Xen is een 'virtuele machine-hypervisor' voor het x86-platform en laat diverse besturingssystemen gelijktijdig op één systeem draaien zonder de prestaties drastisch te beïnvloeden. Voor meer informatie over Xen en de bijbehorende community verwijzen we naar deze en deze pagina. Op dit moment worden alleen Linux en NetBSD als hostsystemen ondersteund, maar men is druk bezig om ook andere besturingssystemen volledig te ondersteunen. De ontwikkelaars hebben Xen 4.1.6.1 uitgebracht met de volgende veranderingen:
Xen 4.1.6.1
Xen 4.1.6.1 is a maintenance release in the 4.1 series. We recommend that all users of Xen 4.1.5 upgrade to Xen 4.1.6.1.
Note that 4.1.6 didn't get released, as a build issue was found late in the release process, when the 4.1.6 version number was already irreversibly applied. Note further that this is expected to be the last release of the 4.1 stable series.
This release fixes the following critical vulnerabilities:This release contains many bug fixes and improvements. The highlights are:
- CVE-2013-1918 / XSA-45: Several long latency operations are not preemptible
- CVE-2013-1952 / XSA-49: VT-d interrupt remapping source validation flaw for bridges
- CVE-2013-2076 / XSA-52: Information leak on XSAVE/XRSTOR capable AMD CPUs
- CVE-2013-2077 / XSA-53: Hypervisor crash due to missing exception recovery on XRSTOR
- CVE-2013-2078 / XSA-54: Hypervisor crash due to missing exception recovery on XSETBV
- CVE-2013-2194, CVE-2013-2195, CVE-2013-2196 / XSA-55: Multiple vulnerabilities in libelf PV kernel handling
- CVE-2013-2072 / XSA-56: Buffer overflow in xencontrol Python bindings affecting xend
- CVE-2013-2211 / XSA-57: libxl allows guest write access to sensitive console related xenstore keys
- CVE-2013-1432 / XSA-58: Page reference counting error due to XSA-45/CVE-2013-1918 fixes
- XSA-61: libxl partially sets up HVM passthrough even with disabled iommu
You can also get this release from the git repository: git://xenbits.xen.org/xen.git (tag RELEASE-4.1.6.1)
- addressing a regression from the fix for XSA-21
- addressing a regression from the fix for XSA-46
- bug fixes to low level system state handling, including certain hardware errata workarounds