Revisions of xen

Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 838)
- bsc#1221984 - VUL-0: CVE-2023-46842: xen: x86 HVM hypercalls may
  trigger Xen bug check (XSA-454)
  6617d62c-x86-hvm-Misra-Rule-19-1-regression.patch
- Upstream bug fixes (bsc#1027519)
  6627a4ee-vRTC-UIP-set-for-longer-than-expected.patch
  6627a5fc-x86-MTRR-inverted-WC-check.patch
  662a6a4c-x86-spec-reporting-of-BHB-clearing.patch
  662a6a8d-x86-spec-adjust-logic-to-elide-LFENCE.patch
  663090fd-x86-gen-cpuid-syntax.patch
  663a383c-libxs-open-xenbus-fds-as-O_CLOEXEC.patch
  663a4f3e-x86-cpu-policy-migration-IceLake-to-CascadeLake.patch
  663d05b5-x86-ucode-distinguish-up-to-date.patch
  663eaa27-libxl-XenStore-error-handling-in-device-creation.patch
buildservice-autocommit accepted request 1166538 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 837)
baserev update by copy to link target
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 836)
- Update to Xen 4.18.2 security bug fix release (bsc#1027519)
  xen-4.18.2-testing-src.tar.bz2
  * No upstream changelog found in sources or webpage
- bsc#1221984 - VUL-0: CVE-2023-46842: xen: x86 HVM hypercalls may
  trigger Xen bug check (XSA-454)
- bsc#1222302 - VUL-0: CVE-2024-31142: xen: x86: Incorrect logic
  for BTC/SRSO mitigations (XSA-455)
- bsc#1222453 - VUL-0: CVE-2024-2201: xen: x86: Native Branch
  History Injection (XSA-456)
- Dropped patch contained in new tarball
  65f83951-x86-mm-use-block_lock_speculation-in.patch
buildservice-autocommit accepted request 1162273 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 835)
baserev update by copy to link target
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 834)
- bsc#1221334 - VUL-0: CVE-2024-2193: xen: GhostRace: Speculative
  Race Conditions (XSA-453)
  65f83951-x86-mm-use-block_lock_speculation-in.patch
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 833)
- Update to Xen 4.18.1 bug fix release (bsc#1027519)
  xen-4.18.1-testing-src.tar.bz2
  * No upstream changelog found in sources or webpage
- bsc#1221332 - VUL-0: CVE-2023-28746: xen: x86: Register File Data
  Sampling (XSA-452)
- bsc#1221334 - VUL-0: CVE-2024-2193: xen: GhostRace: Speculative
  Race Conditions (XSA-453)
- Dropped patches included in new tarball
  654370e2-x86-x2APIC-remove-ACPI_FADT_APIC_CLUSTER-use.patch
  65437103-x86-i8259-dont-assume-IRQs-always-target-CPU0.patch
  655b2ba9-fix-sched_move_domain.patch
  6566fef3-x86-vLAPIC-x2APIC-derive-LDR-from-APIC-ID.patch
  6569ad03-libxg-mem-leak-in-cpu-policy-get-set.patch
  656ee5e1-x86emul-avoid-triggering-event-assertions.patch
  656ee602-cpupool-adding-offline-CPU.patch
  656ee6c3-domain_create-error-path.patch
  6571ca95-fix-sched_move_domain.patch
  6578598c-Arm-avoid-pointer-overflow-on-invalidate.patch
  65842d5c-x86-AMD-extend-CPU-erratum-1474-fix.patch
  65a7a0a4-x86-Intel-GPCC-setup.patch
  65a9911a-VMX-IRQ-handling-for-EXIT_REASON_INIT.patch
  65b27990-x86-p2m-pt-off-by-1-in-entry-check.patch
  65b29e91-x86-ucode-stability-of-raw-policy-rescan.patch
  65b8f961-PCI-fail-dev-assign-if-phantom-functions.patch
  65b8f9ab-VT-d-else-vs-endif-misplacement.patch
  xsa451.patch
buildservice-autocommit accepted request 1154130 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 832)
baserev update by copy to link target
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 831)
Put the version string back to 06
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 830)
- bsc#1219885 - VUL-0: CVE-2023-46841: xen: x86: shadow stack vs
  exceptions from emulation stubs (XSA-451)
  xsa451.patch
buildservice-autocommit accepted request 1143458 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 829)
baserev update by copy to link target
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 828)
- Upstream bug fixes (bsc#1027519)
  6566fef3-x86-vLAPIC-x2APIC-derive-LDR-from-APIC-ID.patch
  6569ad03-libxg-mem-leak-in-cpu-policy-get-set.patch
  656ee5e1-x86emul-avoid-triggering-event-assertions.patch
  656ee602-cpupool-adding-offline-CPU.patch
  656ee6c3-domain_create-error-path.patch
  6571ca95-fix-sched_move_domain.patch
  6578598c-Arm-avoid-pointer-overflow-on-invalidate.patch
  65842d5c-x86-AMD-extend-CPU-erratum-1474-fix.patch
  65a7a0a4-x86-Intel-GPCC-setup.patch
  65a9911a-VMX-IRQ-handling-for-EXIT_REASON_INIT.patch
  65b27990-x86-p2m-pt-off-by-1-in-entry-check.patch
  65b29e91-x86-ucode-stability-of-raw-policy-rescan.patch
- bsc#1218851 - VUL-0: CVE-2023-46839: xen: phantom functions
  assigned to incorrect contexts (XSA-449)
  65b8f961-PCI-fail-dev-assign-if-phantom-functions.patch
- bsc#1219080 - VUL-0: CVE-2023-46840: xen: VT-d: Failure to
  quarantine devices in !HVM builds (XSA-450)
  65b8f9ab-VT-d-else-vs-endif-misplacement.patch
- Patches dropped / replaced by newer upstream versions
  xsa449.patch
  xsa450.patch
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 827)
- bsc#1219080 - VUL-0: CVE-2023-46840: xen: VT-d: Failure to
  quarantine devices in !HVM builds (XSA-450)
  xsa450.patch

- bsc#1218851 - VUL-0: CVE-2023-46839: xen: phantom functions
  assigned to incorrect contexts (XSA-449)
  xsa449.patch
buildservice-autocommit accepted request 1127999 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 826)
baserev update by copy to link target
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 825)
- Enable the Kconfig options REQUIRE_NX and DIT_DEFAULT to
  provide better hypervisor security
  xen.spec

- Upstream bug fixes (bsc#1027519)
  654370e2-x86-x2APIC-remove-ACPI_FADT_APIC_CLUSTER-use.patch
  65437103-x86-i8259-dont-assume-IRQs-always-target-CPU0.patch
  655b2ba9-fix-sched_move_domain.patch
buildservice-autocommit accepted request 1127727 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 824)
baserev update by copy to link target
Charles Arnold's avatar Charles Arnold (charlesa) accepted request 1127661 from Bernhard Wiedemann's avatar Bernhard Wiedemann (bmwiedemann) (revision 823)
Pass XEN_BUILD_DATE + _TIME to override build date (boo#1047218)
buildservice-autocommit accepted request 1126897 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 822)
baserev update by copy to link target
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 821)
One more minor upstream commit to include in tarball
Charles Arnold's avatar Charles Arnold (charlesa) committed (revision 820)
- Update to Xen 4.18.0 FCS release (jsc#PED-4984)
  xen-4.18.0-testing-src.tar.bz2
  * Repurpose command line gnttab_max_{maptrack_,}frames options so they don't
    cap toolstack provided values.
  * Ignore VCPUOP_set_singleshot_timer's VCPU_SSHOTTMR_future flag. The only
    known user doesn't use it properly, leading to in-guest breakage.
  * The "dom0" option is now supported on Arm and "sve=" sub-option can be used
    to enable dom0 guest to use SVE/SVE2 instructions.
  * Physical CPU Hotplug downgraded to Experimental and renamed "ACPI CPU
    Hotplug" for clarity
  * On x86, support for features new in Intel Sapphire Rapids CPUs:
    - PKS (Protection Key Supervisor) available to HVM/PVH guests.
    - VM-Notify used by Xen to mitigate certain micro-architectural pipeline
      livelocks, instead of crashing the entire server.
    - Bus-lock detection, used by Xen to mitigate (by rate-limiting) the system
      wide impact of a guest misusing atomic instructions.
  * xl/libxl can customize SMBIOS strings for HVM guests.
  * Add support for AVX512-FP16 on x86.
  * On Arm, Xen supports guests running SVE/SVE2 instructions. (Tech Preview)
  * On Arm, add suport for Firmware Framework for Arm A-profile (FF-A) Mediator
    (Tech Preview)
  * Add Intel Hardware P-States (HWP) cpufreq driver.
  * On Arm, experimental support for dynamic addition/removal of Xen device tree
    nodes using a device tree overlay binary (.dtbo).
  * Introduce two new hypercalls to map the vCPU runstate and time areas by
    physical rather than linear/virtual addresses.
  * On x86, support for enforcing system-wide operation in Data Operand
    Independent Timing Mode.
  * The project has now officially adopted 6 directives and 65 rules of MISRA-C.
  * On x86, the "pku" command line option has been removed.  It has never
buildservice-autocommit accepted request 1112599 from Charles Arnold's avatar Charles Arnold (charlesa) (revision 819)
baserev update by copy to link target
Displaying revisions 1 - 20 of 838
openSUSE Build Service is sponsored by