Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 753692 (XSA-345, XSA-346, XSA-347) - <app-emulation/xen-4.13.2: multiple vulnerabilities
Summary: <app-emulation/xen-4.13.2: multiple vulnerabilities
Status: RESOLVED FIXED
Alias: XSA-345, XSA-346, XSA-347
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard: B1 [glsa+]
Keywords:
Depends on:
Blocks:
 
Reported: 2020-11-09 11:47 UTC by Tomáš Mózes
Modified: 2021-01-19 21:35 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 1 Larry the Git Cow gentoo-dev 2020-11-10 15:29:52 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=8b4ac1647b4d77bc002766a21b352e28e7d5745c

commit 8b4ac1647b4d77bc002766a21b352e28e7d5745c
Author:     Tomáš Mózes <hydrapolic@gmail.com>
AuthorDate: 2020-11-09 11:58:38 +0000
Commit:     Thomas Deutschmann <whissi@gentoo.org>
CommitDate: 2020-11-10 15:29:46 +0000

    app-emulation/xen: add security patches, drop vulnerable
    
    Bug: https://bugs.gentoo.org/753692
    Signed-off-by: Tomáš Mózes <hydrapolic@gmail.com>
    Closes: https://github.com/gentoo/gentoo/pull/18199
    Signed-off-by: Thomas Deutschmann <whissi@gentoo.org>

 app-emulation/xen/Manifest                                       | 2 +-
 app-emulation/xen/{xen-4.14.0-r3.ebuild => xen-4.14.0-r4.ebuild} | 2 +-
 2 files changed, 2 insertions(+), 2 deletions(-)

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=dbc29cf75aab4e62dabce279d43fb9a4d69d81e0

commit dbc29cf75aab4e62dabce279d43fb9a4d69d81e0
Author:     Tomáš Mózes <hydrapolic@gmail.com>
AuthorDate: 2020-11-09 11:51:44 +0000
Commit:     Thomas Deutschmann <whissi@gentoo.org>
CommitDate: 2020-11-10 15:29:44 +0000

    app-emulation/xen: bump to 4.13.2
    
    Bug: https://bugs.gentoo.org/753692
    Signed-off-by: Tomáš Mózes <hydrapolic@gmail.com>
    Signed-off-by: Thomas Deutschmann <whissi@gentoo.org>

 app-emulation/xen/Manifest          |   1 +
 app-emulation/xen/xen-4.13.2.ebuild | 165 ++++++++++++++++++++++++++++++++++++
 2 files changed, 166 insertions(+)
Comment 2 Sam James archtester Gentoo Infrastructure gentoo-dev Security 2020-11-10 18:46:31 UTC
x86 done
Comment 3 Sam James archtester Gentoo Infrastructure gentoo-dev Security 2020-11-11 00:46:58 UTC
amd64 done

all arches done
Comment 4 GLSAMaker/CVETool Bot gentoo-dev 2020-11-11 03:49:55 UTC
This issue was resolved and addressed in
 GLSA 202011-06 at https://security.gentoo.org/glsa/202011-06
by GLSA coordinator Sam James (sam_c).
Comment 5 NATTkA bot gentoo-dev 2020-11-27 17:00:55 UTC
Unable to check for sanity:

> no match for package: app-emulation/xen-4.13.2
Comment 6 John Helmert III archtester Gentoo Infrastructure gentoo-dev Security 2020-11-27 17:27:05 UTC
Tree is clean, GLSA already done, closing:

commit 91207f7f190432393e63d42647f560642b87f55c
Author: Tomáš Mózes <hydrapolic@gmail.com>
Date:   Fri Nov 27 10:23:41 2020 +0000

    app-emulation/xen: drop vulnerable
    
    Signed-off-by: Tomáš Mózes <hydrapolic@gmail.com>
    Signed-off-by: Thomas Deutschmann <whissi@gentoo.org>

 delete mode 100644 app-emulation/xen/xen-4.13.1-r5.ebuild
 delete mode 100644 app-emulation/xen/xen-4.13.2.ebuild
 delete mode 100644 app-emulation/xen/xen-4.14.0-r5.ebuild
Comment 7 John Helmert III archtester Gentoo Infrastructure gentoo-dev Security 2021-01-19 21:35:13 UTC
(In reply to John Helmert III (ajak) from comment #6)
> Tree is clean, GLSA already done, closing:
> 
> commit 91207f7f190432393e63d42647f560642b87f55c
> Author: Tomáš Mózes <hydrapolic@gmail.com>
> Date:   Fri Nov 27 10:23:41 2020 +0000
> 
>     app-emulation/xen: drop vulnerable
>     
>     Signed-off-by: Tomáš Mózes <hydrapolic@gmail.com>
>     Signed-off-by: Thomas Deutschmann <whissi@gentoo.org>
> 
>  delete mode 100644 app-emulation/xen/xen-4.13.1-r5.ebuild
>  delete mode 100644 app-emulation/xen/xen-4.13.2.ebuild
>  delete mode 100644 app-emulation/xen/xen-4.14.0-r5.ebuild

Whoops! *Now* closing.