Bug 970631 (CVE-2013-2194, CVE-2013-2195, CVE-2013-2196)
Summary: | CVE-2013-2194 CVE-2013-2195 CVE-2013-2196 xen: Multiple vulnerabilities in libelf PV kernel handling | ||||||
---|---|---|---|---|---|---|---|
Product: | [Other] Security Response | Reporter: | Petr Matousek <pmatouse> | ||||
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | ||||
Status: | CLOSED WONTFIX | QA Contact: | |||||
Severity: | high | Docs Contact: | |||||
Priority: | high | ||||||
Version: | unspecified | CC: | drjones, imammedo, jforbes, kraxel, lersek, m.a.young, mrezanin, pbonzini, rkrcmar, virt-maint, xen-maint | ||||
Target Milestone: | --- | Keywords: | Security | ||||
Target Release: | --- | ||||||
Hardware: | All | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | Doc Type: | Bug Fix | |||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2014-06-11 09:06:34 UTC | Type: | --- | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Bug Depends On: | 970637, 970638, 970640 | ||||||
Bug Blocks: | 970653 | ||||||
Attachments: |
|
Description
Petr Matousek
2013-06-04 13:30:13 UTC
Created xen tracking bugs for this issue Affects: fedora-all [bug 970640] xen-4.2.2-6.fc19 has been pushed to the Fedora 19 stable repository. If problems still persist, please make note of it in this bug report. xen-4.2.2-6.fc18 has been pushed to the Fedora 18 stable repository. If problems still persist, please make note of it in this bug report. Created attachment 761352 [details] Original Xen Security Advisory #55v4 Updated Xen Security Advisory with fixed patch series git changeset ids in xen.git. Reference: http://seclists.org/oss-sec/2013/q2/561 xen-4.1.5-5.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report. CVE ids assigned as per: http://www.openwall.com/lists/oss-security/2013/06/20/2 http://www.openwall.com/lists/oss-security/2013/06/20/4 xen-4.2.2-7.fc18 has been pushed to the Fedora 18 stable repository. If problems still persist, please make note of it in this bug report. xen-4.1.5-6.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report. xen-4.2.2-7.fc19 has been pushed to the Fedora 19 stable repository. If problems still persist, please make note of it in this bug report. Statement: The risks associated with fixing this issue are greater than its security impact. This issue is not currently planned to be addressed in future xen updates for Red Hat Enterprise Linux 5. |