-linux-snapdragon (4.4.0-1066.71) UNRELEASED; urgency=low
+linux-snapdragon (4.4.0-1080.85) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1080.85 -proposed tracker (LP: #1733544)
+
+ * Update config with NET_DSA=n as required by changes in
+ upstream stable update to 4.4.98 (LP: #1732698)
+
+ [ Ubuntu: 4.4.0-102.125 ]
+
+ * linux: 4.4.0-102.125 -proposed tracker (LP: #1733541)
+ * tar -x sometimes fails on overlayfs (LP: #1728489)
+ - ovl: check if all layers are on the same fs
+ - ovl: persistent inode number for directories
+ * NVMe timeout is too short (LP: #1729119)
+ - nvme: update timeout module parameter type
+ * Set PANIC_TIMEOUT=10 on Power Systems (LP: #1730660)
+ - [Config]: Set PANIC_TIMEOUT=10 on ppc64el
+ * Cannot pair BLE remote devices when using combo BT SoC (LP: #1731467)
+ - Bluetooth: increase timeout for le auto connections
+ * CIFS errors on 4.4.0-98, but not on 4.4.0-97 with same config (LP: #1729337)
+ - SMB3: Validate negotiate request must always be signed
+ * Plantronics P610 does not support sample rate reading (LP: #1719853)
+ - ALSA: usb-audio: Add sample rate quirk for Plantronics P610
+ * Invalid btree pointer causes the kernel NULL pointer dereference
+ (LP: #1729256)
+ - xfs: reinit btree pointer on attr tree inactivation walk
+ * Samba mount/umount in docker container triggers kernel Oops (LP: #1729637)
+ - ipv6: only call ip6_route_dev_notify() once for NETDEV_UNREGISTER
+ - ipv6: fix NULL dereference in ip6_route_dev_notify()
+ * [kernel] tty/hvc: Use opal irqchip interface if available (LP: #1728098)
+ - tty/hvc: Use opal irqchip interface if available
+ * Device hotplugging with MPT SAS cannot work for VMWare ESXi (LP: #1730852)
+ - scsi: mptsas: Fixup device hotplug for VMWare ESXi
+ * NMI watchdog: BUG: soft lockup on Guest upon boot (KVM) (LP: #1727331)
+ - KVM: PPC: Book3S: Treat VTB as a per-subcore register, not per-thread
+ * Attempt to map rbd image from ceph jewel/luminous hangs (LP: #1728739)
+ - crush: ensure bucket id is valid before indexing buckets array
+ - crush: ensure take bucket value is valid
+ - crush: add chooseleaf_stable tunable
+ - crush: decode and initialize chooseleaf_stable
+ - libceph: advertise support for TUNABLES5
+ - libceph: MOSDOpReply v7 encoding
+ * Xenial update to 4.4.98 stable release (LP: #1732698)
+ - adv7604: Initialize drive strength to default when using DT
+ - video: fbdev: pmag-ba-fb: Remove bad `__init' annotation
+ - PCI: mvebu: Handle changes to the bridge windows while enabled
+ - xen/netback: set default upper limit of tx/rx queues to 8
+ - drm: drm_minor_register(): Clean up debugfs on failure
+ - KVM: PPC: Book 3S: XICS: correct the real mode ICP rejecting counter
+ - iommu/arm-smmu-v3: Clear prior settings when updating STEs
+ - powerpc/corenet: explicitly disable the SDHC controller on kmcoge4
+ - ARM: omap2plus_defconfig: Fix probe errors on UARTs 5 and 6
+ - crypto: vmx - disable preemption to enable vsx in aes_ctr.c
+ - iio: trigger: free trigger resource correctly
+ - phy: increase size of MII_BUS_ID_SIZE and bus_id
+ - serial: sh-sci: Fix register offsets for the IRDA serial port
+ - usb: hcd: initialize hcd->flags to 0 when rm hcd
+ - netfilter: nft_meta: deal with PACKET_LOOPBACK in netdev family
+ - IPsec: do not ignore crypto err in ah4 input
+ - Input: mpr121 - handle multiple bits change of status register
+ - Input: mpr121 - set missing event capability
+ - IB/ipoib: Change list_del to list_del_init in the tx object
+ - s390/qeth: issue STARTLAN as first IPA command
+ - (config) Add NET_DSA=n
+ - net: dsa: select NET_SWITCHDEV
+ - platform/x86: hp-wmi: Fix detection for dock and tablet mode
+ - cdc_ncm: Set NTB format again after altsetting switch for Huawei devices
+ - KEYS: trusted: sanitize all key material
+ - KEYS: trusted: fix writing past end of buffer in trusted_read()
+ - platform/x86: hp-wmi: Fix error value for hp_wmi_tablet_state
+ - platform/x86: hp-wmi: Do not shadow error values
+ - x86/uaccess, sched/preempt: Verify access_ok() context
+ - workqueue: Fix NULL pointer dereference
+ - crypto: x86/sha1-mb - fix panic due to unaligned access
+ - KEYS: fix NULL pointer dereference during ASN.1 parsing [ver #2]
+ - ARM: 8720/1: ensure dump_instr() checks addr_limit
+ - ALSA: seq: Fix OSS sysex delivery in OSS emulation
+ - ALSA: seq: Avoid invalid lockdep class warning
+ - MIPS: microMIPS: Fix incorrect mask in insn_table_MM
+ - MIPS: Fix CM region target definitions
+ - MIPS: SMP: Use a completion event to signal CPU up
+ - MIPS: Fix race on setting and getting cpu_online_mask
+ - MIPS: SMP: Fix deadlock & online race
+ - test: firmware_class: report errors properly on failure
+ - selftests: firmware: add empty string and async tests
+ - selftests: firmware: send expected errors to /dev/null
+ - tools: firmware: check for distro fallback udev cancel rule
+ - MIPS: AR7: Defer registration of GPIO
+ - MIPS: AR7: Ensure that serial ports are properly set up
+ - Input: elan_i2c - add ELAN060C to the ACPI table
+ - drm/vmwgfx: Fix Ubuntu 17.10 Wayland black screen issue
+ - rbd: use GFP_NOIO for parent stat and data requests
+ - can: sun4i: handle overrun in RX FIFO
+ - can: c_can: don't indicate triple sampling support for D_CAN
+ - x86/oprofile/ppro: Do not use __this_cpu*() in preemptible context
+ - PKCS#7: fix unitialized boolean 'want'
+ - Linux 4.4.98
+ * ELANTECH Touchpad is not detected in 'Lenovo Ideapad 320 14AST' after fresh
+ install (LP: #1727544)
+ - Input: elan_i2c - add ELAN060C to the ACPI table
+ * Xenial update to 4.4.97 stable release (LP: #1731915)
+ - ALSA: timer: Add missing mutex lock for compat ioctls
+ - ALSA: seq: Fix nested rwsem annotation for lockdep splat
+ - cifs: check MaxPathNameComponentLength != 0 before using it
+ - KEYS: return full count in keyring_read() if buffer is too small
+ - KEYS: fix out-of-bounds read during ASN.1 parsing
+ - ASoC: adau17x1: Workaround for noise bug in ADC
+ - arm64: ensure __dump_instr() checks addr_limit
+ - ARM: dts: mvebu: pl310-cache disable double-linefill
+ - ARM: 8715/1: add a private asm/unaligned.h
+ - ocfs2: fstrim: Fix start offset of first cluster group during fstrim
+ - perf tools: Fix build failure on perl script context
+ - drm/msm: Fix potential buffer overflow issue
+ - drm/msm: fix an integer overflow test
+ - tracing/samples: Fix creation and deletion of simple_thread_fn creation
+ - Fix tracing sample code warning.
+ - PM / wakeirq: report a wakeup_event on dedicated wekup irq
+ - mmc: s3cmci: include linux/interrupt.h for tasklet_struct
+ - ARM: pxa: Don't rely on public mmc header to include leds.h
+ - mfd: ab8500-sysctrl: Handle probe deferral
+ - mfd: axp20x: Fix axp288 PEK_DBR and PEK_DBF irqs being swapped
+ - staging: rtl8712u: Fix endian settings for structs describing network
+ packets
+ - ext4: fix stripe-unaligned allocations
+ - ext4: do not use stripe_width if it is not set
+ - i2c: riic: correctly finish transfers
+ - drm/amdgpu: when dpm disabled, also need to stop/start vce.
+ - perf tools: Only increase index if perf_evsel__new_idx() succeeds
+ - cx231xx: Fix I2C on Internal Master 3 Bus
+ - xen/manage: correct return value check on xenbus_scanf()
+ - scsi: aacraid: Process Error for response I/O
+ - platform/x86: intel_mid_thermal: Fix module autoload
+ - staging: lustre: llite: don't invoke direct_IO for the EOF case
+ - staging: lustre: hsm: stack overrun in hai_dump_data_field
+ - staging: lustre: ptlrpc: skip lock if export failed
+ - exynos4-is: fimc-is: Unmap region obtained by of_iomap()
+ - mei: return error on notification request to a disconnected client
+ - s390/dasd: check for device error pointer within state change interrupts
+ - bt8xx: fix memory leak
+ - xen: don't print error message in case of missing Xenstore entry
+ - staging: r8712u: Fix Sparse warning in rtl871x_xmit.c
+ - Linux 4.4.97
+ * Xenial update to 4.4.96 stable release (LP: #1731882)
+ - workqueue: replace pool->manager_arb mutex with a flag
+ - ALSA: hda/realtek - Add support for ALC236/ALC3204
+ - ALSA: hda - fix headset mic problem for Dell machines with alc236
+ - ceph: unlock dangling spinlock in try_flush_caps()
+ - usb: xhci: Handle error condition in xhci_stop_device()
+ - spi: uapi: spidev: add missing ioctl header
+ - fuse: fix READDIRPLUS skipping an entry
+ - xen/gntdev: avoid out of bounds access in case of partial gntdev_mmap()
+ - Input: elan_i2c - add ELAN0611 to the ACPI table
+ - Input: gtco - fix potential out-of-bound access
+ - assoc_array: Fix a buggy node-splitting case
+ - scsi: zfcp: fix erp_action use-before-initialize in REC action trace
+ - scsi: sg: Re-fix off by one in sg_fill_request_table()
+ - can: sun4i: fix loopback mode
+ - can: kvaser_usb: Correct return value in printout
+ - can: kvaser_usb: Ignore CMD_FLUSH_QUEUE_REPLY messages
+ - regulator: fan53555: fix I2C device ids
+ - x86/microcode/intel: Disable late loading on model 79
+ - ecryptfs: fix dereference of NULL user_key_payload
+ - Revert "drm: bridge: add DT bindings for TI ths8135"
+ - Linux 4.4.96
+ * Touchpad not detected - Lenovo ideapad 320-15IKB (LP: #1723736)
+ - Input: elan_i2c - add ELAN0611 to the ACPI table
+
+ [ Ubuntu: 4.4.0-101.124 ]
+
+ * linux: 4.4.0-101.124 -proposed tracker (LP: #1731264)
+ * s390/mm: fix write access check in gup_huge_pmd() (LP: #1730596)
+ - s390/mm: fix write access check in gup_huge_pmd()
+
+ -- Stefan Bader <stefan.bader@canonical.com> Wed, 22 Nov 2017 16:59:32 +0100
+
+linux-snapdragon (4.4.0-1079.84) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1079.84 -proposed tracker (LP: #1729279)
+
+ [ Ubuntu: 4.4.0-100.123 ]
+
+ * linux: 4.4.0-100.123 -proposed tracker (LP: #1729273)
+ * Xenial update to 4.4.95 stable release (LP: #1729107)
+ - USB: devio: Revert "USB: devio: Don't corrupt user memory"
+ - USB: core: fix out-of-bounds access bug in usb_get_bos_descriptor()
+ - USB: serial: metro-usb: add MS7820 device id
+ - usb: cdc_acm: Add quirk for Elatec TWN3
+ - usb: quirks: add quirk for WORLDE MINI MIDI keyboard
+ - usb: hub: Allow reset retry for USB2 devices on connect bounce
+ - ALSA: usb-audio: Add native DSD support for Pro-Ject Pre Box S2 Digital
+ - can: gs_usb: fix busy loop if no more TX context is available
+ - usb: musb: sunxi: Explicitly release USB PHY on exit
+ - usb: musb: Check for host-mode using is_host_active() on reset interrupt
+ - can: esd_usb2: Fix can_dlc value for received RTR, frames
+ - drm/nouveau/bsp/g92: disable by default
+ - drm/nouveau/mmu: flush tlbs before deleting page tables
+ - ALSA: seq: Enable 'use' locking in all configurations
+ - ALSA: hda: Remove superfluous '-' added by printk conversion
+ - i2c: ismt: Separate I2C block read from SMBus block read
+ - brcmsmac: make some local variables 'static const' to reduce stack size
+ - bus: mbus: fix window size calculation for 4GB windows
+ - clockevents/drivers/cs5535: Improve resilience to spurious interrupts
+ - rtlwifi: rtl8821ae: Fix connection lost problem
+ - KEYS: encrypted: fix dereference of NULL user_key_payload
+ - lib/digsig: fix dereference of NULL user_key_payload
+ - KEYS: don't let add_key() update an uninstantiated key
+ - pkcs7: Prevent NULL pointer dereference, since sinfo is not always set.
+ - parisc: Avoid trashing sr2 and sr3 in LWS code
+ - parisc: Fix double-word compare and exchange in LWS code on 32-bit kernels
+ - sched/autogroup: Fix autogroup_move_group() to never skip sched_move_task()
+ - f2fs crypto: replace some BUG_ON()'s with error checks
+ - f2fs crypto: add missing locking for keyring_key access
+ - fscrypt: fix dereference of NULL user_key_payload
+ - KEYS: Fix race between updating and finding a negative key
+ - fscrypto: require write access to mount to set encryption policy
+ - FS-Cache: fix dereference of NULL user_key_payload
+ - Linux 4.4.95
+ * Xenial update to 4.4.94 stable release (LP: #1729105)
+ - percpu: make this_cpu_generic_read() atomic w.r.t. interrupts
+ - drm/dp/mst: save vcpi with payloads
+ - MIPS: Fix minimum alignment requirement of IRQ stack
+ - sctp: potential read out of bounds in sctp_ulpevent_type_enabled()
+ - bpf/verifier: reject BPF_ALU64|BPF_END
+ - udpv6: Fix the checksum computation when HW checksum does not apply
+ - ip6_gre: skb_push ipv6hdr before packing the header in ip6gre_header
+ - net: emac: Fix napi poll list corruption
+ - packet: hold bind lock when rebinding to fanout hook
+ - bpf: one perf event close won't free bpf program attached by another perf
+ event
+ - isdn/i4l: fetch the ppp_write buffer in one shot
+ - vti: fix use after free in vti_tunnel_xmit/vti6_tnl_xmit
+ - l2tp: Avoid schedule while atomic in exit_net
+ - l2tp: fix race condition in l2tp_tunnel_delete
+ - tun: bail out from tun_get_user() if the skb is empty
+ - packet: in packet_do_bind, test fanout with bind_lock held
+ - packet: only test po->has_vnet_hdr once in packet_snd
+ - net: Set sk_prot_creator when cloning sockets to the right proto
+ - tipc: use only positive error codes in messages
+ - Revert "bsg-lib: don't free job in bsg_prepare_job"
+ - locking/lockdep: Add nest_lock integrity test
+ - watchdog: kempld: fix gcc-4.3 build
+ - irqchip/crossbar: Fix incorrect type of local variables
+ - mac80211_hwsim: check HWSIM_ATTR_RADIO_NAME length
+ - mac80211: fix power saving clients handling in iwlwifi
+ - net/mlx4_en: fix overflow in mlx4_en_init_timestamp()
+ - netfilter: nf_ct_expect: Change __nf_ct_expect_check() return value.
+ - iio: adc: xilinx: Fix error handling
+ - Btrfs: send, fix failure to rename top level inode due to name collision
+ - f2fs: do not wait for writeback in write_begin
+ - md/linear: shutup lockdep warnning
+ - sparc64: Migrate hvcons irq to panicked cpu
+ - net/mlx4_core: Fix VF overwrite of module param which disables DMFS on new
+ probed PFs
+ - crypto: xts - Add ECB dependency
+ - ocfs2/dlmglue: prepare tracking logic to avoid recursive cluster lock
+ - slub: do not merge cache if slub_debug contains a never-merge flag
+ - scsi: scsi_dh_emc: return success in clariion_std_inquiry()
+ - net: mvpp2: release reference to txq_cpu[] entry after unmapping
+ - i2c: at91: ensure state is restored after suspending
+ - ceph: clean up unsafe d_parent accesses in build_dentry_path
+ - uapi: fix linux/rds.h userspace compilation errors
+ - uapi: fix linux/mroute6.h userspace compilation errors
+ - target/iscsi: Fix unsolicited data seq_end_offset calculation
+ - nfsd/callback: Cleanup callback cred on shutdown
+ - cpufreq: CPPC: add ACPI_PROCESSOR dependency
+ - Revert "tty: goldfish: Fix a parameter of a call to free_irq"
+ - Linux 4.4.94
+
+ [ Ubuntu: 4.4.0-99.122 ]
+
+ * linux: 4.4.0-99.122 -proposed tracker (LP: #1728945)
+ * Remove vmbus-rdma driver from Xenial kernel (LP: #1721538)
+ - SAUCE: remove hv_network_direct driver
+ - [Config]: Remove hv_network_direct driver
+ * usb 3-1: 2:1: cannot get freq at ep 0x1 (LP: #1708499)
+ - ALSA: usb-audio: Add sample rate quirk for Plantronics C310/C520-M
+ * Plantronics Blackwire C520-M - Cannot get freq at ep 0x1, 0x81
+ (LP: #1709282)
+ - ALSA: usb-audio: Add sample rate quirk for Plantronics C310/C520-M
+ * wait-for-root fails to detect nbd root (LP: #696435)
+ - nbd: Create size change events for userspace
+ * Fix OpenNSL GPL bugs found by CoverityScan static analysis (LP: #1718388)
+ - SAUCE: opennsl: bcm-knet: check for null sinfo to avoid a null pointer
+ dereference
+ - SAUCE: opennsl: bcm-knet: remove redundant null checks on dev->name
+ - SAUCE: opennsl: bde: check for out-of-bounds index io.dev
+ * HID: multitouch: Correct ALPS PTP Stick and Touchpad devices ID
+ (LP: #1722719)
+ - Revert "HID: multitouch: Support ALPS PTP stick with pid 0x120A"
+ * Xenial update to 4.4.93 stable release (LP: #1724836)
+ - brcmfmac: add length check in brcmf_cfg80211_escan_handler()
+ - ext4: in ext4_seek_{hole,data}, return -ENXIO for negative offsets
+ - CIFS: Reconnect expired SMB sessions
+ - nl80211: Define policy for packet pattern attributes
+ - iwlwifi: mvm: use IWL_HCMD_NOCOPY for MCAST_FILTER_CMD
+ - rcu: Allow for page faults in NMI handlers
+ - USB: dummy-hcd: Fix deadlock caused by disconnect detection
+ - MIPS: math-emu: Remove pr_err() calls from fpu_emu()
+ - dmaengine: edma: Align the memcpy acnt array size with the transfer
+ - HID: usbhid: fix out-of-bounds bug
+ - crypto: shash - Fix zero-length shash ahash digest crash
+ - KVM: nVMX: fix guest CR4 loading when emulating L2 to L1 exit
+ - usb: renesas_usbhs: Fix DMAC sequence for receiving zero-length packet
+ - iommu/amd: Finish TLB flush in amd_iommu_unmap()
+ - ALSA: usb-audio: Kill stray URB at exiting
+ - ALSA: seq: Fix use-after-free at creating a port
+ - ALSA: seq: Fix copy_from_user() call inside lock
+ - ALSA: caiaq: Fix stray URB at probe error path
+ - ALSA: line6: Fix leftover URB at error-path during probe
+ - usb: gadget: composite: Fix use-after-free in
+ usb_composite_overwrite_options
+ - direct-io: Prevent NULL pointer access in submit_page_section
+ - fix unbalanced page refcounting in bio_map_user_iov
+ - USB: serial: ftdi_sio: add id for Cypress WICED dev board
+ - USB: serial: cp210x: add support for ELV TFD500
+ - USB: serial: option: add support for TP-Link LTE module
+ - Revert "UBUNTU: SAUCE: USB: serial: qcserial: add Dell DW5818, DW5819"
+ - USB: serial: qcserial: add Dell DW5818, DW5819
+ - USB: serial: console: fix use-after-free after failed setup
+ - x86/alternatives: Fix alt_max_short macro to really be a max()
+ - Linux 4.4.93
+ * NULL pointer dereference in tty_write() in kernel 4.4.0-93.116+
+ (LP: #1721065)
+ - tty: Prepare for destroying line discipline on hangup
+ * Xenial update to 4.4.92 stable release (LP: #1724783)
+ - usb: gadget: inode.c: fix unbalanced spin_lock in ep0_write
+ - USB: gadgetfs: Fix crash caused by inadequate synchronization
+ - USB: gadgetfs: fix copy_to_user while holding spinlock
+ - usb: gadget: udc: atmel: set vbus irqflags explicitly
+ - usb-storage: unusual_devs entry to fix write-access regression for Seagate
+ external drives
+ - usb: renesas_usbhs: fix the BCLR setting condition for non-DCP pipe
+ - usb: renesas_usbhs: fix usbhsf_fifo_clear() for RX direction
+ - ALSA: usb-audio: Check out-of-bounds access by corrupted buffer descriptor
+ - usb: pci-quirks.c: Corrected timeout values used in handshake
+ - USB: dummy-hcd: fix connection failures (wrong speed)
+ - USB: dummy-hcd: fix infinite-loop resubmission bug
+ - USB: dummy-hcd: Fix erroneous synchronization change
+ - USB: devio: Don't corrupt user memory
+ - usb: gadget: mass_storage: set msg_registered after msg registered
+ - USB: g_mass_storage: Fix deadlock when driver is unbound
+ - lsm: fix smack_inode_removexattr and xattr_getsecurity memleak
+ - ALSA: compress: Remove unused variable
+ - ALSA: usx2y: Suppress kernel warning at page allocation failures
+ - driver core: platform: Don't read past the end of "driver_override" buffer
+ - Drivers: hv: fcopy: restore correct transfer length
+ - stm class: Fix a use-after-free
+ - ftrace: Fix kmemleak in unregister_ftrace_graph
+ - HID: i2c-hid: allocate hid buffers for real worst case
+ - iwlwifi: add workaround to disable wide channels in 5GHz
+ - scsi: sd: Do not override max_sectors_kb sysfs setting
+ - USB: uas: fix bug in handling of alternate settings
+ - USB: core: harden cdc_parse_cdc_header
+ - usb: Increase quirk delay for USB devices
+ - USB: fix out-of-bounds in usb_set_configuration
+ - xhci: fix finding correct bus_state structure for USB 3.1 hosts
+ - iio: adc: twl4030: Fix an error handling path in 'twl4030_madc_probe()'
+ - iio: adc: twl4030: Disable the vusb3v1 rugulator in the error handling path
+ of 'twl4030_madc_probe()'
+ - iio: ad_sigma_delta: Implement a dedicated reset function
+ - staging: iio: ad7192: Fix - use the dedicated reset function avoiding dma
+ from stack.
+ - iio: core: Return error for failed read_reg
+ - iio: ad7793: Fix the serial interface reset
+ - iio: adc: mcp320x: Fix readout of negative voltages
+ - iio: adc: mcp320x: Fix oops on module unload
+ - uwb: properly check kthread_run return value
+ - uwb: ensure that endpoint is interrupt
+ - brcmfmac: setup passive scan if requested by user-space
+ - drm/i915/bios: ignore HDMI on port A
+ - sched/cpuset/pm: Fix cpuset vs. suspend-resume bugs
+ - ext4: fix data corruption for mmap writes
+ - ext4: Don't clear SGID when inheriting ACLs
+ - ext4: don't allow encrypted operations without keys
+ - Linux 4.4.92
+ * Xenial update to 4.4.91 stable release (LP: #1724772)
+ - drm_fourcc: Fix DRM_FORMAT_MOD_LINEAR #define
+ - drm: bridge: add DT bindings for TI ths8135
+ - GFS2: Fix reference to ERR_PTR in gfs2_glock_iter_next
+ - RDS: RDMA: Fix the composite message user notification
+ - ARM: dts: r8a7790: Use R-Car Gen 2 fallback binding for msiof nodes
+ - MIPS: Ensure bss section ends on a long-aligned address
+ - MIPS: ralink: Fix incorrect assignment on ralink_soc
+ - igb: re-assign hw address pointer on reset after PCI error
+ - extcon: axp288: Use vbus-valid instead of -present to determine cable
+ presence
+ - sh_eth: use correct name for ECMR_MPDE bit
+ - hwmon: (gl520sm) Fix overflows and crash seen when writing into limit
+ attributes
+ - iio: adc: axp288: Drop bogus AXP288_ADC_TS_PIN_CTRL register modifications
+ - iio: adc: hx711: Add DT binding for avia,hx711
+ - ARM: 8635/1: nommu: allow enabling REMAP_VECTORS_TO_RAM
+ - tty: goldfish: Fix a parameter of a call to free_irq
+ - IB/ipoib: Fix deadlock over vlan_mutex
+ - IB/ipoib: rtnl_unlock can not come after free_netdev
+ - IB/ipoib: Replace list_del of the neigh->list with list_del_init
+ - drm/amdkfd: fix improper return value on error
+ - USB: serial: mos7720: fix control-message error handling
+ - USB: serial: mos7840: fix control-message error handling
+ - partitions/efi: Fix integer overflow in GPT size calculation
+ - ASoC: dapm: handle probe deferrals
+ - audit: log 32-bit socketcalls
+ - usb: chipidea: vbus event may exist before starting gadget
+ - ASoC: dapm: fix some pointer error handling
+ - MIPS: Lantiq: Fix another request_mem_region() return code check
+ - net: core: Prevent from dereferencing null pointer when releasing SKB
+ - net/packet: check length in getsockopt() called with PACKET_HDRLEN
+ - team: fix memory leaks
+ - usb: plusb: Add support for PL-27A1
+ - mmc: sdio: fix alignment issue in struct sdio_func
+ - bridge: netlink: register netdevice before executing changelink
+ - netfilter: invoke synchronize_rcu after set the _hook_ to NULL
+ - MIPS: IRQ Stack: Unwind IRQ stack onto task stack
+ - exynos-gsc: Do not swap cb/cr for semi planar formats
+ - netfilter: nfnl_cthelper: fix incorrect helper->expect_class_max
+ - parisc: perf: Fix potential NULL pointer dereference
+ - iommu/io-pgtable-arm: Check for leaf entry before dereferencing it
+ - rds: ib: add error handle
+ - md/raid10: submit bio directly to replacement disk
+ - i2c: meson: fix wrong variable usage in meson_i2c_put_data
+ - xfs: remove kmem_zalloc_greedy
+ - libata: transport: Remove circular dependency at free time
+ - drivers: firmware: psci: drop duplicate const from psci_of_match
+ - IB/qib: fix false-postive maybe-uninitialized warning
+ - ARM: remove duplicate 'const' annotations'
+ - ALSA: au88x0: avoid theoretical uninitialized access
+ - ttpci: address stringop overflow warning
+ - Linux 4.4.91
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Thu, 02 Nov 2017 15:14:16 -0200
+
+linux-snapdragon (4.4.0-1078.83) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1078.83 -proposed tracker (LP: #1722304)
+
+ [ Ubuntu: 4.4.0-98.121 ]
+
+ * linux: 4.4.0-98.121 -proposed tracker (LP: #1722299)
+ * Controller lockup detected on ProLiant DL380 Gen9 with P440 Controller
+ (LP: #1720359)
+ - scsi: hpsa: limit transfer length to 1MB
+ * [Dell Docking IE][0bda:8153] Realtek USB Ethernet leads to system hang
+ (LP: #1720977)
+ - r8152: fix the list rx_done may be used without initialization
+ * Add installer support for Broadcom BCM573xx network drivers. (LP: #1720466)
+ - d-i: Add bnxt_en to nic-modules.
+ * snapcraft.yaml: add dpkg-dev to the build deps (LP: #1718886)
+ - snapcraft.yaml: add dpkg-dev to the build deps
+ * Support setting I2C_TIMEOUT via ioctl for i2c-designware (LP: #1718578)
+ - i2c: designware: Use transfer timeout from ioctl I2C_TIMEOUT
+ * 5U84 - ses driver isn't binding right - cannot blink lights on 1 of the 2
+ 5u84 (LP: #1693369)
+ - scsi_transport_sas: add function to get SAS endpoint address
+ - ses: fix discovery of SATA devices in SAS enclosures
+ - scsi: sas: provide stub implementation for scsi_is_sas_rphy
+ - scsi: ses: Fix SAS device detection in enclosure
+ * multipath -ll is not showing the disks which are actually multipath
+ (LP: #1718397)
+ - fs: aio: fix the increment of aio-nr and counting against aio-max-nr
+ * Support Dell Wireless DW5819/5818 WWAN devices (LP: #1721455)
+ - SAUCE: USB: serial: qcserial: add Dell DW5818, DW5819
+ * CVE-2017-10911
+ - xen-blkback: don't leak stack data via response ring
+ * implement 'complain mode' in seccomp for developer mode with snaps
+ (LP: #1567597)
+ - seccomp: Provide matching filter for introspection
+ - seccomp: Sysctl to display available actions
+ - seccomp: Operation for checking if an action is available
+ - seccomp: Sysctl to configure actions that are allowed to be logged
+ - seccomp: Selftest for detection of filter flag support
+ - seccomp: Action to log before allowing
+ * implement errno action logging in seccomp for strict mode with snaps
+ (LP: #1721676)
+ - seccomp: Provide matching filter for introspection
+ - seccomp: Sysctl to display available actions
+ - seccomp: Operation for checking if an action is available
+ - seccomp: Sysctl to configure actions that are allowed to be logged
+ - seccomp: Selftest for detection of filter flag support
+ - seccomp: Filter flag to log all actions except SECCOMP_RET_ALLOW
+ * [Xenial] update OpenNSL kernel modules to 6.5.10 (LP: #1721511)
+ - SAUCE: update OpenNSL kernel modules to 6.5.10
+ * Xenial update to 4.4.90 stable release (LP: #1721550)
+ - cifs: release auth_key.response for reconnect.
+ - mac80211: flush hw_roc_start work before cancelling the ROC
+ - KVM: PPC: Book3S: Fix race and leak in kvm_vm_ioctl_create_spapr_tce()
+ - tracing: Fix trace_pipe behavior for instance traces
+ - tracing: Erase irqsoff trace with empty write
+ - md/raid5: fix a race condition in stripe batch
+ - md/raid5: preserve STRIPE_ON_UNPLUG_LIST in break_stripe_batch_list
+ - scsi: scsi_transport_iscsi: fix the issue that iscsi_if_rx doesn't parse
+ nlmsg properly
+ - crypto: talitos - Don't provide setkey for non hmac hashing algs.
+ - crypto: talitos - fix sha224
+ - KEYS: fix writing past end of user-supplied buffer in keyring_read()
+ - KEYS: prevent creating a different user's keyrings
+ - KEYS: prevent KEYCTL_READ on negative key
+ - powerpc/pseries: Fix parent_dn reference leak in add_dt_node()
+ - Fix SMB3.1.1 guest authentication to Samba
+ - SMB: Validate negotiate (to protect against downgrade) even if signing off
+ - SMB3: Don't ignore O_SYNC/O_DSYNC and O_DIRECT flags
+ - vfs: Return -ENXIO for negative SEEK_HOLE / SEEK_DATA offsets
+ - nl80211: check for the required netlink attributes presence
+ - bsg-lib: don't free job in bsg_prepare_job
+ - seccomp: fix the usage of get/put_seccomp_filter() in seccomp_get_filter()
+ - arm64: Make sure SPsel is always set
+ - arm64: fault: Route pte translation faults via do_translation_fault
+ - KVM: VMX: Do not BUG() on out-of-bounds guest IRQ
+ - kvm: nVMX: Don't allow L2 to access the hardware CR8
+ - PCI: Fix race condition with driver_override
+ - btrfs: fix NULL pointer dereference from free_reloc_roots()
+ - btrfs: propagate error to btrfs_cmp_data_prepare caller
+ - btrfs: prevent to set invalid default subvolid
+ - x86/fpu: Don't let userspace set bogus xcomp_bv
+ - gfs2: Fix debugfs glocks dump
+ - timer/sysclt: Restrict timer migration sysctl values to 0 and 1
+ - KVM: VMX: do not change SN bit in vmx_update_pi_irte()
+ - KVM: VMX: remove WARN_ON_ONCE in kvm_vcpu_trigger_posted_interrupt
+ - cxl: Fix driver use count
+ - dmaengine: mmp-pdma: add number of requestors
+ - ARM: pxa: add the number of DMA requestor lines
+ - ARM: pxa: fix the number of DMA requestor lines
+ - KVM: VMX: use cmpxchg64
+ - video: fbdev: aty: do not leak uninitialized padding in clk to userspace
+ - swiotlb-xen: implement xen_swiotlb_dma_mmap callback
+ - fix xen_swiotlb_dma_mmap prototype
+ - Linux 4.4.90
+ * Xenial update to 4.4.89 stable release (LP: #1721477)
+ - ipv6: accept 64k - 1 packet length in ip6_find_1stfragopt()
+ - ipv6: add rcu grace period before freeing fib6_node
+ - ipv6: fix sparse warning on rt6i_node
+ - qlge: avoid memcpy buffer overflow
+ - Revert "net: phy: Correctly process PHY_HALTED in phy_stop_machine()"
+ - Revert "net: use lib/percpu_counter API for fragmentation mem accounting"
+ - Revert "net: fix percpu memory leaks"
+ - gianfar: Fix Tx flow control deactivation
+ - ipv6: fix memory leak with multiple tables during netns destruction
+ - ipv6: fix typo in fib6_net_exit()
+ - f2fs: check hot_data for roll-forward recovery
+ - x86/fsgsbase/64: Report FSBASE and GSBASE correctly in core dumps
+ - md/raid5: release/flush io in raid5_do_work()
+ - nfsd: Fix general protection fault in release_lock_stateid()
+ - mm: prevent double decrease of nr_reserved_highatomic
+ - tty: improve tty_insert_flip_char() fast path
+ - tty: improve tty_insert_flip_char() slow path
+ - tty: fix __tty_insert_flip_char regression
+ - Input: i8042 - add Gigabyte P57 to the keyboard reset table
+ - MIPS: math-emu: <MAX|MAXA|MIN|MINA>.<D|S>: Fix quiet NaN propagation
+ - MIPS: math-emu: <MAX|MAXA|MIN|MINA>.<D|S>: Fix cases of both inputs zero
+ - MIPS: math-emu: <MAX|MIN>.<D|S>: Fix cases of both inputs negative
+ - MIPS: math-emu: <MAXA|MINA>.<D|S>: Fix cases of input values with opposite
+ signs
+ - MIPS: math-emu: <MAXA|MINA>.<D|S>: Fix cases of both infinite inputs
+ - MIPS: math-emu: MINA.<D|S>: Fix some cases of infinity and zero inputs
+ - crypto: AF_ALG - remove SGL terminator indicator when chaining
+ - ext4: fix incorrect quotaoff if the quota feature is enabled
+ - ext4: fix quota inconsistency during orphan cleanup for read-only mounts
+ - powerpc: Fix DAR reporting when alignment handler faults
+ - block: Relax a check in blk_start_queue()
+ - md/bitmap: disable bitmap_resize for file-backed bitmaps.
+ - skd: Avoid that module unloading triggers a use-after-free
+ - skd: Submit requests to firmware before triggering the doorbell
+ - scsi: zfcp: fix queuecommand for scsi_eh commands when DIX enabled
+ - scsi: zfcp: add handling for FCP_RESID_OVER to the fcp ingress path
+ - scsi: zfcp: fix capping of unsuccessful GPN_FT SAN response trace records
+ - scsi: zfcp: fix passing fsf_req to SCSI trace on TMF to correlate with HBA
+ - scsi: zfcp: fix missing trace records for early returns in TMF eh handlers
+ - scsi: zfcp: fix payload with full FCP_RSP IU in SCSI trace records
+ - scsi: zfcp: trace HBA FSF response by default on dismiss or timedout late
+ response
+ - scsi: zfcp: trace high part of "new" 64 bit SCSI LUN
+ - scsi: megaraid_sas: Check valid aen class range to avoid kernel panic
+ - scsi: megaraid_sas: Return pended IOCTLs with cmd_status
+ MFI_STAT_WRONG_STATE in case adapter is dead
+ - scsi: storvsc: fix memory leak on ring buffer busy
+ - scsi: sg: remove 'save_scat_len'
+ - scsi: sg: use standard lists for sg_requests
+ - scsi: sg: off by one in sg_ioctl()
+ - scsi: sg: factor out sg_fill_request_table()
+ - scsi: sg: fixup infoleak when using SG_GET_REQUEST_TABLE
+ - scsi: qla2xxx: Fix an integer overflow in sysfs code
+ - ftrace: Fix selftest goto location on error
+ - tracing: Apply trace_clock changes to instance max buffer
+ - ARC: Re-enable MMU upon Machine Check exception
+ - PCI: shpchp: Enable bridge bus mastering if MSI is enabled
+ - media: v4l2-compat-ioctl32: Fix timespec conversion
+ - media: uvcvideo: Prevent heap overflow when accessing mapped controls
+ - bcache: initialize dirty stripes in flash_dev_run()
+ - bcache: Fix leak of bdev reference
+ - bcache: do not subtract sectors_to_gc for bypassed IO
+ - bcache: correct cache_dirty_target in __update_writeback_rate()
+ - bcache: Correct return value for sysfs attach errors
+ - bcache: fix for gc and write-back race
+ - bcache: fix bch_hprint crash and improve output
+ - ftrace: Fix memleak when unregistering dynamic ops when tracing disabled
+ - Linux 4.4.89
+ * ETPS/2 Elantech Touchpad inconsistently detected (Gigabyte P57W laptop)
+ (LP: #1594214)
+ - Input: i8042 - add Gigabyte P57 to the keyboard reset table
+ * Xenial update to 4.4.88 stable release (LP: #1718195)
+ - usb: quirks: add delay init quirk for Corsair Strafe RGB keyboard
+ - USB: serial: option: add support for D-Link DWM-157 C1
+ - usb: Add device quirk for Logitech HD Pro Webcam C920-C
+ - usb:xhci:Fix regression when ATI chipsets detected
+ - USB: core: Avoid race of async_completed() w/ usbdev_release()
+ - staging/rts5208: fix incorrect shift to extract upper nybble
+ - driver core: bus: Fix a potential double free
+ - intel_th: pci: Add Cannon Lake PCH-H support
+ - intel_th: pci: Add Cannon Lake PCH-LP support
+ - ath10k: fix memory leak in rx ring buffer allocation
+ - rtlwifi: rtl_pci_probe: Fix fail path of _rtl_pci_find_adapter
+ - Bluetooth: Add support of 13d3:3494 RTL8723BE device
+ - dlm: avoid double-free on error path in dlm_device_{register,unregister}
+ - mwifiex: correct channel stat buffer overflows
+ - drm/nouveau/pci/msi: disable MSI on big-endian platforms by default
+ - workqueue: Fix flag collision
+ - cs5536: add support for IDE controller variant
+ - scsi: sg: protect against races between mmap() and SG_SET_RESERVED_SIZE
+ - scsi: sg: recheck MMAP_IO request length with lock held
+ - drm: adv7511: really enable interrupts for EDID detection
+ - drm/bridge: adv7511: Fix mutex deadlock when interrupts are disabled
+ - drm/bridge: adv7511: Use work_struct to defer hotplug handing to out of irq
+ context
+ - drm/bridge: adv7511: Switch to using drm_kms_helper_hotplug_event()
+ - drm/bridge: adv7511: Re-write the i2c address before EDID probing
+ - btrfs: resume qgroup rescan on rw remount
+ - locktorture: Fix potential memory leak with rw lock test
+ - ALSA: msnd: Optimize / harden DSP and MIDI loops
+ - ARM: 8692/1: mm: abort uaccess retries upon fatal signal
+ - NFS: Fix 2 use after free issues in the I/O code
+ - xfs: XFS_IS_REALTIME_INODE() should be false if no rt device present
+ - Linux 4.4.88
+ * Kernel has troule recognizing Corsair Strafe RGB keyboard (LP: #1678477)
+ - usb: quirks: add delay init quirk for Corsair Strafe RGB keyboard
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Wed, 11 Oct 2017 14:49:04 -0300
+
+linux-snapdragon (4.4.0-1077.82) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1077.82 -proposed tracker (LP: #1718154)
+
+ [ Ubuntu: 4.4.0-97.120 ]
+
+ * linux: 4.4.0-97.120 -proposed tracker (LP: #1718149)
+ * blk-mq: possible deadlock on CPU hot(un)plug (LP: #1670634)
+ - [Config] s390x -- disable CONFIG_{DM, SCSI}_MQ_DEFAULT
+ * Xenial update to 4.4.87 stable release (LP: #1715678)
+ - irqchip: mips-gic: SYNC after enabling GIC region
+ - i2c: ismt: Don't duplicate the receive length for block reads
+ - i2c: ismt: Return EMSGSIZE for block reads with bogus length
+ - ceph: fix readpage from fscache
+ - cpumask: fix spurious cpumask_of_node() on non-NUMA multi-node configs
+ - cpuset: Fix incorrect memory_pressure control file mapping
+ - alpha: uapi: Add support for __SANE_USERSPACE_TYPES__
+ - CIFS: remove endian related sparse warning
+ - wl1251: add a missing spin_lock_init()
+ - xfrm: policy: check policy direction value
+ - drm/ttm: Fix accounting error when fail to get pages for pool
+ - kvm: arm/arm64: Fix race in resetting stage2 PGD
+ - kvm: arm/arm64: Force reading uncached stage2 PGD
+ - epoll: fix race between ep_poll_callback(POLLFREE) and ep_free()/ep_remove()
+ - crypto: algif_skcipher - only call put_page on referenced and used pages
+ - Linux 4.4.87
+ * Xenial update to 4.4.86 stable release (LP: #1715430)
+ - scsi: isci: avoid array subscript warning
+ - ALSA: au88x0: Fix zero clear of stream->resources
+ - btrfs: remove duplicate const specifier
+ - i2c: jz4780: drop superfluous init
+ - gcov: add support for gcc version >= 6
+ - gcov: support GCC 7.1
+ - lightnvm: initialize ppa_addr in dev_to_generic_addr()
+ - p54: memset(0) whole array
+ - lpfc: Fix Device discovery failures during switch reboot test.
+ - arm64: mm: abort uaccess retries upon fatal signal
+ - x86/io: Add "memory" clobber to insb/insw/insl/outsb/outsw/outsl
+ - arm64: fpsimd: Prevent registers leaking across exec
+ - scsi: sg: protect accesses to 'reserved' page array
+ - scsi: sg: reset 'res_in_use' after unlinking reserved array
+ - drm/i915: fix compiler warning in drivers/gpu/drm/i915/intel_uncore.c
+ - Linux 4.4.86
+ * Xenial update to 4.4.85 stable release (LP: #1714298)
+ - af_key: do not use GFP_KERNEL in atomic contexts
+ - dccp: purge write queue in dccp_destroy_sock()
+ - dccp: defer ccid_hc_tx_delete() at dismantle time
+ - ipv4: fix NULL dereference in free_fib_info_rcu()
+ - net_sched/sfq: update hierarchical backlog when drop packet
+ - ipv4: better IP_MAX_MTU enforcement
+ - sctp: fully initialize the IPv6 address in sctp_v6_to_addr()
+ - tipc: fix use-after-free
+ - ipv6: reset fn->rr_ptr when replacing route
+ - ipv6: repair fib6 tree in failure case
+ - tcp: when rearming RTO, if RTO time is in past then fire RTO ASAP
+ - irda: do not leak initialized list.dev to userspace
+ - net: sched: fix NULL pointer dereference when action calls some targets
+ - net_sched: fix order of queue length updates in qdisc_replace()
+ - mei: me: add broxton pci device ids
+ - mei: me: add lewisburg device ids
+ - Input: trackpoint - add new trackpoint firmware ID
+ - Input: elan_i2c - add ELAN0602 ACPI ID to support Lenovo Yoga310
+ - ALSA: core: Fix unexpected error at replacing user TLV
+ - ALSA: hda - Add stereo mic quirk for Lenovo G50-70 (17aa:3978)
+ - ARCv2: PAE40: Explicitly set MSB counterpart of SLC region ops addresses
+ - i2c: designware: Fix system suspend
+ - drm: Release driver tracking before making the object available again
+ - drm/atomic: If the atomic check fails, return its value first
+ - drm: rcar-du: lvds: Fix PLL frequency-related configuration
+ - drm: rcar-du: lvds: Rename PLLEN bit to PLLON
+ - drm: rcar-du: Fix crash in encoder failure error path
+ - drm: rcar-du: Fix display timing controller parameter
+ - drm: rcar-du: Fix H/V sync signal polarity configuration
+ - tracing: Fix freeing of filter in create_filter() when set_str is false
+ - cifs: Fix df output for users with quota limits
+ - cifs: return ENAMETOOLONG for overlong names in cifs_open()/cifs_lookup()
+ - nfsd: Limit end of page list when decoding NFSv4 WRITE
+ - perf/core: Fix group {cpu,task} validation
+ - Bluetooth: hidp: fix possible might sleep error in hidp_session_thread
+ - Bluetooth: cmtp: fix possible might sleep error in cmtp_session
+ - Bluetooth: bnep: fix possible might sleep error in bnep_session
+ - binder: use group leader instead of open thread
+ - binder: Use wake up hint for synchronous transactions.
+ - ANDROID: binder: fix proc->tsk check.
+ - iio: imu: adis16480: Fix acceleration scale factor for adis16480
+ - iio: hid-sensor-trigger: Fix the race with user space powering up sensors
+ - staging: rtl8188eu: add RNX-N150NUB support
+ - ASoC: simple-card: don't fail if sysclk setting is not supported
+ - ASoC: rsnd: disable SRC.out only when stop timing
+ - ASoC: rsnd: avoid pointless loop in rsnd_mod_interrupt()
+ - ASoC: rsnd: Add missing initialization of ADG req_rate
+ - ASoC: rsnd: ssi: 24bit data needs right-aligned settings
+ - ASoC: rsnd: don't call update callback if it was NULL
+ - ntb_transport: fix qp count bug
+ - ntb_transport: fix bug calculating num_qps_mw
+ - ACPI: ioapic: Clear on-stack resource before using it
+ - ACPI / APEI: Add missing synchronize_rcu() on NOTIFY_SCI removal
+ - Linux 4.4.85
+ * Xenial update to 4.4.84 stable release (LP: #1713729)
+ - audit: Fix use after free in audit_remove_watch_rule()
+ - parisc: pci memory bar assignment fails with 64bit kernels on dino/cujo
+ - crypto: x86/sha1 - Fix reads beyond the number of blocks passed
+ - Input: elan_i2c - Add antoher Lenovo ACPI ID for upcoming Lenovo NB
+ - ALSA: seq: 2nd attempt at fixing race creating a queue
+ - Revert "UBUNTU: SAUCE: (no-up) ALSA: usb-audio: Add quirk for sennheiser
+ officerunner"
+ - ALSA: usb-audio: Apply sample rate quirk to Sennheiser headset
+ - ALSA: usb-audio: Add mute TLV for playback volumes on C-Media devices
+ - mm/mempolicy: fix use after free when calling get_mempolicy
+ - xen: fix bio vec merging
+ - x86/asm/64: Clear AC on NMI entries
+ - irqchip/atmel-aic: Fix unbalanced of_node_put() in aic_common_irq_fixup()
+ - irqchip/atmel-aic: Fix unbalanced refcount in aic_common_rtc_irq_fixup()
+ - Sanitize 'move_pages()' permission checks
+ - pids: make task_tgid_nr_ns() safe
+ - perf/x86: Fix LBR related crashes on Intel Atom
+ - usb: optimize acpi companion search for usb port devices
+ - usb: qmi_wwan: add D-Link DWM-222 device ID
+ - Linux 4.4.84
+ * Intel i40e PF reset due to incorrect MDD detection (LP: #1713553)
+ - i40e: Limit TX descriptor count in cases where frag size is greater than 16K
+ * Neighbour confirmation broken, breaks ARP cache aging (LP: #1715812)
+ - sock: add sk_dst_pending_confirm flag
+ - net: add dst_pending_confirm flag to skbuff
+ - sctp: add dst_pending_confirm flag
+ - tcp: replace dst_confirm with sk_dst_confirm
+ - net: add confirm_neigh method to dst_ops
+ - net: use dst_confirm_neigh for UDP, RAW, ICMP, L2TP
+ - net: pending_confirm is not used anymore
+ * CVE-2017-14106
+ - tcp: initialize rcv_mss to TCP_MIN_MSS instead of 0
+ * [CIFS] Fix maximum SMB2 header size (LP: #1713884)
+ - CIFS: Fix maximum SMB2 header size
+ * Middle button of trackpoint doesn't work (LP: #1715271)
+ - Input: trackpoint - assume 3 buttons when buttons detection fails
+ * kernel BUG at /build/linux-lts-xenial-_hWfOZ/linux-lts-
+ xenial-4.4.0/security/apparmor/include/context.h:69! (LP: #1626984)
+ - SAUCE: fix oops when disabled and module parameters, are accessed
+ * Touchpad not detected (LP: #1708852)
+ - Input: elan_i2c - add ELAN0608 to the ACPI table
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Wed, 20 Sep 2017 10:11:15 +0200
+
+linux-snapdragon (4.4.0-1076.81) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1076.81 -proposed tracker (LP: #1716619)
+
+ [ Ubuntu: 4.4.0-96.119 ]
+
+ * linux: 4.4.0-96.119 -proposed tracker (LP: #1716613)
+ * kernel panic -not syncing: Fatal exception: panic_on_oops (LP: #1708399)
+ - s390/mm: no local TLB flush for clearing-by-ASCE IDTE
+ - SAUCE: s390/mm: fix local TLB flushing vs. detach of an mm address space
+ - SAUCE: s390/mm: fix race on mm->context.flush_mm
+ * CVE-2017-1000251
+ - Bluetooth: Properly check L2CAP config option output buffer length
+
+ -- Stefan Bader <stefan.bader@canonical.com> Tue, 12 Sep 2017 18:17:43 +0200
+
+linux-snapdragon (4.4.0-1075.80) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1075.80 -proposed tracker (LP: #1715654)
+
+ [ Ubuntu: 4.4.0-95.118 ]
+
+ * linux: 4.4.0-95.118 -proposed tracker (LP: #1715651)
+ * Xenial update to 4.4.78 stable release broke Address Sanitizer
+ (LP: #1715636)
+ - mm: revert x86_64 and arm64 ELF_ET_DYN_BASE base changes
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Fri, 08 Sep 2017 10:35:29 +0200
+
+linux-snapdragon (4.4.0-1074.79) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1074.79 -proposed tracker (LP: #1713465)
+
+ * Include Broadcom GPL modules in Xenial Kernel (LP: #1665783)
+ - [config] update config for master changes
+
+ * Backport more recent Broadcom bnxt_en driver (LP: #1711056)
+ - [config] update config for master changes
+
+ [ Ubuntu: 4.4.0-94.117 ]
+
+ * linux: 4.4.0-94.117 -proposed tracker (LP: #1713462)
+ * mwifiex causes kernel oops when AP mode is enabled (LP: #1712746)
+ - SAUCE: net/wireless: do not dereference invalid pointer
+ - SAUCE: mwifiex: do not dereference invalid pointer
+ * Backport more recent Broadcom bnxt_en driver (LP: #1711056)
+ - SAUCE: bnxt_en_bpo: Import bnxt_en driver version 1.8.1
+ - SAUCE: bnxt_en_bpo: Drop distro out-of-tree detection logic
+ - SAUCE: bnxt_en_bpo: Remove unnecessary compile flags
+ - SAUCE: bnxt_en_bpo: Move config settings to Kconfig
+ - SAUCE: bnxt_en_bpo: Remove PCI_IDs handled by the regular driver
+ - SAUCE: bnxt_en_bpo: Rename the backport driver to bnxt_en_bpo
+ - bnxt_en_bpo: [Config] Enable CONFIG_BNXT_BPO=m
+ * HID: multitouch: Support ALPS PTP Stick and Touchpad devices (LP: #1712481)
+ - HID: multitouch: Support PTP Stick and Touchpad device
+ - SAUCE: HID: multitouch: Support ALPS PTP stick with pid 0x120A
+ * igb: Support using Broadcom 54616 as PHY (LP: #1712024)
+ - SAUCE: igb: add support for using Broadcom 54616 as PHY
+ * IPR driver causes multipath to fail paths/stuck IO on Medium Errors
+ (LP: #1682644)
+ - scsi: ipr: do not set DID_PASSTHROUGH on CHECK CONDITION
+ * accessing /dev/hvc1 with stress-ng on Ubuntu xenial causes crash
+ (LP: #1711401)
+ - tty/hvc: Use IRQF_SHARED for OPAL hvc consoles
+ * memory-hotplug test needs to be fixed (LP: #1710868)
+ - selftests: typo correction for memory-hotplug test
+ - selftests: check hot-pluggagble memory for memory-hotplug test
+ - selftests: check percentage range for memory-hotplug test
+ - selftests: add missing test name in memory-hotplug test
+ - selftests: fix memory-hotplug test
+ * HP lt4132 LTE/HSPA+ 4G Module (03f0:a31d) does not work (LP: #1707643)
+ - net: cdc_mbim: apply "NDP to end" quirk to HP lt4132
+ * Migrating KSM page causes the VM lock up as the KSM page merging list is too
+ large (LP: #1680513)
+ - ksm: introduce ksm_max_page_sharing per page deduplication limit
+ - ksm: fix use after free with merge_across_nodes = 0
+ - ksm: cleanup stable_node chain collapse case
+ - ksm: swap the two output parameters of chain/chain_prune
+ - ksm: optimize refile of stable_node_dup at the head of the chain
+ * sort ABI files with C.UTF-8 locale (LP: #1712345)
+ - [Packaging] sort ABI files with C.UTF-8 locale
+ * Include Broadcom GPL modules in Xenial Kernel (LP: #1665783)
+ - [Config] OpenNSL Kconfig/Makefile
+ - Import OpenNSL v3.1.0.17
+ - [Config] CONFIG_OPENNSL=y for amd64
+ - OpenNSL: Enable Kconfig and build
+ - SAUCE: opennsl: add proper CFLAGS
+ * Xenial update to 4.4.83 stable release (LP: #1711557)
+ - cpuset: fix a deadlock due to incomplete patching of cpusets_enabled()
+ - mm: ratelimit PFNs busy info message
+ - iscsi-target: fix memory leak in iscsit_setup_text_cmd()
+ - iscsi-target: Fix iscsi_np reset hung task during parallel delete
+ - fuse: initialize the flock flag in fuse_file on allocation
+ - nfs/flexfiles: fix leak of nfs4_ff_ds_version arrays
+ - USB: serial: option: add D-Link DWM-222 device ID
+ - USB: serial: cp210x: add support for Qivicon USB ZigBee dongle
+ - USB: serial: pl2303: add new ATEN device id
+ - usb: musb: fix tx fifo flush handling again
+ - USB: hcd: Mark secondary HCD as dead if the primary one died
+ - staging:iio:resolver:ad2s1210 fix negative IIO_ANGL_VEL read
+ - iio: accel: bmc150: Always restore device to normal mode after suspend-
+ resume
+ - iio: light: tsl2563: use correct event code
+ - uas: Add US_FL_IGNORE_RESIDUE for Initio Corporation INIC-3069
+ - USB: Check for dropped connection before switching to full speed
+ - usb: core: unlink urbs from the tail of the endpoint's urb_list
+ - usb: quirks: Add no-lpm quirk for Moshi USB to Ethernet Adapter
+ - usb:xhci:Add quirk for Certain failing HP keyboard on reset after resume
+ - iio: adc: vf610_adc: Fix VALT selection value for REFSEL bits
+ - pnfs/blocklayout: require 64-bit sector_t
+ - pinctrl: sunxi: add a missing function of A10/A20 pinctrl driver
+ - pinctrl: samsung: Remove bogus irq_[un]mask from resource management
+ - Linux 4.4.83
+ * Xenial update to 4.4.82 stable release (LP: #1711535)
+ - tcp: avoid setting cwnd to invalid ssthresh after cwnd reduction states
+ - net: fix keepalive code vs TCP_FASTOPEN_CONNECT
+ - bpf, s390: fix jit branch offset related to ldimm64
+ - net: sched: set xt_tgchk_param par.nft_compat as 0 in ipt_init_target
+ - tcp: fastopen: tcp_connect() must refresh the route
+ - net: avoid skb_warn_bad_offload false positives on UFO
+ - sparc64: Prevent perf from running during super critical sections
+ - KVM: arm/arm64: Handle hva aging while destroying the vm
+ - mm/mempool: avoid KASAN marking mempool poison checks as use-after-free
+ - Linux 4.4.82
+ * Xenial update to 4.4.81 stable release (LP: #1711526)
+ - libata: array underflow in ata_find_dev()
+ - workqueue: restore WQ_UNBOUND/max_active==1 to be ordered
+ - ALSA: hda - Fix speaker output from VAIO VPCL14M1R
+ - ASoC: do not close shared backend dailink
+ - KVM: async_pf: make rcu irq exit if not triggered from idle task
+ - mm/page_alloc: Remove kernel address exposure in free_reserved_area()
+ - ext4: fix SEEK_HOLE/SEEK_DATA for blocksize < pagesize
+ - ext4: fix overflow caused by missing cast in ext4_resize_fs()
+ - ARM: dts: armada-38x: Fix irq type for pca955
+ - media: platform: davinci: return -EINVAL for VPFE_CMD_S_CCDC_RAW_PARAMS
+ ioctl
+ - target: Avoid mappedlun symlink creation during lun shutdown
+ - iscsi-target: Always wait for kthread_should_stop() before kthread exit
+ - iscsi-target: Fix early sk_data_ready LOGIN_FLAGS_READY race
+ - iscsi-target: Fix initial login PDU asynchronous socket close OOPs
+ - iscsi-target: Fix delayed logout processing greater than
+ SECONDS_FOR_LOGOUT_COMP
+ - iser-target: Avoid isert_conn->cm_id dereference in isert_login_recv_done
+ - mm, mprotect: flush TLB if potentially racing with a parallel reclaim
+ leaving stale TLB entries
+ - media: lirc: LIRC_GET_REC_RESOLUTION should return microseconds
+ - f2fs: sanity check checkpoint segno and blkoff
+ - drm: rcar-du: fix backport bug
+ - saa7164: fix double fetch PCIe access condition
+ - ipv4: ipv6: initialize treq->txhash in cookie_v[46]_check()
+ - net: Zero terminate ifr_name in dev_ifname().
+ - ipv6: avoid overflow of offset in ip6_find_1stfragopt
+ - ipv4: initialize fib_trie prior to register_netdev_notifier call.
+ - rtnetlink: allocate more memory for dev_set_mac_address()
+ - mcs7780: Fix initialization when CONFIG_VMAP_STACK is enabled
+ - openvswitch: fix potential out of bound access in parse_ct
+ - packet: fix use-after-free in prb_retire_rx_blk_timer_expired()
+ - ipv6: Don't increase IPSTATS_MIB_FRAGFAILS twice in ip6_fragment()
+ - net: ethernet: nb8800: Handle all 4 RGMII modes identically
+ - dccp: fix a memleak that dccp_ipv6 doesn't put reqsk properly
+ - dccp: fix a memleak that dccp_ipv4 doesn't put reqsk properly
+ - dccp: fix a memleak for dccp_feat_init err process
+ - sctp: don't dereference ptr before leaving _sctp_walk_{params, errors}()
+ - sctp: fix the check for _sctp_walk_params and _sctp_walk_errors
+ - net/mlx5: Fix command bad flow on command entry allocation failure
+ - net: phy: Correctly process PHY_HALTED in phy_stop_machine()
+ - net: phy: Fix PHY unbind crash
+ - xen-netback: correctly schedule rate-limited queues
+ - sparc64: Measure receiver forward progress to avoid send mondo timeout
+ - wext: handle NULL extra data in iwe_stream_add_point better
+ - sh_eth: R8A7740 supports packet shecksumming
+ - net: phy: dp83867: fix irq generation
+ - tg3: Fix race condition in tg3_get_stats64().
+ - x86/boot: Add missing declaration of string functions
+ - phy state machine: failsafe leave invalid RUNNING state
+ - scsi: qla2xxx: Get mutex lock before checking optrom_state
+ - drm/virtio: fix framebuffer sparse warning
+ - virtio_blk: fix panic in initialization error path
+ - ARM: 8632/1: ftrace: fix syscall name matching
+ - mm, slab: make sure that KMALLOC_MAX_SIZE will fit into MAX_ORDER
+ - lib/Kconfig.debug: fix frv build failure
+ - signal: protect SIGNAL_UNKILLABLE from unintentional clearing.
+ - mm: don't dereference struct page fields of invalid pages
+ - workqueue: implicit ordered attribute should be overridable
+ - Linux 4.4.81
+ * Xenial update to 4.4.80 stable release (LP: #1710646)
+ - af_key: Add lock to key dump
+ - pstore: Make spinlock per zone instead of global
+ - powerpc/pseries: Fix of_node_put() underflow during reconfig remove
+ - crypto: authencesn - Fix digest_null crash
+ - md/raid5: add thread_group worker async_tx_issue_pending_all
+ - drm/vmwgfx: Fix gcc-7.1.1 warning
+ - drm/nouveau/bar/gf100: fix access to upper half of BAR2
+ - KVM: PPC: Book3S HV: Context-switch EBB registers properly
+ - KVM: PPC: Book3S HV: Restore critical SPRs to host values on guest exit
+ - KVM: PPC: Book3S HV: Reload HTM registers explicitly
+ - KVM: PPC: Book3S HV: Save/restore host values of debug registers
+ - Revert "powerpc/numa: Fix percpu allocations to be NUMA aware"
+ - Staging: comedi: comedi_fops: Avoid orphaned proc entry
+ - drm/rcar: Nuke preclose hook
+ - drm: rcar-du: Perform initialization/cleanup at probe/remove time
+ - drm: rcar-du: Simplify and fix probe error handling
+ - perf intel-pt: Fix ip compression
+ - perf intel-pt: Fix last_ip usage
+ - perf intel-pt: Use FUP always when scanning for an IP
+ - perf intel-pt: Ensure never to set 'last_ip' when packet 'count' is zero
+ - xfs: don't BUG() on mixed direct and mapped I/O
+ - nfc: fdp: fix NULL pointer dereference
+ - net: phy: Do not perform software reset for Generic PHY
+ - isdn: Fix a sleep-in-atomic bug
+ - isdn/i4l: fix buffer overflow
+ - ath10k: fix null deref on wmi-tlv when trying spectral scan
+ - wil6210: fix deadlock when using fw_no_recovery option
+ - mailbox: always wait in mbox_send_message for blocking Tx mode
+ - mailbox: skip complete wait event if timer expired
+ - mailbox: handle empty message in tx_tick
+ - mpt3sas: Don't overreach ioc->reply_post[] during initialization
+ - kaweth: fix firmware download
+ - kaweth: fix oops upon failed memory allocation
+ - sched/cgroup: Move sched_online_group() back into css_online() to fix crash
+ - PM / Domains: defer dev_pm_domain_set() until genpd->attach_dev succeeds if
+ present
+ - RDMA/uverbs: Fix the check for port number
+ - libnvdimm, btt: fix btt_rw_page not returning errors
+ - ipmi/watchdog: fix watchdog timeout set on reboot
+ - v4l: s5c73m3: fix negation operator
+ - pstore: Allow prz to control need for locking
+ - pstore: Correctly initialize spinlock and flags
+ - pstore: Use dynamic spinlock initializer
+ - net: skb_needs_check() accepts CHECKSUM_NONE for tx
+ - sched/cputime: Fix prev steal time accouting during CPU hotplug
+ - xen/blkback: don't free be structure too early
+ - xen/blkback: don't use xen_blkif_get() in xen-blkback kthread
+ - tpm: fix a kernel memory leak in tpm-sysfs.c
+ - tpm: Replace device number bitmap with IDR
+ - x86/mce/AMD: Make the init code more robust
+ - r8169: add support for RTL8168 series add-on card.
+ - ARM: dts: n900: Mark eMMC slot with no-sdio and no-sd flags
+ - net/mlx4: Remove BUG_ON from ICM allocation routine
+ - drm/msm: Ensure that the hardware write pointer is valid
+ - drm/msm: Verify that MSM_SUBMIT_BO_FLAGS are set
+ - vfio-pci: use 32-bit comparisons for register address for gcc-4.5
+ - irqchip/keystone: Fix "scheduling while atomic" on rt
+ - ASoC: tlv320aic3x: Mark the RESET register as volatile
+ - spi: dw: Make debugfs name unique between instances
+ - ASoC: nau8825: fix invalid configuration in Pre-Scalar of FLL
+ - irqchip/mxs: Enable SKIP_SET_WAKE and MASK_ON_SUSPEND
+ - openrisc: Add _text symbol to fix ksym build error
+ - dmaengine: ioatdma: Add Skylake PCI Dev ID
+ - dmaengine: ioatdma: workaround SKX ioatdma version
+ - dmaengine: ti-dma-crossbar: Add some 'of_node_put()' in error path.
+ - ARM64: zynqmp: Fix W=1 dtc 1.4 warnings
+ - ARM64: zynqmp: Fix i2c node's compatible string
+ - ARM: s3c2410_defconfig: Fix invalid values for NF_CT_PROTO_*
+ - ACPI / scan: Prefer devices without _HID/_CID for _ADR matching
+ - usb: gadget: Fix copy/pasted error message
+ - Btrfs: adjust outstanding_extents counter properly when dio write is split
+ - tools lib traceevent: Fix prev/next_prio for deadline tasks
+ - xfrm: Don't use sk_family for socket policy lookups
+ - perf tools: Install tools/lib/traceevent plugins with install-bin
+ - perf symbols: Robustify reading of build-id from sysfs
+ - video: fbdev: cobalt_lcdfb: Handle return NULL error from devm_ioremap
+ - vfio-pci: Handle error from pci_iomap
+ - arm64: mm: fix show_pte KERN_CONT fallout
+ - nvmem: imx-ocotp: Fix wrong register size
+ - sh_eth: enable RX descriptor word 0 shift on SH7734
+ - ALSA: usb-audio: test EP_FLAG_RUNNING at urb completion
+ - HID: ignore Petzl USB headlamp
+ - scsi: fnic: Avoid sending reset to firmware when another reset is in
+ progress
+ - scsi: snic: Return error code on memory allocation failure
+ - ASoC: dpcm: Avoid putting stream state to STOP when FE stream is paused
+ - Linux 4.4.80
+ * Please only recommend or suggest initramfs-tools | linux-initramfs-tool for
+ kernels able to boot without initramfs (LP: #1700972)
+ - [Debian] Don't depend on initramfs-tools
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Tue, 29 Aug 2017 12:36:57 +0200
+
+linux-snapdragon (4.4.0-1073.78) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1073.78 -proposed tracker (LP: #1709299)
+
+ * snapcraft.yaml: correct image format and dtb installation path
+ (LP: #1706938)
+ - snapcraft.yaml: force image format to Image
+ - snapcraft.yaml: install the apq8016-sbc and msm8916-mtp dtb files
+
+ [ Ubuntu: 4.4.0-93.116 ]
+
+ * linux: 4.4.0-93.116 -proposed tracker (LP: #1709296)
+ * Creating conntrack entry failure with kernel 4.4.0-89 (LP: #1709032)
+ - Revert "Revert "netfilter: synproxy: fix conntrackd interaction""
+ - netfilter: nf_ct_ext: fix possible panic after nf_ct_extend_unregister
+ * CVE-2017-1000112
+ - Revert "udp: consistently apply ufo or fragmentation"
+ - udp: consistently apply ufo or fragmentation
+ * CVE-2017-1000111
+ - Revert "net-packet: fix race in packet_set_ring on PACKET_RESERVE"
+ - packet: fix tp_reserve race in packet_set_ring
+ * kernel BUG at [tty_ldisc_reinit] mm/slub.c! (LP: #1709126)
+ - tty: Simplify tty_set_ldisc() exit handling
+ - tty: Reset c_line from driver's init_termios
+ - tty: Handle NULL tty->ldisc
+ - tty: Move tty_ldisc_kill()
+ - tty: Use 'disc' for line discipline index name
+ - tty: Refactor tty_ldisc_reinit() for reuse
+ - tty: Destroy ldisc instance on hangup
+ * atheros bt failed after S3 (LP: #1706833)
+ - SAUCE: Bluetooth: Make request workqueue freezable
+ * The Precision Touchpad(PTP) button sends incorrect event code (LP: #1708372)
+ - HID: multitouch: handle external buttons for Precision Touchpads
+ * Set CONFIG_SATA_HIGHBANK=y on armhf (LP: #1703430)
+ - [Config] CONFIG_SATA_HIGHBANK=y
+ * xfs slab objects (memory) leak when xfs shutdown is called (LP: #1706132)
+ - xfs: fix xfs_log_ticket leak in xfs_end_io() after fs shutdown
+ * Adt tests of src:linux time out often on armhf lxc containers (LP: #1705495)
+ - [Packaging] tests -- reduce rebuild test to one flavour
+ * CVE-2017-7495
+ - ext4: fix data exposure after a crash
+ * ubuntu/rsi driver downlink wifi throughput drops to 5-6 Mbps when BT
+ keyboard is connected (LP: #1706991)
+ - SAUCE: Redpine: enable power save by default for coex mode
+ - SAUCE: Redpine: uapsd configuration changes
+ * [Hyper-V] hv_netvsc: Exclude non-TCP port numbers from vRSS hashing
+ (LP: #1690174)
+ - hv_netvsc: Exclude non-TCP port numbers from vRSS hashing
+ * ath10k doesn't report full RSSI information (LP: #1706531)
+ - ath10k: add per chain RSSI reporting
+ * ideapad_laptop don't support v310-14isk (LP: #1705378)
+ - platform/x86: ideapad-laptop: Add several models to no_hw_rfkill
+ * [8087:0a2b] Failed to load bluetooth firmware(might affect some other Intel
+ bt devices) (LP: #1705633)
+ - Bluetooth: btintel: Create common Intel Version Read function
+ - Bluetooth: Use switch statement for Intel hardware variants
+ - Bluetooth: Replace constant hw_variant from Intel Bluetooth firmware
+ filename
+ - Bluetooth: hci_intel: Fix firmware file name to use hw_variant
+ - Bluetooth: btintel: Add MODULE_FIRMWARE entries for iBT 3.5 controllers
+ * xhci_hcd: ERROR Transfer event TRB DMA ptr not part of current TD ep_index 2
+ comp_code 13 (LP: #1667750)
+ - xhci: Bad Ethernet performance plugged in ASM1042A host
+ * OpenPower: Some multipaths temporarily have only a single path
+ (LP: #1696445)
+ - scsi: ses: don't get power status of SES device slot on probe
+ * Hotkeys on new Thinkpad systems aren't working (LP: #1705169)
+ - platform/x86: thinkpad_acpi: Adding new hotkey ID for Lenovo thinkpad
+ - platform/x86: thinkpad_acpi: guard generic hotkey case
+ - platform/x86: thinkpad_acpi: add mapping for new hotkeys
+ * CVE-2015-7837
+ - SAUCE: (no-up) kexec/uefi: copy secure_boot flag in boot params across kexec
+ reboot
+ * misleading kernel warning skb_warn_bad_offload during checksum calculation
+ (LP: #1705447)
+ - net: reduce skb_warn_bad_offload() noise
+ * bonding: stack dump when unregistering a netdev (LP: #1704102)
+ - bonding: avoid NETDEV_CHANGEMTU event when unregistering slave
+ * Ubuntu 16.04 IOB Error when the Mustang board rebooted (LP: #1693673)
+ - drivers: net: xgene: Fix redundant prefetch buffer cleanup
+ * Ubuntu16.04: NVMe 4K+T10 DIF/DIX format returns I/O error on dd with split
+ op (LP: #1689946)
+ - blk-mq: NVMe 512B/4K+T10 DIF/DIX format returns I/O error on dd with split
+ op
+ * linux >= 4.2: bonding 802.3ad does not work with 5G, 25G and 50G link speeds
+ (LP: #1697892)
+ - bonding: add 802.3ad support for 100G speeds
+ - bonding: fix 802.3ad aggregator reselection
+ - bonding: add 802.3ad support for 25G speeds
+ - bonding: fix 802.3ad support for 5G and 50G speeds
+ * Xenial update to 4.4.79 stable release (LP: #1707233)
+ - disable new gcc-7.1.1 warnings for now
+ - ir-core: fix gcc-7 warning on bool arithmetic
+ - s5p-jpeg: don't return a random width/height
+ - thermal: cpu_cooling: Avoid accessing potentially freed structures
+ - ath9k: fix tx99 use after free
+ - ath9k: fix tx99 bus error
+ - NFC: fix broken device allocation
+ - NFC: nfcmrvl_uart: add missing tty-device sanity check
+ - NFC: nfcmrvl: do not use device-managed resources
+ - NFC: nfcmrvl: use nfc-device for firmware download
+ - NFC: nfcmrvl: fix firmware-management initialisation
+ - nfc: Ensure presence of required attributes in the activate_target handler
+ - nfc: Fix the sockaddr length sanitization in llcp_sock_connect
+ - NFC: Add sockaddr length checks before accessing sa_family in bind handlers
+ - perf intel-pt: Move decoder error setting into one condition
+ - perf intel-pt: Improve sample timestamp
+ - perf intel-pt: Fix missing stack clear
+ - perf intel-pt: Ensure IP is zero when state is INTEL_PT_STATE_NO_IP
+ - perf intel-pt: Clear FUP flag on error
+ - Bluetooth: use constant time memory comparison for secret values
+ - wlcore: fix 64K page support
+ - ASoC: compress: Derive substream from stream based on direction
+ - PM / Domains: Fix unsafe iteration over modified list of device links
+ - PM / Domains: Fix unsafe iteration over modified list of domain providers
+ - scsi: ses: do not add a device to an enclosure if enclosure_add_links()
+ fails.
+ - iscsi-target: Add login_keys_workaround attribute for non RFC initiators
+ - powerpc/64: Fix atomic64_inc_not_zero() to return an int
+ - powerpc: Fix emulation of mcrf in emulate_step()
+ - powerpc: Fix emulation of mfocrf in emulate_step()
+ - powerpc/asm: Mark cr0 as clobbered in mftb()
+ - af_key: Fix sadb_x_ipsecrequest parsing
+ - PCI/PM: Restore the status of PCI devices across hibernation
+ - ipvs: SNAT packet replies only for NATed connections
+ - xhci: fix 20000ms port resume timeout
+ - xhci: Fix NULL pointer dereference when cleaning up streams for removed host
+ - usb: storage: return on error to avoid a null pointer dereference
+ - USB: cdc-acm: add device-id for quirky printer
+ - usb: renesas_usbhs: fix usbhsc_resume() for !USBHSF_RUNTIME_PWCTRL
+ - usb: renesas_usbhs: gadget: disable all eps when the driver stops
+ - md: don't use flush_signals in userspace processes
+ - x86/xen: allow userspace access during hypercalls
+ - cx88: Fix regression in initial video standard setting
+ - Raid5 should update rdev->sectors after reshape
+ - s390/syscalls: Fix out of bounds arguments access
+ - drm/amd/amdgpu: Return error if initiating read out of range on vram
+ - drm/radeon/ci: disable mclk switching for high refresh rates (v2)
+ - drm/radeon: Fix eDP for single-display iMac10,1 (v2)
+ - ipmi: use rcu lock around call to intf->handlers->sender()
+ - ipmi:ssif: Add missing unlock in error branch
+ - f2fs: Don't clear SGID when inheriting ACLs
+ - vfio: Fix group release deadlock
+ - vfio: New external user group/file match
+ - ftrace: Fix uninitialized variable in match_records()
+ - MIPS: Fix mips_atomic_set() retry condition
+ - MIPS: Fix mips_atomic_set() with EVA
+ - MIPS: Negate error syscall return in trace
+ - x86/acpi: Prevent out of bound access caused by broken ACPI tables
+ - x86/ioapic: Pass the correct data to unmask_ioapic_irq()
+ - MIPS: Fix MIPS I ISA /proc/cpuinfo reporting
+ - MIPS: Save static registers before sysmips
+ - MIPS: Actually decode JALX in `__compute_return_epc_for_insn'
+ - MIPS: Fix unaligned PC interpretation in `compute_return_epc'
+ - MIPS: math-emu: Prevent wrong ISA mode instruction emulation
+ - MIPS: Send SIGILL for BPOSGE32 in `__compute_return_epc_for_insn'
+ - MIPS: Rename `sigill_r6' to `sigill_r2r6' in `__compute_return_epc_for_insn'
+ - MIPS: Send SIGILL for linked branches in `__compute_return_epc_for_insn'
+ - MIPS: Fix a typo: s/preset/present/ in r2-to-r6 emulation error message
+ - Input: i8042 - fix crash at boot time
+ - NFS: only invalidate dentrys that are clearly invalid.
+ - udf: Fix deadlock between writeback and udf_setsize()
+ - target: Fix COMPARE_AND_WRITE caw_sem leak during se_cmd quiesce
+ - perf annotate: Fix broken arrow at row 0 connecting jmp instruction to its
+ target
+ - Revert "perf/core: Drop kernel samples even though :u is specified"
+ - staging: rtl8188eu: add TL-WN722N v2 support
+ - ceph: fix race in concurrent readdir
+ - RDMA/core: Initialize port_num in qp_attr
+ - drm/mst: Fix error handling during MST sideband message reception
+ - drm/mst: Avoid dereferencing a NULL mstb in drm_dp_mst_handle_up_req()
+ - drm/mst: Avoid processing partially received up/down message transactions
+ - of: device: Export of_device_{get_modalias, uvent_modalias} to modules
+ - spmi: Include OF based modalias in device uevent
+ - tracing: Fix kmemleak in instance_rmdir
+ - alarmtimer: don't rate limit one-shot timers
+ - Linux 4.4.79
+ * Xenial update to 4.4.78 stable release (LP: #1705707)
+ - net_sched: fix error recovery at qdisc creation
+ - net: sched: Fix one possible panic when no destroy callback
+ - net/phy: micrel: configure intterupts after autoneg workaround
+ - ipv6: avoid unregistering inet6_dev for loopback
+ - net: dp83640: Avoid NULL pointer dereference.
+ - tcp: reset sk_rx_dst in tcp_disconnect()
+ - net: prevent sign extension in dev_get_stats()
+ - bpf: prevent leaking pointer via xadd on unpriviledged
+ - net: handle NAPI_GRO_FREE_STOLEN_HEAD case also in napi_frags_finish()
+ - ipv6: dad: don't remove dynamic addresses if link is down
+ - net: ipv6: Compare lwstate in detecting duplicate nexthops
+ - vrf: fix bug_on triggered by rx when destroying a vrf
+ - rds: tcp: use sock_create_lite() to create the accept socket
+ - brcmfmac: fix possible buffer overflow in brcmf_cfg80211_mgmt_tx()
+ - cfg80211: Define nla_policy for NL80211_ATTR_LOCAL_MESH_POWER_MODE
+ - cfg80211: Validate frequencies nested in NL80211_ATTR_SCAN_FREQUENCIES
+ - cfg80211: Check if PMKID attribute is of expected size
+ - irqchip/gic-v3: Fix out-of-bound access in gic_set_affinity
+ - parisc: Report SIGSEGV instead of SIGBUS when running out of stack
+ - parisc: use compat_sys_keyctl()
+ - parisc: DMA API: return error instead of BUG_ON for dma ops on non dma devs
+ - parisc/mm: Ensure IRQs are off in switch_mm()
+ - tools/lib/lockdep: Reduce MAX_LOCK_DEPTH to avoid overflowing lock_chain/:
+ Depth
+ - kernel/extable.c: mark core_kernel_text notrace
+ - mm/list_lru.c: fix list_lru_count_node() to be race free
+ - fs/dcache.c: fix spin lockup issue on nlru->lock
+ - checkpatch: silence perl 5.26.0 unescaped left brace warnings
+ - binfmt_elf: use ELF_ET_DYN_BASE only for PIE
+ - arm: move ELF_ET_DYN_BASE to 4MB
+ - arm64: move ELF_ET_DYN_BASE to 4GB / 4MB
+ - powerpc: move ELF_ET_DYN_BASE to 4GB / 4MB
+ - s390: reduce ELF_ET_DYN_BASE
+ - exec: Limit arg stack to at most 75% of _STK_LIM
+ - vt: fix unchecked __put_user() in tioclinux ioctls
+ - mnt: In umount propagation reparent in a separate pass
+ - mnt: In propgate_umount handle visiting mounts in any order
+ - mnt: Make propagate_umount less slow for overlapping mount propagation trees
+ - selftests/capabilities: Fix the test_execve test
+ - tpm: Get rid of chip->pdev
+ - tpm: Provide strong locking for device removal
+ - Add "shutdown" to "struct class".
+ - tpm: Issue a TPM2_Shutdown for TPM2 devices.
+ - mm: fix overflow check in expand_upwards()
+ - crypto: talitos - Extend max key length for SHA384/512-HMAC and AEAD
+ - crypto: atmel - only treat EBUSY as transient if backlog
+ - crypto: sha1-ssse3 - Disable avx2
+ - crypto: caam - fix signals handling
+ - sched/topology: Fix overlapping sched_group_mask
+ - sched/topology: Optimize build_group_mask()
+ - PM / wakeirq: Convert to SRCU
+ - PM / QoS: return -EINVAL for bogus strings
+ - tracing: Use SOFTIRQ_OFFSET for softirq dectection for more accurate results
+ - KVM: x86: disable MPX if host did not enable MPX XSAVE features
+ - kvm: vmx: Do not disable intercepts for BNDCFGS
+ - kvm: x86: Guest BNDCFGS requires guest MPX support
+ - kvm: vmx: Check value written to IA32_BNDCFGS
+ - kvm: vmx: allow host to access guest MSR_IA32_BNDCFGS
+ - Linux 4.4.78
+ * Xenial update to 4.4.77 stable release (LP: #1705238)
+ - fs: add a VALID_OPEN_FLAGS
+ - fs: completely ignore unknown open flags
+ - driver core: platform: fix race condition with driver_override
+ - bgmac: reset & enable Ethernet core before using it
+ - mm: fix classzone_idx underflow in shrink_zones()
+ - tracing/kprobes: Allow to create probe with a module name starting with a
+ digit
+ - usb: dwc3: replace %p with %pK
+ - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick
+ - Add USB quirk for HVR-950q to avoid intermittent device resets
+ - usb: usbip: set buffer pointers to NULL after free
+ - usb: Fix typo in the definition of Endpoint[out]Request
+ - mac80211_hwsim: Replace bogus hrtimer clockid
+ - sysctl: don't print negative flag for proc_douintvec
+ - sysctl: report EINVAL if value is larger than UINT_MAX for proc_douintvec
+ - pinctrl: sh-pfc: r8a7791: Fix SCIF2 pinmux data
+ - pinctrl: meson: meson8b: fix the NAND DQS pins
+ - pinctrl: sunxi: Fix SPDIF function name for A83T
+ - pinctrl: mxs: atomically switch mux and drive strength config
+ - pinctrl: sh-pfc: Update info pointer after SoC-specific init
+ - USB: serial: option: add two Longcheer device ids
+ - USB: serial: qcserial: new Sierra Wireless EM7305 device ID
+ - gfs2: Fix glock rhashtable rcu bug
+ - x86/tools: Fix gcc-7 warning in relocs.c
+ - x86/uaccess: Optimize copy_user_enhanced_fast_string() for short strings
+ - ath10k: override CE5 config for QCA9377
+ - KEYS: Fix an error code in request_master_key()
+ - RDMA/uverbs: Check port number supplied by user verbs cmds
+ - mqueue: fix a use-after-free in sys_mq_notify()
+ - tools include: Add a __fallthrough statement
+ - tools string: Use __fallthrough in perf_atoll()
+ - tools strfilter: Use __fallthrough
+ - perf top: Use __fallthrough
+ - perf intel-pt: Use __fallthrough
+ - perf thread_map: Correctly size buffer used with dirent->dt_name
+ - perf scripting perl: Fix compile error with some perl5 versions
+ - perf tests: Avoid possible truncation with dirent->d_name + snprintf
+ - perf bench numa: Avoid possible truncation when using snprintf()
+ - perf tools: Use readdir() instead of deprecated readdir_r()
+ - perf thread_map: Use readdir() instead of deprecated readdir_r()
+ - perf script: Use readdir() instead of deprecated readdir_r()
+ - perf tools: Remove duplicate const qualifier
+ - perf annotate browser: Fix behaviour of Shift-Tab with nothing focussed
+ - perf pmu: Fix misleadingly indented assignment (whitespace)
+ - perf dwarf: Guard !x86_64 definitions under #ifdef else clause
+ - perf trace: Do not process PERF_RECORD_LOST twice
+ - perf tests: Remove wrong semicolon in while loop in CQM test
+ - perf tools: Use readdir() instead of deprecated readdir_r() again
+ - md: fix incorrect use of lexx_to_cpu in does_sb_need_changing
+ - md: fix super_offset endianness in super_1_rdev_size_change
+ - tcp: fix tcp_mark_head_lost to check skb len before fragmenting
+ - staging: vt6556: vnt_start Fix missing call to vnt_key_init_table.
+ - staging: comedi: fix clean-up of comedi_class in comedi_init()
+ - ext4: check return value of kstrtoull correctly in reserved_clusters_store
+ - x86/mm/pat: Don't report PAT on CPUs that don't support it
+ - saa7134: fix warm Medion 7134 EEPROM read
+ - Linux 4.4.77
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Mon, 14 Aug 2017 13:00:49 +0200
+
+linux-snapdragon (4.4.0-1072.77) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1072.77 -proposed tracker (LP: #1709815)
+
+ [ Ubuntu: 4.4.0-92.115 ]
+
+ * linux: 4.4.0-92.115 -proposed tracker (LP: #1709812)
+ * Creating conntrack entry failure with kernel 4.4.0-89 (LP: #1709032)
+ - Revert "netfilter: synproxy: fix conntrackd interaction"
+
+ -- Kleber Sacilotto de Souza <kleber.souza@canonical.com> Thu, 10 Aug 2017 12:34:25 +0200
+
+linux-snapdragon (4.4.0-1071.76) xenial; urgency=low
+
+ [ Ubuntu: 4.4.0-91.114 ]
+
+ * CVE-2017-1000112
+ - ipv4: Should use consistent conditional judgement for ip fragment in
+ __ip_append_data and ip_finish_output
+ - ipv6: Don't use ufo handling on later transformed packets
+ - udp: avoid ufo handling on IP payload compression packets
+ - ipv6: Should use consistent conditional judgement for ip6 fragment between
+ __ip6_append_data and ip6_finish_output
+ - net: account for current skb length when deciding about UFO
+ - udp: consistently apply ufo or fragmentation
+ * CVE-2017-1000111
+ - net-packet: fix race in packet_set_ring on PACKET_RESERVE
+
+ -- Stefan Bader <stefan.bader@canonical.com> Tue, 08 Aug 2017 15:27:03 +0200
+
+linux-snapdragon (4.4.0-1069.74) xenial; urgency=low
+
+ [ Ubuntu: 4.4.0-89.112 ]
+
+ * CVE-2017-7533
+ - dentry name snapshots
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Tue, 01 Aug 2017 13:33:17 -0300
+
+linux-snapdragon (4.4.0-1068.73) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1068.73 -proposed tracker (LP: #1705274)
+
+ * Snapcraft.yaml update (LP: #1700576)
+ - snapcraft.yaml: various improvements
+
+ [ Ubuntu: 4.4.0-88.111 ]
+
+ * linux: 4.4.0-88.111 -proposed tracker (LP: #1705270)
+ * [Xenial] nvme: Quirks for PM1725 controllers (LP: #1704435)
+ - nvme: Quirks for PM1725 controllers
+ * Upgrade Redpine WLAN/BT driver to ver. 1.2 (production release)
+ (LP: #1697829)
+ - SAUCE: Redpine: Upgrade to ver. 1.2 production release
+ * ubuntu/rsi driver has several issues as picked up by static analysis
+ (LP: #1694733)
+ - SAUCE: Redpine: Upgrade to ver. 1.2 production release
+ * Redpine vendor driver - Switching to AP mode causes kernel panic
+ (LP: #1700941)
+ - SAUCE: Redpine: Upgrade to ver. 1.2 production release
+ * CVE-2017-10810
+ - drm/virtio: don't leak bo on drm_gem_object_init failure
+ * Ath10k to read different board data file if specify in SMBIOS (LP: #1666742)
+ - ath10k: search SMBIOS for OEM board file extension
+ * make snap-pkg support (LP: #1700747)
+ - SAUCE: make snap-pkg support
+ * ISST-LTE: Briggs:Stratton:UbuntuKVM: ics_opal_set_affinity on host kernel
+ log using Intel X710 (i40e driver) (LP: #1703663)
+ - i40e: use valid online CPU on q_vector initialization
+ * Update snapcraft.yaml (LP: #1700480)
+ - snapcraft.yaml: various improvements
+ * Xenial update to 4.4.76 stable release (LP: #1702863)
+ - ipv6: release dst on error in ip6_dst_lookup_tail
+ - net: don't call strlen on non-terminated string in dev_set_alias()
+ - decnet: dn_rtmsg: Improve input length sanitization in
+ dnrmg_receive_user_skb
+ - net: Zero ifla_vf_info in rtnl_fill_vfinfo()
+ - af_unix: Add sockaddr length checks before accessing sa_family in bind and
+ connect handlers
+ - Fix an intermittent pr_emerg warning about lo becoming free.
+ - net: caif: Fix a sleep-in-atomic bug in cfpkt_create_pfx
+ - igmp: acquire pmc lock for ip_mc_clear_src()
+ - igmp: add a missing spin_lock_init()
+ - ipv6: fix calling in6_ifa_hold incorrectly for dad work
+ - net/mlx5: Wait for FW readiness before initializing command interface
+ - decnet: always not take dst->__refcnt when inserting dst into hash table
+ - net: 8021q: Fix one possible panic caused by BUG_ON in free_netdev
+ - sfc: provide dummy definitions of vswitch functions
+ - ipv6: Do not leak throw route references
+ - rtnetlink: add IFLA_GROUP to ifla_policy
+ - netfilter: xt_TCPMSS: add more sanity tests on tcph->doff
+ - netfilter: synproxy: fix conntrackd interaction
+ - NFSv4: fix a reference leak caused WARNING messages
+ - drm/ast: Handle configuration without P2A bridge
+ - mm, swap_cgroup: reschedule when neeed in swap_cgroup_swapoff()
+ - MIPS: Avoid accidental raw backtrace
+ - MIPS: pm-cps: Drop manual cache-line alignment of ready_count
+ - MIPS: Fix IRQ tracing & lockdep when rescheduling
+ - ALSA: hda - Fix endless loop of codec configure
+ - ALSA: hda - set input_path bitmap to zero after moving it to new place
+ - drm/vmwgfx: Free hash table allocated by cmdbuf managed res mgr
+ - usb: gadget: f_fs: Fix possibe deadlock
+ - sysctl: enable strict writes
+ - mm: numa: avoid waiting on freed migrated pages
+ - KVM: x86: fix fixing of hypercalls
+ - scsi: sd: Fix wrong DPOFUA disable in sd_read_cache_type
+ - scsi: lpfc: Set elsiocb contexts to NULL after freeing it
+ - qla2xxx: Fix erroneous invalid handle message
+ - ARM: dts: BCM5301X: Correct GIC_PPI interrupt flags
+ - net: mvneta: Fix for_each_present_cpu usage
+ - MIPS: ath79: fix regression in PCI window initialization
+ - net: korina: Fix NAPI versus resources freeing
+ - MIPS: ralink: MT7688 pinmux fixes
+ - MIPS: ralink: fix USB frequency scaling
+ - MIPS: ralink: Fix invalid assignment of SoC type
+ - MIPS: ralink: fix MT7628 pinmux typos
+ - MIPS: ralink: fix MT7628 wled_an pinmux gpio
+ - mtd: bcm47xxpart: limit scanned flash area on BCM47XX (MIPS) only
+ - bgmac: fix a missing check for build_skb
+ - mtd: bcm47xxpart: don't fail because of bit-flips
+ - bgmac: Fix reversed test of build_skb() return value.
+ - net: bgmac: Fix SOF bit checking
+ - net: bgmac: Start transmit queue in bgmac_open
+ - net: bgmac: Remove superflous netif_carrier_on()
+ - powerpc/eeh: Enable IO path on permanent error
+ - gianfar: Do not reuse pages from emergency reserve
+ - Btrfs: fix truncate down when no_holes feature is enabled
+ - virtio_console: fix a crash in config_work_handler
+ - swiotlb-xen: update dev_addr after swapping pages
+ - xen-netfront: Fix Rx stall during network stress and OOM
+ - scsi: virtio_scsi: Reject commands when virtqueue is broken
+ - platform/x86: ideapad-laptop: handle ACPI event 1
+ - amd-xgbe: Check xgbe_init() return code
+ - net: dsa: Check return value of phy_connect_direct()
+ - drm/amdgpu: check ring being ready before using
+ - vfio/spapr: fail tce_iommu_attach_group() when iommu_data is null
+ - virtio_net: fix PAGE_SIZE > 64k
+ - vxlan: do not age static remote mac entries
+ - ibmveth: Add a proper check for the availability of the checksum features
+ - kernel/panic.c: add missing \n
+ - HID: i2c-hid: Add sleep between POWER ON and RESET
+ - scsi: lpfc: avoid double free of resource identifiers
+ - spi: davinci: use dma_mapping_error()
+ - mac80211: initialize SMPS field in HT capabilities
+ - x86/mpx: Use compatible types in comparison to fix sparse error
+ - coredump: Ensure proper size of sparse core files
+ - swiotlb: ensure that page-sized mappings are page-aligned
+ - s390/ctl_reg: make __ctl_load a full memory barrier
+ - be2net: fix status check in be_cmd_pmac_add()
+ - perf probe: Fix to show correct locations for events on modules
+ - net/mlx4_core: Eliminate warning messages for SRQ_LIMIT under SRIOV
+ - sctp: check af before verify address in sctp_addr_id2transport
+ - ravb: Fix use-after-free on `ifconfig eth0 down`
+ - jump label: fix passing kbuild_cflags when checking for asm goto support
+ - xfrm: fix stack access out of bounds with CONFIG_XFRM_SUB_POLICY
+ - xfrm: NULL dereference on allocation failure
+ - xfrm: Oops on error in pfkey_msg2xfrm_state()
+ - watchdog: bcm281xx: Fix use of uninitialized spinlock.
+ - sched/loadavg: Avoid loadavg spikes caused by delayed NO_HZ accounting
+ - ARM64/ACPI: Fix BAD_MADT_GICC_ENTRY() macro implementation
+ - ARM: 8685/1: ensure memblock-limit is pmd-aligned
+ - x86/mpx: Correctly report do_mpx_bt_fault() failures to user-space
+ - x86/mm: Fix flush_tlb_page() on Xen
+ - ocfs2: o2hb: revert hb threshold to keep compatible
+ - iommu/vt-d: Don't over-free page table directories
+ - iommu: Handle default domain attach failure
+ - iommu/amd: Fix incorrect error handling in amd_iommu_bind_pasid()
+ - cpufreq: s3c2416: double free on driver init error path
+ - KVM: x86: fix emulation of RSM and IRET instructions
+ - KVM: x86/vPMU: fix undefined shift in intel_pmu_refresh()
+ - KVM: x86: zero base3 of unusable segments
+ - KVM: nVMX: Fix exception injection
+ - Linux 4.4.76
+ * Xenial update to 4.4.75 stable release (LP: #1702118)
+ - fs/exec.c: account for argv/envp pointers
+ - autofs: sanity check status reported with AUTOFS_DEV_IOCTL_FAIL
+ - lib/cmdline.c: fix get_options() overflow while parsing ranges
+ - KVM: PPC: Book3S HV: Preserve userspace HTM state properly
+ - CIFS: Improve readdir verbosity
+ - HID: Add quirk for Dell PIXART OEM mouse
+ - signal: Only reschedule timers on signals timers have sent
+ - powerpc/kprobes: Pause function_graph tracing during jprobes handling
+ - Input: i8042 - add Fujitsu Lifebook AH544 to notimeout list
+ - time: Fix clock->read(clock) race around clocksource changes
+ - target: Fix kref->refcount underflow in transport_cmd_finish_abort
+ - iscsi-target: Reject immediate data underflow larger than SCSI transfer
+ length
+ - drm/radeon: add a PX quirk for another K53TK variant
+ - drm/radeon: add a quirk for Toshiba Satellite L20-183
+ - drm/amdgpu/atom: fix ps allocation size for EnableDispPowerGating
+ - drm/amdgpu: adjust default display clock
+ - USB: usbip: fix nonconforming hub descriptor
+ - rxrpc: Fix several cases where a padded len isn't checked in ticket decode
+ - of: Add check to of_scan_flat_dt() before accessing initial_boot_params
+ - mtd: spi-nor: fix spansion quad enable
+ - powerpc/slb: Force a full SLB flush when we insert for a bad EA
+ - usb: gadget: f_fs: avoid out of bounds access on comp_desc
+ - net: phy: Initialize mdio clock at probe function
+ - net: phy: fix marvell phy status reading
+ - Linux 4.4.75
+ * Xenial update to 4.4.74 stable release (LP: #1702104)
+ - configfs: Fix race between create_link and configfs_rmdir
+ - can: gs_usb: fix memory leak in gs_cmd_reset()
+ - cpufreq: conservative: Allow down_threshold to take values from 1 to 10
+ - vb2: Fix an off by one error in 'vb2_plane_vaddr'
+ - mac80211: don't look at the PM bit of BAR frames
+ - mac80211/wpa: use constant time memory comparison for MACs
+ - mac80211: fix CSA in IBSS mode
+ - mac80211: fix IBSS presp allocation size
+ - serial: efm32: Fix parity management in 'efm32_uart_console_get_options()'
+ - x86/mm/32: Set the '__vmalloc_start_set' flag in initmem_init()
+ - mfd: omap-usb-tll: Fix inverted bit use for USB TLL mode
+ - staging: rtl8188eu: prevent an underflow in rtw_check_beacon_data()
+ - iio: proximity: as3935: recalibrate RCO after resume
+ - USB: hub: fix SS max number of ports
+ - usb: core: fix potential memory leak in error path during hcd creation
+ - pvrusb2: reduce stack usage pvr2_eeprom_analyze()
+ - USB: gadget: dummy_hcd: fix hub-descriptor removable fields
+ - usb: r8a66597-hcd: select a different endpoint on timeout
+ - usb: r8a66597-hcd: decrease timeout
+ - drivers/misc/c2port/c2port-duramar2150.c: checking for NULL instead of
+ IS_ERR()
+ - usb: xhci: ASMedia ASM1042A chipset need shorts TX quirk
+ - USB: gadgetfs, dummy-hcd, net2280: fix locking for callbacks
+ - mm/memory-failure.c: use compound_head() flags for huge pages
+ - swap: cond_resched in swap_cgroup_prepare()
+ - genirq: Release resources in __setup_irq() error path
+ - alarmtimer: Prevent overflow of relative timers
+ - usb: dwc3: exynos fix axius clock error path to do cleanup
+ - MIPS: Fix bnezc/jialc return address calculation
+ - alarmtimer: Rate limit periodic intervals
+ - Linux 4.4.74
+ * Side Button (Display Toggle) fails on Dell AIO systems (LP: #1702541)
+ - dell-wmi: Add a WMI event code for display on/off
+ * Intel i40e PF reset under load (LP: #1700834)
+ - i40e/i40evf: Limit TSO to 7 descriptors for payload instead of 8 per packet
+ * update ENA driver to 1.2.0k from net-next (LP: #1701575)
+ - net: ena: remove superfluous check in ena_remove()
+ - net: ena: fix rare uncompleted admin command false alarm
+ - net: ena: add missing return when ena_com_get_io_handlers() fails
+ - net: ena: fix race condition between submit and completion admin command
+ - net: ena: add missing unmap bars on device removal
+ - net: ena: fix theoretical Rx hang on low memory systems
+ - net: ena: disable admin msix while working in polling mode
+ - net: ena: bug fix in lost tx packets detection mechanism
+ - net: ena: update ena driver to version 1.1.7
+ - net: ena: change return value for unsupported features unsupported return
+ value
+ - net: ena: add hardware hints capability to the driver
+ - net: ena: change sizeof() argument to be the type pointer
+ - net: ena: add reset reason for each device FLR
+ - net: ena: add support for out of order rx buffers refill
+ - net: ena: use napi_schedule_irqoff when possible
+ - net: ena: separate skb allocation to dedicated function
+ - net: ena: use lower_32_bits()/upper_32_bits() to split dma address
+ - net: ena: update driver's rx drop statistics
+ - net: ena: update ena driver to version 1.2.0
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Tue, 25 Jul 2017 09:39:14 -0300
+
+linux-snapdragon (4.4.0-1067.72) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1067.72 -proposed tracker (LP: #1705566)
- CHANGELOG: Do not edit directly. Autogenerated at release.
- CHANGELOG: Use the printchanges target to see the curent changes.
- CHANGELOG: Use the insertchanges target to create the final log.
+ * sock_recvmsg has dropped size argument (LP: #1701697)
+ - Packaging: Breaks yet another iscsitarget-dkms version
+
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Thu, 20 Jul 2017 17:27:10 -0300
+
+linux-snapdragon (4.4.0-1066.71) xenial; urgency=low
+
+ * linux-snapdragon: 4.4.0-1066.71 -proposed tracker (LP: #1704989)
+
+ [ Ubuntu: 4.4.0-87.110 ]
+
+ * linux: 4.4.0-87.110 -proposed tracker (LP: #1704982)
+ * CVE-2017-1000364
+ - mm/mmap.c: do not blow on PROT_NONE MAP_FIXED holes in the stack
+ - mm/mmap.c: expand_downwards: don't require the gap if !vm_prev
+ * CIFS causes oops (LP: #1704857)
+ - CIFS: Fix null pointer deref during read resp processing
+ - CIFS: Fix some return values in case of error in 'crypt_message'
- -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Tue, 18 Jul 2017 09:33:33 -0300
+ -- Thadeu Lima de Souza Cascardo <cascardo@canonical.com> Tue, 18 Jul 2017 10:51:11 -0300
linux-snapdragon (4.4.0-1065.70) xenial; urgency=low