[CentOS-announce] CESA-2014:X004 Moderate Xen4CentOS xen Security Update

Wed Feb 12 05:03:53 UTC 2014
Johnny Hughes <johnny at centos.org>

CentOS Errata and Security Advisory 2014:X004 (Xen4CentOS)

The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )

-----------------------------
X86_64
-----------------------------

bb6f3ba6c19f731b233c6c0ec338f9b92f418664dc1fd4f31ddc2e3ee2848583 xen-4.2.3-28.el6.centos.alt.x86_64.rpm
e1ba3b17464f8992bc81c861826bb03f1a46f7421872abb138d30317fec5e880 xen-devel-4.2.3-28.el6.centos.alt.x86_64.rpm
b308ef85354cba806ae30a54466f66c95bea81937a9ac4fe58434750f2089d76 xen-doc-4.2.3-28.el6.centos.alt.x86_64.rpm
0bc067a9225953b3034e8adc285e82931be1f61fe832a910391f773bfee75e9e xen-hypervisor-4.2.3-28.el6.centos.alt.x86_64.rpm
96c44ad669efe2c7315f8b2bebec7be559d5557d381cb8015667a494367aaa96 xen-libs-4.2.3-28.el6.centos.alt.x86_64.rpm
b33ef015bab2a1381ed0cba9300313fdbda2c00e0241c93f99025b79820d0b7e xen-licenses-4.2.3-28.el6.centos.alt.x86_64.rpm
89de11af00731b0ad158b544967724c27bc6f43c71f035bb76d3f12b6500577f xen-ocaml-4.2.3-28.el6.centos.alt.x86_64.rpm
9ec958a4bd8c80fcff5121fc30b63874f3854a9a3f81f0a4441c35017f97bd41 xen-ocaml-devel-4.2.3-28.el6.centos.alt.x86_64.rpm
2abf9c625ee014646760bea77c7cd376db73ee4a11a28226004c2fc6f003c3ef xen-runtime-4.2.3-28.el6.centos.alt.x86_64.rpm

-----------------------------
Source:
-----------------------------

252cbc61a5ad6360fdb675d7ba95d09585f9b5cb3af7d68c47229cad7c103bb0 xen-4.2.3-28.el6.centos.alt.src.rpm

=====================================================

xen Changelog info from the SPEC file:

* Tue Feb 11 2014 Johnny Hughes <johnny at centos.org> - 4.2.3-28.el6.centos
- Roll in Patches 153, 154, and 155
  XSA-84 (CVE-2014-1891, CVE-2014-1892, CVE-2014-1893, CVE-2014-1894)
  XSA-85 (CVE-2014-1894), XSA-86 (CVE-2014-1896)



=====================================================

The following XSA info is available from the Xen site 

http://xenbits.xen.org/xsa/advisory-84.html
http://xenbits.xen.org/xsa/advisory-85.html
http://xenbits.xen.org/xsa/advisory-86.html

--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos at irc.freenode.net