obsolete

xen-4.12.1-5.fc31

FEDORA-2019-92d6ba2134 created by myoung 5 years ago for Fedora 31

x86: Machine Check Error on Page Size Change DoS [XSA-304, CVE-2018-12207] TSX Asynchronous Abort speculative side channel [XSA-305, CVE-2019-11135]


VCPUOP_initialise DoS [XSA-296, CVE-2019-18420] missing descriptor table limit checking in x86 PV emulation [XSA-298, CVE-2019-18425] Issues with restartable PV type change operations [XSA-299, CVE-2019-18421] add-to-physmap can be abused to DoS Arm hosts [XSA-301, CVE-2019-18423] passed through PCI devices may corrupt host memory after deassignment [XSA-302, CVE-2019-18424] ARM: Interrupts are unconditionally unmasked in exception handlers [XSA-303, CVE-2019-18422]

This update has been submitted for testing by myoung.

5 years ago

This update's test gating status has been changed to 'waiting'.

5 years ago

This update has obsoleted xen-4.12.1-4.fc31, and has inherited its bugs and notes.

5 years ago

This update's test gating status has been changed to 'ignored'.

5 years ago

This update has been obsoleted by xen-4.12.1-6.fc31.

5 years ago

Please login to add feedback.

Metadata
Type
security
Severity
high
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Thresholds
Minimum Karma
+2
Minimum Testing
14 days
Dates
submitted
5 years ago
BZ#1765043 CVE-2019-18421 xen: a malicious PV guest administrator may be able to escalate their privilege to that of the host
0
0
BZ#1767726 CVE-2019-18421 xen: a malicious PV guest administrator may be able to escalate their privilege to that of the host [fedora-all]
0
0
BZ#1767730 CVE-2019-18424 xen: passed through PCI devices may corrupt host memory after deassignment leading to privilege escalation
0
0
BZ#1767731 CVE-2019-18424 xen: passed through PCI devices may corrupt host memory after deassignment leading to privilege escalation [fedora-all]
0
0
BZ#1771340 CVE-2019-18425 xen: missing descriptor table limit checking in x86 PV emulation leading to privilege escalation
0
0
BZ#1771341 CVE-2019-18425 xen: missing descriptor table limit checking in x86 PV emulation leading to privilege escalation [fedora-all]
0
0
BZ#1771344 CVE-2019-18423 xen: add-to-physmap can be abused to DoS Arm hosts
0
0
BZ#1771345 CVE-2019-18423 xen: add-to-physmap can be abused to DoS Arm hosts [fedora-all]
0
0
BZ#1771366 CVE-2019-18420 xen: allows guest OS users to cause denial of service via VCPUOP_initialise hypercall
0
0
BZ#1771368 CVE-2019-18420 xen: allows guest OS users to cause denial of service via VCPUOP_initialise hypercall [fedora-all]
0
0
BZ#1771442 CVE-2019-18422 xen: ARM: Interrupts are unconditionally unmasked in exception handlers
0
0
BZ#1771443 CVE-2019-18422 xen: ARM: Interrupts are unconditionally unmasked in exception handlers [fedora-all]
0
0

Automated Test Results