]> git.proxmox.com Git - mirror_ubuntu-artful-kernel.git/blob - debian.master/changelog
UBUNTU: [Config] CONFIG_SCSI_MQ_DEFAULT=n for s390x
[mirror_ubuntu-artful-kernel.git] / debian.master / changelog
1 linux (4.13.0-8.9) UNRELEASED; urgency=low
2
3 CHANGELOG: Do not edit directly. Autogenerated at release.
4 CHANGELOG: Use the printchanges target to see the curent changes.
5 CHANGELOG: Use the insertchanges target to create the final log.
6
7 -- Seth Forshee <seth.forshee@canonical.com> Mon, 28 Aug 2017 14:11:34 -0500
8
9 linux (4.13.0-7.8) artful; urgency=low
10
11 * linux 4.12.0-11.12 ADT test failure with linux 4.12.0-11.12 (LP: #1710904)
12 - SAUCE: selftests/powerpc: Use snprintf to construct DSCR sysfs interface
13 paths
14
15 * Miscellaneous Ubuntu changes
16 - Revert "UBUNTU: SAUCE: seccomp: log actions even when audit is disabled"
17
18 * Miscellaneous upstream changes
19 - seccomp: Provide matching filter for introspection
20 - seccomp: Sysctl to display available actions
21 - seccomp: Operation for checking if an action is available
22 - seccomp: Sysctl to configure actions that are allowed to be logged
23 - seccomp: Selftest for detection of filter flag support
24 - seccomp: Filter flag to log all actions except SECCOMP_RET_ALLOW
25 - seccomp: Action to log before allowing
26
27 [ Upstream Kernel Changes ]
28
29 * Rebase to v4.13-rc7
30
31 -- Seth Forshee <seth.forshee@canonical.com> Mon, 28 Aug 2017 08:12:24 -0500
32
33 linux (4.13.0-6.7) artful; urgency=low
34
35 * HID: multitouch: Support ALPS PTP Stick and Touchpad devices (LP: #1712481)
36 - SAUCE: HID: multitouch: Support ALPS PTP stick with pid 0x120A
37
38 * sort ABI files with C.UTF-8 locale (LP: #1712345)
39 - [Packaging] sort ABI files with C.UTF-8 locale
40
41 * igb: Support using Broadcom 54616 as PHY (LP: #1712024)
42 - SAUCE: igb: add support for using Broadcom 54616 as PHY
43
44 * RPT related fixes missing in Ubuntu 16.04.3 (LP: #1709220)
45 - powerpc/mm/radix: Improve _tlbiel_pid to be usable for PWC flushes
46 - powerpc/mm/radix: Improve TLB/PWC flushes
47 - powerpc/mm/radix: Avoid flushing the PWC on every flush_tlb_range
48
49 * Linux 4.12 refuses to load self-signed modules under Secure Boot with
50 properly enrolled keys (LP: #1712168)
51 - SAUCE: (efi-lockdown) MODSIGN: Fix module signature verification
52
53 * [17.10 FEAT] Enable NVMe driver - kernel (LP: #1708432)
54 - [Config] CONFIG_BLK_DEV_NVME=m for s390
55
56 * Artful: 4.12.0-11.12: Boot panic in vlv2_plat_configure_clock+0x3b/0xa0
57 (LP: #1711298)
58 - [Config] CONFIG_INTEL_ATOMISP=n
59
60 * Miscellaneous Ubuntu changes
61 - SAUCE: apparmor: af_unix mediation
62
63 * Miscellaneous upstream changes
64 - apparmor: Fix shadowed local variable in unpack_trans_table()
65 - apparmor: Fix logical error in verify_header()
66 - apparmor: Fix an error code in aafs_create()
67 - apparmor: Redundant condition: prev_ns. in [label.c:1498]
68 - apparmor: add the ability to mediate signals
69 - apparmor: add mount mediation
70 - apparmor: cleanup conditional check for label in label_print
71 - apparmor: add support for absolute root view based labels
72 - apparmor: make policy_unpack able to audit different info messages
73 - apparmor: add more debug asserts to apparmorfs
74 - apparmor: add base infastructure for socket mediation
75 - apparmor: move new_null_profile to after profile lookup fns()
76 - apparmor: fix race condition in null profile creation
77 - apparmor: ensure unconfined profiles have dfas initialized
78 - apparmor: fix incorrect type assignment when freeing proxies
79
80 [ Upstream Kernel Changes ]
81
82 * Rebase to v4.13-rc6
83
84 -- Seth Forshee <seth.forshee@canonical.com> Wed, 23 Aug 2017 08:10:38 -0500
85
86 linux (4.13.0-5.6) artful; urgency=low
87
88 * Ubuntu17.10 - perf: Update Power9 PMU event JSON files (LP: #1708630)
89 - perf pmu-events: Support additional POWER8+ PVR in mapfile
90 - perf vendor events: Add POWER9 PMU events
91 - perf vendor events: Add POWER9 PVRs to mapfile
92 - SAUCE: perf vendor events powerpc: remove suffix in mapfile
93 - SAUCE: perf vendor events powerpc: Update POWER9 events
94
95 * Disable CONFIG_MEMORY_HOTPLUG_DEFAULT_ONLINE (LP: #1709171)
96 - [Config] CONFIG_MEMORY_HOTPLUG_DEFAULT_ONLINE=n for ppc64el
97
98 * Please only recommend or suggest initramfs-tools | linux-initramfs-tool for
99 kernels able to boot without initramfs (LP: #1700972)
100 - [Debian] Don't depend on initramfs-tools
101
102 * Miscellaneous Ubuntu changes
103 - SAUCE: Import aufs driver
104 - SAUCE: aufs -- Add missing argument to loop_switch() call
105 - [Config] Enable aufs
106 - SAUCE: (noup) Update spl to 0.6.5.11-ubuntu1, zfs to 0.6.5.11-1ubuntu3
107 - Enable zfs build
108 - SAUCE: powerpc: Always initialize input array when calling epapr_hypercall()
109 - [Packaging] switch up to debhelper 9
110
111 [ Upstream Kernel Changes ]
112
113 * Rebase to v4.13-rc5
114
115 -- Seth Forshee <seth.forshee@canonical.com> Tue, 15 Aug 2017 09:24:16 -0500
116
117 linux (4.13.0-4.5) artful; urgency=low
118
119 * Lenovo Yoga 910 Sensors (LP: #1708120)
120 - SAUCE: (no-up) HID: Add quirk for Lenovo Yoga 910 with ITE Chips
121
122 * Unable to install Ubuntu on the NVMe disk under VMD PCI domain
123 (LP: #1703339)
124 - [Config] Add vmd driver to generic inclusion list
125
126 * Set CONFIG_SATA_HIGHBANK=y on armhf (LP: #1703430)
127 - [Config] CONFIG_SATA_HIGHBANK=y
128
129 * Miscellaneous Ubuntu changes
130 - ubuntu: vbox -- update to 5.1.26-dfsg-1
131 - SAUCE: hio: Build fixes for 4.13
132 - Enable hio build
133 - SAUCE: (noup) Update spl to 0.6.5.11-1, zfs to 0.6.5.11-1ubuntu1
134 - [debian] use all rather than amd64 dkms debs for sync
135
136 [ Upstream Kernel Changes ]
137
138 * Rebase to v4.13-rc4
139
140 -- Seth Forshee <seth.forshee@canonical.com> Tue, 08 Aug 2017 11:31:48 -0500
141
142 linux (4.13.0-3.4) artful; urgency=low
143
144 * Adt tests of src:linux time out often on armhf lxc containers (LP: #1705495)
145 - [Packaging] tests -- reduce rebuild test to one flavour
146 - [Packaging] tests -- reduce rebuild test to one flavour -- use filter
147
148 * snapd 2.26.8+17.10 ADT test failure with linux 4.12.0-6.7 (LP: #1704158)
149 - SAUCE: virtio_net: Revert mergeable buffer handling rework
150
151 [ Upstream Kernel Changes ]
152
153 * Rebase to v4.13-rc3
154
155 -- Seth Forshee <seth.forshee@canonical.com> Mon, 31 Jul 2017 10:08:16 -0500
156
157 linux (4.13.0-2.3) artful; urgency=low
158
159 * Change CONFIG_IBMVETH to module (LP: #1704479)
160 - [Config] CONFIG_IBMVETH=m
161
162 [ Upstream Kernel Changes ]
163
164 * Rebase to v4.13-rc2
165
166 -- Seth Forshee <seth.forshee@canonical.com> Mon, 24 Jul 2017 13:58:08 -0500
167
168 linux (4.13.0-1.2) artful; urgency=low
169
170 * Miscellaneous Ubuntu changes
171 - [Debian] Support sphinx-based kernel documentation
172
173 -- Seth Forshee <seth.forshee@canonical.com> Thu, 20 Jul 2017 09:18:33 -0500
174
175 linux (4.13.0-0.1) artful; urgency=low
176
177 * Miscellaneous Ubuntu changes
178 - Disable hio
179 - Disable zfs build
180 - ubuntu: vbox -- update to 5.1.24-dfsg-1
181
182 [ Upstream Kernel Changes ]
183
184 * Rebase to v4.13-rc1
185
186 -- Seth Forshee <seth.forshee@canonical.com> Wed, 19 Jul 2017 15:09:31 -0500
187
188 linux (4.12.0-7.8) artful; urgency=low
189
190 * ThunderX: soft lockup on 4.8+ kernels when running qemu-efi with vhost=on
191 (LP: #1673564)
192 - arm64: Add a facility to turn an ESR syndrome into a sysreg encoding
193 - KVM: arm/arm64: vgic-v3: Add accessors for the ICH_APxRn_EL2 registers
194 - KVM: arm64: Make kvm_condition_valid32() accessible from EL2
195 - KVM: arm64: vgic-v3: Add hook to handle guest GICv3 sysreg accesses at EL2
196 - KVM: arm64: vgic-v3: Add ICV_BPR1_EL1 handler
197 - KVM: arm64: vgic-v3: Add ICV_IGRPEN1_EL1 handler
198 - KVM: arm64: vgic-v3: Add ICV_IAR1_EL1 handler
199 - KVM: arm64: vgic-v3: Add ICV_EOIR1_EL1 handler
200 - KVM: arm64: vgic-v3: Add ICV_AP1Rn_EL1 handler
201 - KVM: arm64: vgic-v3: Add ICV_HPPIR1_EL1 handler
202 - KVM: arm64: vgic-v3: Enable trapping of Group-1 system registers
203 - KVM: arm64: Enable GICv3 Group-1 sysreg trapping via command-line
204 - KVM: arm64: vgic-v3: Add ICV_BPR0_EL1 handler
205 - KVM: arm64: vgic-v3: Add ICV_IGNREN0_EL1 handler
206 - KVM: arm64: vgic-v3: Add misc Group-0 handlers
207 - KVM: arm64: vgic-v3: Enable trapping of Group-0 system registers
208 - KVM: arm64: Enable GICv3 Group-0 sysreg trapping via command-line
209 - arm64: Add MIDR values for Cavium cn83XX SoCs
210 - arm64: Add workaround for Cavium Thunder erratum 30115
211 - KVM: arm64: vgic-v3: Add ICV_DIR_EL1 handler
212 - KVM: arm64: vgic-v3: Add ICV_RPR_EL1 handler
213 - KVM: arm64: vgic-v3: Add ICV_CTLR_EL1 handler
214 - KVM: arm64: vgic-v3: Add ICV_PMR_EL1 handler
215 - KVM: arm64: Enable GICv3 common sysreg trapping via command-line
216 - KVM: arm64: vgic-v3: Log which GICv3 system registers are trapped
217 - KVM: arm64: Log an error if trapping a read-from-write-only GICv3 access
218 - KVM: arm64: Log an error if trapping a write-to-read-only GICv3 access
219
220 * hns: under heavy load, NIC may fail and require reboot (LP: #1704146)
221 - net: hns: Bugfix for Tx timeout handling in hns driver
222
223 * New ACPI identifiers for ThunderX SMMU (LP: #1703437)
224 - iommu/arm-smmu: Plumb in new ACPI identifiers
225
226 * Transparent hugepages should default to enabled=madvise (LP: #1703742)
227 - SAUCE: use CONFIG_TRANSPARENT_HUGEPAGE_MADVISE=y as default
228
229 * Artful update to v4.12.1 stable release (LP: #1703858)
230 - driver core: platform: fix race condition with driver_override
231 - RDMA/uverbs: Check port number supplied by user verbs cmds
232 - usb: dwc3: replace %p with %pK
233 - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick
234 - usb: usbip: set buffer pointers to NULL after free
235 - Add USB quirk for HVR-950q to avoid intermittent device resets
236 - usb: Fix typo in the definition of Endpoint[out]Request
237 - USB: core: fix device node leak
238 - USB: serial: option: add two Longcheer device ids
239 - USB: serial: qcserial: new Sierra Wireless EM7305 device ID
240 - xhci: Limit USB2 port wake support for AMD Promontory hosts
241 - gfs2: Fix glock rhashtable rcu bug
242 - Add "shutdown" to "struct class".
243 - tpm: Issue a TPM2_Shutdown for TPM2 devices.
244 - tpm: fix a kernel memory leak in tpm-sysfs.c
245 - powerpc/powernv: Fix CPU_HOTPLUG=n idle.c compile error
246 - x86/uaccess: Optimize copy_user_enhanced_fast_string() for short strings
247 - sched/fair, cpumask: Export for_each_cpu_wrap()
248 - sched/core: Implement new approach to scale select_idle_cpu()
249 - sched/numa: Use down_read_trylock() for the mmap_sem
250 - sched/numa: Override part of migrate_degrades_locality() when idle balancing
251 - sched/fair: Simplify wake_affine() for the single socket case
252 - sched/numa: Implement NUMA node level wake_affine()
253 - sched/fair: Remove effective_load()
254 - sched/numa: Hide numa_wake_affine() from UP build
255 - xen: avoid deadlock in xenbus driver
256 - crypto: drbg - Fixes panic in wait_for_completion call
257 - Linux 4.12.1
258
259 * cxlflash update request in the Xenial SRU stream (LP: #1702521)
260 - scsi: cxlflash: Combine the send queue locks
261 - scsi: cxlflash: Update cxlflash_afu_sync() to return errno
262 - scsi: cxlflash: Reset hardware queue context via specified register
263 - scsi: cxlflash: Schedule asynchronous reset of the host
264 - scsi: cxlflash: Handle AFU sync failures
265 - scsi: cxlflash: Track pending scsi commands in each hardware queue
266 - scsi: cxlflash: Flush pending commands in cleanup path
267 - scsi: cxlflash: Add scsi command abort handler
268 - scsi: cxlflash: Create character device to provide host management interface
269 - scsi: cxlflash: Separate AFU internal command handling from AFU sync
270 specifics
271 - scsi: cxlflash: Introduce host ioctl support
272 - scsi: cxlflash: Refactor AFU capability checking
273 - scsi: cxlflash: Support LUN provisioning
274 - scsi: cxlflash: Support AFU debug
275 - scsi: cxlflash: Support WS16 unmap
276 - scsi: cxlflash: Remove zeroing of private command data
277 - scsi: cxlflash: Update TMF command processing
278 - scsi: cxlflash: Avoid double free of character device
279 - scsi: cxlflash: Update send_tmf() parameters
280 - scsi: cxlflash: Update debug prints in reset handlers
281
282 * make snap-pkg support (LP: #1700747)
283 - make snap-pkg support
284
285 * Quirk for non-compliant PCI bridge on HiSilicon D05 board (LP: #1698706)
286 - SAUCE: PCI: Support hibmc VGA cards behind a misbehaving HiSilicon bridge
287
288 * arm64: fix crash reading /proc/kcore (LP: #1702749)
289 - fs/proc: kcore: use kcore_list type to check for vmalloc/module address
290 - arm64: mm: select CONFIG_ARCH_PROC_KCORE_TEXT
291
292 * Opal and POWER9 DD2 (LP: #1702159)
293 - SAUCE: powerpc/powernv: Tell OPAL about our MMU mode on POWER9
294
295 * Data corruption with hio driver (LP: #1701316)
296 - SAUCE: hio: Fix incorrect use of enum req_opf values
297
298 * Miscellaneous Ubuntu changes
299 - SAUCE: (noup) Update spl to 0.6.5.10-1, zfs to 0.6.5.10-1ubuntu2
300 - snapcraft.yaml: Sync with xenial
301 - [Config] CONFIG_CAVIUM_ERRATUM_30115=y
302
303 * Miscellaneous upstream changes
304 - Revert "UBUNTU: SAUCE: (efi-lockdown) efi: Add sysctls for secureboot and
305 MokSBState"
306
307 -- Seth Forshee <seth.forshee@canonical.com> Fri, 14 Jul 2017 15:25:41 -0500
308
309 linux (4.12.0-6.7) artful; urgency=low
310
311 * update ENA driver to 1.2.0k from net-next (LP: #1701575)
312 - net: ena: change return value for unsupported features unsupported return
313 value
314 - net: ena: add hardware hints capability to the driver
315 - net: ena: change sizeof() argument to be the type pointer
316 - net: ena: add reset reason for each device FLR
317 - net: ena: add support for out of order rx buffers refill
318 - net: ena: allow the driver to work with small number of msix vectors
319 - net: ena: use napi_schedule_irqoff when possible
320 - net: ena: separate skb allocation to dedicated function
321 - net: ena: use lower_32_bits()/upper_32_bits() to split dma address
322 - net: ena: update driver's rx drop statistics
323 - net: ena: update ena driver to version 1.2.0
324
325 * APST gets enabled against explicit kernel option (LP: #1699004)
326 - nvme: explicitly disable APST on quirked devices
327
328 * Miscellaneous Ubuntu changes
329 - SAUCE: hio: Update to Huawei ES3000_V2 (2.1.0.40)
330 - SAUCE: hio updates for 4.12
331 - SAUCE: Enable hio build
332
333 -- Seth Forshee <seth.forshee@canonical.com> Wed, 05 Jul 2017 14:23:20 -0500
334
335 linux (4.12.0-5.6) artful; urgency=low
336
337 * ERAT invalidate on context switch removal (LP: #1700819)
338 - powerpc: Only do ERAT invalidate on radix context switch on P9 DD1
339
340 * powerpc: Invalidate ERAT on powersave wakeup for POWER9 (LP: #1700521)
341 - SAUCE: powerpc: Invalidate ERAT on powersave wakeup for POWER9
342
343 * Miscellaneous Ubuntu changes
344 - d-i: Move qcom-emac from arm64 to shared nic-modules
345
346 [ Upstream Kernel Changes ]
347
348 * Rebase to v4.12
349
350 -- Seth Forshee <seth.forshee@canonical.com> Mon, 03 Jul 2017 07:52:02 -0500
351
352 linux (4.12.0-4.5) artful; urgency=low
353
354 * aacraid driver may return uninitialized stack data to userspace
355 (LP: #1700077)
356 - SAUCE: scsi: aacraid: Don't copy uninitialized stack memory to userspace
357
358 * KILLER1435-S[0489:e0a2] BT cannot search BT 4.0 device (LP: #1699651)
359 - Bluetooth: btusb: Add support for 0489:e0a2 QCA_ROME device
360
361 * AACRAID for power9 platform (LP: #1689980)
362 - scsi: aacraid: Remove __GFP_DMA for raw srb memory
363 - scsi: aacraid: Fix DMAR issues with iommu=pt
364 - scsi: aacraid: Added 32 and 64 queue depth for arc natives
365 - scsi: aacraid: Set correct Queue Depth for HBA1000 RAW disks
366 - scsi: aacraid: Remove reset support from check_health
367 - scsi: aacraid: Change wait time for fib completion
368 - scsi: aacraid: Log count info of scsi cmds before reset
369 - scsi: aacraid: Print ctrl status before eh reset
370 - scsi: aacraid: Using single reset mask for IOP reset
371 - scsi: aacraid: Rework IOP reset
372 - scsi: aacraid: Add periodic checks to see IOP reset status
373 - scsi: aacraid: Rework SOFT reset code
374 - scsi: aacraid: Rework aac_src_restart
375 - scsi: aacraid: Use correct function to get ctrl health
376 - scsi: aacraid: Make sure ioctl returns on controller reset
377 - scsi: aacraid: Enable ctrl reset for both hba and arc
378 - scsi: aacraid: Add reset debugging statements
379 - scsi: aacraid: Remove reference to Series-9
380 - scsi: aacraid: Update driver version to 50834
381
382 * hibmc driver does not include "pci:" prefix in bus ID (LP: #1698700)
383 - SAUCE: drm: hibmc: Use set_busid function from drm core
384
385 * HiSilicon D05: installer doesn't appear on VGA (LP: #1698954)
386 - d-i: Add hibmc-drm to kernel-image udeb
387
388 * Fix /proc/cpuinfo revision for POWER9 DD2 (LP: #1698844)
389 - SAUCE: powerpc: Fix /proc/cpuinfo revision for POWER9 DD2
390
391 * Miscellaneous Ubuntu changes
392 - [Config] CONFIG_SATA_MV=n and CONFIG_GENERIC_PHY=n for s390x
393 - [Config] CONFIG_ATA=n for s390x
394 - [Config] Update annotations for 4.12
395
396 [ Upstream Kernel Changes ]
397
398 * Rebase to v4.12-rc7
399
400 -- Seth Forshee <seth.forshee@canonical.com> Mon, 26 Jun 2017 11:27:29 -0500
401
402 linux (4.12.0-3.4) artful; urgency=low
403
404 * Miscellaneous upstream changes
405 - ufs: fix the logics for tail relocation
406
407 [ Upstream Kernel Changes ]
408
409 * Rebase to v4.12-rc6
410
411 -- Seth Forshee <seth.forshee@canonical.com> Mon, 19 Jun 2017 14:50:39 -0500
412
413 linux (4.12.0-2.3) artful; urgency=low
414
415 * CVE-2014-9900
416 - SAUCE: (no-up) net: Zeroing the structure ethtool_wolinfo in
417 ethtool_get_wol()
418
419 * System doesn't boot properly on Gigabyte AM4 motherboards (AMD Ryzen)
420 (LP: #1671360)
421 - pinctrl/amd: Use regular interrupt instead of chained
422
423 * extend-diff-ignore should use exact matches (LP: #1693504)
424 - [Packaging] exact extend-diff-ignore matches
425
426 * Miscellaneous Ubuntu changes
427 - SAUCE: efi: Don't print secure boot state from the efi stub
428 - ubuntu: vbox -- Update to 5.1.22-dfsg-1
429 - SAUCE: vbox fixes for 4.12
430 - Re-enable virtualbox build
431 - [Config] CONFIG_ORANGEFS_FS=m
432 - SAUCE: (noup) Update spl to 0.6.5.9-1ubuntu2, zfs to 0.6.5.9-5ubuntu7
433 - Enable zfs build
434
435 [ Upstream Kernel Changes ]
436
437 * Rebase to v4.12-rc4
438 * Rebase to v4.12-rc5
439
440 -- Seth Forshee <seth.forshee@canonical.com> Sun, 11 Jun 2017 22:25:13 -0500
441
442 linux (4.12.0-1.2) artful; urgency=low
443
444 * Enable Matrox driver for Ubuntu 16.04.3 (LP: #1693337)
445 - [Config] Enable CONFIG_DRM_MGAG200 as module
446
447 * Support low-pin-count devices on Hisilicon SoCs (LP: #1677319)
448 - [Config] CONFIG_LIBIO=y on arm64 only
449 - SAUCE: LIBIO: Introduce a generic PIO mapping method
450 - SAUCE: OF: Add missing I/O range exception for indirect-IO devices
451 - [Config] CONFIG_HISILICON_LPC=y
452 - SAUCE: LPC: Support the device-tree LPC host on Hip06/Hip07
453 - SAUCE: LIBIO: Support the dynamically logical PIO registration of ACPI host
454 I/O
455 - SAUCE: LPC: Add the ACPI LPC support
456 - SAUCE: PCI: Apply the new generic I/O management on PCI IO hosts
457 - SAUCE: PCI: Restore codepath for !CONFIG_LIBIO
458
459 * POWER9: Additional patches for TTY and CPU_IDLE (LP: #1674325)
460 - SAUCE: tty: Fix ldisc crash on reopened tty
461
462 * Miscellaneous Ubuntu changes
463 - [Debian] Add build-dep on libnuma-dev to enable 'perf bench numa'
464 - Rebase to v4.12-rc3
465
466 [ Upstream Kernel Changes ]
467
468 * Rebase to v4.12-rc3
469
470 -- Seth Forshee <seth.forshee@canonical.com> Mon, 29 May 2017 20:56:29 -0500
471
472 linux (4.12.0-0.1) artful; urgency=low
473
474 * please enable CONFIG_ARM64_LSE_ATOMICS (LP: #1691614)
475 - [Config] CONFIG_ARM64_LSE_ATOMICS=y
476
477 * [Regression] NUMA_BALANCING disabled on arm64 (LP: #1690914)
478 - [Config] CONFIG_NUMA_BALANCING{,_DEFAULT_ENABLED}=y on arm64
479
480 * exec'ing a setuid binary from a threaded program sometimes fails to setuid
481 (LP: #1672819)
482 - SAUCE: exec: ensure file system accounting in check_unsafe_exec is correct
483
484 * Miscellaneous Ubuntu changes
485 - Update find-missing-sauce.sh to compare to artful
486 - Update dropped.txt
487 - SAUCE: (efi-lockdown) efi: Add EFI_SECURE_BOOT bit
488 - SAUCE: (efi-lockdown) Add the ability to lock down access to the running
489 kernel image
490 - SAUCE: (efi-lockdown) efi: Lock down the kernel if booted in secure boot
491 mode
492 - SAUCE: (efi-lockdown) Enforce module signatures if the kernel is locked down
493 - SAUCE: (efi-lockdown) Restrict /dev/mem and /dev/kmem when the kernel is
494 locked down
495 - SAUCE: (efi-lockdown) Add a sysrq option to exit secure boot mode
496 - SAUCE: (efi-lockdown) kexec: Disable at runtime if the kernel is locked down
497 - SAUCE: (efi-lockdown) Copy secure_boot flag in boot params across kexec
498 reboot
499 - SAUCE: (efi-lockdown) kexec_file: Disable at runtime if securelevel has been
500 set
501 - SAUCE: (efi-lockdown) hibernate: Disable when the kernel is locked down
502 - SAUCE: (efi-lockdown) uswsusp: Disable when the kernel is locked down
503 - SAUCE: (efi-lockdown) PCI: Lock down BAR access when the kernel is locked
504 down
505 - SAUCE: (efi-lockdown) x86: Lock down IO port access when the kernel is
506 locked down
507 - SAUCE: (efi-lockdown) x86: Restrict MSR access when the kernel is locked
508 down
509 - SAUCE: (efi-lockdown) asus-wmi: Restrict debugfs interface when the kernel
510 is locked down
511 - SAUCE: (efi-lockdown) ACPI: Limit access to custom_method when the kernel is
512 locked down
513 - SAUCE: (efi-lockdown) acpi: Ignore acpi_rsdp kernel param when the kernel
514 has been locked down
515 - SAUCE: (efi-lockdown) acpi: Disable ACPI table override if the kernel is
516 locked down
517 - SAUCE: (efi-lockdown) acpi: Disable APEI error injection if the kernel is
518 locked down
519 - SAUCE: (efi-lockdown) Enable cold boot attack mitigation
520 - SAUCE: (efi-lockdown) bpf: Restrict kernel image access functions when the
521 kernel is locked down
522 - SAUCE: (efi-lockdown) scsi: Lock down the eata driver
523 - SAUCE: (efi-lockdown) Prohibit PCMCIA CIS storage when the kernel is locked
524 down
525 - SAUCE: (efi-lockdown) Lock down TIOCSSERIAL
526 - SAUCE: (efi-lockdown) KEYS: Allow unrestricted boot-time addition of keys to
527 secondary keyring
528 - SAUCE: (efi-lockdown) efi: Add EFI signature data types
529 - SAUCE: (efi-lockdown) efi: Add an EFI signature blob parser
530 - SAUCE: (efi-lockdown) MODSIGN: Import certificates from UEFI Secure Boot
531 - SAUCE: (efi-lockdown) MODSIGN: Allow the "db" UEFI variable to be suppressed
532 - SAUCE: (efi-lockdown) efi: Sanitize boot_params in efi stub
533 - SAUCE: (efi-lockdown) efi: Add secure_boot state and status bit for
534 MokSBState
535 - SAUCE: (efi-lockdown) efi: Add sysctls for secureboot and MokSBState
536 - [Config] Set values for UEFI secure boot lockdown options
537 - Disable virtualbox build
538 - Disable hio build
539 - SAUCE: securityfs: Replace CURRENT_TIME with current_time()
540 - Disable zfs build
541 - [Debian] Work out upstream tag for use with gen-auto-reconstruct
542 - SAUCE: Import aufs driver
543 - SAUCE: aufs -- Include linux/mm.h in fs/aufs/file.h
544 - [Config] Enable aufs
545 - SAUCE: perf callchain: Include errno.h on x86 unconditinally
546
547 [ Upstream Kernel Changes ]
548
549 * Rebase to v4.12-rc2
550
551 -- Seth Forshee <seth.forshee@canonical.com> Sun, 21 May 2017 23:44:44 -0500
552
553 linux (4.11.0-3.8) artful; urgency=low
554
555 [ Seth Forshee ]
556
557 * Release Tracking Bug
558 - LP: #1690999
559
560 * apparmor_parser hangs indefinitely when called by multiple threads
561 (LP: #1645037)
562 - SAUCE: apparmor: fix lock ordering for mkdir
563
564 * apparmor leaking securityfs pin count (LP: #1660846)
565 - SAUCE: apparmor: fix leak on securityfs pin count
566
567 * apparmor reference count leak when securityfs_setup_d_inode\ () fails
568 (LP: #1660845)
569 - SAUCE: apparmor: fix reference count leak when securityfs_setup_d_inode()
570 fails
571
572 * apparmor not checking error if security_pin_fs() fails (LP: #1660842)
573 - SAUCE: apparmor: fix not handling error case when securityfs_pin_fs() fails
574
575 * libvirt profile is blocking global setrlimit despite having no rlimit rule
576 (LP: #1679704)
577 - SAUCE: apparmor: fix complain mode failure for rlimit mediation
578 - apparmor: update auditing of rlimit check to provide capability information
579
580 * apparmor: does not provide a way to detect policy updataes (LP: #1678032)
581 - SAUCE: apparmor: add policy revision file interface
582
583 * apparmor does not make support of query data visible (LP: #1678023)
584 - SAUCE: apparmor: add label data availability to the feature set
585
586 * apparmor query interface does not make supported query info available
587 (LP: #1678030)
588 - SAUCE: apparmor: add information about the query inteface to the feature set
589
590 * change_profile incorrect when using namespaces with a compound stack
591 (LP: #1677959)
592 - SAUCE: apparmor: fix label parse for stacked labels
593
594 * Regression in 4.4.0-65-generic causes very frequent system crashes
595 (LP: #1669611)
596 - apparmor: sync of apparmor 3.6+ (17.04)
597
598 * Artful update to 4.11.1 stable release (LP: #1690814)
599 - dm ioctl: prevent stack leak in dm ioctl call
600 - drm/sti: fix GDP size to support up to UHD resolution
601 - power: supply: lp8788: prevent out of bounds array access
602 - brcmfmac: Ensure pointer correctly set if skb data location changes
603 - brcmfmac: Make skb header writable before use
604 - sparc64: fix fault handling in NGbzero.S and GENbzero.S
605 - refcount: change EXPORT_SYMBOL markings
606 - net: macb: fix phy interrupt parsing
607 - tcp: fix access to sk->sk_state in tcp_poll()
608 - geneve: fix incorrect setting of UDP checksum flag
609 - bpf: enhance verifier to understand stack pointer arithmetic
610 - bpf, arm64: fix jit branch offset related to ldimm64
611 - tcp: fix wraparound issue in tcp_lp
612 - net: ipv6: Do not duplicate DAD on link up
613 - net: usb: qmi_wwan: add Telit ME910 support
614 - tcp: do not inherit fastopen_req from parent
615 - ipv4, ipv6: ensure raw socket message is big enough to hold an IP header
616 - rtnetlink: NUL-terminate IFLA_PHYS_PORT_NAME string
617 - ipv6: initialize route null entry in addrconf_init()
618 - ipv6: reorder ip6_route_dev_notifier after ipv6_dev_notf
619 - tcp: randomize timestamps on syncookies
620 - bnxt_en: allocate enough space for ->ntp_fltr_bmap
621 - bpf: don't let ldimm64 leak map addresses on unprivileged
622 - net: mdio-mux: bcm-iproc: call mdiobus_free() in error path
623 - f2fs: sanity check segment count
624 - xen/arm,arm64: fix xen_dma_ops after 815dd18 "Consolidate get_dma_ops..."
625 - xen: Revert commits da72ff5bfcb0 and 72a9b186292d
626 - block: get rid of blk_integrity_revalidate()
627 - Linux 4.11.1
628
629 * Module signing exclusion for staging drivers does not work properly
630 (LP: #1690908)
631 - SAUCE: Fix module signing exclusion in package builds
632
633 * perf: qcom: Add L3 cache PMU driver (LP: #1689856)
634 - [Config] CONFIG_QCOM_L3_PMU=y
635 - perf: qcom: Add L3 cache PMU driver
636
637 * No PMU support for ACPI-based arm64 systems (LP: #1689661)
638 - drivers/perf: arm_pmu: rework per-cpu allocation
639 - drivers/perf: arm_pmu: manage interrupts per-cpu
640 - drivers/perf: arm_pmu: split irq request from enable
641 - drivers/perf: arm_pmu: remove pointless PMU disabling
642 - drivers/perf: arm_pmu: define armpmu_init_fn
643 - drivers/perf: arm_pmu: fold init into alloc
644 - drivers/perf: arm_pmu: factor out pmu registration
645 - drivers/perf: arm_pmu: simplify cpu_pmu_request_irqs()
646 - drivers/perf: arm_pmu: handle no platform_device
647 - drivers/perf: arm_pmu: rename irq request/free functions
648 - drivers/perf: arm_pmu: split cpu-local irq request/free
649 - drivers/perf: arm_pmu: move irq request/free into probe
650 - drivers/perf: arm_pmu: split out platform device probe logic
651 - arm64: add function to get a cpu's MADT GICC table
652 - [Config] CONFIG_ARM_PMU_ACPI=y
653 - drivers/perf: arm_pmu: add ACPI framework
654 - arm64: pmuv3: handle !PMUv3 when probing
655 - arm64: pmuv3: use arm_pmu ACPI framework
656
657 * Fix NVLINK2 TCE route (LP: #1690155)
658 - powerpc/powernv: Fix TCE kill on NVLink2
659
660 * CVE-2017-0605
661 - tracing: Use strlcpy() instead of strcpy() in __trace_find_cmdline()
662
663 * Miscellaneous Ubuntu changes
664 - [Config] Restore powerpc arch to annotations file
665 - [Config] Disable runtime testing modules
666 - [Config] Disable drivers not needed on s390x
667 - [Config] Update annotations for 4.11
668 - [Config] updateconfigs after apparmor updates
669
670 * Miscellaneous upstream changes
671 - apparmor: use SHASH_DESC_ON_STACK
672 - apparmor: fix invalid reference to index variable of iterator line 836
673 - apparmor: fix parameters so that the permission test is bypassed at boot
674 - apparmor: Make path_max parameter readonly
675 - apparmorfs: Combine two function calls into one in aa_fs_seq_raw_abi_show()
676 - apparmorfs: Use seq_putc() in two functions
677 - apparmor: provide information about path buffer size at boot
678 - apparmor: add/use fns to print hash string hex value
679
680 -- Seth Forshee <seth.forshee@canonical.com> Tue, 16 May 2017 00:39:13 -0500
681
682 linux (4.11.0-2.7) artful; urgency=low
683
684 * kernel-wedge fails in artful due to leftover squashfs-modules d-i files
685 (LP: #1688259)
686 - Remove squashfs-modules files from d-i
687 - [Config] as squashfs-modules is builtin kernel-image must Provides: it
688
689 * [Zesty] d-i: replace msm_emac with qcom_emac (LP: #1677297)
690 - Revert "UBUNTU: d-i: initrd needs msm_emac on amberwing platform."
691 - d-i: initrd needs qcom_emac on amberwing platform.
692
693 * update for V3 kernel bits and improved multiple fan slice support
694 (LP: #1470091)
695 - SAUCE: fan: tunnel multiple mapping mode (v3)
696
697 * Miscellaneous Ubuntu changes
698 - SAUCE: (noup) Update spl to 0.6.5.9-1ubuntu1, zfs to 0.6.5.9-5ubuntu5
699 - Enable zfs
700 - SAUCE: fan: add VXLAN implementation
701 - SAUCE: (efi-lockdown) efi: Add EFI_SECURE_BOOT bit
702 - SAUCE: (efi-lockdown) Add the ability to lock down access to the running
703 kernel image
704 - SAUCE: (efi-lockdown) efi: Lock down the kernel if booted in secure boot
705 mode
706 - SAUCE: (efi-lockdown) Enforce module signatures if the kernel is locked down
707 - SAUCE: (efi-lockdown) Restrict /dev/mem and /dev/kmem when the kernel is
708 locked down
709 - SAUCE: (efi-lockdown) Add a sysrq option to exit secure boot mode
710 - SAUCE: (efi-lockdown) kexec: Disable at runtime if the kernel is locked down
711 - SAUCE: (efi-lockdown) Copy secure_boot flag in boot params across kexec
712 reboot
713 - SAUCE: (efi-lockdown) kexec_file: Disable at runtime if securelevel has been
714 set
715 - SAUCE: (efi-lockdown) hibernate: Disable when the kernel is locked down
716 - SAUCE: (efi-lockdown) uswsusp: Disable when the kernel is locked down
717 - SAUCE: (efi-lockdown) PCI: Lock down BAR access when the kernel is locked
718 down
719 - SAUCE: (efi-lockdown) x86: Lock down IO port access when the kernel is
720 locked down
721 - SAUCE: (efi-lockdown) x86: Restrict MSR access when the kernel is locked
722 down
723 - SAUCE: (efi-lockdown) asus-wmi: Restrict debugfs interface when the kernel
724 is locked down
725 - SAUCE: (efi-lockdown) ACPI: Limit access to custom_method when the kernel is
726 locked down
727 - SAUCE: (efi-lockdown) acpi: Ignore acpi_rsdp kernel param when the kernel
728 has been locked down
729 - SAUCE: (efi-lockdown) acpi: Disable ACPI table override if the kernel is
730 locked down
731 - SAUCE: (efi-lockdown) acpi: Disable APEI error injection if the kernel is
732 locked down
733 - SAUCE: (efi-lockdown) Enable cold boot attack mitigation
734 - SAUCE: (efi-lockdown) bpf: Restrict kernel image access functions when the
735 kernel is locked down
736 - SAUCE: (efi-lockdown) scsi: Lock down the eata driver
737 - SAUCE: (efi-lockdown) Prohibit PCMCIA CIS storage when the kernel is locked
738 down
739 - SAUCE: (efi-lockdown) Lock down TIOCSSERIAL
740 - SAUCE: (efi-lockdown) Add EFI signature data types
741 - SAUCE: (efi-lockdown) Add an EFI signature blob parser and key loader.
742 - SAUCE: (efi-lockdown) KEYS: Add a system blacklist keyring
743 - SAUCE: (efi-lockdown) MODSIGN: Import certificates from UEFI Secure Boot
744 - SAUCE: (efi-lockdown) MODSIGN: Support not importing certs from db
745 - SAUCE: (efi-lockdown) MODSIGN: Don't try secure boot if EFI runtime is
746 disabled
747 - SAUCE: (efi-lockdown) efi: Sanitize boot_params in efi stub
748 - SAUCE: (efi-lockdown) efi: Add secure_boot state and status bit for
749 MokSBState
750 - SAUCE: (efi-lockdown) efi: Add sysctls for secureboot and MokSBState
751 - [Config] Set values for UEFI secure boot lockdown options
752 - Update dropped.txt
753
754 [ Upstream Kernel Changes ]
755
756 * rebase to v4.11
757
758 -- Seth Forshee <seth.forshee@canonical.com> Fri, 05 May 2017 07:43:14 -0500
759
760 linux (4.11.0-1.6) artful; urgency=low
761
762 * Miscellaneous Ubuntu changes
763 - [Debian] Use default compression for all packages
764 - SAUCE: (namespace) block_dev: Support checking inode permissions in
765 lookup_bdev()
766 - SAUCE: (namespace) block_dev: Check permissions towards block device inode
767 when mounting
768 - SAUCE: (namespace) mtd: Check permissions towards mtd block device inode
769 when mounting
770 - SAUCE: (namespace) fs: Allow superblock owner to change ownership of inodes
771 - SAUCE: (namespace) fs: Don't remove suid for CAP_FSETID for userns root
772 - SAUCE: (namespace) fs: Allow superblock owner to access do_remount_sb()
773 - SAUCE: (namespace) capabilities: Allow privileged user in s_user_ns to set
774 security.* xattrs
775 - SAUCE: (namespace) fs: Allow CAP_SYS_ADMIN in s_user_ns to freeze and thaw
776 filesystems
777 - SAUCE: (namespace) fuse: Add support for pid namespaces
778 - SAUCE: (namespace) fuse: Support fuse filesystems outside of init_user_ns
779 - SAUCE: (namespace) fuse: Restrict allow_other to the superblock's namespace
780 or a descendant
781 - SAUCE: (namespace) fuse: Allow user namespace mounts
782 - SAUCE: (namespace) ext4: Add support for unprivileged mounts from user
783 namespaces
784 - SAUCE: (namespace) evm: Don't update hmacs in user ns mounts
785 - SAUCE: (namespace) ext4: Add module parameter to enable user namespace
786 mounts
787 - SAUCE: (namespace) block_dev: Forbid unprivileged mounting when device is
788 opened for writing
789
790 -- Seth Forshee <seth.forshee@canonical.com> Wed, 26 Apr 2017 10:08:29 -0500
791
792 linux (4.11.0-0.5) artful; urgency=low
793
794 * [Hyper-V][SAUCE] pci-hyperv: Use only 16 bit integer for PCI domain
795 (LP: #1684971)
796 - SAUCE: pci-hyperv: Use only 16 bit integer for PCI domain
797
798 * [Hyper-V] Ubuntu 14.04.2 LTS Generation 2 SCSI Errors on VSS Based Backups
799 (LP: #1470250)
800 - SAUCE: Tools: hv: vss: Thaw the filesystem and continue after freeze fails
801
802 * Enable virtual scsi server driver for Power (LP: #1615665)
803 - SAUCE: Return TCMU-generated sense data to fabric module
804
805 * include/linux/security.h header syntax error with !CONFIG_SECURITYFS
806 (LP: #1630990)
807 - SAUCE: (no-up) include/linux/security.h -- fix syntax error with
808 CONFIG_SECURITYFS=n
809
810 * Miscellaneous Ubuntu changes
811 - SAUCE: Import aufs driver
812 - [Config] Enable aufs
813 - [Debian] Add script to update virtualbox
814 - ubuntu: vbox -- Update to 5.1.20-dfsg-2
815 - Enable vbox
816 - SAUCE: aufs -- Include linux/mm.h in fs/aufs/file.h
817
818 [ Upstream Kernel Changes ]
819
820 * rebase to v4.11-rc8
821
822 -- Seth Forshee <seth.forshee@canonical.com> Tue, 25 Apr 2017 13:42:54 -0500
823
824 linux (4.11.0-0.4) zesty; urgency=low
825
826 * POWER9: Improve performance on memory management (LP: #1681429)
827 - SAUCE: powerpc/mm/radix: Don't do page walk cache flush when doing full mm
828 flush
829 - SAUCE: powerpc/mm/radix: Remove unnecessary ptesync
830
831 * Miscellaneous Ubuntu changes
832 - find-missing-sauce.sh
833
834 [ Upstream Kernel Changes ]
835
836 * rebase to v4.11-rc7
837
838 -- Seth Forshee <seth.forshee@canonical.com> Tue, 18 Apr 2017 08:19:43 -0500
839
840 linux (4.11.0-0.3) zesty; urgency=low
841
842 * Disable CONFIG_HVC_UDBG on ppc64el (LP: #1680888)
843 - [Config] Disable CONFIG_HVC_UDBG on ppc64el
844
845 * smartpqi driver needed in initram disk and installer (LP: #1680156)
846 - [Config] Add smartpqi to d-i
847
848 * Disable CONFIG_SECURITY_SELINUX_DISABLE (LP: #1680315)
849 - [Config] CONFIG_SECURITY_SELINUX_DISABLE=n
850
851 * Miscellaneous Ubuntu changes
852 - [Config] flash-kernel should be a Breaks
853 - [Config] drop the info directory
854 - [Config] drop NOTES as obsolete
855 - [Config] drop changelog.historical as obsolete
856 - rebase to v4.11-rc6
857
858 [ Upstream Kernel Changes ]
859
860 * rebase to v4.11-rc6
861
862 -- Tim Gardner <tim.gardner@canonical.com> Tue, 11 Apr 2017 07:16:52 -0600
863
864 linux (4.11.0-0.2) zesty; urgency=low
865
866 [ Upstream Kernel Changes ]
867
868 * rebase to v4.11-rc5
869
870 -- Tim Gardner <tim.gardner@canonical.com> Mon, 03 Apr 2017 08:26:07 +0100
871
872 linux (4.11.0-0.1) zesty; urgency=low
873
874 [ Upstream Kernel Changes ]
875
876 * rebase to v4.11-rc4
877 - LP: #1591053
878
879 -- Tim Gardner <tim.gardner@canonical.com> Mon, 20 Mar 2017 05:15:32 -0600
880
881 linux (4.11.0-0.0) zesty; urgency=low
882
883 * dummy entry
884
885 -- Tim Gardner <tim.gardner@canonical.com> Mon, 20 Mar 2017 05:15:32 -0600