↵ Return to the main page of xen-hypervisor
View build
Search for updates
Package Info (Data from x86_64 build)
🠗 Changelog
🠗 Dependencies
🠗 Provides
🠗 Files
| Date | Author | Change |
|---|---|---|
| 2026-07-30 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.2-1 | - update to xen 4.21.2 - includes security fixes x86 shadow paging is deprecated [XSA-495, CVE-2026-42493] vIRQ event channel binding may break Xenstore [XSA-496, CVE-2026-42492] buffer overruns in libfsimage iso9660 handling [XSA-497, CVE-2026-42494, CVE-2026-42495, CVE-2026-62423, CVE-2026-62424, CVE-2026-62425] sysctl and platform-op locks open to abuse [XSA-499, CVE-2026-62426, CVE-2026-62427] grant-table: type confusion in grant-copy [XSA-500, CVE-2026-62428] grant-table: version change racing with other operations [XSA-501, CVE-2026-62435, CVE-2026-62436] vNUMA domain cleanup may race other operations [XSA-502, CVE-2026-62429] x86: Out-of-bounds read in vRTC emulation [XSA-503, CVE-2026-62430] Viridian STIMER division by zero [XSA-504, CVE-2026-62431] evtchn: Race between FIFO expand and reset [XSA-505, CVE-2026-62432] correct buffer checks for DM_OP hypercalls [XSA-506, CVE-2026-62433] PoD: Don't try to reclaim special pages [XSA-507, CVE-2026-62434] pygrub is only supported in de-privileged mode [XSA-508] |
| 2026-06-12 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.1-4 | - x86 HVM I/O port list traversal [XSA-491, CVE-2026-42487] - domctl lock open to abuse [XSA-492, CVE-2026-42489, CVE-2026-42490] - Arm: Completion of memory accesses not guaranteed by completion of a TLBI [XSA-493, CVE-2025-10263] - x86: mismatched mapcache metadata [XSA-494, CVE-2026-42488] |
| 2026-05-12 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.1-3 | - x86: CPU Opcode Cache corruption [XSA-490,CVE-2025-54518] |
| 2026-04-28 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.1-2 | - oxenstored keeps quota related use counts across domain destruction [XSA-483, CVE-2026-23556] - Xenstored DoS via XS_RESET_WATCHES command [XSA-484, CVE-2026-23557] - grant table v2 race in status page mapping [XSA-486, CVE-2026-23558] - x86: Floating Point Divider State Sampling [XSA-488, CVE-2025-54505] |
| 2026-03-26 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.1-1 | - update to xen 4.21.1 remove patches now included or superceded upstream |
| 2026-03-17 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.0-5 | - Use after free of paging structures in EPT [XSA-480, CVE-2026-23554] - Xenstored DoS by unprivileged domain [XSA-481, CVE-2026-23555] |
| 2026-02-20 | Richard W.M. Jones <rjones at redhat dot com> - 4.21.0-4 | - OCaml 5.4.1 rebuild |
| 2026-01-28 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.0-3 | x86: buffer overrun with shadow paging + tracing [XSA-477, CVE-2025-58150] x86: incomplete IBPB for vCPU isolation [XSA-479, CVE-2026-23553] |
| 2026-01-17 | Fedora Release Engineering <releng at fedoraproject dot org> - 4.21.0-2 | - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild |
| 2026-01-07 | Michael Young <m dot a dot young at durham dot ac dot uk> - 4.21.0-1 | - update to xen 4.21.0 rebase mini-os use .xz xen tarball instead of .gz fix quotes around sed command update libxenstore version package libxenmanage and xen-watchdog-sleep.sh files add a new package for test files renumber patches use json-c instead of yajl - fix bug in xen code when using json-c - fix code issues detected by gcc16 |