Xen is a bare-metal hypervisor.
+Multiple vulnerabilities have been discovered in Xen. Please review the + referenced XSA security advisories. +
+Please review the referenced XSA security advisories for details.
+There is no known workaround at this time.
+All Xen users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=app-emulation/xen-4.10.3-r2"
+
+
+ All Xen pvgrub users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose
+ ">=app-emulation/xen-pvgrub-4.10.3-r2"
+
+
+ All Xen tools users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose
+ ">=app-emulation/xen-tools-4.10.3-r2"
+
+ Mailman is a Python based mailing list server with an extensive web + interface. +
+Multiple vulnerabilities have been discovered in Mailman. Please review + the referenced CVE identifier for details. +
+Please review the referenced CVE identifiers for details.
+There is no known workaround at this time.
+All Mailman users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=net-mail/mailman-2.1.29"
+
+ Portage is the package management and distribution system for Gentoo.
+A vulnerability was discovered in emerge-delta-webrsync and Portage that + did not properly validate the revocation status of GPG keys. +
+A remote attacker could conduct a man-in-the-middle attack. Please + review the referenced bug for specific details. +
+There is no known workaround at this time.
+All emerge-delta-webrsync users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose
+ ">=app-portage/emerge-delta-webrsync-3.7.4"
+
+
+ All Portage users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=sys-apps/portage-2.3.22"
+
+ ClamAV is a GPL virus scanner.
+Multiple vulnerabilities have been discovered in ClamAV. Please review + the CVE identifiers referenced below for details. +
+Please review the referenced CVE identifiers for details.
+There is no known workaround at this time.
+All ClamAV users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=app-antivirus/clamav-0.101.2"
+
+ Git is a free and open source distributed version control system + designed to handle everything from small to very large projects with + speed and efficiency. +
+Multiple vulnerabilities have been discovered in Git. Please review the + referenced CVE identifiers for details +
+Please review the referenced CVE identifier and bugs for details.
+There is no known workaround at this time.
+All Git users should upgrade to the latest version:
+ +
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=dev-vcs/git-2.19.2"
+
+