CentOS Errata and Security Advisory 2014:X004 (Xen4CentOS)
The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )
-----------------------------
X86_64
-----------------------------
bb6f3ba6c19f731b233c6c0ec338f9b92f418664dc1fd4f31ddc2e3ee2848583 xen-4.2.3-28.el6.centos.alt.x86_64.rpm
e1ba3b17464f8992bc81c861826bb03f1a46f7421872abb138d30317fec5e880 xen-devel-4.2.3-28.el6.centos.alt.x86_64.rpm
b308ef85354cba806ae30a54466f66c95bea81937a9ac4fe58434750f2089d76 xen-doc-4.2.3-28.el6.centos.alt.x86_64.rpm
0bc067a9225953b3034e8adc285e82931be1f61fe832a910391f773bfee75e9e xen-hypervisor-4.2.3-28.el6.centos.alt.x86_64.rpm
96c44ad669efe2c7315f8b2bebec7be559d5557d381cb8015667a494367aaa96 xen-libs-4.2.3-28.el6.centos.alt.x86_64.rpm
b33ef015bab2a1381ed0cba9300313fdbda2c00e0241c93f99025b79820d0b7e xen-licenses-4.2.3-28.el6.centos.alt.x86_64.rpm
89de11af00731b0ad158b544967724c27bc6f43c71f035bb76d3f12b6500577f xen-ocaml-4.2.3-28.el6.centos.alt.x86_64.rpm
9ec958a4bd8c80fcff5121fc30b63874f3854a9a3f81f0a4441c35017f97bd41 xen-ocaml-devel-4.2.3-28.el6.centos.alt.x86_64.rpm
2abf9c625ee014646760bea77c7cd376db73ee4a11a28226004c2fc6f003c3ef xen-runtime-4.2.3-28.el6.centos.alt.x86_64.rpm
-----------------------------
Source:
-----------------------------
252cbc61a5ad6360fdb675d7ba95d09585f9b5cb3af7d68c47229cad7c103bb0 xen-4.2.3-28.el6.centos.alt.src.rpm
=====================================================
xen Changelog info from the SPEC file:
* Tue Feb 11 2014 Johnny Hughes <johnny(a)centos.org> - 4.2.3-28.el6.centos
- Roll in Patches 153, 154, and 155
XSA-84 (CVE-2014-1891, CVE-2014-1892, CVE-2014-1893, CVE-2014-1894)
XSA-85 (CVE-2014-1894), XSA-86 (CVE-2014-1896)
=====================================================
The following XSA info is available from the Xen site
http://xenbits.xen.org/xsa/advisory-84.htmlhttp://xenbits.xen.org/xsa/advisory-85.htmlhttp://xenbits.xen.org/xsa/advisory-86.html
--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos at irc.freenode.net
CentOS Errata and Security Advisory 2014:X005 (Xen4CentOS)
The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )
-----------------------------
X86_64
-----------------------------
4d780927c1273021f707954531d4f8363f96001a09101ac3b828c02dcf640fc5 e1000e-2.5.4-3.10.29.2.el6.centos.alt.x86_64.rpm
8665f64a64ba10ff731077eb7a25a1eb282cf46739d9d18383d07da7131833aa kernel-3.10.29-11.el6.centos.alt.x86_64.rpm
e66b9c91d42024a4af3752d557a2e0c8fe4c7f2026f9b4a9eea0a500cfc0da4b kernel-devel-3.10.29-11.el6.centos.alt.x86_64.rpm
ce7481db6e7b8c1bca4a104c8bfcdfaa3e8e2334b7ae430c2246685f61ae2b81 kernel-doc-3.10.29-11.el6.centos.alt.noarch.rpm
f3308009ccd8565b5465b8215676c4267e1112abf726404f0553ffc058b3ea56 kernel-firmware-3.10.29-11.el6.centos.alt.noarch.rpm
c5d1a5429a03f2be7dd14865ef5bd8595e5d2691a4d00b4065cbbddddc0b6d6d kernel-headers-3.10.29-11.el6.centos.alt.x86_64.rpm
9dbd0fecce020f0a2b979500ec56ca2c134b6f7c9885133ce31a5fb811f5cd33 perf-3.10.29-11.el6.centos.alt.x86_64.rpm
-----------------------------
Source:
-----------------------------
daacfa96cd99b7d61e4c020b7c92e2039e8867b0cc0d2c0b8a7ecd9b0d251bcb e1000e-2.5.4-3.10.29.2.el6.centos.alt.src.rpm
447c3e834e97b7c4a4b872663a576eef0a984869f6e2fdb06334301f197c1dfe kernel-3.10.29-11.el6.centos.alt.src.rpm
=====================================================
Kernel Changelog info from the SPEC file:
* Tue Feb 11 2014 Johnny Hughes <johnny(a)centos.org> - 3.10.29-11
- upgrade to upstream 3.10.29
- addresses CVE-2014-0038 and CVE-2013-6885
e1000e Changelog info from the SPEC file:
* Tue Feb 11 2014 Johnny Hughes <johnny(a)centos.org> - 2.5.4-3.10.29.2.el6.centos.alt
- build against version 3.10.29 kernel
=====================================================
The following kernel changelogs are available from kernel.org since the previous kernel:
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.29https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.28
=====================================================
The following security issues are addressed in this update:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-0038http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-6885
=====================================================
NOTE: You must run /usr/bin/grub-bootxen.sh to update the file
/boot/grub/grub.conf (or you must update that file manually)
to boot the new kernel on a dom0 xen machine. See for info:
http://wiki.centos.org/HowTos/Xen/Xen4QuickStart
--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos at irc.freenode.net
CentOS Errata and Bugfix Advisory 2014:0156
Upstream details at : https://rhn.redhat.com/errata/RHBA-2014-0156.html
The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )
i386:
0fa29e430e78f3df7739ae7534a61e7534da5f0f1f1435909fe9c3fed39c02c2 lftp-4.0.9-1.el6_5.1.i686.rpm
14afd576b489a45446911c0672f733b0ba03435a22d4362849915d173e5226bb lftp-scripts-4.0.9-1.el6_5.1.noarch.rpm
x86_64:
0fa29e430e78f3df7739ae7534a61e7534da5f0f1f1435909fe9c3fed39c02c2 lftp-4.0.9-1.el6_5.1.i686.rpm
a8473e500ae4a71bd27efed005b254913970387be2793cb13e7c85032a85cf98 lftp-4.0.9-1.el6_5.1.x86_64.rpm
14afd576b489a45446911c0672f733b0ba03435a22d4362849915d173e5226bb lftp-scripts-4.0.9-1.el6_5.1.noarch.rpm
Source:
705d85d9c5ccf5ce86634916166884e2698307f3be1a36be34cef20e1526cb6f lftp-4.0.9-1.el6_5.1.src.rpm
--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos(a)irc.freenode.net
CentOS Errata and Bugfix Advisory 2014:0153
Upstream details at : https://rhn.redhat.com/errata/RHBA-2014-0153.html
The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )
i386:
11d26e1e6db52dda262d2e06a2ddd742ca48e349519306158d4c118429ae38d5 resource-agents-3.9.2-40.el6_5.6.i686.rpm
5662d6eebd6a886bf7f33da7dbccb97306e6f12e40e99dda7b68e061d9f23048 resource-agents-sap-3.9.2-40.el6_5.6.i686.rpm
x86_64:
1394b8594d546cfb238312b101bbea4411748e3014085538c35f7e402693ee31 resource-agents-3.9.2-40.el6_5.6.x86_64.rpm
de9d26e837a7da662fb2c38229fa3e7160f0c5063a2a10775354cc4213b28984 resource-agents-sap-3.9.2-40.el6_5.6.x86_64.rpm
Source:
8baea928b40e1482bef954bdb9399e283100ff6eaeb356aa612b524d75041004 resource-agents-3.9.2-40.el6_5.6.src.rpm
--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos(a)irc.freenode.net
CentOS Errata and Security Advisory 2014:0151 Low
Upstream details at : https://rhn.redhat.com/errata/RHSA-2014-0151.html
The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )
i386:
4d992f22dbcf380e7c2e0eb0ba0fa29da4b5a5261abf85bb05fff16551aa2df9 wget-1.12-1.11.el6_5.i686.rpm
x86_64:
38bd17293302d51962dfd700f4072520bb5e308708d9c027084eeb4029769f75 wget-1.12-1.11.el6_5.x86_64.rpm
Source:
8fbab2856b3acc9c23103bd033dc310ad7c3023df5a1c07a2a01d93348434d84 wget-1.12-1.11.el6_5.src.rpm
--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos(a)irc.freenode.net
CentOS Errata and Bugfix Advisory 2014:0141
Upstream details at : https://rhn.redhat.com/errata/RHBA-2014-0141.html
The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )
i386:
614c2be12f6ca445d7360a443ff0c9a773fac116d7b2b72eb528b3028d0d69a6 fence-agents-3.1.5-35.el6_5.3.i686.rpm
x86_64:
ebff912c9701ccec8c7b247cb37a0128a7e04e81c919a81c8e7fed3f66caeb90 fence-agents-3.1.5-35.el6_5.3.x86_64.rpm
Source:
d3b3ae9ea2033c27e97cfe73f51ece788baed09206ef7c57ccb3676dfb04b617 fence-agents-3.1.5-35.el6_5.3.src.rpm
--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos(a)irc.freenode.net