In case there are any Qubes OS users here: we just released Qubes Security Bulletin #29 for a critical Xen bug in PV memory virtualization allowing VM escape (XSA-212):

https://github.com/QubesOS/qubes-secpack/blob/master/QSBs/qsb-029-2017.txt

@rootkovska I have a feeling there are lots of Qubes users here, with the recent influx of infosec peoplez. Count me as one, I'm a big fan of your work.