Your message dated Sun, 21 Sep 2014 09:35:45 +0000
with message-id <[email protected]>
and subject line Bug#757724: fixed in xen 4.4.1-1
has caused the Debian Bug report #757724,
regarding Multiple security issues
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
757724: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=757724
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Source: xen
Severity: grave
Tags: security
The following security issues are still open in 4.4.0-1:
Xen Security Advisory CVE-2014-2599 / XSA-89
https://marc.info/?l=oss-security&m=139643934717922&w=2
Xen Security Advisory CVE-2014-3124 / XSA-92
https://marc.info/?l=oss-security&m=139894169729664&w=2
Xen Security Advisory CVE-2014-3967,CVE-2014-3968 / XSA-96
https://marc.info/?l=oss-security&m=140189788727523&w=2
Xen Security Advisory CVE-2014-4021 / XSA-100
https://marc.info/?l=oss-security&m=140300754505349&w=2
(this one is also filed as #751894)
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: xen
Source-Version: 4.4.1-1
We believe that the bug you reported is fixed in the latest version of
xen, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Bastian Blank <[email protected]> (supplier of updated xen package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Sun, 21 Sep 2014 10:45:47 +0200
Source: xen
Binary: libxen-4.4 libxenstore3.0 libxen-dev xenstore-utils xen-utils-common
xen-utils-4.4 xen-hypervisor-4.4-amd64 xen-system-amd64
xen-hypervisor-4.4-arm64 xen-system-arm64 xen-hypervisor-4.4-armhf
xen-system-armhf
Architecture: source all
Version: 4.4.1-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Xen Team <[email protected]>
Changed-By: Bastian Blank <[email protected]>
Description:
libxen-4.4 - Public libs for Xen
libxen-dev - Public headers and libs for Xen
libxenstore3.0 - Xenstore communications library for Xen
xen-hypervisor-4.4-amd64 - Xen Hypervisor on AMD64
xen-hypervisor-4.4-arm64 - Xen Hypervisor on ARM64
xen-hypervisor-4.4-armhf - Xen Hypervisor on ARMHF
xen-system-amd64 - Xen System on AMD64 (meta-package)
xen-system-arm64 - Xen System on ARM64 (meta-package)
xen-system-armhf - Xen System on ARMHF (meta-package)
xen-utils-4.4 - XEN administrative tools
xen-utils-common - Xen administrative tools - common files
xenstore-utils - Xenstore command line utilities for Xen
Closes: 757724
Changes:
xen (4.4.1-1) unstable; urgency=medium
.
* New upstream release.
- Fix several vulnerabilities. (closes: #757724)
CVE-2014-2599, CVE-2014-3124,
CVE-2014-3967, CVE-2014-3968,
CVE-2014-4021
Checksums-Sha1:
fef253fe6de448249f4f2af71cc93627d4492867 2625 xen_4.4.1-1.dsc
900ed093d14caf511fa1a22f48bbf0499bb2ee11 3778516 xen_4.4.1.orig.tar.xz
52fe4b09152e0d9ef9418c5707a79c53a21401ae 47404 xen_4.4.1-1.debian.tar.xz
530c8f55ce918a897d5e379a15be4d0154324c9d 119982
xen-utils-common_4.4.1-1_all.deb
Checksums-Sha256:
d5c1b5e09cf81bd08515946bee551f0620c75d32db21559e9625c71c6ffd746b 2625
xen_4.4.1-1.dsc
c51b9f10047779d76b9f9900e2f626008d07ffe9a35f6221d703a542e599a8cb 3778516
xen_4.4.1.orig.tar.xz
eab4d0a42e5f40263b96b682bca58b993df86b74986ea3209ff711197a943549 47404
xen_4.4.1-1.debian.tar.xz
d145fe0cf0902e6dd46b29904cda2098d2ed5fb0e2bf14b3d08814bf4caa6341 119982
xen-utils-common_4.4.1-1_all.deb
Files:
00dac2f4228a52ff39a6b512338512b5 119982 kernel optional
xen-utils-common_4.4.1-1_all.deb
6bc2d3281e9b225d2595785aa59de3b8 2625 kernel optional xen_4.4.1-1.dsc
eb8b9505a28561d4d0a8409f1b43fb0a 3778516 kernel optional xen_4.4.1.orig.tar.xz
4086649f238640315e9433b3e72208f4 47404 kernel optional
xen_4.4.1-1.debian.tar.xz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
iQEcBAEBAgAGBQJUHpkSAAoJEG2TiIWKaf5R5JkH/RGkdoLeKNLW8V3zemkQg1DT
jekBzriF6vCvDpNemkKoqUXMs3Js9OOQz05sGkKzkphXaLZlNe7Ch/b1swRltnBL
Embtl+PGgXn1+sW2y1TJGf16lYqm4ytQvU72vhBusl2iNagULQoqbmFyie9t++mz
hWxnBRR3AKzcAgtFpAZJuxncUDF0+E3DwBhQ3s9u2sL6h7nesrwA0hOgGK9uQNZA
KiuuW+2s+baHT0YiFzbJJ9GARNLyzqAj56bWOn+1JOVhCz5QHA12+83ygPqV6tvl
Rrwz1nzLpELvTattouwS31ZqjiumkVP0QwdmCeFuRW5Qpd+niKSNErPVp1RdY3M=
=flr0
-----END PGP SIGNATURE-----
--- End Message ---