-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5836-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff December 26, 2024 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : xen CVE ID : CVE-2023-28746 CVE-2023-46841 CVE-2023-46842 CVE-2024-2193 CVE-2024-2201 CVE-2024-31142 CVE-2024-31143 CVE-2024-31145 CVE-2024-31146 CVE-2024-45817 CVE-2024-45818 CVE-2024-45819 Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in privilege escalation, denial of service or information leaks. For the stable distribution (bookworm), these problems have been fixed in version 4.17.5+23-ga4e5191dc0-1. We recommend that you upgrade your xen packages. For the detailed security status of xen please refer to its security tracker page at: https://security-tracker.debian.org/tracker/xen Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmdta3MACgkQEMKTtsN8 Tja94g//QFsowABFRrftfZNquAQD71MSWj3gNjiZpByYp9OglHMvDklWiDCCV9bR JRNRTjPHhssDwfJha5EpuK7fXug3fW9ugJ+uw25DY6WVT1PfdTiA92wF1qw3RhtL ylbt+zMAMn53HPlxhMateHkbWps47noBpGPtUzUH4MRAjf3pTjhoEPiRc/cR3+C2 7O5VCiUpE3kzTC1CcZ7ldjgVmrKnvrQ8crJxq+6aU536JJ+EEEOawYVxqvQ3cq84 ZJHe47P/bzLO17cu4nLSDYr4uK5ikKW50g14xEGVjzx4MuieCgDmtw0OPdM9x87z CYQRhHZZ7M85+1ChYhzn8tb4+yhS049Smve49Jz8XZRRXRku4L0yJi5kkEMlNbJB kTn+rz5WQ3hFqWcrKgLt67VtKN1ysVV6hlOAuOcAs+/82kQVXm1RvOa9hZqSQUKN zGgjDY40nXDJ88npOWMFBTaNeCqQdKKulzR9Sd6OJLAKoNpjgsS/uHqPhcG71LyF imq7//xrbwIopupQjtAkpsVsKC6/QtLGRkBZmclupgNSw54UxoGj7usG4Dv0hz2m WQTvj4YR2l4QBTBHx3lN0uwYl9MzyYH0TwYwpZrV6uCT96JAXm8/6m0nuX2BJi51 NUm3j/54ADnH2F7yn6f9VXk2lwguiH0wrmocN1XcCd61lq0HlXM= =h1/H -----END PGP SIGNATURE-----