xen-3.0.3-120.2.0.1.AXS3
エラータID: AXSA:2011-180:02
Release date:
Monday, May 16, 2011 - 20:19
Subject:
xen-3.0.3-120.2.0.1.AXS3
Affected Channels:
Asianux Server 3 for x86_64
Asianux Server 3 for x86
Severity:
High
Description:
This package contains the Xen tools and management daemons needed to run virtual machines on x86, x86_64, and ia64 systems. Information on how to use Xen can be found at the Xen project pages.
The Xen system also requires the Xen hypervisor and domain-0 kernel, which can be found in the kernel-xen* package.
Virtualization can be used to run multiple operating systems on one physical system, for purposes of hardware consolidation, hardware abstraction, or to test untrusted applications in a sandboxed environment.
Security issues fixed with this releaseL:
CVE-2011-1583
No description available at the time of writing, use the CVE link below.
Solution:
Update packages.
CVEs:
CVE-2011-1583
Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buffer overflow during a decompression loop or (2) an out-of-bounds read in the loader involving unspecified length fields.
Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buffer overflow during a decompression loop or (2) an out-of-bounds read in the loader involving unspecified length fields.
Additional Info:
N/A
Download:
SRPMS
- xen-3.0.3-120.2.0.1.AXS3.src.rpm
MD5: d0ba5f6819f0c123fe8d21e4db1117b1
SHA-256: c7e2ba1ddee9e8c1ae5880299654bb6740db64b40375e266f8926dab76d36f85
Size: 12.38 MB
Asianux Server 3 for x86
- xen-3.0.3-120.2.0.1.AXS3.i386.rpm
MD5: e588f21dff7a3775508623ce36f8cb7b
SHA-256: 1dea56dbd72d1b4c437bfef218227b350e5eff370ea4e2049729ed055f95b0f8
Size: 1.92 MB - xen-devel-3.0.3-120.2.0.1.AXS3.i386.rpm
MD5: d0012377ed9fbe062e1cdd385a0b8b81
SHA-256: 5a73b5d572332a72aeb56f88d5dc395ab2ae4c3c7f891265ceddbdf485319935
Size: 241.70 kB - xen-libs-3.0.3-120.2.0.1.AXS3.i386.rpm
MD5: d1093575cb4f125f52dd0c4d6fd327a6
SHA-256: 0fe8541ba8519064f40a9f43d44da44380b33ab4a8cd41299b1eca9f1e7a5121
Size: 167.45 kB
Asianux Server 3 for x86_64
- xen-3.0.3-120.2.0.1.AXS3.x86_64.rpm
MD5: c14aa6bc7622f6a6ea70865a05a2b68e
SHA-256: 6902afea5fad3c081bac135ba61722b6f2787aaaecba02db55b426045e9738c2
Size: 1.91 MB - xen-devel-3.0.3-120.2.0.1.AXS3.x86_64.rpm
MD5: ba46b7b08a115bda308e8ff3cd4feb5b
SHA-256: e6675a0791e047c1e190cf3ad810fab2ed1e5ddca1bd8491418d7b7c557bf601
Size: 245.86 kB - xen-libs-3.0.3-120.2.0.1.AXS3.x86_64.rpm
MD5: ff03045d718380d7a4cf2116ac395caa
SHA-256: 6a21092ffb00ac254ecbdc9ebe52f20d4e4a31d1b21e35f630311b6e260059dc
Size: 164.63 kB