+linux-snapdragon (4.4.0-1073.78) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1073.78 -proposed tracker (LP: #1709299)
+
+ * snapcraft.yaml: correct image format and dtb installation path
+ (LP: #1706938)
+ - snapcraft.yaml: force image format to Image
+ - snapcraft.yaml: install the apq8016-sbc and msm8916-mtp dtb files
+
+ [ Ubuntu: 4.4.0-93.116 ]
+
+ * linux: 4.4.0-93.116 -proposed tracker (LP: #1709296)
+ * Creating conntrack entry failure with kernel 4.4.0-89 (LP: #1709032)
+ - Revert "Revert "netfilter: synproxy: fix conntrackd interaction""
+ - netfilter: nf_ct_ext: fix possible panic after nf_ct_extend_unregister
+ * CVE-2017-1000112
+ - Revert "udp: consistently apply ufo or fragmentation"
+ - udp: consistently apply ufo or fragmentation
+ * CVE-2017-1000111
+ - Revert "net-packet: fix race in packet_set_ring on PACKET_RESERVE"
+ - packet: fix tp_reserve race in packet_set_ring
+ * kernel BUG at [tty_ldisc_reinit] mm/slub.c! (LP: #1709126)
+ - tty: Simplify tty_set_ldisc() exit handling
+ - tty: Reset c_line from driver's init_termios
+ - tty: Handle NULL tty->ldisc
+ - tty: Move tty_ldisc_kill()
+ - tty: Use 'disc' for line discipline index name
+ - tty: Refactor tty_ldisc_reinit() for reuse
+ - tty: Destroy ldisc instance on hangup
+ * atheros bt failed after S3 (LP: #1706833)
+ - SAUCE: Bluetooth: Make request workqueue freezable
+ * The Precision Touchpad(PTP) button sends incorrect event code (LP: #1708372)
+ - HID: multitouch: handle external buttons for Precision Touchpads
+ * Set CONFIG_SATA_HIGHBANK=y on armhf (LP: #1703430)
+ - [Config] CONFIG_SATA_HIGHBANK=y
+ * xfs slab objects (memory) leak when xfs shutdown is called (LP: #1706132)
+ - xfs: fix xfs_log_ticket leak in xfs_end_io() after fs shutdown
+ * Adt tests of src:linux time out often on armhf lxc containers (LP: #1705495)
+ - [Packaging] tests -- reduce rebuild test to one flavour
+ * CVE-2017-7495
+ - ext4: fix data exposure after a crash
+ * ubuntu/rsi driver downlink wifi throughput drops to 5-6 Mbps when BT
+ keyboard is connected (LP: #1706991)
+ - SAUCE: Redpine: enable power save by default for coex mode
+ - SAUCE: Redpine: uapsd configuration changes
+ * [Hyper-V] hv_netvsc: Exclude non-TCP port numbers from vRSS hashing
+ (LP: #1690174)
+ - hv_netvsc: Exclude non-TCP port numbers from vRSS hashing
+ * ath10k doesn't report full RSSI information (LP: #1706531)
+ - ath10k: add per chain RSSI reporting
+ * ideapad_laptop don't support v310-14isk (LP: #1705378)
+ - platform/x86: ideapad-laptop: Add several models to no_hw_rfkill
+ * [8087:0a2b] Failed to load bluetooth firmware(might affect some other Intel
+ bt devices) (LP: #1705633)
+ - Bluetooth: btintel: Create common Intel Version Read function
+ - Bluetooth: Use switch statement for Intel hardware variants
+ - Bluetooth: Replace constant hw_variant from Intel Bluetooth firmware
+ filename
+ - Bluetooth: hci_intel: Fix firmware file name to use hw_variant
+ - Bluetooth: btintel: Add MODULE_FIRMWARE entries for iBT 3.5 controllers
+ * xhci_hcd: ERROR Transfer event TRB DMA ptr not part of current TD ep_index 2
+ comp_code 13 (LP: #1667750)
+ - xhci: Bad Ethernet performance plugged in ASM1042A host
+ * OpenPower: Some multipaths temporarily have only a single path
+ (LP: #1696445)
+ - scsi: ses: don't get power status of SES device slot on probe
+ * Hotkeys on new Thinkpad systems aren't working (LP: #1705169)
+ - platform/x86: thinkpad_acpi: Adding new hotkey ID for Lenovo thinkpad
+ - platform/x86: thinkpad_acpi: guard generic hotkey case
+ - platform/x86: thinkpad_acpi: add mapping for new hotkeys
+ * CVE-2015-7837
+ - SAUCE: (no-up) kexec/uefi: copy secure_boot flag in boot params across kexec
+ reboot
+ * misleading kernel warning skb_warn_bad_offload during checksum calculation
+ (LP: #1705447)
+ - net: reduce skb_warn_bad_offload() noise
+ * bonding: stack dump when unregistering a netdev (LP: #1704102)
+ - bonding: avoid NETDEV_CHANGEMTU event when unregistering slave
+ * Ubuntu 16.04 IOB Error when the Mustang board rebooted (LP: #1693673)
+ - drivers: net: xgene: Fix redundant prefetch buffer cleanup
+ * Ubuntu16.04: NVMe 4K+T10 DIF/DIX format returns I/O error on dd with split
+ op (LP: #1689946)
+ - blk-mq: NVMe 512B/4K+T10 DIF/DIX format returns I/O error on dd with split
+ op
+ * linux >= 4.2: bonding 802.3ad does not work with 5G, 25G and 50G link speeds
+ (LP: #1697892)
+ - bonding: add 802.3ad support for 100G speeds
+ - bonding: fix 802.3ad aggregator reselection
+ - bonding: add 802.3ad support for 25G speeds
+ - bonding: fix 802.3ad support for 5G and 50G speeds
+ * Xenial update to 4.4.79 stable release (LP: #1707233)
+ - disable new gcc-7.1.1 warnings for now
+ - ir-core: fix gcc-7 warning on bool arithmetic
+ - s5p-jpeg: don't return a random width/height
+ - thermal: cpu_cooling: Avoid accessing potentially freed structures
+ - ath9k: fix tx99 use after free
+ - ath9k: fix tx99 bus error
+ - NFC: fix broken device allocation
+ - NFC: nfcmrvl_uart: add missing tty-device sanity check
+ - NFC: nfcmrvl: do not use device-managed resources
+ - NFC: nfcmrvl: use nfc-device for firmware download
+ - NFC: nfcmrvl: fix firmware-management initialisation
+ - nfc: Ensure presence of required attributes in the activate_target handler
+ - nfc: Fix the sockaddr length sanitization in llcp_sock_connect
+ - NFC: Add sockaddr length checks before accessing sa_family in bind handlers
+ - perf intel-pt: Move decoder error setting into one condition
+ - perf intel-pt: Improve sample timestamp
+ - perf intel-pt: Fix missing stack clear
+ - perf intel-pt: Ensure IP is zero when state is INTEL_PT_STATE_NO_IP
+ - perf intel-pt: Clear FUP flag on error
+ - Bluetooth: use constant time memory comparison for secret values
+ - wlcore: fix 64K page support
+ - ASoC: compress: Derive substream from stream based on direction
+ - PM / Domains: Fix unsafe iteration over modified list of device links
+ - PM / Domains: Fix unsafe iteration over modified list of domain providers
+ - scsi: ses: do not add a device to an enclosure if enclosure_add_links()
+ fails.
+ - iscsi-target: Add login_keys_workaround attribute for non RFC initiators
+ - powerpc/64: Fix atomic64_inc_not_zero() to return an int
+ - powerpc: Fix emulation of mcrf in emulate_step()
+ - powerpc: Fix emulation of mfocrf in emulate_step()
+ - powerpc/asm: Mark cr0 as clobbered in mftb()
+ - af_key: Fix sadb_x_ipsecrequest parsing
+ - PCI/PM: Restore the status of PCI devices across hibernation
+ - ipvs: SNAT packet replies only for NATed connections
+ - xhci: fix 20000ms port resume timeout
+ - xhci: Fix NULL pointer dereference when cleaning up streams for removed host
+ - usb: storage: return on error to avoid a null pointer dereference
+ - USB: cdc-acm: add device-id for quirky printer
+ - usb: renesas_usbhs: fix usbhsc_resume() for !USBHSF_RUNTIME_PWCTRL
+ - usb: renesas_usbhs: gadget: disable all eps when the driver stops
+ - md: don't use flush_signals in userspace processes
+ - x86/xen: allow userspace access during hypercalls
+ - cx88: Fix regression in initial video standard setting
+ - Raid5 should update rdev->sectors after reshape
+ - s390/syscalls: Fix out of bounds arguments access
+ - drm/amd/amdgpu: Return error if initiating read out of range on vram
+ - drm/radeon/ci: disable mclk switching for high refresh rates (v2)
+ - drm/radeon: Fix eDP for single-display iMac10,1 (v2)
+ - ipmi: use rcu lock around call to intf->handlers->sender()
+ - ipmi:ssif: Add missing unlock in error branch
+ - f2fs: Don't clear SGID when inheriting ACLs
+ - vfio: Fix group release deadlock
+ - vfio: New external user group/file match
+ - ftrace: Fix uninitialized variable in match_records()
+ - MIPS: Fix mips_atomic_set() retry condition
+ - MIPS: Fix mips_atomic_set() with EVA
+ - MIPS: Negate error syscall return in trace
+ - x86/acpi: Prevent out of bound access caused by broken ACPI tables
+ - x86/ioapic: Pass the correct data to unmask_ioapic_irq()
+ - MIPS: Fix MIPS I ISA /proc/cpuinfo reporting
+ - MIPS: Save static registers before sysmips
+ - MIPS: Actually decode JALX in `__compute_return_epc_for_insn'
+ - MIPS: Fix unaligned PC interpretation in `compute_return_epc'
+ - MIPS: math-emu: Prevent wrong ISA mode instruction emulation
+ - MIPS: Send SIGILL for BPOSGE32 in `__compute_return_epc_for_insn'
+ - MIPS: Rename `sigill_r6' to `sigill_r2r6' in `__compute_return_epc_for_insn'
+ - MIPS: Send SIGILL for linked branches in `__compute_return_epc_for_insn'
+ - MIPS: Fix a typo: s/preset/present/ in r2-to-r6 emulation error message
+ - Input: i8042 - fix crash at boot time
+ - NFS: only invalidate dentrys that are clearly invalid.
+ - udf: Fix deadlock between writeback and udf_setsize()
+ - target: Fix COMPARE_AND_WRITE caw_sem leak during se_cmd quiesce
+ - perf annotate: Fix broken arrow at row 0 connecting jmp instruction to its
+ target
+ - Revert "perf/core: Drop kernel samples even though :u is specified"
+ - staging: rtl8188eu: add TL-WN722N v2 support
+ - ceph: fix race in concurrent readdir
+ - RDMA/core: Initialize port_num in qp_attr
+ - drm/mst: Fix error handling during MST sideband message reception
+ - drm/mst: Avoid dereferencing a NULL mstb in drm_dp_mst_handle_up_req()
+ - drm/mst: Avoid processing partially received up/down message transactions
+ - of: device: Export of_device_{get_modalias, uvent_modalias} to modules
+ - spmi: Include OF based modalias in device uevent
+ - tracing: Fix kmemleak in instance_rmdir
+ - alarmtimer: don't rate limit one-shot timers
+ - Linux 4.4.79
+ * Xenial update to 4.4.78 stable release (LP: #1705707)
+ - net_sched: fix error recovery at qdisc creation
+ - net: sched: Fix one possible panic when no destroy callback
+ - net/phy: micrel: configure intterupts after autoneg workaround
+ - ipv6: avoid unregistering inet6_dev for loopback
+ - net: dp83640: Avoid NULL pointer dereference.
+ - tcp: reset sk_rx_dst in tcp_disconnect()
+ - net: prevent sign extension in dev_get_stats()
+ - bpf: prevent leaking pointer via xadd on unpriviledged
+ - net: handle NAPI_GRO_FREE_STOLEN_HEAD case also in napi_frags_finish()
+ - ipv6: dad: don't remove dynamic addresses if link is down
+ - net: ipv6: Compare lwstate in detecting duplicate nexthops
+ - vrf: fix bug_on triggered by rx when destroying a vrf
+ - rds: tcp: use sock_create_lite() to create the accept socket
+ - brcmfmac: fix possible buffer overflow in brcmf_cfg80211_mgmt_tx()
+ - cfg80211: Define nla_policy for NL80211_ATTR_LOCAL_MESH_POWER_MODE
+ - cfg80211: Validate frequencies nested in NL80211_ATTR_SCAN_FREQUENCIES
+ - cfg80211: Check if PMKID attribute is of expected size
+ - irqchip/gic-v3: Fix out-of-bound access in gic_set_affinity
+ - parisc: Report SIGSEGV instead of SIGBUS when running out of stack
+ - parisc: use compat_sys_keyctl()
+ - parisc: DMA API: return error instead of BUG_ON for dma ops on non dma devs
+ - parisc/mm: Ensure IRQs are off in switch_mm()
+ - tools/lib/lockdep: Reduce MAX_LOCK_DEPTH to avoid overflowing lock_chain/:
+ Depth
+ - kernel/extable.c: mark core_kernel_text notrace
+ - mm/list_lru.c: fix list_lru_count_node() to be race free
+ - fs/dcache.c: fix spin lockup issue on nlru->lock
+ - checkpatch: silence perl 5.26.0 unescaped left brace warnings
+ - binfmt_elf: use ELF_ET_DYN_BASE only for PIE
+ - arm: move ELF_ET_DYN_BASE to 4MB
+ - arm64: move ELF_ET_DYN_BASE to 4GB / 4MB
+ - powerpc: move ELF_ET_DYN_BASE to 4GB / 4MB
+ - s390: reduce ELF_ET_DYN_BASE
+ - exec: Limit arg stack to at most 75% of _STK_LIM
+ - vt: fix unchecked __put_user() in tioclinux ioctls
+ - mnt: In umount propagation reparent in a separate pass
+ - mnt: In propgate_umount handle visiting mounts in any order
+ - mnt: Make propagate_umount less slow for overlapping mount propagation trees
+ - selftests/capabilities: Fix the test_execve test
+ - tpm: Get rid of chip->pdev
+ - tpm: Provide strong locking for device removal
+ - Add "shutdown" to "struct class".
+ - tpm: Issue a TPM2_Shutdown for TPM2 devices.
+ - mm: fix overflow check in expand_upwards()
+ - crypto: talitos - Extend max key length for SHA384/512-HMAC and AEAD
+ - crypto: atmel - only treat EBUSY as transient if backlog
+ - crypto: sha1-ssse3 - Disable avx2
+ - crypto: caam - fix signals handling
+ - sched/topology: Fix overlapping sched_group_mask
+ - sched/topology: Optimize build_group_mask()
+ - PM / wakeirq: Convert to SRCU
+ - PM / QoS: return -EINVAL for bogus strings
+ - tracing: Use SOFTIRQ_OFFSET for softirq dectection for more accurate results
+ - KVM: x86: disable MPX if host did not enable MPX XSAVE features
+ - kvm: vmx: Do not disable intercepts for BNDCFGS
+ - kvm: x86: Guest BNDCFGS requires guest MPX support
+ - kvm: vmx: Check value written to IA32_BNDCFGS
+ - kvm: vmx: allow host to access guest MSR_IA32_BNDCFGS
+ - Linux 4.4.78
+ * Xenial update to 4.4.77 stable release (LP: #1705238)
+ - fs: add a VALID_OPEN_FLAGS
+ - fs: completely ignore unknown open flags
+ - driver core: platform: fix race condition with driver_override
+ - bgmac: reset & enable Ethernet core before using it
+ - mm: fix classzone_idx underflow in shrink_zones()
+ - tracing/kprobes: Allow to create probe with a module name starting with a
+ digit
+ - usb: dwc3: replace %p with %pK
+ - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick
+ - Add USB quirk for HVR-950q to avoid intermittent device resets
+ - usb: usbip: set buffer pointers to NULL after free
+ - usb: Fix typo in the definition of Endpoint[out]Request
+ - mac80211_hwsim: Replace bogus hrtimer clockid
+ - sysctl: don't print negative flag for proc_douintvec
+ - sysctl: report EINVAL if value is larger than UINT_MAX for proc_douintvec
+ - pinctrl: sh-pfc: r8a7791: Fix SCIF2 pinmux data
+ - pinctrl: meson: meson8b: fix the NAND DQS pins
+ - pinctrl: sunxi: Fix SPDIF function name for A83T
+ - pinctrl: mxs: atomically switch mux and drive strength config
+ - pinctrl: sh-pfc: Update info pointer after SoC-specific init
+ - USB: serial: option: add two Longcheer device ids
+ - USB: serial: qcserial: new Sierra Wireless EM7305 device ID
+ - gfs2: Fix glock rhashtable rcu bug
+ - x86/tools: Fix gcc-7 warning in relocs.c
+ - x86/uaccess: Optimize copy_user_enhanced_fast_string() for short strings
+ - ath10k: override CE5 config for QCA9377
+ - KEYS: Fix an error code in request_master_key()
+ - RDMA/uverbs: Check port number supplied by user verbs cmds
+ - mqueue: fix a use-after-free in sys_mq_notify()
+ - tools include: Add a __fallthrough statement
+ - tools string: Use __fallthrough in perf_atoll()
+ - tools strfilter: Use __fallthrough
+ - perf top: Use __fallthrough
+ - perf intel-pt: Use __fallthrough
+ - perf thread_map: Correctly size buffer used with dirent->dt_name
+ - perf scripting perl: Fix compile error with some perl5 versions
+ - perf tests: Avoid possible truncation with dirent->d_name + snprintf
+ - perf bench numa: Avoid possible truncation when using snprintf()
+ - perf tools: Use readdir() instead of deprecated readdir_r()
+ - perf thread_map: Use readdir() instead of deprecated readdir_r()
+ - perf script: Use readdir() instead of deprecated readdir_r()
+ - perf tools: Remove duplicate const qualifier
+ - perf annotate browser: Fix behaviour of Shift-Tab with nothing focussed
+ - perf pmu: Fix misleadingly indented assignment (whitespace)
+ - perf dwarf: Guard !x86_64 definitions under #ifdef else clause
+ - perf trace: Do not process PERF_RECORD_LOST twice
+ - perf tests: Remove wrong semicolon in while loop in CQM test
+ - perf tools: Use readdir() instead of deprecated readdir_r() again
+ - md: fix incorrect use of lexx_to_cpu in does_sb_need_changing
+ - md: fix super_offset endianness in super_1_rdev_size_change
+ - tcp: fix tcp_mark_head_lost to check skb len before fragmenting
+ - staging: vt6556: vnt_start Fix missing call to vnt_key_init_table.
+ - staging: comedi: fix clean-up of comedi_class in comedi_init()
+ - ext4: check return value of kstrtoull correctly in reserved_clusters_store
+ - x86/mm/pat: Don't report PAT on CPUs that don't support it
+ - saa7134: fix warm Medion 7134 EEPROM read
+ - Linux 4.4.77
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Mon, 14 Aug 2017 13:00:49 +0200
+
+linux-snapdragon (4.4.0-1072.77) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1072.77 -proposed tracker (LP: #1709815)
+
+ [ Ubuntu: 4.4.0-92.115 ]
+
+ * linux: 4.4.0-92.115 -proposed tracker (LP: #1709812)
+ * Creating conntrack entry failure with kernel 4.4.0-89 (LP: #1709032)
+ - Revert "netfilter: synproxy: fix conntrackd interaction"
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Thu, 10 Aug 2017 12:34:25 +0200
+
+linux-snapdragon (4.4.0-1071.76) xenial; urgency=low
+
+ [ Ubuntu: 4.4.0-91.114 ]
+
+ * CVE-2017-1000112
+ - ipv4: Should use consistent conditional judgement for ip fragment in
+ __ip_append_data and ip_finish_output
+ - ipv6: Don't use ufo handling on later transformed packets
+ - udp: avoid ufo handling on IP payload compression packets
+ - ipv6: Should use consistent conditional judgement for ip6 fragment between
+ __ip6_append_data and ip6_finish_output
+ - net: account for current skb length when deciding about UFO
+ - udp: consistently apply ufo or fragmentation
+ * CVE-2017-1000111
+ - net-packet: fix race in packet_set_ring on PACKET_RESERVE
+
+ -- Stefan Bader <stefan.bader@canonical.com> Tue, 08 Aug 2017 15:27:03 +0200
+
+linux-snapdragon (4.4.0-1069.74) xenial; urgency=low
+
+ [ Ubuntu: 4.4.0-89.112 ]
+
+ * CVE-2017-7533
+ - dentry name snapshots
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Tue, 01 Aug 2017 13:33:17 -0300
+
+linux-snapdragon (4.4.0-1068.73) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1068.73 -proposed tracker (LP: #1705274)
+
+ * Snapcraft.yaml update (LP: #1700576)
+ - snapcraft.yaml: various improvements
+
+ [ Ubuntu: 4.4.0-88.111 ]
+
+ * linux: 4.4.0-88.111 -proposed tracker (LP: #1705270)
+ * [Xenial] nvme: Quirks for PM1725 controllers (LP: #1704435)
+ - nvme: Quirks for PM1725 controllers
+ * Upgrade Redpine WLAN/BT driver to ver. 1.2 (production release)
+ (LP: #1697829)
+ - SAUCE: Redpine: Upgrade to ver. 1.2 production release
+ * ubuntu/rsi driver has several issues as picked up by static analysis
+ (LP: #1694733)
+ - SAUCE: Redpine: Upgrade to ver. 1.2 production release
+ * Redpine vendor driver - Switching to AP mode causes kernel panic
+ (LP: #1700941)
+ - SAUCE: Redpine: Upgrade to ver. 1.2 production release
+ * CVE-2017-10810
+ - drm/virtio: don't leak bo on drm_gem_object_init failure
+ * Ath10k to read different board data file if specify in SMBIOS (LP: #1666742)
+ - ath10k: search SMBIOS for OEM board file extension
+ * make snap-pkg support (LP: #1700747)
+ - SAUCE: make snap-pkg support
+ * ISST-LTE: Briggs:Stratton:UbuntuKVM: ics_opal_set_affinity on host kernel
+ log using Intel X710 (i40e driver) (LP: #1703663)
+ - i40e: use valid online CPU on q_vector initialization
+ * Update snapcraft.yaml (LP: #1700480)
+ - snapcraft.yaml: various improvements
+ * Xenial update to 4.4.76 stable release (LP: #1702863)
+ - ipv6: release dst on error in ip6_dst_lookup_tail
+ - net: don't call strlen on non-terminated string in dev_set_alias()
+ - decnet: dn_rtmsg: Improve input length sanitization in
+ dnrmg_receive_user_skb
+ - net: Zero ifla_vf_info in rtnl_fill_vfinfo()
+ - af_unix: Add sockaddr length checks before accessing sa_family in bind and
+ connect handlers
+ - Fix an intermittent pr_emerg warning about lo becoming free.
+ - net: caif: Fix a sleep-in-atomic bug in cfpkt_create_pfx
+ - igmp: acquire pmc lock for ip_mc_clear_src()
+ - igmp: add a missing spin_lock_init()
+ - ipv6: fix calling in6_ifa_hold incorrectly for dad work
+ - net/mlx5: Wait for FW readiness before initializing command interface
+ - decnet: always not take dst->__refcnt when inserting dst into hash table
+ - net: 8021q: Fix one possible panic caused by BUG_ON in free_netdev
+ - sfc: provide dummy definitions of vswitch functions
+ - ipv6: Do not leak throw route references
+ - rtnetlink: add IFLA_GROUP to ifla_policy
+ - netfilter: xt_TCPMSS: add more sanity tests on tcph->doff
+ - netfilter: synproxy: fix conntrackd interaction
+ - NFSv4: fix a reference leak caused WARNING messages
+ - drm/ast: Handle configuration without P2A bridge
+ - mm, swap_cgroup: reschedule when neeed in swap_cgroup_swapoff()
+ - MIPS: Avoid accidental raw backtrace
+ - MIPS: pm-cps: Drop manual cache-line alignment of ready_count
+ - MIPS: Fix IRQ tracing & lockdep when rescheduling
+ - ALSA: hda - Fix endless loop of codec configure
+ - ALSA: hda - set input_path bitmap to zero after moving it to new place
+ - drm/vmwgfx: Free hash table allocated by cmdbuf managed res mgr
+ - usb: gadget: f_fs: Fix possibe deadlock
+ - sysctl: enable strict writes
+ - mm: numa: avoid waiting on freed migrated pages
+ - KVM: x86: fix fixing of hypercalls
+ - scsi: sd: Fix wrong DPOFUA disable in sd_read_cache_type
+ - scsi: lpfc: Set elsiocb contexts to NULL after freeing it
+ - qla2xxx: Fix erroneous invalid handle message
+ - ARM: dts: BCM5301X: Correct GIC_PPI interrupt flags
+ - net: mvneta: Fix for_each_present_cpu usage
+ - MIPS: ath79: fix regression in PCI window initialization
+ - net: korina: Fix NAPI versus resources freeing
+ - MIPS: ralink: MT7688 pinmux fixes
+ - MIPS: ralink: fix USB frequency scaling
+ - MIPS: ralink: Fix invalid assignment of SoC type
+ - MIPS: ralink: fix MT7628 pinmux typos
+ - MIPS: ralink: fix MT7628 wled_an pinmux gpio
+ - mtd: bcm47xxpart: limit scanned flash area on BCM47XX (MIPS) only
+ - bgmac: fix a missing check for build_skb
+ - mtd: bcm47xxpart: don't fail because of bit-flips
+ - bgmac: Fix reversed test of build_skb() return value.
+ - net: bgmac: Fix SOF bit checking
+ - net: bgmac: Start transmit queue in bgmac_open
+ - net: bgmac: Remove superflous netif_carrier_on()
+ - powerpc/eeh: Enable IO path on permanent error
+ - gianfar: Do not reuse pages from emergency reserve
+ - Btrfs: fix truncate down when no_holes feature is enabled
+ - virtio_console: fix a crash in config_work_handler
+ - swiotlb-xen: update dev_addr after swapping pages
+ - xen-netfront: Fix Rx stall during network stress and OOM
+ - scsi: virtio_scsi: Reject commands when virtqueue is broken
+ - platform/x86: ideapad-laptop: handle ACPI event 1
+ - amd-xgbe: Check xgbe_init() return code
+ - net: dsa: Check return value of phy_connect_direct()
+ - drm/amdgpu: check ring being ready before using
+ - vfio/spapr: fail tce_iommu_attach_group() when iommu_data is null
+ - virtio_net: fix PAGE_SIZE > 64k
+ - vxlan: do not age static remote mac entries
+ - ibmveth: Add a proper check for the availability of the checksum features
+ - kernel/panic.c: add missing \n
+ - HID: i2c-hid: Add sleep between POWER ON and RESET
+ - scsi: lpfc: avoid double free of resource identifiers
+ - spi: davinci: use dma_mapping_error()
+ - mac80211: initialize SMPS field in HT capabilities
+ - x86/mpx: Use compatible types in comparison to fix sparse error
+ - coredump: Ensure proper size of sparse core files
+ - swiotlb: ensure that page-sized mappings are page-aligned
+ - s390/ctl_reg: make __ctl_load a full memory barrier
+ - be2net: fix status check in be_cmd_pmac_add()
+ - perf probe: Fix to show correct locations for events on modules
+ - net/mlx4_core: Eliminate warning messages for SRQ_LIMIT under SRIOV
+ - sctp: check af before verify address in sctp_addr_id2transport
+ - ravb: Fix use-after-free on `ifconfig eth0 down`
+ - jump label: fix passing kbuild_cflags when checking for asm goto support
+ - xfrm: fix stack access out of bounds with CONFIG_XFRM_SUB_POLICY
+ - xfrm: NULL dereference on allocation failure
+ - xfrm: Oops on error in pfkey_msg2xfrm_state()
+ - watchdog: bcm281xx: Fix use of uninitialized spinlock.
+ - sched/loadavg: Avoid loadavg spikes caused by delayed NO_HZ accounting
+ - ARM64/ACPI: Fix BAD_MADT_GICC_ENTRY() macro implementation
+ - ARM: 8685/1: ensure memblock-limit is pmd-aligned
+ - x86/mpx: Correctly report do_mpx_bt_fault() failures to user-space
+ - x86/mm: Fix flush_tlb_page() on Xen
+ - ocfs2: o2hb: revert hb threshold to keep compatible
+ - iommu/vt-d: Don't over-free page table directories
+ - iommu: Handle default domain attach failure
+ - iommu/amd: Fix incorrect error handling in amd_iommu_bind_pasid()
+ - cpufreq: s3c2416: double free on driver init error path
+ - KVM: x86: fix emulation of RSM and IRET instructions
+ - KVM: x86/vPMU: fix undefined shift in intel_pmu_refresh()
+ - KVM: x86: zero base3 of unusable segments
+ - KVM: nVMX: Fix exception injection
+ - Linux 4.4.76
+ * Xenial update to 4.4.75 stable release (LP: #1702118)
+ - fs/exec.c: account for argv/envp pointers
+ - autofs: sanity check status reported with AUTOFS_DEV_IOCTL_FAIL
+ - lib/cmdline.c: fix get_options() overflow while parsing ranges
+ - KVM: PPC: Book3S HV: Preserve userspace HTM state properly
+ - CIFS: Improve readdir verbosity
+ - HID: Add quirk for Dell PIXART OEM mouse
+ - signal: Only reschedule timers on signals timers have sent
+ - powerpc/kprobes: Pause function_graph tracing during jprobes handling
+ - Input: i8042 - add Fujitsu Lifebook AH544 to notimeout list
+ - time: Fix clock->read(clock) race around clocksource changes
+ - target: Fix kref->refcount underflow in transport_cmd_finish_abort
+ - iscsi-target: Reject immediate data underflow larger than SCSI transfer
+ length
+ - drm/radeon: add a PX quirk for another K53TK variant
+ - drm/radeon: add a quirk for Toshiba Satellite L20-183
+ - drm/amdgpu/atom: fix ps allocation size for EnableDispPowerGating
+ - drm/amdgpu: adjust default display clock
+ - USB: usbip: fix nonconforming hub descriptor
+ - rxrpc: Fix several cases where a padded len isn't checked in ticket decode
+ - of: Add check to of_scan_flat_dt() before accessing initial_boot_params
+ - mtd: spi-nor: fix spansion quad enable
+ - powerpc/slb: Force a full SLB flush when we insert for a bad EA
+ - usb: gadget: f_fs: avoid out of bounds access on comp_desc
+ - net: phy: Initialize mdio clock at probe function
+ - net: phy: fix marvell phy status reading
+ - Linux 4.4.75
+ * Xenial update to 4.4.74 stable release (LP: #1702104)
+ - configfs: Fix race between create_link and configfs_rmdir
+ - can: gs_usb: fix memory leak in gs_cmd_reset()
+ - cpufreq: conservative: Allow down_threshold to take values from 1 to 10
+ - vb2: Fix an off by one error in 'vb2_plane_vaddr'
+ - mac80211: don't look at the PM bit of BAR frames
+ - mac80211/wpa: use constant time memory comparison for MACs
+ - mac80211: fix CSA in IBSS mode
+ - mac80211: fix IBSS presp allocation size
+ - serial: efm32: Fix parity management in 'efm32_uart_console_get_options()'
+ - x86/mm/32: Set the '__vmalloc_start_set' flag in initmem_init()
+ - mfd: omap-usb-tll: Fix inverted bit use for USB TLL mode
+ - staging: rtl8188eu: prevent an underflow in rtw_check_beacon_data()
+ - iio: proximity: as3935: recalibrate RCO after resume
+ - USB: hub: fix SS max number of ports
+ - usb: core: fix potential memory leak in error path during hcd creation
+ - pvrusb2: reduce stack usage pvr2_eeprom_analyze()
+ - USB: gadget: dummy_hcd: fix hub-descriptor removable fields
+ - usb: r8a66597-hcd: select a different endpoint on timeout
+ - usb: r8a66597-hcd: decrease timeout
+ - drivers/misc/c2port/c2port-duramar2150.c: checking for NULL instead of
+ IS_ERR()
+ - usb: xhci: ASMedia ASM1042A chipset need shorts TX quirk
+ - USB: gadgetfs, dummy-hcd, net2280: fix locking for callbacks
+ - mm/memory-failure.c: use compound_head() flags for huge pages
+ - swap: cond_resched in swap_cgroup_prepare()
+ - genirq: Release resources in __setup_irq() error path
+ - alarmtimer: Prevent overflow of relative timers
+ - usb: dwc3: exynos fix axius clock error path to do cleanup
+ - MIPS: Fix bnezc/jialc return address calculation
+ - alarmtimer: Rate limit periodic intervals
+ - Linux 4.4.74
+ * Side Button (Display Toggle) fails on Dell AIO systems (LP: #1702541)
+ - dell-wmi: Add a WMI event code for display on/off
+ * Intel i40e PF reset under load (LP: #1700834)
+ - i40e/i40evf: Limit TSO to 7 descriptors for payload instead of 8 per packet
+ * update ENA driver to 1.2.0k from net-next (LP: #1701575)
+ - net: ena: remove superfluous check in ena_remove()
+ - net: ena: fix rare uncompleted admin command false alarm
+ - net: ena: add missing return when ena_com_get_io_handlers() fails
+ - net: ena: fix race condition between submit and completion admin command
+ - net: ena: add missing unmap bars on device removal
+ - net: ena: fix theoretical Rx hang on low memory systems
+ - net: ena: disable admin msix while working in polling mode
+ - net: ena: bug fix in lost tx packets detection mechanism
+ - net: ena: update ena driver to version 1.1.7
+ - net: ena: change return value for unsupported features unsupported return
+ value
+ - net: ena: add hardware hints capability to the driver
+ - net: ena: change sizeof() argument to be the type pointer
+ - net: ena: add reset reason for each device FLR
+ - net: ena: add support for out of order rx buffers refill
+ - net: ena: use napi_schedule_irqoff when possible
+ - net: ena: separate skb allocation to dedicated function
+ - net: ena: use lower_32_bits()/upper_32_bits() to split dma address
+ - net: ena: update driver's rx drop statistics
+ - net: ena: update ena driver to version 1.2.0
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Tue, 25 Jul 2017 09:39:14 -0300
+
+linux-snapdragon (4.4.0-1067.72) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1067.72 -proposed tracker (LP: #1705566)
+
+ * sock_recvmsg has dropped size argument (LP: #1701697)
+ - Packaging: Breaks yet another iscsitarget-dkms version
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Thu, 20 Jul 2017 17:27:10 -0300
+
+linux-snapdragon (4.4.0-1066.71) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1066.71 -proposed tracker (LP: #1704989)
+
+ [ Ubuntu: 4.4.0-87.110 ]
+
+ * linux: 4.4.0-87.110 -proposed tracker (LP: #1704982)
+ * CVE-2017-1000364
+ - mm/mmap.c: do not blow on PROT_NONE MAP_FIXED holes in the stack
+ - mm/mmap.c: expand_downwards: don't require the gap if !vm_prev
+ * CIFS causes oops (LP: #1704857)
+ - CIFS: Fix null pointer deref during read resp processing
+ - CIFS: Fix some return values in case of error in 'crypt_message'
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Tue, 18 Jul 2017 10:51:11 -0300
+
+linux-snapdragon (4.4.0-1065.70) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1065.70 -proposed tracker (LP: #1703999)
+
+ * sock_recvmsg has dropped size argument (LP: #1701697)
+ - Packaging: Breaks unfixed iscsitarget versions
+
+ [ Ubuntu: 4.4.0-86.109 ]
+
+ * linux: 4.4.0-86.109 -proposed tracker (LP: #1703995)
+ * sock_recvmsg has dropped size argument (LP: #1701697)
+ - Packaging: Breaks unfixed iscsitarget versions
+
+ [ Ubuntu: 4.4.0-85.108 ]
+
+ * linux: 4.4.0-85.108 -proposed tracker (LP: #1702103)
+ * [Hyper-V] Implement Hyper-V PTP Source (LP: #1676635)
+ - SAUCE: hv: make clocksource available for PTP device supporting
+ - Drivers: hv: util: Use hv_get_current_tick() to get current tick
+ - hv_util: switch to using timespec64
+ - hv_utils: implement Hyper-V PTP source
+ - Drivers: hv: util: Fix a typo
+ - Drivers: hv: util: don't forget to init host_ts.lock
+ - hv_utils: drop .getcrosststamp() support from PTP driver
+ - hv_utils: fix TimeSync work on pre-TimeSync-v4 hosts
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Thu, 13 Jul 2017 17:09:01 +0200
+
linux-snapdragon (4.4.0-1064.69) xenial; urgency=low
* linux-snapdragon: 4.4.0-1064.69 -proposed tracker (LP: #1701027)