[Bug 1606847] Re: xsa-182 / CVE-2016-6258

2016-10-12 Thread Stefan Bader
Should now be fixed by latest security uploads. ** Changed in: xen (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1606847 Title: xsa-182 /

[Bug 1606847] Re: xsa-182 / CVE-2016-6258

2016-08-23 Thread Emily Ratliff
** Changed in: xen (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1606847 Title: xsa-182 / CVE-2016-6258 To manage notifications about this bug go to:

[Bug 1606847] Re: xsa-182 / CVE-2016-6258

2016-08-10 Thread Marc Deslauriers
** Changed in: xen (Ubuntu) Assignee: (unassigned) => Stefan Bader (smb) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1606847 Title: xsa-182 / CVE-2016-6258 To manage notifications about

[Bug 1606847] Re: xsa-182 / CVE-2016-6258

2016-08-10 Thread Jurre
Woops, thanks! In addition, the CVE explanation by mitre[1] is wrong. It mentions: "The PV pagetable code in arch/x86/mm.c in Xen 4.7.x and earlier allows local 32-bit PV guest OS administrators to gain host OS privileges by leveraging fast-paths for updating pagetable entries.". However, 64-bit

[Bug 1606847] Re: xsa-182 / CVE-2016-6258

2016-08-10 Thread Robie Basak
Thank you for taking the time to report this bug and helping to make Ubuntu better. This was not flagged as security so was only in the regular triage queue, not the security team's queue. I'll mark it accordingly. ** Information type changed from Public to Public Security -- You received this

[Bug 1606847] Re: xsa-182 / CVE-2016-6258

2016-08-08 Thread Jurre
I would like to remind the Ubuntu team that this is a critical security issue since it's an VM escape! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1606847 Title: xsa-182 / CVE-2016-6258 To

[Bug 1606847] Re: xsa-182 / CVE-2016-6258

2016-07-27 Thread Hans Joachim Desserud
** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2016-6258 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1606847 Title: xsa-182 / CVE-2016-6258 To manage notifications about this