Your message dated Sun, 28 Aug 2022 12:59:52 +0200
with message-id <2976148.Z1ClUSbBXi@prancing-pony>
and subject line Re: Fixed in version 4.16.2-1
has caused the Debian Bug report #1014414,
regarding xen: New unreleased upstream fixes for 6 vulnerabilities in
testing/unstable
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
1014414: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1014414
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: xen
Version: 4.16.1-1
Severity: critical
Tags: security upstream
Justification: root security hole
X-Debbugs-Cc: Debian Security Team <t...@security.debian.org>
Dear Maintainer,
The upstream stable branch (stable-4.16 in
https://xenbits.xen.org/gitweb/?p=xen.git;a=summary) contains fixes for
CVE-2022-21123, CVE-2022-21125, CVE-2022-21166, CVE-2022-26362,
CVE-2022-26363 and CVE-2022-26364, that are not in any Xen release.
An upstream tarball and patched source and binary packages for Ubuntu
22.04 are available in my PPA:
https://launchpad.net/~luis220413/+archive/ubuntu/security-updates
Kind regards,
Luís Infante da Câmara
--- End Message ---
--- Begin Message ---
Version: 4.16.2-1
On Sat, 27 Aug 2022 17:05:01 +0100 Luís Infante da Câmara
<luis.infante.da.cam...@tecnico.ulisboa.pt> wrote:
> Source: xen
> Source-Version: 4.16.2-1
> Done: Luís Infante da Câmara <luis.infante.da.cam...@tecnico.ulisboa.pt>
>
> Fixed in Debian unstable and Ubuntu Kinetic in version 4.16.2-1.
signature.asc
Description: This is a digitally signed message part.
--- End Message ---