[CentOS-announce] CESA-2105:X001 Important xen kernel libvirt python-virtinst e1000e (Xen4CentOS Only) Security Update

Wed Jan 7 16:40:55 UTC 2015
Johnny Hughes <johnny at centos.org>

The following packages are updated for Xen4CentOS for CentOS 6:

Source:
942bc436e401c798991ae4ca956082c12a5a3b65ec53cd7ec9901dda7704f9b7  e1000e-2.5.4-3.10.63.2.el6.centos.alt.src.rpm
aa46f97636568c46295d2d99f1e33b5fda50df707a2a8321a516200b8b4e95a6  kernel-3.10.63-11.el6.centos.alt.src.rpm
ea44d2658e096ef6f00f7dfd4fecc6bff977d959563e4929539d23643b134c3a  libvirt-0.10.2.8-9.el6.centos.alt.src.rpm
6638a40f4a1e1ac6a63aea6256f9f4c43c6281eb7db5f011c327cb3b472de871  python-virtinst-0.600.0-25.el6.centos.alt.src.rpm
fac4802834313eb2e4bbfa67e518b2c3f7d5746cf2e3d4d8bf06d9414c1a69ad  xen-4.2.5-38.el6.centos.alt.src.rpm

x86_64:
2c8f12408cfe619b2cf9d0eaf48df915f5027b835fdcd3011b21a34ae78fa304  e1000e-2.5.4-3.10.63.2.el6.centos.alt.x86_64.rpm
c9ff6fde1abc5b7d98f1110149929781a5768e56f49e0f924d3507a780bf8361  kernel-3.10.63-11.el6.centos.alt.x86_64.rpm
a4354c3ecb987d8a71cfa2757a97258eaf757c5be8609cd5e591e24b44fa3c7c  kernel-devel-3.10.63-11.el6.centos.alt.x86_64.rpm
d385b51f0e2df5bcdf6b770b55d6c7b5db838b8082c122eb74bccd708c8e48eb  kernel-doc-3.10.63-11.el6.centos.alt.noarch.rpm
7d8e93f0aa85695643272c8fa51aa8cb9b82b542fe458e9a79e068fe6415778c  kernel-firmware-3.10.63-11.el6.centos.alt.noarch.rpm
2c52e6f3fad408a4113c1b54c0c23fe3188d7c7d5586ba4d5ea8875b3bdf8351  kernel-headers-3.10.63-11.el6.centos.alt.x86_64.rpm
cc449d9ad8ffb0a85594891da53f6574ae1092137e398529322cc8a52cf91708  libvirt-0.10.2.8-9.el6.centos.alt.x86_64.rpm
b4e4b4972b7b2d305a415ffb24a56e1ac4ff40f38c183b138be5a6e92c97e0ea  libvirt-client-0.10.2.8-9.el6.centos.alt.x86_64.rpm
304794603b7240170b1e0de2fb0dab820b373d8ba99a62157780062bc35b1ace  libvirt-daemon-0.10.2.8-9.el6.centos.alt.x86_64.rpm
13247406443b9d1ae7916ef8c527560f44f2b97a79d6a30da05215ccf75abd85  libvirt-daemon-config-network-0.10.2.8-9.el6.centos.alt.x86_64.rpm
ba40af0619fe878d0e8a7df4cc7ed18583014b762c7df085c128808b17b082b8  libvirt-daemon-config-nwfilter-0.10.2.8-9.el6.centos.alt.x86_64.rpm
884523cd5effc77a0f1635dbd8b31b65652f0f47c8fa3766e3e1269f8265a3a8  libvirt-daemon-driver-interface-0.10.2.8-9.el6.centos.alt.x86_64.rpm
6b5cf8f1558539dfbc048ffcdfa5c088c91da4eeed3d81271e2e7d463bf857ed  libvirt-daemon-driver-libxl-0.10.2.8-9.el6.centos.alt.x86_64.rpm
3ee246afb33447cb498ef380f6cdca7bf30a0e7e214afe741003a0b8a0b52464  libvirt-daemon-driver-lxc-0.10.2.8-9.el6.centos.alt.x86_64.rpm
7e188a365145e1ff3181f6dea5634eecccb6881119d940afe5fa5b7f77ec6df3  libvirt-daemon-driver-network-0.10.2.8-9.el6.centos.alt.x86_64.rpm
819dfe1938e4bd7aed780ce612fa24b60758c7318d5ac30fc9ac049d966bdcfd  libvirt-daemon-driver-nodedev-0.10.2.8-9.el6.centos.alt.x86_64.rpm
71ca9d8ea49819c3684cd14d98ae1ab5143c2ac63318c3edff62ebc66b8b6b6b  libvirt-daemon-driver-nwfilter-0.10.2.8-9.el6.centos.alt.x86_64.rpm
02507a39ad3614dffc8ad03700709017558fd15818d0f1e838cec8655c54526e  libvirt-daemon-driver-qemu-0.10.2.8-9.el6.centos.alt.x86_64.rpm
6674c23f807ab5fd9dd00e658beb2a7d627fa65958fbaa5d1ad46e96f861657e  libvirt-daemon-driver-secret-0.10.2.8-9.el6.centos.alt.x86_64.rpm
b20cb8588282f47f5dab730ca3320480e0ac1746f8d5723d6517ce3d31861463  libvirt-daemon-driver-storage-0.10.2.8-9.el6.centos.alt.x86_64.rpm
a3f2a58fcbe08ecd5c1704e36a81fc86dcec61f38cce7ce70bd4576c6c7d18a9  libvirt-daemon-driver-xen-0.10.2.8-9.el6.centos.alt.x86_64.rpm
06fd6ec2fa6e4175c51770d3a825d3115d731777006908e49378378ccf9bc757  libvirt-daemon-kvm-0.10.2.8-9.el6.centos.alt.x86_64.rpm
81a7f96bd97f7cb746c74ac779d51147f1de9fdc1e01f34cb3ac4a5386e22728  libvirt-daemon-lxc-0.10.2.8-9.el6.centos.alt.x86_64.rpm
471d338d2475f30ad1fc5155ae97b1ce0dc3d8a7021bc9d53eb9f1c4bd1ade0b  libvirt-daemon-xen-0.10.2.8-9.el6.centos.alt.x86_64.rpm
06bd1208fbce65935ab192fc75c97ed74e928d4d17e92290d6fed6da57e65f22  libvirt-devel-0.10.2.8-9.el6.centos.alt.x86_64.rpm
61e06ed53b142944ab386587d1242a0f95486ad1935854d7d214508ec81292db  libvirt-docs-0.10.2.8-9.el6.centos.alt.x86_64.rpm
ce581b3d70d7b4d8982b285315518731f37ffaad2ec78b389e0e074fd020385c  libvirt-lock-sanlock-0.10.2.8-9.el6.centos.alt.x86_64.rpm
56106bedfbfc6d8bd5095ea38df236aaed7a462c0cfc07942b51614650f53aa8  libvirt-python-0.10.2.8-9.el6.centos.alt.x86_64.rpm
3c8e89f5029f30574ab6ca88c46eba2af11ff73cc7d92a8a724e7484886c0f21  perf-3.10.63-11.el6.centos.alt.x86_64.rpm
d3584e0235562bf5a2225dd7049ca4420b261bc19955009b3ae994a3811af69a  python-virtinst-0.600.0-25.el6.centos.alt.noarch.rpm
7b50c868a1a7c92dd1e1bf7f4b05a3abed12561e289e9a41cf87ea18c9925b1c  xen-4.2.5-38.el6.centos.alt.x86_64.rpm
1a10b5f778324f946922be87913e0902a15afaf4c3e0f88c38b843292163d578  xen-devel-4.2.5-38.el6.centos.alt.x86_64.rpm
cf7de2648cf80e252c16c0c30dca44b064a0f3136b389b990558202c47f9c58c  xen-doc-4.2.5-38.el6.centos.alt.x86_64.rpm
65c87da1e0ba2d36458aae2cfbd070843b36b8812432efba3431c8a68d33fadd  xen-hypervisor-4.2.5-38.el6.centos.alt.x86_64.rpm
d1ed1a6f0b0064251adce3ed501fe16c83139d6e730d77151feb1b6fe1248525  xen-libs-4.2.5-38.el6.centos.alt.x86_64.rpm
a98ac4c5120f3a38ff926ea72048b327cc6d26d6de27519eb98b7f134296eccf  xen-licenses-4.2.5-38.el6.centos.alt.x86_64.rpm
2fa4564b445251ee6c20ffbc62ac365bf368618c73503b34aceb8934a010add6  xen-ocaml-4.2.5-38.el6.centos.alt.x86_64.rpm
34b975cd3b396ce130819ecc87676fd2437292d8c43f3a3963d67c0e4a438248  xen-ocaml-devel-4.2.5-38.el6.centos.alt.x86_64.rpm
0e7dcd74118cb8c81e3756c9fce7ccc19fa1f0e1bfe2fc670b2f18297731213e  xen-runtime-4.2.5-38.el6.centos.alt.x86_64.rpm

========================================================================

These updates address the following issues:

e1000e:

Just a rebuild of the module for the new kernel.

========================================================================

libvirt:
One minor bugfix from the 0.10.2-maint tree at libvirt.org:

http://libvirt.org/git/?p=libvirt.git;a=patch;h=a397e887ed40898cc177e118dffdea8e1f4c6184

========================================================================

python-virtinst:

1.  Upgraded to the version in CentOS-6.6 which is addressed here:

https://rhn.redhat.com/errata/RHBA-2014-1444.html

2.  Modified to use the tap2.5 interface in the Xen4CentOS6 tree.

========================================================================

Xen:
http://xenbits.xen.org/xsa/advisory-109.html
http://xenbits.xen.org/xsa/advisory-110.html
http://xenbits.xen.org/xsa/advisory-111.html
http://xenbits.xen.org/xsa/advisory-112.html
http://xenbits.xen.org/xsa/advisory-113.html
http://xenbits.xen.org/xsa/advisory-114.html
http://xenbits.xen.org/xsa/advisory-116.html

Xen CVE's:  CVE-2014-8594, CVE-2014-8595, CVE-2014-8866, CVE-2014-8867, CVE-2014-9030, CVE-2014-9065, CVE-2014-9066, CVE-2015-0361

========================================================================

Kernel:
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.57
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.58
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.59
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.60
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.61
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.62
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.10.63

Kernel CVE's:  CVE-2014-3601, CVE-2014-3610, CVE-2014-3611, CVE-2014-3647, CVE-2014-7970, CVE-2014-7975

--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #centos at irc.freenode.net