• [SECURITY] [DSA 5378-1] xen security update

    From Moritz Muehlenhoff@21:1/5 to All on Sat Mar 25 17:30:01 2023
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-5378-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff
    March 25, 2023 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : xen
    CVE ID : CVE-2022-23824 CVE-2022-42331 CVE-2022-42332 CVE-2022-42333
    CVE-2022-42334
    Debian Bug : 1033297

    Multiple vulnerabilities have been discovered in the Xen hypervisor,
    which could result in privilege escalation, denial of service or
    information leaks.

    For the stable distribution (bullseye), these problems have been fixed in version 4.14.5+94-ge49571868d-1.

    We recommend that you upgrade your xen packages.

    For the detailed security status of xen please refer to
    its security tracker page at:
    https://security-tracker.debian.org/tracker/xen

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: debian-security-announce@lists.debian.org
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmQfIJgACgkQEMKTtsN8 TjYkYhAAodF7qLdbOJde/zQOUacgip8RE6fz7f1kg8SaIDcTHNban+usRbtB8+TZ rnh6OlHePX8a7I6vlllz4oo7PG0YA7Ab03VyBAqei7JBNj60YFLg9rJXe0qvzKQp aMVCep/10tSvCmrQv3zJ/9aR5PwtkFap3OPm11sXAx+h9FmOfocKkTYIhwkx7Uqd wn0MHyeelilbLk7BG1nuxUiBHF+wprbBjx1djMjE1ymX4RbwGqJW6gHpbey6vJlr oByViyAt7Jxtl5YMta9oqRK+ZkG08xAiQ5o75QKS/K3SNcgm+bwU2pxutiSB2Mqw Fg3nmKcAhNxb7/RqOm9PfoXko+49Zn/beVJd2LmWgWz0JEQdqjuFtoHRutHdDAre JLbki9mkB3ziP5DyQN3pdbwSjDadafaPWn1E7sG7I4NRxftuCpyNzrUK4XtUjq0I H6m2lg7GpmqLjwXNqT51Etw/1ukGil8Io3ugd4pEh3oSV7J7sKo6XGBpm9XwXwYU 5BmkXYbnWpOuP/T5uTVPWQvPnPWRu0rzfVHFeVFfrjBvWwtRZEq8czVWQ7n8nSI+ 1BHnpI5PDJouNVt7JM8o/A/l+Iayi7XWECLDWxE+7G+RxOgMqyF6axb2XxN15csd EVu+vcow7KFJE273E9vzUIhohfTIrQ0mo8LrS9SKADrnlZBezBA=
    =rbBS
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)