-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 11 Dec 2020 22:10:09 +0100 Source: xen Binary: libxen-dev libxencall1 libxencall1-dbgsym libxendevicemodel1 libxendevicemodel1-dbgsym libxenevtchn1 libxenevtchn1-dbgsym libxenforeignmemory1 libxenforeignmemory1-dbgsym libxengnttab1 libxengnttab1-dbgsym libxenmisc4.11 libxenmisc4.11-dbgsym libxenstore3.0 libxenstore3.0-dbgsym libxentoolcore1 libxentoolcore1-dbgsym libxentoollog1 libxentoollog1-dbgsym xen-doc xen-hypervisor-4.11-armhf xen-system-armhf xen-utils-4.11 xen-utils-4.11-dbgsym xen-utils-common xen-utils-common-dbgsym xenstore-utils xenstore-utils-dbgsym Architecture: armhf Version: 4.11.4+57-g41a822c392-2 Distribution: buster-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-04) Changed-By: Hans van Kranenburg Description: libxen-dev - Public headers and libs for Xen libxencall1 - Xen runtime library - libxencall libxendevicemodel1 - Xen runtime libraries - libxendevicemodel libxenevtchn1 - Xen runtime libraries - libxenevtchn libxenforeignmemory1 - Xen runtime libraries - libxenforeignmemory libxengnttab1 - Xen runtime libraries - libxengnttab libxenmisc4.11 - Xen runtime libraries - miscellaneous, versioned ABI libxenstore3.0 - Xen runtime libraries - libxenstore libxentoolcore1 - Xen runtime libraries - libxentoolcore libxentoollog1 - Xen runtime libraries - libxentoollog xen-doc - XEN documentation xen-hypervisor-4.11-armhf - Xen Hypervisor on ARMHF xen-system-armhf - Xen System on ARMHF (metapackage) xen-utils-4.11 - XEN administrative tools xen-utils-common - Xen administrative tools - common files xenstore-utils - Xenstore command line utilities for Xen Changes: xen (4.11.4+57-g41a822c392-2) buster-security; urgency=high . * Apply security fixes for the following issues: - oxenstored: permissions not checked on root node XSA-353 (CVE-2020-29479) - xenstore watch notifications lacking permission checks XSA-115 (CVE-2020-29480) - Xenstore: new domains inheriting existing node permissions XSA-322 (CVE-2020-29481) - Xenstore: wrong path length check XSA-323 (CVE-2020-29482) - Xenstore: guests can crash xenstored via watchs XSA-324 (CVE-2020-29484) - Xenstore: guests can disturb domain cleanup XSA-325 (CVE-2020-29483) - oxenstored memory leak in reset_watches XSA-330 (CVE-2020-29485) - oxenstored: node ownership can be changed by unprivileged clients XSA-352 (CVE-2020-29486) - undue recursion in x86 HVM context switch code XSA-348 (CVE-2020-29566) - FIFO event channels control block related ordering XSA-358 (CVE-2020-29570) - FIFO event channels control structure ordering XSA-359 (CVE-2020-29571) * Note that the following XSA are not listed, because... - XSA-349 and XSA-350 have patches for the Linux kernel - XSA-354 has patches for the XAPI toolstack - XSA-356 only applies to Xen 4.14 Checksums-Sha1: d945b4f38a4d65eeea20c6a23c0a55470b147eb4 629272 libxen-dev_4.11.4+57-g41a822c392-2_armhf.deb 9560283b2bc86cae545753d1ad9e321ed6c5d77d 13728 libxencall1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 35a3bd65afa06f66e75c239dfb524f21a7ff4564 34316 libxencall1_4.11.4+57-g41a822c392-2_armhf.deb 193713f1bf037afced56df39fb96bcc21fb8fdf0 18040 libxendevicemodel1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 0a31df9ba33f78c62825a3c63dd9adba706d49cd 35228 libxendevicemodel1_4.11.4+57-g41a822c392-2_armhf.deb 9b2b9730556d75018375f9225deec98adc5e0297 8568 libxenevtchn1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 42628c711ff21fc73c4219a0860ed19401773270 33156 libxenevtchn1_4.11.4+57-g41a822c392-2_armhf.deb 4a8b64fb37195d4a1165d07e6acbba4b27b2f770 12508 libxenforeignmemory1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb da6bf62fc404b1fd29f3f2d7cb27b551d12879c4 34608 libxenforeignmemory1_4.11.4+57-g41a822c392-2_armhf.deb 0adc6e63303f2096302b66ebd15004c9bdb561c4 14336 libxengnttab1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 0a37811f9fe93a1a29fcf41d98179bc961d27b39 34492 libxengnttab1_4.11.4+57-g41a822c392-2_armhf.deb c97bd5c575769a1b594fc5366cccc3345c110ef1 1942332 libxenmisc4.11-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb f26d8e758acdc7053cfbcf43d6f9d44181bdf50c 351524 libxenmisc4.11_4.11.4+57-g41a822c392-2_armhf.deb d2542ee70171b416c9e74a48e1dc3064cae51fbc 33284 libxenstore3.0-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 1475e060b97cdaf901acf4f01e795f9409e6a95e 39852 libxenstore3.0_4.11.4+57-g41a822c392-2_armhf.deb 038b2f73d170673400907528a2d57145a7027f71 5204 libxentoolcore1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb c19aca86f459f02fb8c95b2708a2e34ecd98e227 32656 libxentoolcore1_4.11.4+57-g41a822c392-2_armhf.deb 9de1721da7233c8cf02cc86d0527d2091cc95ea2 10576 libxentoollog1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 48f44f26ab720effd9a4829a88a578d4715548e4 34388 libxentoollog1_4.11.4+57-g41a822c392-2_armhf.deb 1cd3d5b0adad49d341a082b3f8fbf6e4c31e61f1 434912 xen-doc_4.11.4+57-g41a822c392-2_armhf.deb 6181b561156d12899b1f437557f8a307dd5403ae 3284408 xen-hypervisor-4.11-armhf_4.11.4+57-g41a822c392-2_armhf.deb aaf655f8cd7995544cfd471005b6a0c34376db8d 30864 xen-system-armhf_4.11.4+57-g41a822c392-2_armhf.deb 36d03880c707375fe070996d4d1a180ed2538950 836436 xen-utils-4.11-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 700c5935adf179d8ed430b22426bf3b474af6fe7 545480 xen-utils-4.11_4.11.4+57-g41a822c392-2_armhf.deb 750ff6195574278f50871c4abecd48096a45cfa0 24564 xen-utils-common-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 2141dfed66bc068c4fffe3fab484b7fffb6302b6 200596 xen-utils-common_4.11.4+57-g41a822c392-2_armhf.deb eb5d4509825e2d2f1c4ab251fa544c53de83c50a 16756 xen_4.11.4+57-g41a822c392-2_armhf-buildd.buildinfo 659ed5edc6bff63a53a134e1fb6248d08b823d3d 19208 xenstore-utils-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 12d3ad9a7cd0276d106a3a380877d2de6daf57b8 44972 xenstore-utils_4.11.4+57-g41a822c392-2_armhf.deb Checksums-Sha256: b3b12286e88d34f5c770184524aca2b8a888dae01d68457719e7afd5f3a62b24 629272 libxen-dev_4.11.4+57-g41a822c392-2_armhf.deb e9ef07171eadd591acef7475f4d12fc64cfe0134ab32f0887b714b13d4de1932 13728 libxencall1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 90e9c44f4957c6fbd8d55d233dc030e130cea81d39c83f0b89e5f18046de5942 34316 libxencall1_4.11.4+57-g41a822c392-2_armhf.deb 848db3e14c3447e9703dfd14b01d440642cbe83a2e65857fb9f22c19d0ac9123 18040 libxendevicemodel1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 3e94bbf7940f7f1005c8131493e809783e877509ff0c5c81f8f25e97ebce3403 35228 libxendevicemodel1_4.11.4+57-g41a822c392-2_armhf.deb c6ccda4ea0dd83e4bde04ebf99763daeaf33e8435550562e0ff37628dccb4b7e 8568 libxenevtchn1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb a0cc393d36a3474d84a29581d081cdf886ae2a408f1daaf94ae4d64074f41bb2 33156 libxenevtchn1_4.11.4+57-g41a822c392-2_armhf.deb fab3123b72b39ca512223d0c845b5923e0455a1b522966bbde9b4e0f6d6eb2f8 12508 libxenforeignmemory1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 8c0c684cd67932c406b77a0b16c0f19d5329b13fdaf66c5edaaf0de5cf791afb 34608 libxenforeignmemory1_4.11.4+57-g41a822c392-2_armhf.deb d4bfa43144f02bbec0c8c44bcdaa35959faaedfb49aa94c0fd790175981d2657 14336 libxengnttab1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 3ea88216adb0ad2b31053998560c37f6c174a335c56b01ba0bf8b140c62567dc 34492 libxengnttab1_4.11.4+57-g41a822c392-2_armhf.deb b1e34a8d008f2d09fb91b3c25ebdc30fd6c071c5b237ce98d02cce76f2a66ba8 1942332 libxenmisc4.11-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb dc56f2641a0d84dbbe6f7d1cd1b62a8fd50f3a56fb9d37fd5c1aa591ec85bd57 351524 libxenmisc4.11_4.11.4+57-g41a822c392-2_armhf.deb 41a7beecfc3cfa63d0304f3d29ebdc23353cfb2c22b54bd4764cdc4b3c9a6d38 33284 libxenstore3.0-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 20e6719647ef9118c5c6713da22ee6ea7e863757e82089d5ca4cea3c83b43d42 39852 libxenstore3.0_4.11.4+57-g41a822c392-2_armhf.deb 263e32f6fac0e97ec36d8d848a41cb2840e1c5c1ecd86dac5186f941a58ec142 5204 libxentoolcore1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 9e2c4c310f62ef614c2c2668cc4858cbac55ac1921af55a04aaed99bb33397ff 32656 libxentoolcore1_4.11.4+57-g41a822c392-2_armhf.deb 88930fabda4100bcf9611fbac425de946e29230ba9d5e2568457543017bc50e0 10576 libxentoollog1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb fb667d64fc5b588053bc73211e6b83d0ef85746813ed642a7dff97a4215eded6 34388 libxentoollog1_4.11.4+57-g41a822c392-2_armhf.deb 3a98d0e960cea77c32eeab9aa5341d175374e97b340b1ff28136878d9fd60ff6 434912 xen-doc_4.11.4+57-g41a822c392-2_armhf.deb 71c7eaf46ad5a64dd5778a45eee48fe7d5aa927548f914d9c96ee2c833e727c2 3284408 xen-hypervisor-4.11-armhf_4.11.4+57-g41a822c392-2_armhf.deb 9dee02bd011b9258e45750a7a82ea0bb0334fbfc4e655600935a30c5f9c8b8f4 30864 xen-system-armhf_4.11.4+57-g41a822c392-2_armhf.deb 53aa87bceb517da5a5b8e50c49400c390bfd50140a401158470d296dde07137c 836436 xen-utils-4.11-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 618268744b76edf59a170ba5ed2625ec44155aded2fd0d8d8d2bf5d758730372 545480 xen-utils-4.11_4.11.4+57-g41a822c392-2_armhf.deb fd20aee643f565d5ce54ed5c3a2fa27666ebd858898467500d1a31e7f4da0e18 24564 xen-utils-common-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 3e250e374fd1a5ad87741cca9d4064bd0e9b00dd9ee61c921ce477a1d8c03c12 200596 xen-utils-common_4.11.4+57-g41a822c392-2_armhf.deb c69b7f9f5c1bcf8ff9db106a7522fa4dc3c4b9e561c6aa51896accc973884d74 16756 xen_4.11.4+57-g41a822c392-2_armhf-buildd.buildinfo 31228601c6818452ab00542b850f93a27110ae084794deef2db7ef8104487d85 19208 xenstore-utils-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 75ec833bbaef22305c9b487113a0365716ceee7ad2325d98bfb4a302f9eb53b9 44972 xenstore-utils_4.11.4+57-g41a822c392-2_armhf.deb Files: 09824245a390877af78a5fb134bb25a0 629272 libdevel optional libxen-dev_4.11.4+57-g41a822c392-2_armhf.deb c8780045431dc0c167c6b5c11c8a0854 13728 debug optional libxencall1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 5da9348cc6426434445eeb2ecdc004b2 34316 libs optional libxencall1_4.11.4+57-g41a822c392-2_armhf.deb 8aa7acf8251a93549a60ddf0809b979a 18040 debug optional libxendevicemodel1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb c98e7bf16d414148e510d3d0c3523329 35228 libs optional libxendevicemodel1_4.11.4+57-g41a822c392-2_armhf.deb 13c60ea702bf3e358f90a2f1f2bc2dc6 8568 debug optional libxenevtchn1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 0b047f7adaeaa432564dcacafd5f6856 33156 libs optional libxenevtchn1_4.11.4+57-g41a822c392-2_armhf.deb 52f13c1b3e8156018ff4d6d076c2dd40 12508 debug optional libxenforeignmemory1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 01f1a3558166977ef9fd6580e3ef52ed 34608 libs optional libxenforeignmemory1_4.11.4+57-g41a822c392-2_armhf.deb becb577a4f68a7efc55542c5d03b884b 14336 debug optional libxengnttab1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 331845cc3feba0b7f8567d76815af6d7 34492 libs optional libxengnttab1_4.11.4+57-g41a822c392-2_armhf.deb 09d5ced4c8ef56cd6a36c4dc896d0f9a 1942332 debug optional libxenmisc4.11-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 57efa8873ae05f6efd19132f5a97e882 351524 libs optional libxenmisc4.11_4.11.4+57-g41a822c392-2_armhf.deb aace448fbe9cd96e6367f98530ccd898 33284 debug optional libxenstore3.0-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb ce5cd4e01ece83979bae78f261ebc596 39852 libs optional libxenstore3.0_4.11.4+57-g41a822c392-2_armhf.deb 1114376379bfcc1ae84e5fc7d150f296 5204 debug optional libxentoolcore1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 486859d195a8f802b04d3fa3850d2a4e 32656 libs optional libxentoolcore1_4.11.4+57-g41a822c392-2_armhf.deb fb78b20e8c41b2573d49584522f78866 10576 debug optional libxentoollog1-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 0a028228473305ba83bf0aa91121547a 34388 libs optional libxentoollog1_4.11.4+57-g41a822c392-2_armhf.deb 3508d41d6c9f8f949f3fafeeaa79ad2d 434912 doc optional xen-doc_4.11.4+57-g41a822c392-2_armhf.deb 94ff309c580ab430f68e3d7dc51b5e94 3284408 kernel optional xen-hypervisor-4.11-armhf_4.11.4+57-g41a822c392-2_armhf.deb f63ebbed188db8019d785c27313817ad 30864 admin optional xen-system-armhf_4.11.4+57-g41a822c392-2_armhf.deb 4aa4c868d386e11812e23481833345d1 836436 debug optional xen-utils-4.11-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 4379cd2eb817f47981ff79a08afbfd4c 545480 admin optional xen-utils-4.11_4.11.4+57-g41a822c392-2_armhf.deb 1f5b00d44da5999f9f38cec59865c3d1 24564 debug optional xen-utils-common-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 3bf5b4af990029591d4b116fc49ba111 200596 admin optional xen-utils-common_4.11.4+57-g41a822c392-2_armhf.deb d8c972944de093f5cd33e4ed4edf3915 16756 admin optional xen_4.11.4+57-g41a822c392-2_armhf-buildd.buildinfo 19639938158d4dff9266cd25ebfab84d 19208 debug optional xenstore-utils-dbgsym_4.11.4+57-g41a822c392-2_armhf.deb 5c7197d4a8cf66119819c547fe79ea54 44972 admin optional xenstore-utils_4.11.4+57-g41a822c392-2_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEEV+eIlSuNkLsfLmdnbD9qs2X/fwFAl/XoIsACgkQnbD9qs2X /fw+iBAA3SYpZf2DY770snfGeZkSL8d4KEuBbfBsl5/Qli4RczIZwvsG5GA3DTlK 9hoJR9KQBw6VVoHWyPe9sQC5uyR0UojmjxFdHJsMuON+3N7Cj+p9XD59Ruq2Wtz+ 8TFKkLl3jeEq7E6kCVcGNdNpQN63eP1WkMt667/pFO3XIoJ9K1ZCc2jOf4SZX36K BPXuhnJGZdUuKE/0ZtZqptvYj9ewTgYhlSKZ9wwh3ZKoXrX23J14ADmmtufsLPzT WPlBrqDaguSrYLowq7EiYJV16sNHGbFG1Jcw1bO7FWXrA/EeoWOAZJS3gTAYgW5Z G5cFRUrsnyXQf+UhkLNibZkhaJswa5FIs1dV/RuVZfrE0gIHCRLkBRzU+tIfKMvm 1vZg1aeNis12X/2s7HptiT06ClNGHuaLZZhituype5sbkV0pkseM8yWAAxYAN6ea S+oOxRwEVhllnbQfcFF8+0xMipPZ6y/8csU4nn9b6hVm+FsDv7pqb6RqQZsEwSON 7eyQ8sjmM9nsJc1TR1wk/CW9FRH3z1L/GMSm2pXsKV3jues/6/zw+mPftLZJ+qXq xZMzyN/HPVc4IidYZijTsBAmdsmE/2ookPjgJbp412jX2ZPSSx8BSgN/jnyg3dFD cY4V8hF2CQOw5mRJh+5brYaFaLe5JYjgb1GN8T6JU0p7fXV/iMI= =OIJp -----END PGP SIGNATURE-----