From mboxrd@z Thu Jan 1 00:00:00 1970 From: Wei Liu Subject: Re: Xen Security Advisory 180 (CVE-2014-3672) - Unrestricted qemu logging Date: Wed, 25 May 2016 15:51:23 +0100 Message-ID: <20160525145123.GC18213@citrix.com> References: Mime-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 Return-path: Content-Disposition: inline In-Reply-To: List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xen.org Sender: "Xen-devel" To: George Dunlap Cc: "xen-devel@lists.xen.org" , Wei Liu , "Xen.org security team" List-Id: xen-devel@lists.xenproject.org T24gV2VkLCBNYXkgMjUsIDIwMTYgYXQgMDM6MDQ6NDBQTSArMDEwMCwgR2VvcmdlIER1bmxhcCB3 cm90ZToKPiBPbiBNb24sIE1heSAyMywgMjAxNiBhdCA2OjA5IFBNLCBYZW4ub3JnIHNlY3VyaXR5 IHRlYW0gPHNlY3VyaXR5QHhlbi5vcmc+IHdyb3RlOgo+ID4gUkVTT0xVVElPTgo+ID4gPT09PT09 PT09PQo+ID4KPiA+IEFwcGx5aW5nIHRoZSBhcHByb3ByaWF0ZSBhdHRhY2hlZCBwYXRjaCByZXNv bHZlcyB0aGlzIGlzc3VlLgo+ID4KPiA+IFRoZSBwYXRjaGVzIGFkb3B0IGEgc2ltcGxlIGFuZCBy YXRoZXIgY3J1ZGUgYXBwcm9hY2ggd2hpY2ggaXMKPiA+IGVmZmVjdGl2ZSBhdCByZXNvbHZpbmcg dGhlIHNlY3VyaXR5IGlzc3VlIGluIHRoZSBjb250ZXh0IG9mIGEgWGVuCj4gPiBkZXZpY2UgbW9k ZWwuICBUaGV5IG1heSBub3QgYmUgYXBwcm9wcmlhdGUgZm9yIGFkb3B0aW9uIHVwc3RyZWFtIG9y IGluCj4gPiBvdGhlciBjb250ZXh0cy4KPiAKPiBUaGlzIGlzIGluZGVlZCBhIHJhdGhlciBjcnVk ZSBhcHByb2FjaDsgYnV0IGZvciBvdXIgdXBjb21pbmcgNC43Cj4gcmVsZWFzZSwgd2hhdCdzIHRo ZSBwbGFuPyAgRG8gd2UgaGF2ZSB0aW1lIHRvIGdlbmVyYWxpemUgeGVuY29uc29sZWQKPiB0byBo YW5kbGUgdGhpcyBzb3J0IG9mIGxvZ2dpbmcsIGFuZCBpZiBzbywgd2hvIGlzIGdvaW5nIHRvIGRv IHRoYXQKPiB3b3JrPwo+IAoKSSB0aGlzIGl0J3MgZ29pbmcgdG8gYmUgYSBiaXQgaW50cnVzaXZl IGF0IHRoaXMgcG9pbnQgdG8gY2hhbmdlCnhlbmNvbnNvbGVkIHRvIGRvIHRoYXQuIEhvd2V2ZXIg aXQgc2hvdWxkIGJlIHRvbyBoYXJkIHRvIHRlc3QuCldlIGFsc28gbmVlZCBwZW9wbGUgdG8gdGVz dCBhbmQgcmV2aWV3IGl0LiBBbGwgaW4gYWxsIGl0IHNlZW1zIHRpbWUgaXMKdmVyeSB0aWdodC4K CldlIGNhbiBhdCBsZWFzdCBhcHBseSB0aGlzIHBhdGNoIHRvIG91ciBvd24gdHJlZS4KCldlaS4K Cj4gIC1HZW9yZ2UKPiAKPiBfX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fXwo+IFhlbi1kZXZlbCBtYWlsaW5nIGxpc3QKPiBYZW4tZGV2ZWxAbGlzdHMueGVuLm9y Zwo+IGh0dHA6Ly9saXN0cy54ZW4ub3JnL3hlbi1kZXZlbAoKX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX19fX19fX18KWGVuLWRldmVsIG1haWxpbmcgbGlzdApYZW4tZGV2 ZWxAbGlzdHMueGVuLm9yZwpodHRwOi8vbGlzdHMueGVuLm9yZy94ZW4tZGV2ZWwK