CVE-2015-0361 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-0361): Use-after-free vulnerability in Xen 4.2.x, 4.3.x, and 4.4.x allows remote domains to cause a denial of service (system crash) via a crafted hypercall during HVM guest teardown.
+ 21 Jan 2015; Yixun Lan <dlan@gentoo.org> +xen-4.2.5-r4.ebuild, + +xen-4.3.3-r4.ebuild, +xen-4.4.1-r5.ebuild, -xen-4.5.0_rc4.ebuild, + +xen-4.5.0.ebuild: + version bump, fix security bug 536220
The current stabilized builds are: 4.4.2-r1 4.2.5-r8 With 4.3x removed. Adding to existing GLSA release.
This issue was resolved and addressed in GLSA 201504-04 at https://security.gentoo.org/glsa/201504-04 by GLSA coordinator Yury German (BlueKnight).