Fedora 21 Security Update: xen-4.4.2-9.fc21

Resolved Bugs
1243563 – CVE-2015-5154 qemu: ide: atapi: heap overflow during I/O buffer memory access
1179352 – Utilize system-wide crypto-policies
1247142 – CVE-2015-5154 xen: qemu: ide: atapi: heap overflow during I/O buffer memory access [fedora-all]
1239309 – xen package does not create new entry in /boot/efi/EFI/fedora/grub.cfg<br
QEMU heap overflow flaw while processing certain ATAPI commands.
[XSA-138, CVE-2015-5154] (#1247142)
rebuild efi grub.cfg if it is present (#1239309),
add gcc5 build fixes, one needed for the following patch,
modify gnutls use in line with Fedora’s crypto policies (#117935)

Leave a Reply