Re: [stable] [PATCH] [media] gspca - main: Fix a regression with the PS3 Eye webcam

2010-12-06 Thread Greg KH
On Mon, Nov 22, 2010 at 12:34:18PM +0100, Antonio Ospite wrote: On Fri, 5 Nov 2010 23:08:12 +0100 Antonio Ospite osp...@studenti.unina.it wrote: From: =?UTF-8?q?Jean-Fran=C3=A7ois=20Moine?= moin...@free.fr commit f43402fa55bf5e7e190c176343015122f694857c upstream. When audio is

Re: [stable] [patch 4/4] [PATCH 4/4] KVM: VMX: Fix host userspace gsbase corruption

2010-12-06 Thread Greg KH
On Thu, Nov 25, 2010 at 11:47:13AM -0200, Marcelo Tosatti wrote: commit c8770e7ba63bb5dd8fe5f9d251275a8fa717fb78 upstream. No authorship information :( ___ stable mailing list stable@linux.kernel.org http://linux.kernel.org/mailman/listinfo/stable

Re: [stable] [patch 1/4] [PATCH 1/4] KVM: Write protect memory after slot swap

2010-12-06 Thread Greg KH
On Thu, Nov 25, 2010 at 11:47:10AM -0200, Marcelo Tosatti wrote: commit edde99ce05290e50ce0b3495d209e54e6349ab47 upstream. You dropped who actually wrote this patch, please don't do that, it's not nice :( ___ stable mailing list

Re: [stable] Patch Upstream: drm/i915/ringbuffer: Use the HEAD auto-reporting mechanism

2010-12-06 Thread Greg KH
This patch doesn't apply to the .36 stable tree If someone wants it applied there, please email the backport to sta...@kernel.org thanks, greg k-h commit: 08deebf98783d3de553eed2c9b6b8dcc7e168567 From: Chris Wilson ch...@chris-wilson.co.uk Date: Fri, 5 Nov 2010 08:56:38 + Subject:

Re: [stable] Patch Upstream: drm/i915: Fix KMS regression on Sandybridge/CPT

2010-12-06 Thread Greg KH
This patch doesn't apply to the .36 stable tree If someone wants it applied there, please email the backport to sta...@kernel.org thanks, greg k-h commit: 5e84e1a487bf6ae912aac1142bdf399b8bdc9238 From: Zhenyu Wang zhen...@linux.intel.com Date: Thu, 28 Oct 2010 16:38:08 +0800 Subject:

Re: [stable] Patch Upstream: drm/i915: opregion_setup: iounmap correct address

2010-12-06 Thread Greg KH
Chris, I can't seem to get _any_ of the drm/i915 driver patches you marked for stable inclusion to apply. Please backport what you wish to see in the .36 kernel and send it to me as I've now dropped all of the ones that were pending due to inability to apply properly :( thanks, greg k-h

Re: [stable] (fwd) ACPI: EC: add Vista incompatibility DMI entry for Toshiba Satellite L355

2010-12-06 Thread Greg KH
On Fri, Oct 29, 2010 at 01:31:17PM +0200, maximilian attems wrote: applies fine to latest 2.6.32, considering for Debian 2.6.32, seen in Opensuse, please consider for stable. Applied. thanks, greg k-h ___ stable mailing list stable@linux.kernel.org

Re: [stable] (fwd) ACPI: Disable Windows Vista compatibility for Toshiba P305D

2010-12-06 Thread Greg KH
On Fri, Oct 29, 2010 at 01:30:20PM +0200, maximilian attems wrote: applies fine to latest 2.6.32, considering for Debian 2.6.32, seen in Opensuse, please consider for stable. Are you sure this isn't already there? It doesn't apply for me. thanks, greg k-h thanks. - Forwarded

Re: [stable] udp: add rehash on connect() for 2.6.33

2010-12-06 Thread Greg KH
On Tue, Nov 23, 2010 at 09:18:41PM +0100, Krzysztof Oledzki wrote: Hello, If you are going to release one more 2.6.33-stable kernel there is one more important bugfix worth to be backported:

Re: [stable] Patch intel-gtt: fix gtt_total_entries detection has been added to the 2.6.36-stable tree

2010-12-06 Thread Greg KH
On Tue, Dec 07, 2010 at 12:07:55AM +0100, Daniel Vetter wrote: On Mon, Dec 06, 2010 at 02:49:28PM -0800, Greg KH wrote: On Mon, Dec 06, 2010 at 11:17:52PM +0100, Daniel Vetter wrote: Dear stable-team, This patch won't apply (iirc it's been in the stable queue once already). I've

Re: [stable] Patch intel-gtt: fix gtt_total_entries detection has been added to the 2.6.36-stable tree

2010-12-06 Thread Greg KH
On Tue, Dec 07, 2010 at 12:29:36AM +0100, Anisse Astier wrote: On Tue, Dec 7, 2010 at 12:17 AM, Greg KH gre...@suse.de wrote: It's the commit-message from the autogenerated patch, not the one I've sent you. Anisse Astier has done the not totally trivial backport (due to the complete

Re: [stable] 2.6.33-stable

2010-12-06 Thread Greg KH
On Mon, Nov 01, 2010 at 11:13:52PM +0200, Thomas Backlund wrote: ### Fix system goes unresponsive under memory pressure and lots of # dirty/writeback pages bug. (http://lkml.org/lkml/2010/4/4/86) # confirmed the fix working by mandriva testusers e31f3698cd3499e676f6b0ea12e3528f569c4fa3:

Re: [stable] [PATCH 0/2] Backporting hidraw NULL pointer dereference fixes

2010-12-07 Thread Greg KH
On Fri, Oct 29, 2010 at 12:06:48PM +0200, Jiri Kosina wrote: On Thu, 28 Oct 2010, Greg KH wrote: I backported the two recent hidraw NULL pointer dereference fixes to linux-2.6.32.y, the patches have the same intended meaning of the upstream ones, however the code in linux-2.6.32.y

Re: [stable] Input: i8042 - add Sony VAIO VPCZ122GX to nomux list

2010-12-07 Thread Greg KH
On Thu, Nov 04, 2010 at 09:12:44AM -0700, Dmitry Torokhov wrote: Trying to query/activate active multiplexing mode on this VAIO makes both keyboard and touchpad inoperable. Futher kernels will blacklist entire VAIO line, however here we blacklist just one particular model. Reported-by: Jesse

Re: [stable] a couple of X.25 changes for stable

2010-12-07 Thread Greg KH
On Mon, Nov 08, 2010 at 08:10:23AM -0700, dann frazier wrote: hey Greg, Here are two X.25 changes that look applicable to stable: This one applies to 2.6.34: --- commit f5eb917b861828da18dc28854308068c66d1449a

Re: [stable] (fwd) x86, UV: Delete unneeded boot messages

2010-12-07 Thread Greg KH
On Fri, Oct 29, 2010 at 02:10:49PM +0200, maximilian attems wrote: Seen in Suse 2.6.32 branch, applies fine to latest 2.6.32 Debian. please consider for stable 2.6.32. Applied, thanks. greg k-h ___ stable mailing list stable@linux.kernel.org

Re: [stable] Linux 2.6.36.1

2010-12-07 Thread Greg KH
On Mon, Nov 22, 2010 at 06:55:50PM -0500, Dave Jones wrote: On Mon, Nov 22, 2010 at 01:32:00PM -0800, Greg KH wrote: On Mon, Nov 22, 2010 at 10:52:26PM +0200, Felipe Contreras wrote: On Mon, Nov 22, 2010 at 9:18 PM, Greg KH gre...@suse.de wrote: I'm announcing the release

Re: [stable] Linux 2.6.36.1

2010-12-07 Thread Greg KH
On Tue, Nov 23, 2010 at 01:43:09PM +0100, Martin Steigerwald wrote: Am Montag 22 November 2010 schrieb Greg KH: I'm announcing the release of the 2.6.36.1 kernel. All users of the 2.6.36 kernel series must upgrade. The updated 2.6.36.y git tree can be found at: git

Re: [stable] [PATCH 2.6.36 stable] vlan: Avoid hwaccel vlan packets when vid not used.

2010-12-07 Thread Greg KH
On Tue, Dec 07, 2010 at 09:50:26PM +0100, Eric Dumazet wrote: Le mardi 07 décembre 2010 à 11:50 -0800, Greg KH a écrit : On Mon, Nov 08, 2010 at 01:23:01PM -0800, Jesse Gross wrote: Normally hardware accelerated vlan packets are quickly dropped if there is no corresponding vlan device

Re: [stable] [PATCH 2/3] x86, mm: Fix CONFIG_VMSPLIT_1G and 2G_OPT trampoline

2010-12-07 Thread Greg KH
On Thu, Nov 11, 2010 at 04:16:15PM +0100, Joerg Roedel wrote: From: Hugh Dickins hu...@google.com commit b7d460897739e02f186425b7276e3fdb1595cea7 upstream Applied, thanks. greg k-h ___ stable mailing list stable@linux.kernel.org

Re: [stable] [PATCH 1/3] x86-32: Separate 1:1 pagetables from swapper_pg_dir

2010-12-07 Thread Greg KH
On Thu, Nov 11, 2010 at 04:16:14PM +0100, Joerg Roedel wrote: commit fd89a137924e0710078c3ae855e7cec1c43cb845 upstream applied, thanks. greg k-h ___ stable mailing list stable@linux.kernel.org http://linux.kernel.org/mailman/listinfo/stable

Re: [stable] [Bugme-new] [Bug 22512] New: no disks are found at driver start after upgrate from 2.6.35.8 to 2.6.36

2010-12-07 Thread Greg KH
On Mon, Nov 22, 2010 at 04:26:27PM -0800, Andrew Morton wrote: On Tue, 9 Nov 2010 19:53:21 GMT bugzilla-dae...@bugzilla.kernel.org wrote: https://bugzilla.kernel.org/show_bug.cgi?id=22512 From this bug report it appears that

Re: [stable] Patch SUNRPC: After calling xprt_release(), we must restart from call_reserve has been added to the 2.6.32-stable tree

2010-12-07 Thread Greg KH
On Tue, Nov 23, 2010 at 08:47:20AM -0500, Trond Myklebust wrote: On Mon, 2010-11-22 at 16:24 -0800, gre...@suse.de wrote: This is a note to let you know that I've just added the patch titled SUNRPC: After calling xprt_release(), we must restart from call_reserve to the

Re: [stable] Patch block: fix accounting bug on cross partition merges has been added to the 2.6.36-stable tree

2010-12-07 Thread Greg KH
On Wed, Nov 24, 2010 at 04:37:59PM +0900, Yasuaki Ishimatsu wrote: Hi Greg, I think the patch has some problem. So it should not be added to the stable tree. I'll try to fix the original problem by creating other patch. Ok, I've now removed it from the .36-stable queue. Hopefully .37 does

Re: [stable] [PATCH] [media] msp3400: fix mute audio regression

2010-12-07 Thread Greg KH
On Thu, Nov 25, 2010 at 02:05:42PM +0100, Hans Verkuil wrote: This patch applies 2.6.37 commit 0310871d8f71da4ad8643687fbc40f219a0dac4d to the 2.6.36 stable series. It was just too late to be included in 2.6.36 at the time, but it should be added to 2.6.36 since it fixes broken audio on

Re: [stable] Patch block: fix accounting bug on cross partition merges has been added to the 2.6.36-stable tree

2010-12-07 Thread Greg KH
On Sat, Dec 04, 2010 at 03:01:57AM +0100, Stefan Lippers-Hollmann wrote: Hi On Thursday 25 November 2010, Stefan Lippers-Hollmann wrote: Hi On Thursday 25 November 2010, gre...@suse.de wrote: This is a note to let you know that I've just added the patch titled block: fix

Re: [stable] [patch 2/3] nohz: fix printk_needs_cpu() return value on offline cpus

2010-12-07 Thread Greg KH
On Fri, Nov 26, 2010 at 01:11:52PM +0100, Peter Zijlstra wrote: On Fri, 2010-11-26 at 13:00 +0100, Heiko Carstens wrote: plain text document attachment (002_printk_needs_cpu.diff) From: Heiko Carstens heiko.carst...@de.ibm.com This patch fixes a hang observed with 2.6.32 kernels where

Re: [stable] net sched mem leaks (CVE-2010-2942, CVE-2010-3477)

2010-12-07 Thread Greg KH
On Mon, Dec 06, 2010 at 08:58:07PM -0700, dann frazier wrote: On Mon, Dec 06, 2010 at 04:30:57PM -0800, Greg KH wrote: On Sun, Oct 24, 2010 at 09:19:27PM -0600, dann frazier wrote: hey Greg, These look like candidates for stable. The first applied cleanly to our 2.6.32-based kernel

[stable] [01/44] block: check for proper length of iov entries in blk_rq_map_user_iov()

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Jens Axboe jax...@fusionio.com commit 9284bcf4e335e5f18a8bc7b26461c33ab60d0689 upstream. Ensure that we pass down properly validated iov segments before calling into the mapping or copy

[stable] [05/44] um: fix global timer issue when using CONFIG_NO_HZ

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Richard Weinberger rich...@nod.at commit 482db6df1746c4fa7d64a2441d4cb2610249c679 upstream. This fixes a issue which was introduced by fe2cc53e (uml: track and make up lost ticks).

[stable] [08/44] mm: fix is_mem_section_removable() page_order BUG_ON check

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: KAMEZAWA Hiroyuki kamezawa.hir...@jp.fujitsu.com commit 572438f9b52236bd8938b1647cc15e027d27ef55 upstream. page_order() is called by memory hotplug's user interface to check the section is

[stable] [09/44] ipc: initialize structure memory to zero for compat functions

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Dan Rosenberg drosenb...@vsecurity.com commit 03145beb455cf5c20a761e8451e30b8a74ba58d9 upstream. This takes care of leaking uninitialized kernel stack memory to userspace from non-zeroed

[stable] [10/44] ipc: shm: fix information leak to userland

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Vasiliy Kulikov sego...@gmail.com commit 3af54c9bd9e6f14f896aac1bb0e8405ae0bc7a44 upstream. The shmid_ds structure is copied to userland with shm_unused{,2,3} fields unitialized. It leads

[stable] [11/44] sys_semctl: fix kernel stack leakage

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Dan Rosenberg drosenb...@vsecurity.com commit 982f7c2b2e6a28f8f266e075d92e19c0dd4c6e56 upstream. The semctl syscall has several code paths that lead to the leakage of uninitialized kernel

[stable] [12/44] drivers/char/vt_ioctl.c: fix VT_OPENQRY error value

2010-12-07 Thread Greg KH
as an int. VT255 is not the next available console. Signed-off-by: Graham Gower graham.go...@gmail.com Cc: Greg KH g...@kroah.com Signed-off-by: Andrew Morton a...@linux-foundation.org Signed-off-by: Linus Torvalds torva...@linux-foundation.org Signed-off-by: Greg Kroah-Hartman gre...@suse.de

[stable] [13/44] eCryptfs: Clear LOOKUP_OPEN flag when creating lower file

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Tyler Hicks tyhi...@linux.vnet.ibm.com commit 2e21b3f124eceb6ab5a07c8a061adce14ac94e14 upstream. eCryptfs was passing the LOOKUP_OPEN flag through to the lower file system, even though

[stable] [15/44] libata: fix NULL sdev dereference race in atapi_qc_complete()

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Tejun Heo t...@kernel.org commit 2a5f07b5ec098edc69e05fdd2f35d3fbb1235723 upstream. SCSI commands may be issued between __scsi_add_device() and dev-sdev assignment, so it's unsafe for

[stable] [18/44] usb: core: fix information leak to userland

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Vasiliy Kulikov sego...@gmail.com commit 886ccd4520064408ce5876cfe00554ce52ecf4a7 upstream. Structure usbdevfs_connectinfo is copied to userland with padding byted after slow field

[stable] [17/44] usb: misc: iowarrior: fix information leak to userland

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Vasiliy Kulikov sego...@gmail.com commit eca67aaeebd6e5d22b0d991af1dd0424dc703bfb upstream. Structure iowarrior_info is copied to userland with padding byted between serial and revision

[stable] [19/44] USB: EHCI: fix obscure race in ehci_endpoint_disable

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Alan Stern st...@rowland.harvard.edu commit 02e2c51ba3e80acde600721ea784c3ef84da5ea1 upstream. This patch (as1435) fixes an obscure and unlikely race in ehci-hcd. When an async URB is

[stable] [20/44] USB: storage: sierra_ms: fix sysfs file attribute

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Greg Kroah-Hartman gre...@suse.de commit d9624e75f6ad94d8a0718c1fafa89186d271a78c upstream. A non-writable sysfs file shouldn't have writable attributes. Reported-by: Linus Torvalds

[stable] [21/44] USB: atm: ueagle-atm: fix up some permissions on the sysfs files

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Greg Kroah-Hartman gre...@suse.de commit e502ac5e1eca99d7dc3f12b2a6780ccbca674858 upstream. Some of the sysfs files had the incorrect permissions. Some didn't make sense at all (writable

[stable] [23/44] USB: misc: usbled: fix up some sysfs attribute permissions

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Greg Kroah-Hartman gre...@suse.de commit 48f115470e68d443436b76b22dad63ffbffd6b97 upstream. They should not be writable by any user. Reported-by: Linus Torvalds

[stable] [24/44] USB: misc: trancevibrator: fix up a sysfs attribute permission

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Greg Kroah-Hartman gre...@suse.de commit d489a4b3926bad571d404ca6508f6744b9602776 upstream. It should not be writable by any user. Reported-by: Linus Torvalds torva...@linux-foundation.org

[stable] [28/44] ARM: 6482/2: Fix find_next_zero_bit and related assembly

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: James Jones jajo...@nvidia.com commit 0e91ec0c06d2cd15071a6021c94840a50e6671aa upstream. The find_next_bit, find_first_bit, find_next_zero_bit and find_first_zero_bit functions were not

[stable] [29/44] net: clear heap allocations for privileged ethtool actions

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Kees Cook kees.c...@canonical.com [ Upstream commit b00916b189d13a615ff05c9242201135992fcda3 ] Several other ethtool functions leave heap uncleared (potentially) by drivers. Some interfaces

[stable] [30/44] xfrm4: strip ECN and IP Precedence bits in policy lookup

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Ulrich Weber uwe...@astaro.com [ Upstream commit 94e2238969e89f5112297ad2a00103089dde7e8f ] dont compare ECN and IP Precedence bits in find_bundle and use ECN bit stripped TOS value in

[stable] [32/44] rose: Fix signedness issues wrt. digi count.

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: David S. Miller da...@davemloft.net [ Upstream commit 9828e6e6e3f19efcb476c567b891d051f52f ] Just use explicit casts, since we really can't change the types of structures exported to

[stable] [35/44] tcp: Fix race in tcp_poll

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Tom Marshall tdm.c...@gmail.com [ Upstream commit a4d258036ed9b2a1811c3670c6099203a0f284a0 ] If a RST comes in immediately after checking sk-sk_err, tcp_poll will return POLLIN but not

[stable] [37/44] ipv6: conntrack: Add member of user to nf_ct_frag6_queue structure

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Shan Wei shan...@cn.fujitsu.com commit c92b544bd5d8e7ed7d81c77bbecab6df2a95aa53 upstream. The commit 0b5ccb2(title:ipv6: reassembly: use seperate reassembly queues for conntrack and local

[stable] [39/44] memory corruption in X.25 facilities parsing

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: andrew hendry andrew.hen...@gmail.com commit a6331d6f9a4298173b413cf99a40cc86a9d92c37 upstream. Signed-of-by: Andrew Hendry andrew.hen...@gmail.com Signed-off-by: David S. Miller

[stable] [38/44] x25: Patch to fix bug 15678 - x25 accesses fields beyond end of packet.

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: John Hughes j...@calva.com commit f5eb917b861828da18dc28854308068c66d1449a upstream. Here is a patch to stop X.25 examining fields beyond the end of the packet. For example, when a simple

[stable] [40/44] can-bcm: fix minor heap overflow

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Oliver Hartkopp socket...@hartkopp.net commit 0597d1b99fcfc2c0eada09a698f85ed413d4ba84 upstream. On 64-bit platforms the ASCII representation of a pointer may be up to 17 bytes long. This

[stable] [42/44] x25: Prevent crashing when parsing bad X.25 facilities

2010-12-07 Thread Greg KH
2.6.27-stable review patch. If anyone has any objections, please let us know. -- From: Dan Rosenberg drosenb...@vsecurity.com commit 5ef41308f94dcbb3b7afc56cdef1c2ba53fa5d2f upstream. Now with improved comma support. On parsing malformed X.25 facilities, decrementing the

[stable] [005/127] jme: Fix PHY power-off error

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Guo-Fu Tseng coolda...@cooldavid.org commit c8a8684d5cfb0f110a962c93586630c0bf91ebc1 upstream. Adding phy_on in opposition to phy_off. Signed-off-by: Guo-Fu Tseng coolda...@cooldavid.org

[stable] [006/127] irda: Fix parameter extraction stack overflow

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Samuel Ortiz sam...@sortiz.org commit efc463eb508798da4243625b08c7396462cabf9f upstream. Reported-by: Ilja Van Sprundel ivansprun...@ioactive.com Signed-off-by: Samuel Ortiz

[stable] [014/127] hpet: fix unwanted interrupt due to stale irq status bit

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Clemens Ladisch clem...@ladisch.de commit 96e9694df446d1154ec2f4fdba8908588b9cba38 upstream. Jaswinder Singh Rajput wrote: By executing Documentation/timers/hpet_example.c for polling, I

[stable] [017/127] percpu: fix list_head init bug in __percpu_counter_init()

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Masanori ITOH itou...@nttdata.co.jp commit 8474b591faf3bb0a1e08a60d21d6baac498f15e4 upstream. WARNING: at lib/list_debug.c:26 __list_add+0x3f/0x81() Hardware name: Express5800/B120a

[stable] [018/127] um: remove PAGE_SIZE alignment in linker script causing kernel segfault.

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Richard Weinberger rich...@nod.at commit 6915e04f8847bea16d0890f559694ad8eedd026c upstream. The linker script cleanup that I did in commit 5d150a97f93 (um: Clean up linker script using

[stable] [020/127] numa: fix slab_node(MPOL_BIND)

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Eric Dumazet eric.duma...@gmail.com commit 800416f799e0723635ac2d720ad4449917a1481c upstream. When a node contains only HighMem memory, slab_node(MPOL_BIND) dereferences a NULL pointer. [

[stable] [021/127] hwmon: (lm85) Fix ADT7468 frequency table

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Jean Delvare kh...@linux-fr.org commit fa7a5797e57d2ed71f9a6fb44f0ae42c2d7b74b7 upstream. The ADT7468 uses the same frequency table as the ADT7463. Signed-off-by: Jean Delvare

[stable] [033/127] net: NETIF_F_HW_CSUM does not imply FCoE CRC offload

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Ben Hutchings bhutchi...@solarflare.com commit 66c68bcc489fadd4f5e8839e966e3a366e50d1d5 upstream. NETIF_F_HW_CSUM indicates the ability to update an TCP/IP-style 16-bit checksum with the

[stable] [037/127] md/raid1: really fix recovery looping when single good device fails.

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: NeilBrown ne...@suse.de commit 8f9e0ee38f75d4740daa9e42c8af628d33d19a02 upstream. Commit 4044ba58dd15cb01797c4fd034f39ef4a75f7cc3 supposedly fixed a problem where if a raid1 with just one

[stable] [039/127] x86: AMD Northbridge: Verify NBs node is online

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Prarit Bhargava pra...@redhat.com commit 303fc0870f8fbfabe260c5c32b18e53458d597ea upstream. Fix panic seen on some IBM and HP systems on 2.6.32-rc6: BUG: unable to handle kernel NULL

[stable] [040/127] tty: prevent DOS in the flush_to_ldisc

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Jiri Olsa jo...@redhat.com commit e045fec48970df84647a47930fcf7a22ff7229c0 upstream. There's a small window inside the flush_to_ldisc function, where the tty is unlocked and calling ldisc's

[stable] [043/127] TTY: ldisc, fix open flag handling

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Jiri Slaby jsl...@suse.cz commit 7f90cfc505d613f4faf096e0d84ffe99208057d9 upstream. When a concrete ldisc open fails in tty_ldisc_open, we forget to clear TTY_LDISC_OPEN. This causes a false

[stable] [044/127] KVM: VMX: fix vmx null pointer dereference on debug register access

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- There is a bug in KVM that can be used to crash a host on Intel machines. If emulator is tricked into emulating mov to/from DR instruction it causes NULL pointer dereference on VMX since

[stable] [046/127] KVM: VMX: Fix host userspace gsbase corruption

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Ben Hutchings b...@decadent.org.uk commit c8770e7ba63bb5dd8fe5f9d251275a8fa717fb78 upstream. We now use load_gs_index() to load gs safely; unfortunately this also changes MSR_KERNEL_GS_BASE,

[stable] [045/127] KVM: x86: fix information leak to userland

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Vasiliy Kulikov sego...@gmail.com commit 97e69aa62f8b5d338d6cff49be09e37cc1262838 upstream. Structures kvm_vcpu_events, kvm_debugregs, kvm_pit_state2 and kvm_clock_data are copied to

[stable] [047/127] firewire: cdev: fix information leak

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Stefan Richter stef...@s5r6.in-berlin.de commit 9cac00b8f0079d5d3d54ec4dae453d58dec30e7c upstream. A userspace client got to see uninitialized stack-allocated memory if it specified an

[stable] [048/127] firewire: core: fix an information leak

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Stefan Richter stef...@s5r6.in-berlin.de commit 137d9ebfdbaa45c01f9f0f6d5121ae6f1eb942bd upstream. If a device exposes a sparsely populated configuration ROM, firewire-core's sysfs interface

[stable] [049/127] firewire: ohci: fix buffer overflow in AR split packet handling

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Clemens Ladisch clem...@ladisch.de commit 85f7ffd5d2b320f73912b15fe8cef34bae297daf upstream. When the controller had to split a received asynchronous packet into two buffers, the driver

[stable] [050/127] firewire: ohci: fix race in AR split packet handling

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Clemens Ladisch clem...@ladisch.de commit a1f805e5e73a8fe166b71c6592d3837df0cd5e2e upstream. When handling an AR buffer that has been completely filled, we assumed that its descriptor will

[stable] [058/127] drm/ttm: Clear the ghost cpu_writers flag on ttm_buffer_object_transfer.

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Francisco Jerez curroje...@riseup.net commit 0fbecd400dd0a82d465b3086f209681e8c54cb0f upstream. It makes sense for a BO to move after a process has requested exclusive RW access on it (e.g.

[stable] [059/127] libata-scsi passthru: fix bug which truncated LBA48 return values

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Douglas Gilbert dgilb...@interlog.com commit bc496ed00ab1411d3efaf295b72e0c9eb343e1a3 upstream. Fix assignment which overwrote SAT ATA PASS-THROUGH command EXTEND bit setting

[stable] [080/127] acpi-cpufreq: fix a memleak when unloading driver

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Zhang Rui rui.zh...@intel.com commit dab5fff14df2cd16eb1ad4c02e83915e1063fece upstream. We didn't free per_cpu(acfreq_data, cpu)-freq_table when acpi_freq driver is unloaded. Resulting in

[stable] [106/127] Input: i8042 - add Sony VAIO VPCZ122GX to nomux list

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Dmitry Torokhov dmitry.torok...@gmail.com [Note that the mainline will not have this particular fix but rather will blacklist entire VAIO line based off DMI board name. For stable I am being

[stable] [107/127] x25: Patch to fix bug 15678 - x25 accesses fields beyond end of packet.

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: John Hughes j...@calva.com commit f5eb917b861828da18dc28854308068c66d1449a upstream. Here is a patch to stop X.25 examining fields beyond the end of the packet. For example, when a simple

[stable] [114/127] x86, mm: Fix CONFIG_VMSPLIT_1G and 2G_OPT trampoline

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Hugh Dickins hu...@google.com commit b7d460897739e02f186425b7276e3fdb1595cea7 upstream. rc2 kernel crashes when booting second cpu on this CONFIG_VMSPLIT_2G_OPT laptop: whereas cloning from

[stable] [115/127] x86-32: Fix dummy trampoline-related inline stubs

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: H. Peter Anvin h...@zytor.com commit 8848a91068c018bc91f597038a0f41462a0f88a4 upstream. Fix dummy inline stubs for trampoline-related functions when no trampolines exist (until we get rid of

[stable] [117/127] econet: fix CVE-2010-3850

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Phil Blundell ph...@gnu.org commit 16c41745c7b92a243d0874f534c1655196c64b74 upstream. Add missing check for capable(CAP_NET_ADMIN) in SIOCSIFADDR operation. Signed-off-by: Phil Blundell

[stable] [119/127] net: Truncate recvfrom and sendto length to INT_MAX.

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Linus Torvalds torva...@linux-foundation.org commit 253eacc070b114c2ec1f81b067d2fed7305467b0 upstream. Signed-off-by: Linus Torvalds torva...@linux-foundation.org Signed-off-by: David S.

[stable] [127/127] x86: uv: xpc NULL deref when mesq becomes empty

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Robin Holt h...@sgi.com commit 15b87d67ff3dc042bee42f991858d6b121b3b3ca upstream. Under heavy load conditions, our set of xpc messages may become exhausted. The code handles this correctly

[stable] [097/127] Limit sysctl_tcp_mem and sysctl_udp_mem initializers to prevent integer overflows.

2010-12-07 Thread Greg KH
2.6.32-stable review patch. If anyone has any objections, please let us know. -- From: Robin Holt h...@sgi.com [ Upstream fixed this in a different way. -DaveM ] On a 16TB x86_64 machine, sysctl_tcp_mem[2], sysctl_udp_mem[2], and sysctl_sctp_mem[2] can integer overflow. Set

[stable] [001/289] block: Ensure physical block size is unsigned int

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Martin K. Petersen martin.peter...@oracle.com commit 892b6f90db81cccb723d5d92f4fddc2d68b206e1 upstream. Physical block size was declared unsigned int to accomodate the maximum size reported

[stable] [002/289] block: Fix race during disk initialization

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Jan Kara j...@suse.cz commit 01ea50638bc04ca5259f5711fcdedefcdde1cf43 upstream. When a new disk is being discovered, add_disk() first ties the bdev to gendisk (via

[stable] [004/289] block: take care not to overflow when calculating total iov length

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Jens Axboe jax...@fusionio.com commit 9f864c80913467312c7b8690e41fb5ebd1b50e92 upstream. Reported-by: Dan Rosenberg drosenb...@vsecurity.com Signed-off-by: Jens Axboe jax...@fusionio.com

[stable] [005/289] block: check for proper length of iov entries in blk_rq_map_user_iov()

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Jens Axboe jax...@fusionio.com commit 9284bcf4e335e5f18a8bc7b26461c33ab60d0689 upstream. Ensure that we pass down properly validated iov segments before calling into the mapping or copy

[stable] [000/289] 2.6.36.2-stable review

2010-12-07 Thread Greg KH
This is the start of the stable review cycle for the 2.6.36.2 release. There are 289 patches in this series, all will be posted as a response to this one. If anyone has any issues with these being applied, please let us know. If anyone is a maintainer of the proper subsystem, and wants to add a

[stable] [006/289] drm/radeon/kms: dont disable shared encoders on pre-DCE3 display blocks

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Alex Deucher alexdeuc...@gmail.com commit a0ae5864d42b41c411368bd689462bf063c029c8 upstream. The A/B links aren't independantly useable on these blocks so when we disable the encoders, make

[stable] [007/289] jme: Fix PHY power-off error

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Guo-Fu Tseng coolda...@cooldavid.org commit c8a8684d5cfb0f110a962c93586630c0bf91ebc1 upstream. Adding phy_on in opposition to phy_off. Signed-off-by: Guo-Fu Tseng coolda...@cooldavid.org

[stable] [008/289] irda: Fix parameter extraction stack overflow

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Samuel Ortiz sam...@sortiz.org commit efc463eb508798da4243625b08c7396462cabf9f upstream. Reported-by: Ilja Van Sprundel ivansprun...@ioactive.com Signed-off-by: Samuel Ortiz

[stable] [009/289] irda: Fix heap memory corruption in iriap.c

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Samuel Ortiz sam...@sortiz.org commit 37f9fc452d138dfc4da2ee1ce5ae85094efc3606 upstream. While parsing the GetValuebyClass command frame, we could potentially write passed the skb-data

[stable] [010/289] r6040: Fix multicast filter some more

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Ben Hutchings b...@decadent.org.uk commit e2269308359d5863b6aa1fcb95a425a2ab255f1f upstream. This code has been broken forever, but in several different and creative ways. So far as I can

[stable] [012/289] ath9k: built-in rate control A-MPDU fix

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: =?UTF-8?q?Bj=C3=B6rn=20Smedman?= bjorn.smed...@venatech.se commit a8909cfb1832ac623142898df2a9374722cfe68f upstream. This patch attempts to ensure that ath9k's built-in rate control

[stable] [014/289] ath9k: A-MPDU rate control info fix

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: =?UTF-8?q?Bj=C3=B6rn=20Smedman?= bjorn.smed...@venatech.se commit ebd022873aa61937603d2c4dfea19ce63ea1a3c8 upstream. This patch fixes the following problems with the rate control feedback

[stable] [015/289] ath9k: Fix tx struck state with paprd

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Vasanthakumar Thiagarajan vasa...@atheros.com commit 9094537c3a9ef9e127e844254a74186735c9a90b upstream. Paprd needs to be done only on active chains(not for all the chains that hw can

[stable] [016/289] ath9k: clean up / fix aggregation session flush

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Felix Fietkau n...@openwrt.org commit 90fa539ca3f07323da5a90f5c8f4e5cd952875e7 upstream. The tid aggregation cleanup is a bit fragile, as it discards failed subframes in some places, and

[stable] [018/289] ath9k: fix an aggregation start related race condition

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Felix Fietkau n...@openwrt.org commit 231c3a1f0630c07a584905507a1cb7b705a56ab7 upstream. A new aggregation session start can be issued by mac80211, even when the cleanup of the previous

[stable] [019/289] ath9k: fix regression which prevents chip sleep after CAB data

2010-12-07 Thread Greg KH
2.6.36-stable review patch. If anyone has any objections, please let us know. -- From: Senthil Balasubramanian senthilku...@atheros.com commit 3fac6dfdcd2b893c22b20a03dd1bf1af8b627c4b upstream. The patch: commit 293dc5dfdbcc16cde06e40a688394cc8ab083e48 Author: Gabor Juhos

  1   2   3   4   5   6   7   8   9   10   >