ubuntu/+source/xen:applied/ubuntu/wily-devel

Last commit made on 2016-07-05
Get this branch:
git clone -b applied/ubuntu/wily-devel https://git.launchpad.net/ubuntu/+source/xen
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/ubuntu/wily-devel
Repository:
lp:ubuntu/+source/xen

Recent commits

9c738c0... by Stefan Bader on 2016-06-30

Import patches-applied version 4.5.1-0ubuntu1.4 to applied/ubuntu/wily-security

Imported using git-ubuntu import.

Changelog parent: d5cd91ce2536fb8858582d8d08af31c931dc928e
Unapplied parent: 1e8c80cd84ce3329e3e36c116c8a9575a9f0f388

New changelog entries:
  * Applying Xen Security Advisories:
    - CVE-2016-3158, CVE-2016-3159 / XSA-172
      * x86: fix information leak on AMD CPUs
    - CVE-2016-3960 / XSA-173
      * x86: limit GFNs to 32 bits for shadowed superpages.
    - CVE-2016-4962 / XSA-175
      * libxl: Record backend/frontend paths in /libxl/$DOMID
      * libxl: Provide libxl__backendpath_parse_domid
      * libxl: Do not trust frontend in libxl__devices_destroy
      * libxl: Do not trust frontend in libxl__device_nextid
      * libxl: Do not trust frontend for disk eject event
      * libxl: Do not trust frontend for disk in getinfo
      * libxl: Do not trust frontend for vtpm list
      * libxl: Do not trust frontend for vtpm in getinfo
      * libxl: Do not trust frontend for nic in libxl_devid_to_device_nic
      * libxl: Do not trust frontend for nic in getinfo
      * libxl: Do not trust frontend for channel in list
      * libxl: Do not trust frontend for channel in getinfo
      * libxl: Cleanup: Have libxl__alloc_vdev use /libxl
      * libxl: Document ~/serial/ correctly
    - CVE-2016-4480 / XSA-176
      * x86/mm: fully honor PS bits in guest page table walks
    - CVE-2016-4963 / XSA-178
      * libxl: Make copy of every xs backend in /libxl in _generic_add
      * libxl: Do not trust backend in libxl__device_exists
      * libxl: Do not trust backend for vtpm in getinfo (except uuid)
      * libxl: Do not trust backend for vtpm in getinfo (uuid)
      * libxl: cdrom eject and insert: write to /libxl
      * libxl: Do not trust backend for disk eject vdev
      * libxl: Do not trust backend for disk; fix driver domain disks list
      * libxl: Do not trust backend for disk in getinfo
      * libxl: Do not trust backend for cdrom insert
      * libxl: Do not trust backend for channel in getinfo
      * libxl: Rename libxl__device_{nic,channel}_from_xs_be to _from_xenstore
      * libxl: Rename READ_BACKEND to READ_LIBXLDEV
      * libxl: Have READ_LIBXLDEV use libxl_path rather than be_path
      * libxl: Do not trust backend in nic getinfo
      * libxl: Do not trust backend for nic in devid_to_device
      * libxl: Do not trust backend for nic in list
      * libxl: Do not trust backend in channel list
      * libxl: Cleanup: use libxl__backendpath_parse_domid in
               libxl__device_disk_from_xs_be
      * libxl: Fix NULL pointer due to XSA-178 fix wrong XS nodename
    - CVE-2016-5242 / XSA-181
      * xen/arm: Don't free p2m->first_level in p2m_teardown() before
                 it has been allocated

1e8c80c... by Stefan Bader on 2016-06-30

[PATCH] libxl: Fix NULL pointer due to XSA-178 fix wrong XS nodename

Gbp-Pq: xsa178-4.5-0019-libxl-Fix-NULL-pointer-due-to-XSA-178-fix-wrong-XS-n.patch.

a35eb54... by Stefan Bader on 2016-06-30

[PATCH 19/20] libxl: Cleanup: use libxl__backendpath_parse_domid in

Gbp-Pq: xsa178-4.5-0018-libxl-Cleanup-use-libxl__backendpath_parse_domid-in-.patch.

e75c382... by Stefan Bader on 2016-06-30

[PATCH 17/20] libxl: Do not trust backend in channel list

Gbp-Pq: xsa178-4.5-0017-libxl-Do-not-trust-backend-in-channel-list.patch.

988bc6c... by Stefan Bader on 2016-06-30

[PATCH 16/20] libxl: Do not trust backend for nic in list

Gbp-Pq: xsa178-4.5-0016-libxl-Do-not-trust-backend-for-nic-in-list.patch.

84bb37b... by Stefan Bader on 2016-06-30

[PATCH 15/20] libxl: Do not trust backend for nic in devid_to_device

Gbp-Pq: xsa178-4.5-0015-libxl-Do-not-trust-backend-for-nic-in-devid_to_devic.patch.

6ba99fc... by Stefan Bader on 2016-06-30

[PATCH 14/20] libxl: Do not trust backend in nic getinfo

Gbp-Pq: xsa178-4.5-0014-libxl-Do-not-trust-backend-in-nic-getinfo.patch.

acfa2f9... by Stefan Bader on 2016-06-30

[PATCH 13/20] libxl: Have READ_LIBXLDEV use libxl_path rather than

Gbp-Pq: xsa178-4.5-0013-libxl-Have-READ_LIBXLDEV-use-libxl_path-rather-than-.patch.

82c2831... by Stefan Bader on 2016-06-30

[PATCH 12/20] libxl: Rename READ_BACKEND to READ_LIBXLDEV

Gbp-Pq: xsa178-4.5-0012-libxl-Rename-READ_BACKEND-to-READ_LIBXLDEV.patch.

564b4c6... by Stefan Bader on 2016-06-30

[PATCH 11/20] libxl: Rename libxl__device_{nic,channel}_from_xs_be to

Gbp-Pq: xsa178-4.5-0011-libxl-Rename-libxl__device_-nic-channel-_from_xs_be-.patch.