[Kernel-packages] [Bug 1837517] Re: Disco update: 5.0.20 upstream stable release

2019-09-02 Thread Launchpad Bug Tracker
This bug was fixed in the package linux - 5.0.0-27.28

---
linux (5.0.0-27.28) disco; urgency=medium

  * disco/linux: 5.0.0-27.28 -proposed tracker (LP: #1840816)

  * [Potential Regression] System crashes when running ftrace test in
ubuntu_kernel_selftests (LP: #1840750)
- x86/kprobes: Set instruction page as executable

linux (5.0.0-26.27) disco; urgency=medium

  * disco/linux: 5.0.0-26.27 -proposed tracker (LP: #1839972)

  * Packaging resync (LP: #1786013)
- [Packaging] update helper scripts

  * alsa/hdmi: add icelake hdmi audio support for a Dell machine (LP: #1836916)
- ALSA: hda: hdmi - add Icelake support
- ALSA: hda/hdmi - Remove duplicated define
- ALSA: hda/hdmi - Fix i915 reverse port/pin mapping

  * input/mouse: alps trackpoint-only device doesn't work (LP: #1836752)
- Input: alps - don't handle ALPS cs19 trackpoint-only device
- Input: alps - fix a mismatch between a condition check and its comment

  * [18.04 FEAT] Enhanced hardware support (LP: #1836857)
- s390: report new CPU capabilities
- s390: add alignment hints to vector load and store

  * System does not auto detect disconnection of external monitor (LP: #1835001)
- drm/i915: Add support for retrying hotplug
- drm/i915: Enable hotplug retry

  * [18.04 FEAT] Enhanced CPU-MF hardware counters - kernel part (LP: #1836860)
- s390/cpum_cf: Add support for CPU-MF SVN 6
- s390/cpumf: Add extended counter set definitions for model 8561 and 8562

  * EeePC 1005px laptop backlight is off after system boot up (LP: #1837117)
- platform/x86: asus-wmi: Only Tell EC the OS will handle display hotkeys 
from
  asus_nb_wmi

  * br_netfilter: namespace sysctl operations (LP: #1836910)
- netfilter: bridge: port sysctls to use brnf_net
- netfilter: bridge: namespace bridge netfilter sysctls
- netfilter: bridge: prevent UAF in brnf_exit_net()

  * ideapad_laptop disables WiFi/BT radios on Lenovo Y540 (LP: #1837136)
- platform/x86: ideapad-laptop: Remove no_hw_rfkill_list

  * shiftfs: allow overlayfs (LP: #1838677)
- SAUCE: shiftfs: enable overlayfs on shiftfs

  * bcache: bch_allocator_thread(): hung task timeout (LP: #1784665)
- bcache: never writeback a discard operation
- bcache: improve bcache_reboot()
- SAUCE: bcache: fix deadlock in bcache_allocator

  * Regressions in CMA allocation rework (LP: #1839395)
- dma-contiguous: do not overwrite align in dma_alloc_contiguous()
- dma-contiguous: page-align the size in dma_free_contiguous()

  * CVE-2019-3900
- vhost: introduce vhost_exceeds_weight()
- vhost_net: fix possible infinite loop
- vhost: vsock: add weight support
- vhost: scsi: add weight support

  * Disco update: 5.0.21 upstream stable release (LP: #1837518)
- bonding/802.3ad: fix slave link initialization transition states
- cxgb4: offload VLAN flows regardless of VLAN ethtype
- inet: switch IP ID generator to siphash
- ipv4/igmp: fix another memory leak in igmpv3_del_delrec()
- ipv4/igmp: fix build error if !CONFIG_IP_MULTICAST
- ipv6: Consider sk_bound_dev_if when binding a raw socket to an address
- ipv6: Fix redirect with VRF
- llc: fix skb leak in llc_build_and_send_ui_pkt()
- mlxsw: spectrum_acl: Avoid warning after identical rules insertion
- net: dsa: mv88e6xxx: fix handling of upper half of STATS_TYPE_PORT
- net: fec: fix the clk mismatch in failed_reset path
- net-gro: fix use-after-free read in napi_gro_frags()
- net: mvneta: Fix err code path of probe
- net: mvpp2: fix bad MVPP2_TXQ_SCHED_TOKEN_CNTR_REG queue value
- net: phy: marvell10g: report if the PHY fails to boot firmware
- net: sched: don't use tc_action->order during action dump
- net: stmmac: fix reset gpio free missing
- r8169: fix MAC address being lost in PCI D3
- usbnet: fix kernel crash after disconnect
- net/mlx5: Avoid double free in fs init error unwinding path
- tipc: Avoid copying bytes beyond the supplied data
- net/mlx5: Allocate root ns memory using kzalloc to match kfree
- net/mlx5e: Disable rxhash when CQE compress is enabled
- net: stmmac: fix ethtool flow control not able to get/set
- net: stmmac: dma channel control register need to be init first
- bnxt_en: Fix aggregation buffer leak under OOM condition.
- bnxt_en: Fix possible BUG() condition when calling pci_disable_msix().
- bnxt_en: Reduce memory usage when running in kdump kernel.
- net/tls: fix state removal with feature flags off
- net/tls: don't ignore netdev notifications if no TLS features
- cxgb4: Revert "cxgb4: Remove SGE_HOST_PAGE_SIZE dependency on page size"
- net: correct zerocopy refcnt with udp MSG_MORE
- crypto: vmx - ghash: do nosimd fallback manually
- xen/pciback: Don't disable PCI_COMMAND on PCI device reset.
- Revert "tipc: fix modprobe tipc failed after switch order of device
  registration"
- 

[Kernel-packages] [Bug 1837517] Re: Disco update: 5.0.20 upstream stable release

2019-08-13 Thread Stefan Bader
"arm64: errata: Add workaround for Cortex-A76 erratum #1463225" requires
a config update.

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux in Ubuntu.
https://bugs.launchpad.net/bugs/1837517

Title:
  Disco update: 5.0.20 upstream stable release

Status in linux package in Ubuntu:
  Invalid
Status in linux source package in Disco:
  Fix Committed

Bug description:
  SRU Justification

  Impact:
     The upstream process for stable tree updates is quite similar
     in scope to the Ubuntu SRU process, e.g., each patch has to
     demonstrably fix a bug, and each patch is vetted by upstream
     by originating either directly from a mainline/stable Linux tree or
     a minimally backported form of that patch. The following upstream
     stable patches should be included in the Ubuntu kernel:

     5.0.20 upstream stable release
     from git://git.kernel.org/

  The following patches where applied:
  * x86: Hide the int3_emulate_call/jmp functions from UML
  * ext4: do not delete unlinked inode from orphan list on failed truncate
  * ext4: wait for outstanding dio during truncate in nojournal mode
  * KVM: x86: fix return value for reserved EFER
  * bio: fix improper use of smp_mb__before_atomic()
  * sbitmap: fix improper use of smp_mb__before_atomic()
  * Revert "scsi: sd: Keep disk read-only when re-reading partition"
  * crypto: hash - fix incorrect HASH_MAX_DESCSIZE
  * crypto: vmx - CTR: always increment IV as quadword
  * mmc: sdhci-iproc: cygnus: Set NO_HISPD bit to fix HS50 data hold time 
problem
  * mmc: sdhci-iproc: Set NO_HISPD bit to fix HS50 data hold time problem
  * kvm: svm/avic: fix off-by-one in checking host APIC ID
  * libnvdimm/pmem: Bypass CONFIG_HARDENED_USERCOPY overhead
  * arm64/kernel: kaslr: reduce module randomization range to 2 GB
  * arm64/iommu: handle non-remapped addresses in ->mmap and ->get_sgtable
  * gfs2: Fix sign extension bug in gfs2_update_stats
  * btrfs: don't double unlock on error in btrfs_punch_hole
  * Btrfs: do not abort transaction at btrfs_update_root() after failure to COW 
path
  * Btrfs: avoid fallback to transaction commit during fsync of files with holes
  * Btrfs: fix race between ranged fsync and writeback of adjacent ranges
  * btrfs: sysfs: Fix error path kobject memory leak
  * btrfs: sysfs: don't leak memory when failing add fsid
  * fbdev: fix divide error in fb_var_to_videomode
  * cifs: fix credits leak for SMB1 oplock breaks
  * arm64: errata: Add workaround for Cortex-A76 erratum #1463225
  * btrfs: honor path->skip_locking in backref code
  * ovl: relax WARN_ON() for overlapping layers use case
  * fbdev: fix WARNING in __alloc_pages_nodemask bug
  * media: cpia2: Fix use-after-free in cpia2_exit
  * media: serial_ir: Fix use-after-free in serial_ir_init_module
  * media: vb2: add waiting_in_dqbuf flag
  * media: vivid: use vfree() instead of kfree() for dev->bitmap_cap
  * ssb: Fix possible NULL pointer dereference in ssb_host_pcmcia_exit
  * bpf: devmap: fix use-after-free Read in __dev_map_entry_free
  * batman-adv: mcast: fix multicast tt/tvlv worker locking
  * at76c50x-usb: Don't register led_trigger if usb_register_driver failed
  * acct_on(): don't mess with freeze protection
  * netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
  * Revert "btrfs: Honour FITRIM range constraints during free space trim"
  * gfs2: Fix lru_count going negative
  * cxgb4: Fix error path in cxgb4_init_module
  * afs: Fix getting the afs.fid xattr
  * NFS: make nfs_match_client killable
  * gfs2: fix race between gfs2_freeze_func and unmount
  * IB/hfi1: Fix WQ_MEM_RECLAIM warning
  * gfs2: Fix occasional glock use-after-free
  * mmc: core: Verify SD bus width
  * tools/bpf: fix perf build error with uClibc (seen on ARC)
  * selftests/bpf: set RLIMIT_MEMLOCK properly for test_libbpf_open.c
  * bpftool: exclude bash-completion/bpftool from .gitignore pattern
  * ice: Separate if conditions for ice_set_features()
  * blk-mq: split blk_mq_alloc_and_init_hctx into two parts
  * blk-mq: grab .q_usage_counter when queuing request from plug code path
  * dmaengine: tegra210-dma: free dma controller in remove()
  * net: ena: gcc 8: fix compilation warning
  * net: ena: fix: set freed objects to NULL to avoid failing future allocations
  * hv_netvsc: fix race that may miss tx queue wakeup
  * Bluetooth: Ignore CC events not matching the last HCI command
  * pinctrl: zte: fix leaked of_node references
  * ASoC: Intel: kbl_da7219_max98357a: Map BTN_0 to KEY_PLAYPAUSE
  * usb: dwc2: gadget: Increase descriptors count for ISOC's
  * usb: dwc3: move synchronize_irq() out of the spinlock protected block
  * usb: gadget: f_fs: don't free buffer prematurely
  * ASoC: hdmi-codec: unlock the device on startup errors
  * powerpc/perf: Return accordingly on invalid chip-id in
  * powerpc/boot: Fix missing check of lseek() return value
  * powerpc/perf: Fix 

[Kernel-packages] [Bug 1837517] Re: Disco update: 5.0.20 upstream stable release

2019-08-12 Thread Stefan Bader
Skipped because applied for CVE-2019-9500:
* brcmfmac: add subtype check for event handling in data path
* brcmfmac: assure SSID length from firmware is limited

Skipped because already applied for bug #1830815:
* net: hns3: fix for TX clean num when cleaning TX BD
* net: hns3: use atomic_t replace u32 for arq's count
* net: hns3: free the pending skb when clean RX ring
* net: hns3: fix keep_alive_timer not stop problem
* net: hns3: add error handler for initializing command queue
* net: hns3: check resetting status in hns3_get_stats()
* net: hns3: add protect when handling mac addr list

Skipped because already applied for bug #1830435:
* scsi: libsas: Do discovery on empty PHY to update PHY info

Skipped because already applied for bug #1830815:
* RDMA/hns: Fix bad endianess of port_pd variable

Skipped because already applied for bug #1817058:
* e1000e: Disable runtime PM on CNP+

Applied with minor context adjustments:
* selinux: avoid uninitialized variable warning

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-9500

** Changed in: linux (Ubuntu Disco)
   Importance: Undecided => Medium

** Changed in: linux (Ubuntu Disco)
   Status: New => In Progress

** Changed in: linux (Ubuntu)
   Status: Confirmed => Invalid

** Description changed:

+ SRU Justification
  
- SRU Justification
+ Impact:
+    The upstream process for stable tree updates is quite similar
+    in scope to the Ubuntu SRU process, e.g., each patch has to
+    demonstrably fix a bug, and each patch is vetted by upstream
+    by originating either directly from a mainline/stable Linux tree or
+    a minimally backported form of that patch. The following upstream
+    stable patches should be included in the Ubuntu kernel:
  
- Impact:
-The upstream process for stable tree updates is quite similar
-in scope to the Ubuntu SRU process, e.g., each patch has to
-demonstrably fix a bug, and each patch is vetted by upstream
-by originating either directly from a mainline/stable Linux tree or
-a minimally backported form of that patch. The following upstream
-stable patches should be included in the Ubuntu kernel:
+    5.0.20 upstream stable release
+    from git://git.kernel.org/
  
-5.0.20 upstream stable release
-from git://git.kernel.org/
+ The following patches where applied:
+ * x86: Hide the int3_emulate_call/jmp functions from UML
+ * ext4: do not delete unlinked inode from orphan list on failed truncate
+ * ext4: wait for outstanding dio during truncate in nojournal mode
+ * KVM: x86: fix return value for reserved EFER
+ * bio: fix improper use of smp_mb__before_atomic()
+ * sbitmap: fix improper use of smp_mb__before_atomic()
+ * Revert "scsi: sd: Keep disk read-only when re-reading partition"
+ * crypto: hash - fix incorrect HASH_MAX_DESCSIZE
+ * crypto: vmx - CTR: always increment IV as quadword
+ * mmc: sdhci-iproc: cygnus: Set NO_HISPD bit to fix HS50 data hold time 
problem
+ * mmc: sdhci-iproc: Set NO_HISPD bit to fix HS50 data hold time problem
+ * kvm: svm/avic: fix off-by-one in checking host APIC ID
+ * libnvdimm/pmem: Bypass CONFIG_HARDENED_USERCOPY overhead
+ * arm64/kernel: kaslr: reduce module randomization range to 2 GB
+ * arm64/iommu: handle non-remapped addresses in ->mmap and ->get_sgtable
+ * gfs2: Fix sign extension bug in gfs2_update_stats
+ * btrfs: don't double unlock on error in btrfs_punch_hole
+ * Btrfs: do not abort transaction at btrfs_update_root() after failure to COW 
path
+ * Btrfs: avoid fallback to transaction commit during fsync of files with holes
+ * Btrfs: fix race between ranged fsync and writeback of adjacent ranges
+ * btrfs: sysfs: Fix error path kobject memory leak
+ * btrfs: sysfs: don't leak memory when failing add fsid
+ * fbdev: fix divide error in fb_var_to_videomode
+ * cifs: fix credits leak for SMB1 oplock breaks
+ * arm64: errata: Add workaround for Cortex-A76 erratum #1463225
+ * btrfs: honor path->skip_locking in backref code
+ * ovl: relax WARN_ON() for overlapping layers use case
+ * fbdev: fix WARNING in __alloc_pages_nodemask bug
+ * media: cpia2: Fix use-after-free in cpia2_exit
+ * media: serial_ir: Fix use-after-free in serial_ir_init_module
+ * media: vb2: add waiting_in_dqbuf flag
+ * media: vivid: use vfree() instead of kfree() for dev->bitmap_cap
+ * ssb: Fix possible NULL pointer dereference in ssb_host_pcmcia_exit
+ * bpf: devmap: fix use-after-free Read in __dev_map_entry_free
+ * batman-adv: mcast: fix multicast tt/tvlv worker locking
+ * at76c50x-usb: Don't register led_trigger if usb_register_driver failed
+ * acct_on(): don't mess with freeze protection
+ * netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
+ * Revert "btrfs: Honour FITRIM range constraints during free space trim"
+ * gfs2: Fix lru_count going negative
+ * cxgb4: Fix error path in cxgb4_init_module
+ * afs: Fix getting the afs.fid xattr
+ *