2_arm64.deb 219229a53b032fcfe9e2ee2998798625aeb914d4 434912 xen-doc_4.11.4+57-g41a822c392-2_arm64.deb b5a6810fc67fd50fa36afdfdfe88ce3153dd3a55 3587860 xen-hypervisor-4.11-arm64_4.11.4+57-g41a822c392-2_arm64.deb 3739ca61d3eb090aed77c250fa9add8e44e965a8 30856 xen-system-arm64_4.11.4+57-g41a822c392-2_arm64.deb 8fd799fc510b42968b8e515f6a86da6419abc26d 862648 xen-utils-4.11-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb bfa3f751a06ed7fc77821b051cc3e75e75bb88e0 620864 xen-utils-4.11_4.11.4+57-g41a822c392-2_arm64.deb 3e22d26336b0f8252fee3436f37125c3c3a0b5cc 24596 xen-utils-common-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 03941ddc43b73e0f68d087fa877968673d98f79d 200356 xen-utils-common_4.11.4+57-g41a822c392-2_arm64.deb 20f7e79653e68259f62594386f033bb2bf4d7a1b 16822 xen_4.11.4+57-g41a822c392-2_arm64-buildd.buildinfo 69a769398cb9c307d93d0b728b0242f7f571ed3a 20140 xenstore-utils-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb eb8c4492f73931dc613ded0ee5e69e7c95bb2d0e 45860 xenstore-utils_4.11.4+57-g41a822c392-2_arm64.deb Checksums-Sha256: 3354195fc9cc8ae9dc97678a8875ec06f31656deb7877a5e452a815ccdf71f94 662884 libxen-dev_4.11.4+57-g41a822c392-2_arm64.deb a3c0245a1360ecacddcb46eaba5b6e9723f833c24250df0474967cd2073a30b5 13660 libxencall1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 017eb47b784417e6554829aac55e6b555eed72c0da28a235076841bf996b7bbc 34636 libxencall1_4.11.4+57-g41a822c392-2_arm64.deb 9bf9ab49df61dcec2b0e280fe287f28a9d94e352b6a878d0f101baeee1f100ad 18240 libxendevicemodel1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 487ea08841387716d1da719f3c8d3ce4dc50311ff55f0bb45e4c9022e789ce91 35796 libxendevicemodel1_4.11.4+57-g41a822c392-2_arm64.deb 03768b446ef57537d0876d51041c0dad50ef2e78f37f0cc950b71364ffe059a9 8436 libxenevtchn1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb fd66aff4346096662dca26fd93dd78f2cf9dee42e36f783a7a140ebe7e2f0992 33428 libxenevtchn1_4.11.4+57-g41a822c392-2_arm64.deb a4209e554c87d2aa20b698beffe137c4e1239560f2da7a3b8bcd3b672db53e5a 12648 libxenforeignmemory1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb e0a2629694d1ae2e2a2bdb50dec7507caa6d2f02e87b53c3bf192ba248b26987 35048 libxenforeignmemory1_4.11.4+57-g41a822c392-2_arm64.deb b187f2619ebbca5c8eb82de70dd7e9f56a775b4eab8e34479c93240d1b90cbda 14428 libxengnttab1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 0cd552953e1c80db3a3812011199573af254153a838cb46792455c4ea8e36a65 35052 libxengnttab1_4.11.4+57-g41a822c392-2_arm64.deb 8a072a42aa122fd848a53cf1198c089a83fbdbeee84399467724e9714d6d8238 2004660 libxenmisc4.11-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 66dea67152648b08c1b6ea5ba6a6f24fc390e0f93531022cdb4e2530eb2e7036 383900 libxenmisc4.11_4.11.4+57-g41a822c392-2_arm64.deb 6dcf7bc9c3f64317bc3ff671c91d2272f48e469b1ae2f17db48367bdba3f4939 33688 libxenstore3.0-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 872c60c2d03e60ff9545832b4b38e765f63921685a6163b824b5d99184757880 41680 libxenstore3.0_4.11.4+57-g41a822c392-2_arm64.deb cdc3e53a9e9fa73a0de4cd6ae03fb0c69f78a2e4923e9f2a1b5a09a56a6b52f2 5244 libxentoolcore1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 3bc64d6749e1aba0267258facc4b1ea3679d72d0e67dd0da364cc6c7e382d397 32900 libxentoolcore1_4.11.4+57-g41a822c392-2_arm64.deb 9fbb350bd1e24f5f2eb10b8dab8ab59bb6ecdcd5f1559a433fbc97a81f7c5e23 10668 libxentoollog1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb d317ad6ab921d1c264823d559a6bdc769b08516987c5c578d86c9b3d27f0aaab 34736 libxentoollog1_4.11.4+57-g41a822c392-2_arm64.deb c846d673745d0c9268c18efa12ee8f2c025137119f317106d6afb4b6d4229919 434912 xen-doc_4.11.4+57-g41a822c392-2_arm64.deb e848a69ec9e6beb318d75d691ef9aec2c9be5b7d697216383055b752e52e5e78 3587860 xen-hypervisor-4.11-arm64_4.11.4+57-g41a822c392-2_arm64.deb 4391a4eb2d0e75884807adab8ad692302c4723ff67d1d3b58e86f5c055289731 30856 xen-system-arm64_4.11.4+57-g41a822c392-2_arm64.deb 91815bd5923732d48d2139e160c35085780b62d070f205090b2afdbfd2cdb69a 862648 xen-utils-4.11-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 6141bf53ce3487edfb68e307258afe21631c542185b4c064d1040cc5bb76fa96 620864 xen-utils-4.11_4.11.4+57-g41a822c392-2_arm64.deb dc78d40e6742c03bb9e27511e851bac61d60c67e3ea77c32c78071962daba4fc 24596 xen-utils-common-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 22aeb0e696190546ceab0ac0c1c3ca36a9aa7c21c56e0bf98e08db7318d37761 200356 xen-utils-common_4.11.4+57-g41a822c392-2_arm64.deb daeb64b2db5514f49fafc13334430f0e51ea8700588ad9f0d61de6153240b6bd 16822 xen_4.11.4+57-g41a822c392-2_arm64-buildd.buildinfo 6444712156efb7f58ea3bdcf55a6c05b990fe78dfd392810e751e5b02556a460 20140 xenstore-utils-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 4045f840f7feee2c408eb47ce77b9d2e3581183c3880bfa2bf4c7057ed359f48 45860 xenstore-utils_4.11.4+57-g41a822c392-2_arm64.deb Files: f4898103766670c7d0d7fa9ec84f20d2 662884 libdevel optional libxen-dev_4.11.4+57-g41a822c392-2_arm64.deb 3b063ff65f272430a495dab23a57a1b3 13660 debug optional libxencall1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 949d1b1e0d9060eb3b917406747484bf 34636 libs optional libxencall1_4.11.4+57-g41a822c392-2_arm64.deb aa13bbb807147559e9678d4f4ec621b2 18240 debug optional libxendevicemodel1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 9c67851485fe0899ffd70a3364207828 35796 libs optional libxendevicemodel1_4.11.4+57-g41a822c392-2_arm64.deb 9b5a82512485b5cb9e97b1bdbda1bc79 8436 debug optional libxenevtchn1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb fd4263cc44132fe07e687cd50111478d 33428 libs optional libxenevtchn1_4.11.4+57-g41a822c392-2_arm64.deb 31ced92f12d38ea8fdad03ecce3ef618 12648 debug optional libxenforeignmemory1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb f2301cdf2354f296feb8414652d7c60c 35048 libs optional libxenforeignmemory1_4.11.4+57-g41a822c392-2_arm64.deb 7c32faeff8c9cf778531add7ec9bce69 14428 debug optional libxengnttab1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 887a41dbb2ec0a82106f02f6cbb765c5 35052 libs optional libxengnttab1_4.11.4+57-g41a822c392-2_arm64.deb 39489c72ac443a98c75fc3f5429f2bb0 2004660 debug optional libxenmisc4.11-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 1211c3404018376d0343596119395a37 383900 libs optional libxenmisc4.11_4.11.4+57-g41a822c392-2_arm64.deb 9f1079addfbcb23d167b165c98797727 33688 debug optional libxenstore3.0-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 362f9b00d9c26dac5cdf16e07dd8c0ee 41680 libs optional libxenstore3.0_4.11.4+57-g41a822c392-2_arm64.deb 6859c197c4bd5dbc1394b09b3b6bcc88 5244 debug optional libxentoolcore1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 4d4000b9a5b7f5c374a4df80e5733786 32900 libs optional libxentoolcore1_4.11.4+57-g41a822c392-2_arm64.deb 93a1499c7cad71e84a3a63d1696d9a0a 10668 debug optional libxentoollog1-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb e69219ba1e04b118e0fb140bd717eb4e 34736 libs optional libxentoollog1_4.11.4+57-g41a822c392-2_arm64.deb 14172b0c86fbc297ffe90295b63d77d4 434912 doc optional xen-doc_4.11.4+57-g41a822c392-2_arm64.deb 7ec6e1bb8af0e66aecdd31ccdd3bfb6c 3587860 kernel optional xen-hypervisor-4.11-arm64_4.11.4+57-g41a822c392-2_arm64.deb 51fffc9b608d9c041f0215f105756293 30856 admin optional xen-system-arm64_4.11.4+57-g41a822c392-2_arm64.deb 7f92c7ff49af718da31deca10f388f22 862648 debug optional xen-utils-4.11-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb cba0be764545d0d13bafefc19666cf4e 620864 admin optional xen-utils-4.11_4.11.4+57-g41a822c392-2_arm64.deb 8c8a7a967bf627eedaad93c389e8ad04 24596 debug optional xen-utils-common-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb 75d8baf8a26ab7071da21cf01c1e925e 200356 admin optional xen-utils-common_4.11.4+57-g41a822c392-2_arm64.deb 28c1e0e37c27da9d7138e54d40ab4741 16822 admin optional xen_4.11.4+57-g41a822c392-2_arm64-buildd.buildinfo 86096eb59d8083e4e42a8f61465e5c3d 20140 debug optional xenstore-utils-dbgsym_4.11.4+57-g41a822c392-2_arm64.deb caf512e0aecf9cec47357feb81587657 45860 admin optional xenstore-utils_4.11.4+57-g41a822c392-2_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEnXmFxej3q/Y7IeYNm7iq+Hn5G/cFAl/XoB8ACgkQm7iq+Hn5 G/esmA/7Bixtzs4xksjpqJG8CKHbbxx5xawUDtrSCg+5X1RnL/cJwaWQRbKXcLSp y+5IuaTS/2I8uHQ3hmGLrG3E7tIoMNBPocTd+SxKYEA1KIv9Jyd8CECf9J5/MZUL 0pRWUmpeRwS+cPe/1SjxSwFbY9mqoaxSq9GQD7itEZsfucoRfLJRyDU+Zju5u8Dl FV00jtV2zr10A3F96vjrOW0ar/XEU5nat8wz1Ya+rS7UU4HJ1sR0dR7Kj0TizoR7 vAL/mz5juxBFo0wqSTKUlQaA5LW1xYanIfBBOVMwDwjpRoRTR0DBpnqGsfDiNH9P n9Yx6iNHP7lLPmHLtZojXOwSsfzxkQ4H9WR94Bc6q8n5KpzEk88adM2OhurmfVQk hOC7l0VVwxxOS5BgkfOWl8JSouboWJ/7VzULCrhKykhwCph/K1rUvMoE5aCRBHF2 WO0is9D69oHjNkvpR5NyiklFzZc04MtP0oiSn6HRFZvgXdWYkiDPnxUVZIRVOsrO +ysOKYftf0ltlihDav5l6+gMZCFr2rA+1jrtk/ZkXgUI/gjoe8j3JWCzyp5EL4vk IiNQmVWId0WdSlalDLSkS5TE0hLay0ynnY/4NIb/W/HUkVCPZCTnnCyfxdHXvqHw 3bs4k6JjEAhv/gTk2DUypTKLtmeGpLST2n3XjCNpAXpFLYbmECM= =F77V -----END PGP SIGNATURE-----