OracleVM 3.1 : xen (OVMSA-2013-0071)
Low Nessus Plugin ID 79518
SynopsisThe remote OracleVM host is missing one or more security updates.
DescriptionThe remote OracleVM system is missing necessary patches to address critical security updates :
- Rebuild correcting changelog
- x86: properly set up fbld emulation operand address This is XSA-66. (CVE-2013-4361)
- x86: properly handle hvm_copy_from_guest_[phys,virt] errors Ignoring them generally implies using uninitialized data and, in all cases dealt with here, potentially leaking hypervisor stack contents to guests.
This is XSA-63. (CVE-2013-4355)
SolutionUpdate the affected xen / xen-devel / xen-tools packages.