]> git.proxmox.com Git - mirror_ubuntu-bionic-kernel.git/blob - debian.master/changelog
UBUNTU: Start new release
[mirror_ubuntu-bionic-kernel.git] / debian.master / changelog
1 linux (4.15.0-1.2) UNRELEASED; urgency=low
2
3 CHANGELOG: Do not edit directly. Autogenerated at release.
4 CHANGELOG: Use the printchanges target to see the curent changes.
5 CHANGELOG: Use the insertchanges target to create the final log.
6
7 -- Seth Forshee <seth.forshee@canonical.com> Fri, 08 Dec 2017 15:49:09 -0600
8
9 linux (4.15.0-0.1) bionic; urgency=low
10
11 * Miscellaneous Ubuntu changes
12 - ubuntu: vbox -- update to 5.2.2-dfsg-2
13 - ubuntu: vbox: build fixes for 4.15
14 - disable hio build
15 - [Config] Update kernel lockdown options to fix build errors
16 - Disable zfs build
17 - SAUCE: Import aufs driver
18 - [Config] Enable AUFS config options
19
20 [ Upstream Kernel Changes ]
21
22 * Rebase to v4.15-rc2
23
24 -- Seth Forshee <seth.forshee@canonical.com> Fri, 08 Dec 2017 13:55:42 -0600
25
26 linux (4.14.0-11.13) bionic; urgency=low
27
28 * linux: 4.14.0-11.13 -proposed tracker (LP: #1736168)
29
30 * CVE-2017-1000405
31 - mm, thp: Do not make page table dirty unconditionally in touch_p[mu]d()
32
33 * linux 4.14.0-7.9 ADT test failure with linux 4.14.0-7.9 (LP: #1732463)
34 - SAUCE: mm: disable vma based swap readahead by default
35 - SAUCE: mm: fix memory hotplug in ZONE_HIGHMEM
36
37 * Bionic update to v4.14.3 stable release (LP: #1735843)
38 - s390: fix transactional execution control register handling
39 - s390/noexec: execute kexec datamover without DAT
40 - s390/runtime instrumention: fix possible memory corruption
41 - s390/guarded storage: fix possible memory corruption
42 - s390/disassembler: add missing end marker for e7 table
43 - s390/disassembler: increase show_code buffer size
44 - ACPI / PM: Fix acpi_pm_notifier_lock vs flush_workqueue() deadlock
45 - ACPI / EC: Fix regression related to triggering source of EC event handling
46 - cpufreq: schedutil: Reset cached_raw_freq when not in sync with next_freq
47 - serdev: fix registration of second slave
48 - sched: Make resched_cpu() unconditional
49 - lib/mpi: call cond_resched() from mpi_powm() loop
50 - x86/boot: Fix boot failure when SMP MP-table is based at 0
51 - x86/decoder: Add new TEST instruction pattern
52 - x86/entry/64: Fix entry_SYSCALL_64_after_hwframe() IRQ tracing
53 - x86/entry/64: Add missing irqflags tracing to native_load_gs_index()
54 - perf/x86/intel: Hide TSX events when RTM is not supported
55 - arm64: Implement arch-specific pte_access_permitted()
56 - ARM: 8722/1: mm: make STRICT_KERNEL_RWX effective for LPAE
57 - ARM: 8721/1: mm: dump: check hardware RO bit for LPAE
58 - uapi: fix linux/tls.h userspace compilation error
59 - uapi: fix linux/rxrpc.h userspace compilation errors
60 - MIPS: cmpxchg64() and HAVE_VIRT_CPU_ACCOUNTING_GEN don't work for 32-bit SMP
61 - MIPS: ralink: Fix MT7628 pinmux
62 - MIPS: ralink: Fix typo in mt7628 pinmux function
63 - net: mvneta: fix handling of the Tx descriptor counter
64 - nbd: wait uninterruptible for the dead timeout
65 - nbd: don't start req until after the dead connection logic
66 - PM / OPP: Add missing of_node_put(np)
67 - PCI/ASPM: Account for downstream device's Port Common_Mode_Restore_Time
68 - PCI/ASPM: Use correct capability pointer to program LTR_L1.2_THRESHOLD
69 - PCI: hv: Use effective affinity mask
70 - PCI: Set Cavium ACS capability quirk flags to assert RR/CR/SV/UF
71 - PCI: Apply Cavium ThunderX ACS quirk to more Root Ports
72 - ALSA: hda: Add Raven PCI ID
73 - dm integrity: allow unaligned bv_offset
74 - dm cache: fix race condition in the writeback mode overwrite_bio
75 optimisation
76 - dm crypt: allow unaligned bv_offset
77 - dm zoned: ignore last smaller runt zone
78 - dm mpath: remove annoying message of 'blk_get_request() returned -11'
79 - dm bufio: fix integer overflow when limiting maximum cache size
80 - ovl: Put upperdentry if ovl_check_origin() fails
81 - dm: allocate struct mapped_device with kvzalloc
82 - sched/rt: Simplify the IPI based RT balancing logic
83 - MIPS: pci: Remove KERN_WARN instance inside the mt7620 driver
84 - dm: fix race between dm_get_from_kobject() and __dm_destroy()
85 - dm: discard support requires all targets in a table support discards
86 - MIPS: Fix odd fp register warnings with MIPS64r2
87 - MIPS: Fix MIPS64 FP save/restore on 32-bit kernels
88 - MIPS: dts: remove bogus bcm96358nb4ser.dtb from dtb-y entry
89 - MIPS: Fix an n32 core file generation regset support regression
90 - MIPS: BCM47XX: Fix LED inversion for WRT54GSv1
91 - MIPS: math-emu: Fix final emulation phase for certain instructions
92 - rt2x00usb: mark device removed when get ENOENT usb error
93 - mm/z3fold.c: use kref to prevent page free/compact race
94 - autofs: don't fail mount for transient error
95 - nilfs2: fix race condition that causes file system corruption
96 - fscrypt: lock mutex before checking for bounce page pool
97 - eCryptfs: use after free in ecryptfs_release_messaging()
98 - libceph: don't WARN() if user tries to add invalid key
99 - bcache: check ca->alloc_thread initialized before wake up it
100 - fs: guard_bio_eod() needs to consider partitions
101 - fanotify: fix fsnotify_prepare_user_wait() failure
102 - isofs: fix timestamps beyond 2027
103 - btrfs: change how we decide to commit transactions during flushing
104 - f2fs: expose some sectors to user in inline data or dentry case
105 - NFS: Fix typo in nomigration mount option
106 - NFS: Revert "NFS: Move the flock open mode check into nfs_flock()"
107 - nfs: Fix ugly referral attributes
108 - NFS: Avoid RCU usage in tracepoints
109 - NFS: revalidate "." etc correctly on "open".
110 - nfsd: deal with revoked delegations appropriately
111 - rtlwifi: rtl8192ee: Fix memory leak when loading firmware
112 - rtlwifi: fix uninitialized rtlhal->last_suspend_sec time
113 - iwlwifi: fix firmware names for 9000 and A000 series hw
114 - md: fix deadlock error in recent patch.
115 - md: don't check MD_SB_CHANGE_CLEAN in md_allow_write
116 - Bluetooth: btqcomsmd: Add support for BD address setup
117 - md/bitmap: revert a patch
118 - fsnotify: clean up fsnotify_prepare/finish_user_wait()
119 - fsnotify: pin both inode and vfsmount mark
120 - fsnotify: fix pinning group in fsnotify_prepare_user_wait()
121 - ata: fixes kernel crash while tracing ata_eh_link_autopsy event
122 - ext4: fix interaction between i_size, fallocate, and delalloc after a crash
123 - ext4: prevent data corruption with inline data + DAX
124 - ext4: prevent data corruption with journaling + DAX
125 - ALSA: pcm: update tstamp only if audio_tstamp changed
126 - ALSA: usb-audio: Add sanity checks to FE parser
127 - ALSA: usb-audio: Fix potential out-of-bound access at parsing SU
128 - ALSA: usb-audio: Add sanity checks in v2 clock parsers
129 - ALSA: timer: Remove kernel warning at compat ioctl error paths
130 - ALSA: hda/realtek - Fix ALC275 no sound issue
131 - ALSA: hda: Fix too short HDMI/DP chmap reporting
132 - ALSA: hda - Fix yet remaining issue with vmaster 0dB initialization
133 - ALSA: hda/realtek - Fix ALC700 family no sound issue
134 - ASoC: sun8i-codec: Invert Master / Slave condition
135 - ASoC: sun8i-codec: Fix left and right channels inversion
136 - ASoC: sun8i-codec: Set the BCLK divider
137 - mfd: lpc_ich: Avoton/Rangeley uses SPI_BYT method
138 - fix a page leak in vhost_scsi_iov_to_sgl() error recovery
139 - 9p: Fix missing commas in mount options
140 - fs/9p: Compare qid.path in v9fs_test_inode
141 - net/9p: Switch to wait_event_killable()
142 - scsi: qla2xxx: Suppress a kernel complaint in qla_init_base_qpair()
143 - scsi: sd_zbc: Fix sd_zbc_read_zoned_characteristics()
144 - scsi: lpfc: fix pci hot plug crash in timer management routines
145 - scsi: lpfc: fix pci hot plug crash in list_add call
146 - scsi: lpfc: Fix crash receiving ELS while detaching driver
147 - scsi: lpfc: Fix FCP hba_wqidx assignment
148 - scsi: lpfc: Fix oops if nvmet_fc_register_targetport fails
149 - iscsi-target: Make TASK_REASSIGN use proper se_cmd->cmd_kref
150 - iscsi-target: Fix non-immediate TMR reference leak
151 - target: fix null pointer regression in core_tmr_drain_tmr_list
152 - target: fix buffer offset in core_scsi3_pri_read_full_status
153 - target: Fix QUEUE_FULL + SCSI task attribute handling
154 - target: Fix caw_sem leak in transport_generic_request_failure
155 - target: Fix quiese during transport_write_pending_qf endless loop
156 - target: Avoid early CMD_T_PRE_EXECUTE failures during ABORT_TASK
157 - mtd: Avoid probe failures when mtd->dbg.dfs_dir is invalid
158 - mtd: nand: Export nand_reset() symbol
159 - mtd: nand: atmel: Actually use the PM ops
160 - mtd: nand: omap2: Fix subpage write
161 - mtd: nand: Fix writing mtdoops to nand flash.
162 - mtd: nand: mtk: fix infinite ECC decode IRQ issue
163 - mailbox: bcm-flexrm-mailbox: Fix FlexRM ring flush sequence
164 - p54: don't unregister leds when they are not initialized
165 - block: Fix a race between blk_cleanup_queue() and timeout handling
166 - raid1: prevent freeze_array/wait_all_barriers deadlock
167 - genirq: Track whether the trigger type has been set
168 - irqchip/gic-v3: Fix ppi-partitions lookup
169 - lockd: double unregister of inetaddr notifiers
170 - KVM: PPC: Book3S HV: Don't call real-mode XICS hypercall handlers if not
171 enabled
172 - KVM: nVMX: set IDTR and GDTR limits when loading L1 host state
173 - KVM: SVM: obey guest PAT
174 - kvm: vmx: Reinstate support for CPUs without virtual NMI
175 - dax: fix PMD faults on zero-length files
176 - dax: fix general protection fault in dax_alloc_inode
177 - SUNRPC: Fix tracepoint storage issues with svc_recv and svc_rqst_status
178 - clk: ti: dra7-atl-clock: fix child-node lookups
179 - libnvdimm, dimm: clear 'locked' status on successful DIMM enable
180 - libnvdimm, pfn: make 'resource' attribute only readable by root
181 - libnvdimm, namespace: fix label initialization to use valid seq numbers
182 - libnvdimm, region : make 'resource' attribute only readable by root
183 - libnvdimm, namespace: make 'resource' attribute only readable by root
184 - svcrdma: Preserve CB send buffer across retransmits
185 - IB/srpt: Do not accept invalid initiator port names
186 - IB/cm: Fix memory corruption in handling CM request
187 - IB/hfi1: Fix incorrect available receive user context count
188 - IB/srp: Avoid that a cable pull can trigger a kernel crash
189 - IB/core: Avoid crash on pkey enforcement failed in received MADs
190 - IB/core: Only maintain real QPs in the security lists
191 - NFC: fix device-allocation error return
192 - spi-nor: intel-spi: Fix broken software sequencing codes
193 - i40e: Use smp_rmb rather than read_barrier_depends
194 - igb: Use smp_rmb rather than read_barrier_depends
195 - igbvf: Use smp_rmb rather than read_barrier_depends
196 - ixgbevf: Use smp_rmb rather than read_barrier_depends
197 - i40evf: Use smp_rmb rather than read_barrier_depends
198 - fm10k: Use smp_rmb rather than read_barrier_depends
199 - ixgbe: Fix skb list corruption on Power systems
200 - parisc: Fix validity check of pointer size argument in new CAS
201 implementation
202 - powerpc: Fix boot on BOOK3S_32 with CONFIG_STRICT_KERNEL_RWX
203 - powerpc/mm/radix: Fix crashes on Power9 DD1 with radix MMU and STRICT_RWX
204 - powerpc/perf/imc: Use cpu_to_node() not topology_physical_package_id()
205 - powerpc/signal: Properly handle return value from uprobe_deny_signal()
206 - powerpc/64s: Fix masking of SRR1 bits on instruction fault
207 - powerpc/64s/radix: Fix 128TB-512TB virtual address boundary case allocation
208 - powerpc/64s/hash: Fix 512T hint detection to use >= 128T
209 - powerpc/64s/hash: Fix 128TB-512TB virtual address boundary case allocation
210 - powerpc/64s/hash: Fix fork() with 512TB process address space
211 - powerpc/64s/hash: Allow MAP_FIXED allocations to cross 128TB boundary
212 - media: Don't do DMA on stack for firmware upload in the AS102 driver
213 - media: rc: check for integer overflow
214 - media: rc: nec decoder should not send both repeat and keycode
215 - cx231xx-cards: fix NULL-deref on missing association descriptor
216 - media: v4l2-ctrl: Fix flags field on Control events
217 - media: venus: fix wrong size on dma_free
218 - media: venus: venc: fix bytesused v4l2_plane field
219 - media: venus: reimplement decoder stop command
220 - ARM64: dts: meson-gxl: Add alternate ARM Trusted Firmware reserved memory
221 zone
222 - iwlwifi: fix wrong struct for a000 device
223 - iwlwifi: add a new a000 device
224 - iwlwifi: pcie: sort IDs for the 9000 series for easier comparisons
225 - iwlwifi: add new cards for a000 series
226 - iwlwifi: add new cards for 8265 series
227 - iwlwifi: add new cards for 8260 series
228 - iwlwifi: fix PCI IDs and configuration mapping for 9000 series
229 - iwlwifi: mvm: support version 7 of the SCAN_REQ_UMAC FW command
230 - e1000e: Fix error path in link detection
231 - e1000e: Fix return value test
232 - e1000e: Separate signaling for link check/link up
233 - e1000e: Avoid receiver overrun interrupt bursts
234 - e1000e: fix buffer overrun while the I219 is processing DMA transactions
235 - Linux 4.14.3
236
237 * Miscellaneous Ubuntu changes
238 - SAUCE: s390/topology: don't inline cpu_to_node
239 - SAUCE: (noup) Update spl to 0.7.3-1ubuntu1, zfs to 0.7.3-1ubuntu1
240
241 -- Seth Forshee <seth.forshee@canonical.com> Mon, 04 Dec 2017 09:08:07 -0600
242
243 linux (4.14.0-10.12) bionic; urgency=low
244
245 * linux: 4.14.0-10.12 -proposed tracker (LP: #1734901)
246
247 * Miscellaneous Ubuntu changes
248 - SAUCE: Enable the ACPI kernel debugger and acpidbg tool
249 - [Packaging] Include arch/arm64/kernel/ftrace-mod.o in headers package
250
251 -- Seth Forshee <seth.forshee@canonical.com> Tue, 28 Nov 2017 08:46:49 -0600
252
253 linux (4.14.0-9.11) bionic; urgency=low
254
255 * linux: 4.14.0-9.11 -proposed tracker (LP: #1734728)
256
257 * Miscellaneous Ubuntu changes
258 - Revert "UBUNTU: SAUCE: (noup) Update spl to 0.7.3-1ubuntu1, zfs to
259 0.7.3-1ubuntu1"
260
261 -- Seth Forshee <seth.forshee@canonical.com> Mon, 27 Nov 2017 12:44:48 -0600
262
263 linux (4.14.0-8.10) bionic; urgency=low
264
265 * linux: 4.14.0-8.10 -proposed tracker (LP: #1734695)
266
267 * Bionic update to v4.14.2 stable release (LP: #1734694)
268 - bio: ensure __bio_clone_fast copies bi_partno
269 - af_netlink: ensure that NLMSG_DONE never fails in dumps
270 - vxlan: fix the issue that neigh proxy blocks all icmpv6 packets
271 - net: cdc_ncm: GetNtbFormat endian fix
272 - fealnx: Fix building error on MIPS
273 - net/sctp: Always set scope_id in sctp_inet6_skb_msgname
274 - ima: do not update security.ima if appraisal status is not INTEGRITY_PASS
275 - serial: omap: Fix EFR write on RTS deassertion
276 - serial: 8250_fintek: Fix finding base_port with activated SuperIO
277 - tpm-dev-common: Reject too short writes
278 - rcu: Fix up pending cbs check in rcu_prepare_for_idle
279 - mm/pagewalk.c: report holes in hugetlb ranges
280 - ocfs2: fix cluster hang after a node dies
281 - ocfs2: should wait dio before inode lock in ocfs2_setattr()
282 - ipmi: fix unsigned long underflow
283 - mm/page_alloc.c: broken deferred calculation
284 - mm/page_ext.c: check if page_ext is not prepared
285 - coda: fix 'kernel memory exposure attempt' in fsync
286 - ipmi: Prefer ACPI system interfaces over SMBIOS ones
287 - Linux 4.14.2
288
289 * Bionic update to v4.14.1 stable release (LP: #1734693)
290 - EDAC, sb_edac: Don't create a second memory controller if HA1 is not present
291 - dmaengine: dmatest: warn user when dma test times out
292 - media: imon: Fix null-ptr-deref in imon_probe
293 - media: dib0700: fix invalid dvb_detach argument
294 - crypto: dh - Fix double free of ctx->p
295 - crypto: dh - Don't permit 'p' to be 0
296 - crypto: dh - Don't permit 'key' or 'g' size longer than 'p'
297 - crypto: brcm - Explicity ACK mailbox message
298 - USB: early: Use new USB product ID and strings for DbC device
299 - USB: usbfs: compute urb->actual_length for isochronous
300 - USB: Add delay-init quirk for Corsair K70 LUX keyboards
301 - usb: gadget: f_fs: Fix use-after-free in ffs_free_inst
302 - USB: serial: metro-usb: stop I/O after failed open
303 - USB: serial: Change DbC debug device binding ID
304 - USB: serial: qcserial: add pid/vid for Sierra Wireless EM7355 fw update
305 - USB: serial: garmin_gps: fix I/O after failed probe and remove
306 - USB: serial: garmin_gps: fix memory leak on probe errors
307 - selftests/x86/protection_keys: Fix syscall NR redefinition warnings
308 - x86/MCE/AMD: Always give panic severity for UC errors in kernel context
309 - platform/x86: peaq-wmi: Add DMI check before binding to the WMI interface
310 - platform/x86: peaq_wmi: Fix missing terminating entry for peaq_dmi_table
311 - HID: cp2112: add HIDRAW dependency
312 - HID: wacom: generic: Recognize WACOM_HID_WD_PEN as a type of pen collection
313 - rpmsg: glink: Add missing MODULE_LICENSE
314 - staging: wilc1000: Fix bssid buffer offset in Txq
315 - staging: sm750fb: Fix parameter mistake in poke32
316 - staging: ccree: fix 64 bit scatter/gather DMA ops
317 - staging: greybus: spilib: fix use-after-free after deregistration
318 - staging: rtl8188eu: Revert 4 commits breaking ARP
319 - spi: fix use-after-free at controller deregistration
320 - sparc32: Add cmpxchg64().
321 - sparc64: mmu_context: Add missing include files
322 - sparc64: Fix page table walk for PUD hugepages
323 - Linux 4.14.1
324
325 * Set PANIC_TIMEOUT=10 on Power Systems (LP: #1730660)
326 - [Config]: Set PANIC_TIMEOUT=10 on ppc64el
327
328 * enable CONFIG_SND_SOC_INTEL_BYT_CHT_NOCODEC_MACH easily confuse users
329 (LP: #1732627)
330 - [Config] CONFIG_SND_SOC_INTEL_BYT_CHT_NOCODEC_MACH=n
331
332 * Miscellaneous Ubuntu changes
333 - SAUCE: (noup) Update spl to 0.7.3-1ubuntu1, zfs to 0.7.3-1ubuntu1
334
335 -- Seth Forshee <seth.forshee@canonical.com> Mon, 27 Nov 2017 07:43:44 -0600
336
337 linux (4.14.0-7.9) bionic; urgency=low
338
339 * Miscellaneous Ubuntu changes
340 - SAUCE: apparmor: add base infastructure for socket mediation
341 - SAUCE: apparmor: af_unix mediation
342 - SAUCE: LSM stacking: procfs: add smack subdir to attrs
343 - SAUCE: LSM stacking: LSM: manage credential security blobs
344 - SAUCE: LSM stacking: LSM: Manage file security blobs
345 - SAUCE: LSM stacking: LSM: manage task security blobs
346 - SAUCE: LSM stacking: LSM: Infrastructure management of the remaining blobs
347 - SAUCE: LSM stacking: LSM: general but not extreme module stacking
348 - SAUCE: LSM stacking: LSM: Complete task_alloc hook
349 - SAUCE: LSM stacking: fixup procsfs: add smack subdir to attrs
350 - SAUCE: LSM stacking: fixup initialize task->security
351 - SAUCE: LSM stacking: fixup: alloc_task_ctx is dead code
352 - SAUCE: LSM stacking: add support for stacking getpeersec_stream
353 - SAUCE: LSM stacking: add stacking support to apparmor network hooks
354 - SAUCE: LSM stacking: fixup apparmor stacking enablement
355 - SAUCE: LSM stacking: fixup stacking kconfig
356 - SAUCE: LSM stacking: allow selecting multiple LSMs using kernel boot params
357 - SAUCE: LSM stacking: provide prctl interface for setting context
358 - SAUCE: LSM stacking: inherit current display LSM
359 - SAUCE: LSM stacking: keep an index for each registered LSM
360 - SAUCE: LSM stacking: verify display LSM
361 - SAUCE: LSM stacking: provide a way to specify the default display lsm
362 - SAUCE: LSM stacking: make sure LSM blob align on 64 bit boundaries
363 - SAUCE: LSM stacking: add /proc/<pid>/attr/display_lsm
364 - SAUCE: LSM stacking: add Kconfig to set default display LSM
365 - SAUCE: LSM stacking: add configs for LSM stacking
366 - SAUCE: LSM stacking: check for invalid zero sized writes
367 - [Config] Run updateconfigs after merging LSM stacking
368 - [Config] CONFIG_AMD_MEM_ENCRYPT=y
369
370 [ Upstream Kernel Changes ]
371
372 * Rebase to v4.14
373
374 -- Seth Forshee <seth.forshee@canonical.com> Mon, 13 Nov 2017 08:12:08 -0600
375
376 linux (4.14.0-6.8) bionic; urgency=low
377
378 * Miscellaneous Ubuntu changes
379 - SAUCE: add workarounds to enable ZFS for 4.14
380
381 [ Upstream Kernel Changes ]
382
383 * Rebase to v4.14-rc8
384
385 -- Seth Forshee <seth.forshee@canonical.com> Mon, 06 Nov 2017 11:39:00 -0600
386
387 linux (4.14.0-5.7) bionic; urgency=low
388
389 * Miscellaneous Ubuntu changes
390 - [Debian] Fix invocation of dh_prep for dbgsym packages
391
392 -- Seth Forshee <seth.forshee@canonical.com> Tue, 31 Oct 2017 07:07:23 -0500
393
394 linux (4.14.0-4.5) bionic; urgency=low
395
396 * Miscellaneous Ubuntu changes
397 - [Packaging] virtualbox -- reduce in kernel module versions
398 - vbox-update: Fix up KERN_DIR definitions
399 - ubuntu: vbox -- update to 5.2.0-dfsg-2
400 - [Config] CONFIG_AMD_MEM_ENCRYPT=n
401
402 [ Upstream Kernel Changes ]
403
404 * Rebase to v4.14-rc7
405
406 -- Seth Forshee <seth.forshee@canonical.com> Mon, 30 Oct 2017 13:29:20 -0500
407
408 linux (4.14.0-3.4) artful; urgency=low
409
410 * Touchpad and TrackPoint Dose Not Work on Lenovo X1C6 and X280 (LP: #1723986)
411 - SAUCE: Input: synaptics-rmi4 - RMI4 can also use SMBUS version 3
412 - SAUCE: Input: synaptics - Lenovo X1 Carbon 5 should use SMBUS/RMI
413 - SAUCE: Input: synaptics - add Intertouch support on X1 Carbon 6th and X280
414
415 * powerpc/64s: Add workaround for P9 vector CI load issuenext (LP: #1721070)
416 - powerpc/64s: Add workaround for P9 vector CI load issue
417
418 * Miscellaneous Ubuntu changes
419 - SAUCE: staging: vboxvideo: Fix reporting invalid suggested-offset-properties
420 - [Config] CONFIG_DRM_VBOXVIDEO=m
421 - SAUCE: Import aufs driver
422 - [Config] Enable aufs
423 - [Config] Reorder annotations file after enabling aufs
424 - vbox-update: Disable imported vboxvideo module
425 - ubuntu: vbox -- update to 5.1.30-dfsg-1
426 - Enable vbox
427 - hio: Use correct sizes when initializing ssd_index_bits* arrays
428 - hio: Update io stat accounting for 4.14
429 - Enable hio
430
431 [ Upstream Kernel Changes ]
432
433 * Rebase to v4.14-rc5
434 * Rebase to v4.14-rc6
435
436 -- Seth Forshee <seth.forshee@canonical.com> Mon, 23 Oct 2017 13:53:52 -0500
437
438 linux (4.14.0-2.3) artful; urgency=low
439
440 * [Bug] USB controller failed to respond on Denverton after loading
441 intel_th_pci module (LP: #1715833)
442 - SAUCE: PCI: Disable broken RTIT_BAR of Intel TH
443
444 * CONFIG_DEBUG_FS is not enabled by "make zfcpdump_defconfig" with Ubuntu
445 17.10 (kernel 4.13) (LP: #1719290)
446 - SAUCE: s390: update zfcpdump_defconfig
447
448 * Add installer support for Broadcom BCM573xx network drivers. (LP: #1720466)
449 - d-i: Add bnxt_en to nic-modules.
450
451 * Miscellaneous Ubuntu changes
452 - [Config] Update annotations for 4.14-rc2
453
454 [ Upstream Kernel Changes ]
455
456 * Rebase to v4.14-rc3
457 * Rebase to v4.14-rc4
458
459 -- Seth Forshee <seth.forshee@canonical.com> Wed, 11 Oct 2017 16:04:27 -0500
460
461 linux (4.14.0-1.2) artful; urgency=low
462
463 * [Bug] USB 3.1 Gen2 works as 5Gbps (LP: #1720045)
464 - xhci: set missing SuperSpeedPlus Link Protocol bit in roothub descriptor
465
466 * Please make linux-libc-dev Provide: aufs-dev (LP: #1716091)
467 - [Packaging] Add aufs-dev to the Provides: for linux-libc-dev
468
469 * Upgrade to 4.13.0-11.12 in artful amd64 VM breaks display on wayland
470 (LP: #1718679)
471 - [Config] CONFIG_DRM_VBOXVIDEO=n
472
473 * ipmmu-vmsa driver breaks arm64 boots (LP: #1718734)
474 - [Config] Disable CONFIG_IPMMU_VMSA on arm64
475
476 * autopkgtest profile fails to build on armhf (LP: #1717920)
477 - [Packaging] autopkgtest -- disable d-i when dropping flavours
478
479 * Miscellaneous Ubuntu changes
480 - [Config] CONFIG_I2C_XLP9XX=m
481 - [Packaging] Use SRCPKGNAME rather than hard-coding the source package name
482
483 [ Upstream Kernel Changes ]
484
485 * Rebase to v4.14-rc2
486
487 -- Seth Forshee <seth.forshee@canonical.com> Fri, 29 Sep 2017 09:09:11 -0400
488
489 linux (4.14.0-0.1) artful; urgency=low
490
491 * Miscellaneous Ubuntu changes
492 - Disable vbox build
493 - Disable hio build
494 - Disable zfs build
495
496 [ Upstream Kernel Changes ]
497
498 * Rebase to v4.14-rc1
499
500 -- Seth Forshee <seth.forshee@canonical.com> Tue, 19 Sep 2017 20:22:29 -0500
501
502 linux (4.13.0-11.12) artful; urgency=low
503
504 * linux: 4.13.0-11.12 -proposed tracker (LP: #1716699)
505
506 * kernel panic -not syncing: Fatal exception: panic_on_oops (LP: #1708399)
507 - s390/mm: fix local TLB flushing vs. detach of an mm address space
508 - s390/mm: fix race on mm->context.flush_mm
509
510 * CVE-2017-1000251
511 - Bluetooth: Properly check L2CAP config option output buffer length
512
513 -- Seth Forshee <seth.forshee@canonical.com> Tue, 12 Sep 2017 10:18:38 -0500
514
515 linux (4.13.0-10.11) artful; urgency=low
516
517 * linux: 4.13.0-10.11 -proposed tracker (LP: #1716287)
518
519 * please add aufs-dkms to the Provides: for the kernel packages (LP: #1716093)
520 - [Packaging] Add aufs-dkms to the Provides: for kernel packages
521
522 * Artful update to v4.13.1 stable release (LP: #1716284)
523 - usb: quirks: add delay init quirk for Corsair Strafe RGB keyboard
524 - USB: serial: option: add support for D-Link DWM-157 C1
525 - usb: Add device quirk for Logitech HD Pro Webcam C920-C
526 - usb:xhci:Fix regression when ATI chipsets detected
527 - USB: musb: fix external abort on suspend
528 - ANDROID: binder: add padding to binder_fd_array_object.
529 - ANDROID: binder: add hwbinder,vndbinder to BINDER_DEVICES.
530 - USB: core: Avoid race of async_completed() w/ usbdev_release()
531 - staging/rts5208: fix incorrect shift to extract upper nybble
532 - staging: ccree: save ciphertext for CTS IV
533 - staging: fsl-dpaa2/eth: fix off-by-one FD ctrl bitmaks
534 - iio: adc: ti-ads1015: fix incorrect data rate setting update
535 - iio: adc: ti-ads1015: fix scale information for ADS1115
536 - iio: adc: ti-ads1015: enable conversion when CONFIG_PM is not set
537 - iio: adc: ti-ads1015: avoid getting stale result after runtime resume
538 - iio: adc: ti-ads1015: don't return invalid value from buffer setup callbacks
539 - iio: adc: ti-ads1015: add adequate wait time to get correct conversion
540 - driver core: bus: Fix a potential double free
541 - HID: wacom: Do not completely map WACOM_HID_WD_TOUCHRINGSTATUS usage
542 - binder: free memory on error
543 - crypto: caam/qi - fix compilation with CONFIG_DEBUG_FORCE_WEAK_PER_CPU=y
544 - crypto: caam/qi - fix compilation with DEBUG enabled
545 - thunderbolt: Fix reset response_type
546 - fpga: altera-hps2fpga: fix multiple init of l3_remap_lock
547 - intel_th: pci: Add Cannon Lake PCH-H support
548 - intel_th: pci: Add Cannon Lake PCH-LP support
549 - ath10k: fix memory leak in rx ring buffer allocation
550 - drm/vgem: Pin our pages for dmabuf exports
551 - drm/ttm: Fix accounting error when fail to get pages for pool
552 - drm/dp/mst: Handle errors from drm_atomic_get_private_obj_state() correctly
553 - rtlwifi: rtl_pci_probe: Fix fail path of _rtl_pci_find_adapter
554 - Bluetooth: Add support of 13d3:3494 RTL8723BE device
555 - iwlwifi: pci: add new PCI ID for 7265D
556 - dlm: avoid double-free on error path in dlm_device_{register,unregister}
557 - mwifiex: correct channel stat buffer overflows
558 - MCB: add support for SC31 to mcb-lpc
559 - s390/mm: avoid empty zero pages for KVM guests to avoid postcopy hangs
560 - drm/nouveau/pci/msi: disable MSI on big-endian platforms by default
561 - drm/nouveau: Fix error handling in nv50_disp_atomic_commit
562 - workqueue: Fix flag collision
563 - ahci: don't use MSI for devices with the silly Intel NVMe remapping scheme
564 - cs5536: add support for IDE controller variant
565 - scsi: sg: protect against races between mmap() and SG_SET_RESERVED_SIZE
566 - scsi: sg: recheck MMAP_IO request length with lock held
567 - of/device: Prevent buffer overflow in of_device_modalias()
568 - rtlwifi: Fix memory leak when firmware request fails
569 - rtlwifi: Fix fallback firmware loading
570 - Linux 4.13.1
571
572 * Kernel has trouble recognizing Corsair Strafe RGB keyboard (LP: #1678477)
573 - usb: quirks: add delay init quirk for Corsair Strafe RGB keyboard
574
575 * SRIOV: warning if unload VFs (LP: #1715073)
576 - PCI: Disable VF decoding before pcibios_sriov_disable() updates resources
577
578 * [Patch] network-i40e:NVM bug fixes (cherrypick from 4.14) (LP: #1715578)
579 - i40e: avoid NVM acquire deadlock during NVM update
580 - i40e: point wb_desc at the nvm_wb_desc during i40e_read_nvm_aq
581
582 * [P9,POwer NV] Perf PMU event : pm_br_2path and pm_ld_miss_l1 is counted
583 twice when perf stat is done (perf:) (LP: #1714571)
584 - perf vendor events powerpc: Remove duplicate events
585
586 * Unable to install Ubuntu on the NVMe disk under VMD PCI domain
587 (LP: #1703339)
588 - [Config] Include vmd in storage-core-modules udeb
589
590 * 17.10 fails to boot on POWER9 DD2.0 with Deep stop states (LP: #1715064)
591 - powerpc/powernv: Save/Restore additional SPRs for stop4 cpuidle
592 - powerpc/powernv: Clear PECE1 in LPCR via stop-api only on Hotplug
593 - SAUCE: powerpc/powernv: Clear LPCR[PECE1] via stop-api only for deep state
594 offline
595
596 * Miscellaneous Ubuntu changes
597 - SAUCE: selftests/seccomp: Support glibc 2.26 siginfo_t.h
598 - Revert "UBUNTU: SAUCE: Import aufs driver"
599 - SAUCE: Import aufs driver
600
601 -- Seth Forshee <seth.forshee@canonical.com> Sun, 10 Sep 2017 17:48:59 -0500
602
603 linux (4.13.0-9.10) artful; urgency=low
604
605 * linux: 4.13.0-9.10 -proposed tracker (LP: #1715145)
606
607 * EDAC sbridge: Failed to register device with error -22. (LP: #1714112)
608 - [Config] CONFIG_EDAC_GHES=n
609
610 * Miscellaneous Ubuntu changes
611 - ubuntu: vbox -- update to 5.1.26-dfsg-2
612
613 [ Upstream Kernel Changes ]
614
615 * Rebase to v4.13
616
617 -- Seth Forshee <seth.forshee@canonical.com> Tue, 05 Sep 2017 07:51:19 -0500
618
619 linux (4.13.0-8.9) artful; urgency=low
620
621 * snapd 2.27.3+17.10 ADT test failure with linux 4.13.0-6.7 (LP: #1713103)
622 - SAUCE: apparmor: fix apparmorfs DAC access, permissions
623
624 * enable ARCH_SUNXI (and friends) in arm64 kernel .config (LP: #1701137)
625 - [Config] Enable CONFIG_ARCH_SUNXI and related options for arm64
626
627 * [Bug] Harrisonville: pnd2_edac always fail to load on B1 stepping
628 Harrisonville SDP (LP: #1709257)
629 - EDAC, pnd2: Build in a minimal sideband driver for Apollo Lake
630 - EDAC, pnd2: Mask off the lower four bits of a BAR
631 - EDAC, pnd2: Conditionally unhide/hide the P2SB PCI device to read BAR
632 - EDAC, pnd2: Properly toggle hidden state for P2SB PCI device
633 - SAUCE: i2c: i801: Restore the presence state of P2SB PCI device after
634 reading BAR
635
636 * Miscellaneous Ubuntu changes
637 - Revert "UBUNTU: SAUCE: Import aufs driver"
638 - SAUCE: Import aufs driver
639 - SAUCE: selftests/powerpc: Disable some ptrace selftests
640 - [Config] CONFIG_CRYPTO_DEV_NITROX_CNN55XX=n for s390x
641 - [Config] CONFIG_I2C_SLAVE=n for amd64, i386, ppc64el
642 - [Config] Disable CONFIG_MDIO_* options for s390x
643 - [Config] CONFIG_SCSI_MQ_DEFAULT=n for s390x
644 - [Config] Update annotations for 4.13
645
646 -- Seth Forshee <seth.forshee@canonical.com> Thu, 31 Aug 2017 14:27:09 -0500
647
648 linux (4.13.0-7.8) artful; urgency=low
649
650 * linux 4.12.0-11.12 ADT test failure with linux 4.12.0-11.12 (LP: #1710904)
651 - SAUCE: selftests/powerpc: Use snprintf to construct DSCR sysfs interface
652 paths
653
654 * Miscellaneous Ubuntu changes
655 - Revert "UBUNTU: SAUCE: seccomp: log actions even when audit is disabled"
656
657 * Miscellaneous upstream changes
658 - seccomp: Provide matching filter for introspection
659 - seccomp: Sysctl to display available actions
660 - seccomp: Operation for checking if an action is available
661 - seccomp: Sysctl to configure actions that are allowed to be logged
662 - seccomp: Selftest for detection of filter flag support
663 - seccomp: Filter flag to log all actions except SECCOMP_RET_ALLOW
664 - seccomp: Action to log before allowing
665
666 [ Upstream Kernel Changes ]
667
668 * Rebase to v4.13-rc7
669
670 -- Seth Forshee <seth.forshee@canonical.com> Mon, 28 Aug 2017 08:12:24 -0500
671
672 linux (4.13.0-6.7) artful; urgency=low
673
674 * HID: multitouch: Support ALPS PTP Stick and Touchpad devices (LP: #1712481)
675 - SAUCE: HID: multitouch: Support ALPS PTP stick with pid 0x120A
676
677 * sort ABI files with C.UTF-8 locale (LP: #1712345)
678 - [Packaging] sort ABI files with C.UTF-8 locale
679
680 * igb: Support using Broadcom 54616 as PHY (LP: #1712024)
681 - SAUCE: igb: add support for using Broadcom 54616 as PHY
682
683 * RPT related fixes missing in Ubuntu 16.04.3 (LP: #1709220)
684 - powerpc/mm/radix: Improve _tlbiel_pid to be usable for PWC flushes
685 - powerpc/mm/radix: Improve TLB/PWC flushes
686 - powerpc/mm/radix: Avoid flushing the PWC on every flush_tlb_range
687
688 * Linux 4.12 refuses to load self-signed modules under Secure Boot with
689 properly enrolled keys (LP: #1712168)
690 - SAUCE: (efi-lockdown) MODSIGN: Fix module signature verification
691
692 * [17.10 FEAT] Enable NVMe driver - kernel (LP: #1708432)
693 - [Config] CONFIG_BLK_DEV_NVME=m for s390
694
695 * Artful: 4.12.0-11.12: Boot panic in vlv2_plat_configure_clock+0x3b/0xa0
696 (LP: #1711298)
697 - [Config] CONFIG_INTEL_ATOMISP=n
698
699 * Miscellaneous Ubuntu changes
700 - SAUCE: apparmor: af_unix mediation
701
702 * Miscellaneous upstream changes
703 - apparmor: Fix shadowed local variable in unpack_trans_table()
704 - apparmor: Fix logical error in verify_header()
705 - apparmor: Fix an error code in aafs_create()
706 - apparmor: Redundant condition: prev_ns. in [label.c:1498]
707 - apparmor: add the ability to mediate signals
708 - apparmor: add mount mediation
709 - apparmor: cleanup conditional check for label in label_print
710 - apparmor: add support for absolute root view based labels
711 - apparmor: make policy_unpack able to audit different info messages
712 - apparmor: add more debug asserts to apparmorfs
713 - apparmor: add base infastructure for socket mediation
714 - apparmor: move new_null_profile to after profile lookup fns()
715 - apparmor: fix race condition in null profile creation
716 - apparmor: ensure unconfined profiles have dfas initialized
717 - apparmor: fix incorrect type assignment when freeing proxies
718
719 [ Upstream Kernel Changes ]
720
721 * Rebase to v4.13-rc6
722
723 -- Seth Forshee <seth.forshee@canonical.com> Wed, 23 Aug 2017 08:10:38 -0500
724
725 linux (4.13.0-5.6) artful; urgency=low
726
727 * Ubuntu17.10 - perf: Update Power9 PMU event JSON files (LP: #1708630)
728 - perf pmu-events: Support additional POWER8+ PVR in mapfile
729 - perf vendor events: Add POWER9 PMU events
730 - perf vendor events: Add POWER9 PVRs to mapfile
731 - SAUCE: perf vendor events powerpc: remove suffix in mapfile
732 - SAUCE: perf vendor events powerpc: Update POWER9 events
733
734 * Disable CONFIG_MEMORY_HOTPLUG_DEFAULT_ONLINE (LP: #1709171)
735 - [Config] CONFIG_MEMORY_HOTPLUG_DEFAULT_ONLINE=n for ppc64el
736
737 * Please only recommend or suggest initramfs-tools | linux-initramfs-tool for
738 kernels able to boot without initramfs (LP: #1700972)
739 - [Debian] Don't depend on initramfs-tools
740
741 * Miscellaneous Ubuntu changes
742 - SAUCE: Import aufs driver
743 - SAUCE: aufs -- Add missing argument to loop_switch() call
744 - [Config] Enable aufs
745 - SAUCE: (noup) Update spl to 0.6.5.11-ubuntu1, zfs to 0.6.5.11-1ubuntu3
746 - Enable zfs build
747 - SAUCE: powerpc: Always initialize input array when calling epapr_hypercall()
748 - [Packaging] switch up to debhelper 9
749
750 [ Upstream Kernel Changes ]
751
752 * Rebase to v4.13-rc5
753
754 -- Seth Forshee <seth.forshee@canonical.com> Tue, 15 Aug 2017 09:24:16 -0500
755
756 linux (4.13.0-4.5) artful; urgency=low
757
758 * Lenovo Yoga 910 Sensors (LP: #1708120)
759 - SAUCE: (no-up) HID: Add quirk for Lenovo Yoga 910 with ITE Chips
760
761 * Unable to install Ubuntu on the NVMe disk under VMD PCI domain
762 (LP: #1703339)
763 - [Config] Add vmd driver to generic inclusion list
764
765 * Set CONFIG_SATA_HIGHBANK=y on armhf (LP: #1703430)
766 - [Config] CONFIG_SATA_HIGHBANK=y
767
768 * Miscellaneous Ubuntu changes
769 - ubuntu: vbox -- update to 5.1.26-dfsg-1
770 - SAUCE: hio: Build fixes for 4.13
771 - Enable hio build
772 - SAUCE: (noup) Update spl to 0.6.5.11-1, zfs to 0.6.5.11-1ubuntu1
773 - [debian] use all rather than amd64 dkms debs for sync
774
775 [ Upstream Kernel Changes ]
776
777 * Rebase to v4.13-rc4
778
779 -- Seth Forshee <seth.forshee@canonical.com> Tue, 08 Aug 2017 11:31:48 -0500
780
781 linux (4.13.0-3.4) artful; urgency=low
782
783 * Adt tests of src:linux time out often on armhf lxc containers (LP: #1705495)
784 - [Packaging] tests -- reduce rebuild test to one flavour
785 - [Packaging] tests -- reduce rebuild test to one flavour -- use filter
786
787 * snapd 2.26.8+17.10 ADT test failure with linux 4.12.0-6.7 (LP: #1704158)
788 - SAUCE: virtio_net: Revert mergeable buffer handling rework
789
790 [ Upstream Kernel Changes ]
791
792 * Rebase to v4.13-rc3
793
794 -- Seth Forshee <seth.forshee@canonical.com> Mon, 31 Jul 2017 10:08:16 -0500
795
796 linux (4.13.0-2.3) artful; urgency=low
797
798 * Change CONFIG_IBMVETH to module (LP: #1704479)
799 - [Config] CONFIG_IBMVETH=m
800
801 [ Upstream Kernel Changes ]
802
803 * Rebase to v4.13-rc2
804
805 -- Seth Forshee <seth.forshee@canonical.com> Mon, 24 Jul 2017 13:58:08 -0500
806
807 linux (4.13.0-1.2) artful; urgency=low
808
809 * Miscellaneous Ubuntu changes
810 - [Debian] Support sphinx-based kernel documentation
811
812 -- Seth Forshee <seth.forshee@canonical.com> Thu, 20 Jul 2017 09:18:33 -0500
813
814 linux (4.13.0-0.1) artful; urgency=low
815
816 * Miscellaneous Ubuntu changes
817 - Disable hio
818 - Disable zfs build
819 - ubuntu: vbox -- update to 5.1.24-dfsg-1
820
821 [ Upstream Kernel Changes ]
822
823 * Rebase to v4.13-rc1
824
825 -- Seth Forshee <seth.forshee@canonical.com> Wed, 19 Jul 2017 15:09:31 -0500
826
827 linux (4.12.0-7.8) artful; urgency=low
828
829 * ThunderX: soft lockup on 4.8+ kernels when running qemu-efi with vhost=on
830 (LP: #1673564)
831 - arm64: Add a facility to turn an ESR syndrome into a sysreg encoding
832 - KVM: arm/arm64: vgic-v3: Add accessors for the ICH_APxRn_EL2 registers
833 - KVM: arm64: Make kvm_condition_valid32() accessible from EL2
834 - KVM: arm64: vgic-v3: Add hook to handle guest GICv3 sysreg accesses at EL2
835 - KVM: arm64: vgic-v3: Add ICV_BPR1_EL1 handler
836 - KVM: arm64: vgic-v3: Add ICV_IGRPEN1_EL1 handler
837 - KVM: arm64: vgic-v3: Add ICV_IAR1_EL1 handler
838 - KVM: arm64: vgic-v3: Add ICV_EOIR1_EL1 handler
839 - KVM: arm64: vgic-v3: Add ICV_AP1Rn_EL1 handler
840 - KVM: arm64: vgic-v3: Add ICV_HPPIR1_EL1 handler
841 - KVM: arm64: vgic-v3: Enable trapping of Group-1 system registers
842 - KVM: arm64: Enable GICv3 Group-1 sysreg trapping via command-line
843 - KVM: arm64: vgic-v3: Add ICV_BPR0_EL1 handler
844 - KVM: arm64: vgic-v3: Add ICV_IGNREN0_EL1 handler
845 - KVM: arm64: vgic-v3: Add misc Group-0 handlers
846 - KVM: arm64: vgic-v3: Enable trapping of Group-0 system registers
847 - KVM: arm64: Enable GICv3 Group-0 sysreg trapping via command-line
848 - arm64: Add MIDR values for Cavium cn83XX SoCs
849 - arm64: Add workaround for Cavium Thunder erratum 30115
850 - KVM: arm64: vgic-v3: Add ICV_DIR_EL1 handler
851 - KVM: arm64: vgic-v3: Add ICV_RPR_EL1 handler
852 - KVM: arm64: vgic-v3: Add ICV_CTLR_EL1 handler
853 - KVM: arm64: vgic-v3: Add ICV_PMR_EL1 handler
854 - KVM: arm64: Enable GICv3 common sysreg trapping via command-line
855 - KVM: arm64: vgic-v3: Log which GICv3 system registers are trapped
856 - KVM: arm64: Log an error if trapping a read-from-write-only GICv3 access
857 - KVM: arm64: Log an error if trapping a write-to-read-only GICv3 access
858
859 * hns: under heavy load, NIC may fail and require reboot (LP: #1704146)
860 - net: hns: Bugfix for Tx timeout handling in hns driver
861
862 * New ACPI identifiers for ThunderX SMMU (LP: #1703437)
863 - iommu/arm-smmu: Plumb in new ACPI identifiers
864
865 * Transparent hugepages should default to enabled=madvise (LP: #1703742)
866 - SAUCE: use CONFIG_TRANSPARENT_HUGEPAGE_MADVISE=y as default
867
868 * Artful update to v4.12.1 stable release (LP: #1703858)
869 - driver core: platform: fix race condition with driver_override
870 - RDMA/uverbs: Check port number supplied by user verbs cmds
871 - usb: dwc3: replace %p with %pK
872 - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick
873 - usb: usbip: set buffer pointers to NULL after free
874 - Add USB quirk for HVR-950q to avoid intermittent device resets
875 - usb: Fix typo in the definition of Endpoint[out]Request
876 - USB: core: fix device node leak
877 - USB: serial: option: add two Longcheer device ids
878 - USB: serial: qcserial: new Sierra Wireless EM7305 device ID
879 - xhci: Limit USB2 port wake support for AMD Promontory hosts
880 - gfs2: Fix glock rhashtable rcu bug
881 - Add "shutdown" to "struct class".
882 - tpm: Issue a TPM2_Shutdown for TPM2 devices.
883 - tpm: fix a kernel memory leak in tpm-sysfs.c
884 - powerpc/powernv: Fix CPU_HOTPLUG=n idle.c compile error
885 - x86/uaccess: Optimize copy_user_enhanced_fast_string() for short strings
886 - sched/fair, cpumask: Export for_each_cpu_wrap()
887 - sched/core: Implement new approach to scale select_idle_cpu()
888 - sched/numa: Use down_read_trylock() for the mmap_sem
889 - sched/numa: Override part of migrate_degrades_locality() when idle balancing
890 - sched/fair: Simplify wake_affine() for the single socket case
891 - sched/numa: Implement NUMA node level wake_affine()
892 - sched/fair: Remove effective_load()
893 - sched/numa: Hide numa_wake_affine() from UP build
894 - xen: avoid deadlock in xenbus driver
895 - crypto: drbg - Fixes panic in wait_for_completion call
896 - Linux 4.12.1
897
898 * cxlflash update request in the Xenial SRU stream (LP: #1702521)
899 - scsi: cxlflash: Combine the send queue locks
900 - scsi: cxlflash: Update cxlflash_afu_sync() to return errno
901 - scsi: cxlflash: Reset hardware queue context via specified register
902 - scsi: cxlflash: Schedule asynchronous reset of the host
903 - scsi: cxlflash: Handle AFU sync failures
904 - scsi: cxlflash: Track pending scsi commands in each hardware queue
905 - scsi: cxlflash: Flush pending commands in cleanup path
906 - scsi: cxlflash: Add scsi command abort handler
907 - scsi: cxlflash: Create character device to provide host management interface
908 - scsi: cxlflash: Separate AFU internal command handling from AFU sync
909 specifics
910 - scsi: cxlflash: Introduce host ioctl support
911 - scsi: cxlflash: Refactor AFU capability checking
912 - scsi: cxlflash: Support LUN provisioning
913 - scsi: cxlflash: Support AFU debug
914 - scsi: cxlflash: Support WS16 unmap
915 - scsi: cxlflash: Remove zeroing of private command data
916 - scsi: cxlflash: Update TMF command processing
917 - scsi: cxlflash: Avoid double free of character device
918 - scsi: cxlflash: Update send_tmf() parameters
919 - scsi: cxlflash: Update debug prints in reset handlers
920
921 * make snap-pkg support (LP: #1700747)
922 - make snap-pkg support
923
924 * Quirk for non-compliant PCI bridge on HiSilicon D05 board (LP: #1698706)
925 - SAUCE: PCI: Support hibmc VGA cards behind a misbehaving HiSilicon bridge
926
927 * arm64: fix crash reading /proc/kcore (LP: #1702749)
928 - fs/proc: kcore: use kcore_list type to check for vmalloc/module address
929 - arm64: mm: select CONFIG_ARCH_PROC_KCORE_TEXT
930
931 * Opal and POWER9 DD2 (LP: #1702159)
932 - SAUCE: powerpc/powernv: Tell OPAL about our MMU mode on POWER9
933
934 * Data corruption with hio driver (LP: #1701316)
935 - SAUCE: hio: Fix incorrect use of enum req_opf values
936
937 * Miscellaneous Ubuntu changes
938 - SAUCE: (noup) Update spl to 0.6.5.10-1, zfs to 0.6.5.10-1ubuntu2
939 - snapcraft.yaml: Sync with xenial
940 - [Config] CONFIG_CAVIUM_ERRATUM_30115=y
941
942 * Miscellaneous upstream changes
943 - Revert "UBUNTU: SAUCE: (efi-lockdown) efi: Add sysctls for secureboot and
944 MokSBState"
945
946 -- Seth Forshee <seth.forshee@canonical.com> Fri, 14 Jul 2017 15:25:41 -0500
947
948 linux (4.12.0-6.7) artful; urgency=low
949
950 * update ENA driver to 1.2.0k from net-next (LP: #1701575)
951 - net: ena: change return value for unsupported features unsupported return
952 value
953 - net: ena: add hardware hints capability to the driver
954 - net: ena: change sizeof() argument to be the type pointer
955 - net: ena: add reset reason for each device FLR
956 - net: ena: add support for out of order rx buffers refill
957 - net: ena: allow the driver to work with small number of msix vectors
958 - net: ena: use napi_schedule_irqoff when possible
959 - net: ena: separate skb allocation to dedicated function
960 - net: ena: use lower_32_bits()/upper_32_bits() to split dma address
961 - net: ena: update driver's rx drop statistics
962 - net: ena: update ena driver to version 1.2.0
963
964 * APST gets enabled against explicit kernel option (LP: #1699004)
965 - nvme: explicitly disable APST on quirked devices
966
967 * Miscellaneous Ubuntu changes
968 - SAUCE: hio: Update to Huawei ES3000_V2 (2.1.0.40)
969 - SAUCE: hio updates for 4.12
970 - SAUCE: Enable hio build
971
972 -- Seth Forshee <seth.forshee@canonical.com> Wed, 05 Jul 2017 14:23:20 -0500
973
974 linux (4.12.0-5.6) artful; urgency=low
975
976 * ERAT invalidate on context switch removal (LP: #1700819)
977 - powerpc: Only do ERAT invalidate on radix context switch on P9 DD1
978
979 * powerpc: Invalidate ERAT on powersave wakeup for POWER9 (LP: #1700521)
980 - SAUCE: powerpc: Invalidate ERAT on powersave wakeup for POWER9
981
982 * Miscellaneous Ubuntu changes
983 - d-i: Move qcom-emac from arm64 to shared nic-modules
984
985 [ Upstream Kernel Changes ]
986
987 * Rebase to v4.12
988
989 -- Seth Forshee <seth.forshee@canonical.com> Mon, 03 Jul 2017 07:52:02 -0500
990
991 linux (4.12.0-4.5) artful; urgency=low
992
993 * aacraid driver may return uninitialized stack data to userspace
994 (LP: #1700077)
995 - SAUCE: scsi: aacraid: Don't copy uninitialized stack memory to userspace
996
997 * KILLER1435-S[0489:e0a2] BT cannot search BT 4.0 device (LP: #1699651)
998 - Bluetooth: btusb: Add support for 0489:e0a2 QCA_ROME device
999
1000 * AACRAID for power9 platform (LP: #1689980)
1001 - scsi: aacraid: Remove __GFP_DMA for raw srb memory
1002 - scsi: aacraid: Fix DMAR issues with iommu=pt
1003 - scsi: aacraid: Added 32 and 64 queue depth for arc natives
1004 - scsi: aacraid: Set correct Queue Depth for HBA1000 RAW disks
1005 - scsi: aacraid: Remove reset support from check_health
1006 - scsi: aacraid: Change wait time for fib completion
1007 - scsi: aacraid: Log count info of scsi cmds before reset
1008 - scsi: aacraid: Print ctrl status before eh reset
1009 - scsi: aacraid: Using single reset mask for IOP reset
1010 - scsi: aacraid: Rework IOP reset
1011 - scsi: aacraid: Add periodic checks to see IOP reset status
1012 - scsi: aacraid: Rework SOFT reset code
1013 - scsi: aacraid: Rework aac_src_restart
1014 - scsi: aacraid: Use correct function to get ctrl health
1015 - scsi: aacraid: Make sure ioctl returns on controller reset
1016 - scsi: aacraid: Enable ctrl reset for both hba and arc
1017 - scsi: aacraid: Add reset debugging statements
1018 - scsi: aacraid: Remove reference to Series-9
1019 - scsi: aacraid: Update driver version to 50834
1020
1021 * hibmc driver does not include "pci:" prefix in bus ID (LP: #1698700)
1022 - SAUCE: drm: hibmc: Use set_busid function from drm core
1023
1024 * HiSilicon D05: installer doesn't appear on VGA (LP: #1698954)
1025 - d-i: Add hibmc-drm to kernel-image udeb
1026
1027 * Fix /proc/cpuinfo revision for POWER9 DD2 (LP: #1698844)
1028 - SAUCE: powerpc: Fix /proc/cpuinfo revision for POWER9 DD2
1029
1030 * Miscellaneous Ubuntu changes
1031 - [Config] CONFIG_SATA_MV=n and CONFIG_GENERIC_PHY=n for s390x
1032 - [Config] CONFIG_ATA=n for s390x
1033 - [Config] Update annotations for 4.12
1034
1035 [ Upstream Kernel Changes ]
1036
1037 * Rebase to v4.12-rc7
1038
1039 -- Seth Forshee <seth.forshee@canonical.com> Mon, 26 Jun 2017 11:27:29 -0500
1040
1041 linux (4.12.0-3.4) artful; urgency=low
1042
1043 * Miscellaneous upstream changes
1044 - ufs: fix the logics for tail relocation
1045
1046 [ Upstream Kernel Changes ]
1047
1048 * Rebase to v4.12-rc6
1049
1050 -- Seth Forshee <seth.forshee@canonical.com> Mon, 19 Jun 2017 14:50:39 -0500
1051
1052 linux (4.12.0-2.3) artful; urgency=low
1053
1054 * CVE-2014-9900
1055 - SAUCE: (no-up) net: Zeroing the structure ethtool_wolinfo in
1056 ethtool_get_wol()
1057
1058 * System doesn't boot properly on Gigabyte AM4 motherboards (AMD Ryzen)
1059 (LP: #1671360)
1060 - pinctrl/amd: Use regular interrupt instead of chained
1061
1062 * extend-diff-ignore should use exact matches (LP: #1693504)
1063 - [Packaging] exact extend-diff-ignore matches
1064
1065 * Miscellaneous Ubuntu changes
1066 - SAUCE: efi: Don't print secure boot state from the efi stub
1067 - ubuntu: vbox -- Update to 5.1.22-dfsg-1
1068 - SAUCE: vbox fixes for 4.12
1069 - Re-enable virtualbox build
1070 - [Config] CONFIG_ORANGEFS_FS=m
1071 - SAUCE: (noup) Update spl to 0.6.5.9-1ubuntu2, zfs to 0.6.5.9-5ubuntu7
1072 - Enable zfs build
1073
1074 [ Upstream Kernel Changes ]
1075
1076 * Rebase to v4.12-rc4
1077 * Rebase to v4.12-rc5
1078
1079 -- Seth Forshee <seth.forshee@canonical.com> Sun, 11 Jun 2017 22:25:13 -0500
1080
1081 linux (4.12.0-1.2) artful; urgency=low
1082
1083 * Enable Matrox driver for Ubuntu 16.04.3 (LP: #1693337)
1084 - [Config] Enable CONFIG_DRM_MGAG200 as module
1085
1086 * Support low-pin-count devices on Hisilicon SoCs (LP: #1677319)
1087 - [Config] CONFIG_LIBIO=y on arm64 only
1088 - SAUCE: LIBIO: Introduce a generic PIO mapping method
1089 - SAUCE: OF: Add missing I/O range exception for indirect-IO devices
1090 - [Config] CONFIG_HISILICON_LPC=y
1091 - SAUCE: LPC: Support the device-tree LPC host on Hip06/Hip07
1092 - SAUCE: LIBIO: Support the dynamically logical PIO registration of ACPI host
1093 I/O
1094 - SAUCE: LPC: Add the ACPI LPC support
1095 - SAUCE: PCI: Apply the new generic I/O management on PCI IO hosts
1096 - SAUCE: PCI: Restore codepath for !CONFIG_LIBIO
1097
1098 * POWER9: Additional patches for TTY and CPU_IDLE (LP: #1674325)
1099 - SAUCE: tty: Fix ldisc crash on reopened tty
1100
1101 * Miscellaneous Ubuntu changes
1102 - [Debian] Add build-dep on libnuma-dev to enable 'perf bench numa'
1103 - Rebase to v4.12-rc3
1104
1105 [ Upstream Kernel Changes ]
1106
1107 * Rebase to v4.12-rc3
1108
1109 -- Seth Forshee <seth.forshee@canonical.com> Mon, 29 May 2017 20:56:29 -0500
1110
1111 linux (4.12.0-0.1) artful; urgency=low
1112
1113 * please enable CONFIG_ARM64_LSE_ATOMICS (LP: #1691614)
1114 - [Config] CONFIG_ARM64_LSE_ATOMICS=y
1115
1116 * [Regression] NUMA_BALANCING disabled on arm64 (LP: #1690914)
1117 - [Config] CONFIG_NUMA_BALANCING{,_DEFAULT_ENABLED}=y on arm64
1118
1119 * exec'ing a setuid binary from a threaded program sometimes fails to setuid
1120 (LP: #1672819)
1121 - SAUCE: exec: ensure file system accounting in check_unsafe_exec is correct
1122
1123 * Miscellaneous Ubuntu changes
1124 - Update find-missing-sauce.sh to compare to artful
1125 - Update dropped.txt
1126 - SAUCE: (efi-lockdown) efi: Add EFI_SECURE_BOOT bit
1127 - SAUCE: (efi-lockdown) Add the ability to lock down access to the running
1128 kernel image
1129 - SAUCE: (efi-lockdown) efi: Lock down the kernel if booted in secure boot
1130 mode
1131 - SAUCE: (efi-lockdown) Enforce module signatures if the kernel is locked down
1132 - SAUCE: (efi-lockdown) Restrict /dev/mem and /dev/kmem when the kernel is
1133 locked down
1134 - SAUCE: (efi-lockdown) Add a sysrq option to exit secure boot mode
1135 - SAUCE: (efi-lockdown) kexec: Disable at runtime if the kernel is locked down
1136 - SAUCE: (efi-lockdown) Copy secure_boot flag in boot params across kexec
1137 reboot
1138 - SAUCE: (efi-lockdown) kexec_file: Disable at runtime if securelevel has been
1139 set
1140 - SAUCE: (efi-lockdown) hibernate: Disable when the kernel is locked down
1141 - SAUCE: (efi-lockdown) uswsusp: Disable when the kernel is locked down
1142 - SAUCE: (efi-lockdown) PCI: Lock down BAR access when the kernel is locked
1143 down
1144 - SAUCE: (efi-lockdown) x86: Lock down IO port access when the kernel is
1145 locked down
1146 - SAUCE: (efi-lockdown) x86: Restrict MSR access when the kernel is locked
1147 down
1148 - SAUCE: (efi-lockdown) asus-wmi: Restrict debugfs interface when the kernel
1149 is locked down
1150 - SAUCE: (efi-lockdown) ACPI: Limit access to custom_method when the kernel is
1151 locked down
1152 - SAUCE: (efi-lockdown) acpi: Ignore acpi_rsdp kernel param when the kernel
1153 has been locked down
1154 - SAUCE: (efi-lockdown) acpi: Disable ACPI table override if the kernel is
1155 locked down
1156 - SAUCE: (efi-lockdown) acpi: Disable APEI error injection if the kernel is
1157 locked down
1158 - SAUCE: (efi-lockdown) Enable cold boot attack mitigation
1159 - SAUCE: (efi-lockdown) bpf: Restrict kernel image access functions when the
1160 kernel is locked down
1161 - SAUCE: (efi-lockdown) scsi: Lock down the eata driver
1162 - SAUCE: (efi-lockdown) Prohibit PCMCIA CIS storage when the kernel is locked
1163 down
1164 - SAUCE: (efi-lockdown) Lock down TIOCSSERIAL
1165 - SAUCE: (efi-lockdown) KEYS: Allow unrestricted boot-time addition of keys to
1166 secondary keyring
1167 - SAUCE: (efi-lockdown) efi: Add EFI signature data types
1168 - SAUCE: (efi-lockdown) efi: Add an EFI signature blob parser
1169 - SAUCE: (efi-lockdown) MODSIGN: Import certificates from UEFI Secure Boot
1170 - SAUCE: (efi-lockdown) MODSIGN: Allow the "db" UEFI variable to be suppressed
1171 - SAUCE: (efi-lockdown) efi: Sanitize boot_params in efi stub
1172 - SAUCE: (efi-lockdown) efi: Add secure_boot state and status bit for
1173 MokSBState
1174 - SAUCE: (efi-lockdown) efi: Add sysctls for secureboot and MokSBState
1175 - [Config] Set values for UEFI secure boot lockdown options
1176 - Disable virtualbox build
1177 - Disable hio build
1178 - SAUCE: securityfs: Replace CURRENT_TIME with current_time()
1179 - Disable zfs build
1180 - [Debian] Work out upstream tag for use with gen-auto-reconstruct
1181 - SAUCE: Import aufs driver
1182 - SAUCE: aufs -- Include linux/mm.h in fs/aufs/file.h
1183 - [Config] Enable aufs
1184 - SAUCE: perf callchain: Include errno.h on x86 unconditinally
1185
1186 [ Upstream Kernel Changes ]
1187
1188 * Rebase to v4.12-rc2
1189
1190 -- Seth Forshee <seth.forshee@canonical.com> Sun, 21 May 2017 23:44:44 -0500
1191
1192 linux (4.11.0-3.8) artful; urgency=low
1193
1194 [ Seth Forshee ]
1195
1196 * Release Tracking Bug
1197 - LP: #1690999
1198
1199 * apparmor_parser hangs indefinitely when called by multiple threads
1200 (LP: #1645037)
1201 - SAUCE: apparmor: fix lock ordering for mkdir
1202
1203 * apparmor leaking securityfs pin count (LP: #1660846)
1204 - SAUCE: apparmor: fix leak on securityfs pin count
1205
1206 * apparmor reference count leak when securityfs_setup_d_inode\ () fails
1207 (LP: #1660845)
1208 - SAUCE: apparmor: fix reference count leak when securityfs_setup_d_inode()
1209 fails
1210
1211 * apparmor not checking error if security_pin_fs() fails (LP: #1660842)
1212 - SAUCE: apparmor: fix not handling error case when securityfs_pin_fs() fails
1213
1214 * libvirt profile is blocking global setrlimit despite having no rlimit rule
1215 (LP: #1679704)
1216 - SAUCE: apparmor: fix complain mode failure for rlimit mediation
1217 - apparmor: update auditing of rlimit check to provide capability information
1218
1219 * apparmor: does not provide a way to detect policy updataes (LP: #1678032)
1220 - SAUCE: apparmor: add policy revision file interface
1221
1222 * apparmor does not make support of query data visible (LP: #1678023)
1223 - SAUCE: apparmor: add label data availability to the feature set
1224
1225 * apparmor query interface does not make supported query info available
1226 (LP: #1678030)
1227 - SAUCE: apparmor: add information about the query inteface to the feature set
1228
1229 * change_profile incorrect when using namespaces with a compound stack
1230 (LP: #1677959)
1231 - SAUCE: apparmor: fix label parse for stacked labels
1232
1233 * Regression in 4.4.0-65-generic causes very frequent system crashes
1234 (LP: #1669611)
1235 - apparmor: sync of apparmor 3.6+ (17.04)
1236
1237 * Artful update to 4.11.1 stable release (LP: #1690814)
1238 - dm ioctl: prevent stack leak in dm ioctl call
1239 - drm/sti: fix GDP size to support up to UHD resolution
1240 - power: supply: lp8788: prevent out of bounds array access
1241 - brcmfmac: Ensure pointer correctly set if skb data location changes
1242 - brcmfmac: Make skb header writable before use
1243 - sparc64: fix fault handling in NGbzero.S and GENbzero.S
1244 - refcount: change EXPORT_SYMBOL markings
1245 - net: macb: fix phy interrupt parsing
1246 - tcp: fix access to sk->sk_state in tcp_poll()
1247 - geneve: fix incorrect setting of UDP checksum flag
1248 - bpf: enhance verifier to understand stack pointer arithmetic
1249 - bpf, arm64: fix jit branch offset related to ldimm64
1250 - tcp: fix wraparound issue in tcp_lp
1251 - net: ipv6: Do not duplicate DAD on link up
1252 - net: usb: qmi_wwan: add Telit ME910 support
1253 - tcp: do not inherit fastopen_req from parent
1254 - ipv4, ipv6: ensure raw socket message is big enough to hold an IP header
1255 - rtnetlink: NUL-terminate IFLA_PHYS_PORT_NAME string
1256 - ipv6: initialize route null entry in addrconf_init()
1257 - ipv6: reorder ip6_route_dev_notifier after ipv6_dev_notf
1258 - tcp: randomize timestamps on syncookies
1259 - bnxt_en: allocate enough space for ->ntp_fltr_bmap
1260 - bpf: don't let ldimm64 leak map addresses on unprivileged
1261 - net: mdio-mux: bcm-iproc: call mdiobus_free() in error path
1262 - f2fs: sanity check segment count
1263 - xen/arm,arm64: fix xen_dma_ops after 815dd18 "Consolidate get_dma_ops..."
1264 - xen: Revert commits da72ff5bfcb0 and 72a9b186292d
1265 - block: get rid of blk_integrity_revalidate()
1266 - Linux 4.11.1
1267
1268 * Module signing exclusion for staging drivers does not work properly
1269 (LP: #1690908)
1270 - SAUCE: Fix module signing exclusion in package builds
1271
1272 * perf: qcom: Add L3 cache PMU driver (LP: #1689856)
1273 - [Config] CONFIG_QCOM_L3_PMU=y
1274 - perf: qcom: Add L3 cache PMU driver
1275
1276 * No PMU support for ACPI-based arm64 systems (LP: #1689661)
1277 - drivers/perf: arm_pmu: rework per-cpu allocation
1278 - drivers/perf: arm_pmu: manage interrupts per-cpu
1279 - drivers/perf: arm_pmu: split irq request from enable
1280 - drivers/perf: arm_pmu: remove pointless PMU disabling
1281 - drivers/perf: arm_pmu: define armpmu_init_fn
1282 - drivers/perf: arm_pmu: fold init into alloc
1283 - drivers/perf: arm_pmu: factor out pmu registration
1284 - drivers/perf: arm_pmu: simplify cpu_pmu_request_irqs()
1285 - drivers/perf: arm_pmu: handle no platform_device
1286 - drivers/perf: arm_pmu: rename irq request/free functions
1287 - drivers/perf: arm_pmu: split cpu-local irq request/free
1288 - drivers/perf: arm_pmu: move irq request/free into probe
1289 - drivers/perf: arm_pmu: split out platform device probe logic
1290 - arm64: add function to get a cpu's MADT GICC table
1291 - [Config] CONFIG_ARM_PMU_ACPI=y
1292 - drivers/perf: arm_pmu: add ACPI framework
1293 - arm64: pmuv3: handle !PMUv3 when probing
1294 - arm64: pmuv3: use arm_pmu ACPI framework
1295
1296 * Fix NVLINK2 TCE route (LP: #1690155)
1297 - powerpc/powernv: Fix TCE kill on NVLink2
1298
1299 * CVE-2017-0605
1300 - tracing: Use strlcpy() instead of strcpy() in __trace_find_cmdline()
1301
1302 * Miscellaneous Ubuntu changes
1303 - [Config] Restore powerpc arch to annotations file
1304 - [Config] Disable runtime testing modules
1305 - [Config] Disable drivers not needed on s390x
1306 - [Config] Update annotations for 4.11
1307 - [Config] updateconfigs after apparmor updates
1308
1309 * Miscellaneous upstream changes
1310 - apparmor: use SHASH_DESC_ON_STACK
1311 - apparmor: fix invalid reference to index variable of iterator line 836
1312 - apparmor: fix parameters so that the permission test is bypassed at boot
1313 - apparmor: Make path_max parameter readonly
1314 - apparmorfs: Combine two function calls into one in aa_fs_seq_raw_abi_show()
1315 - apparmorfs: Use seq_putc() in two functions
1316 - apparmor: provide information about path buffer size at boot
1317 - apparmor: add/use fns to print hash string hex value
1318
1319 -- Seth Forshee <seth.forshee@canonical.com> Tue, 16 May 2017 00:39:13 -0500
1320
1321 linux (4.11.0-2.7) artful; urgency=low
1322
1323 * kernel-wedge fails in artful due to leftover squashfs-modules d-i files
1324 (LP: #1688259)
1325 - Remove squashfs-modules files from d-i
1326 - [Config] as squashfs-modules is builtin kernel-image must Provides: it
1327
1328 * [Zesty] d-i: replace msm_emac with qcom_emac (LP: #1677297)
1329 - Revert "UBUNTU: d-i: initrd needs msm_emac on amberwing platform."
1330 - d-i: initrd needs qcom_emac on amberwing platform.
1331
1332 * update for V3 kernel bits and improved multiple fan slice support
1333 (LP: #1470091)
1334 - SAUCE: fan: tunnel multiple mapping mode (v3)
1335
1336 * Miscellaneous Ubuntu changes
1337 - SAUCE: (noup) Update spl to 0.6.5.9-1ubuntu1, zfs to 0.6.5.9-5ubuntu5
1338 - Enable zfs
1339 - SAUCE: fan: add VXLAN implementation
1340 - SAUCE: (efi-lockdown) efi: Add EFI_SECURE_BOOT bit
1341 - SAUCE: (efi-lockdown) Add the ability to lock down access to the running
1342 kernel image
1343 - SAUCE: (efi-lockdown) efi: Lock down the kernel if booted in secure boot
1344 mode
1345 - SAUCE: (efi-lockdown) Enforce module signatures if the kernel is locked down
1346 - SAUCE: (efi-lockdown) Restrict /dev/mem and /dev/kmem when the kernel is
1347 locked down
1348 - SAUCE: (efi-lockdown) Add a sysrq option to exit secure boot mode
1349 - SAUCE: (efi-lockdown) kexec: Disable at runtime if the kernel is locked down
1350 - SAUCE: (efi-lockdown) Copy secure_boot flag in boot params across kexec
1351 reboot
1352 - SAUCE: (efi-lockdown) kexec_file: Disable at runtime if securelevel has been
1353 set
1354 - SAUCE: (efi-lockdown) hibernate: Disable when the kernel is locked down
1355 - SAUCE: (efi-lockdown) uswsusp: Disable when the kernel is locked down
1356 - SAUCE: (efi-lockdown) PCI: Lock down BAR access when the kernel is locked
1357 down
1358 - SAUCE: (efi-lockdown) x86: Lock down IO port access when the kernel is
1359 locked down
1360 - SAUCE: (efi-lockdown) x86: Restrict MSR access when the kernel is locked
1361 down
1362 - SAUCE: (efi-lockdown) asus-wmi: Restrict debugfs interface when the kernel
1363 is locked down
1364 - SAUCE: (efi-lockdown) ACPI: Limit access to custom_method when the kernel is
1365 locked down
1366 - SAUCE: (efi-lockdown) acpi: Ignore acpi_rsdp kernel param when the kernel
1367 has been locked down
1368 - SAUCE: (efi-lockdown) acpi: Disable ACPI table override if the kernel is
1369 locked down
1370 - SAUCE: (efi-lockdown) acpi: Disable APEI error injection if the kernel is
1371 locked down
1372 - SAUCE: (efi-lockdown) Enable cold boot attack mitigation
1373 - SAUCE: (efi-lockdown) bpf: Restrict kernel image access functions when the
1374 kernel is locked down
1375 - SAUCE: (efi-lockdown) scsi: Lock down the eata driver
1376 - SAUCE: (efi-lockdown) Prohibit PCMCIA CIS storage when the kernel is locked
1377 down
1378 - SAUCE: (efi-lockdown) Lock down TIOCSSERIAL
1379 - SAUCE: (efi-lockdown) Add EFI signature data types
1380 - SAUCE: (efi-lockdown) Add an EFI signature blob parser and key loader.
1381 - SAUCE: (efi-lockdown) KEYS: Add a system blacklist keyring
1382 - SAUCE: (efi-lockdown) MODSIGN: Import certificates from UEFI Secure Boot
1383 - SAUCE: (efi-lockdown) MODSIGN: Support not importing certs from db
1384 - SAUCE: (efi-lockdown) MODSIGN: Don't try secure boot if EFI runtime is
1385 disabled
1386 - SAUCE: (efi-lockdown) efi: Sanitize boot_params in efi stub
1387 - SAUCE: (efi-lockdown) efi: Add secure_boot state and status bit for
1388 MokSBState
1389 - SAUCE: (efi-lockdown) efi: Add sysctls for secureboot and MokSBState
1390 - [Config] Set values for UEFI secure boot lockdown options
1391 - Update dropped.txt
1392
1393 [ Upstream Kernel Changes ]
1394
1395 * rebase to v4.11
1396
1397 -- Seth Forshee <seth.forshee@canonical.com> Fri, 05 May 2017 07:43:14 -0500
1398
1399 linux (4.11.0-1.6) artful; urgency=low
1400
1401 * Miscellaneous Ubuntu changes
1402 - [Debian] Use default compression for all packages
1403 - SAUCE: (namespace) block_dev: Support checking inode permissions in
1404 lookup_bdev()
1405 - SAUCE: (namespace) block_dev: Check permissions towards block device inode
1406 when mounting
1407 - SAUCE: (namespace) mtd: Check permissions towards mtd block device inode
1408 when mounting
1409 - SAUCE: (namespace) fs: Allow superblock owner to change ownership of inodes
1410 - SAUCE: (namespace) fs: Don't remove suid for CAP_FSETID for userns root
1411 - SAUCE: (namespace) fs: Allow superblock owner to access do_remount_sb()
1412 - SAUCE: (namespace) capabilities: Allow privileged user in s_user_ns to set
1413 security.* xattrs
1414 - SAUCE: (namespace) fs: Allow CAP_SYS_ADMIN in s_user_ns to freeze and thaw
1415 filesystems
1416 - SAUCE: (namespace) fuse: Add support for pid namespaces
1417 - SAUCE: (namespace) fuse: Support fuse filesystems outside of init_user_ns
1418 - SAUCE: (namespace) fuse: Restrict allow_other to the superblock's namespace
1419 or a descendant
1420 - SAUCE: (namespace) fuse: Allow user namespace mounts
1421 - SAUCE: (namespace) ext4: Add support for unprivileged mounts from user
1422 namespaces
1423 - SAUCE: (namespace) evm: Don't update hmacs in user ns mounts
1424 - SAUCE: (namespace) ext4: Add module parameter to enable user namespace
1425 mounts
1426 - SAUCE: (namespace) block_dev: Forbid unprivileged mounting when device is
1427 opened for writing
1428
1429 -- Seth Forshee <seth.forshee@canonical.com> Wed, 26 Apr 2017 10:08:29 -0500
1430
1431 linux (4.11.0-0.5) artful; urgency=low
1432
1433 * [Hyper-V][SAUCE] pci-hyperv: Use only 16 bit integer for PCI domain
1434 (LP: #1684971)
1435 - SAUCE: pci-hyperv: Use only 16 bit integer for PCI domain
1436
1437 * [Hyper-V] Ubuntu 14.04.2 LTS Generation 2 SCSI Errors on VSS Based Backups
1438 (LP: #1470250)
1439 - SAUCE: Tools: hv: vss: Thaw the filesystem and continue after freeze fails
1440
1441 * Enable virtual scsi server driver for Power (LP: #1615665)
1442 - SAUCE: Return TCMU-generated sense data to fabric module
1443
1444 * include/linux/security.h header syntax error with !CONFIG_SECURITYFS
1445 (LP: #1630990)
1446 - SAUCE: (no-up) include/linux/security.h -- fix syntax error with
1447 CONFIG_SECURITYFS=n
1448
1449 * Miscellaneous Ubuntu changes
1450 - SAUCE: Import aufs driver
1451 - [Config] Enable aufs
1452 - [Debian] Add script to update virtualbox
1453 - ubuntu: vbox -- Update to 5.1.20-dfsg-2
1454 - Enable vbox
1455 - SAUCE: aufs -- Include linux/mm.h in fs/aufs/file.h
1456
1457 [ Upstream Kernel Changes ]
1458
1459 * rebase to v4.11-rc8
1460
1461 -- Seth Forshee <seth.forshee@canonical.com> Tue, 25 Apr 2017 13:42:54 -0500
1462
1463 linux (4.11.0-0.4) zesty; urgency=low
1464
1465 * POWER9: Improve performance on memory management (LP: #1681429)
1466 - SAUCE: powerpc/mm/radix: Don't do page walk cache flush when doing full mm
1467 flush
1468 - SAUCE: powerpc/mm/radix: Remove unnecessary ptesync
1469
1470 * Miscellaneous Ubuntu changes
1471 - find-missing-sauce.sh
1472
1473 [ Upstream Kernel Changes ]
1474
1475 * rebase to v4.11-rc7
1476
1477 -- Seth Forshee <seth.forshee@canonical.com> Tue, 18 Apr 2017 08:19:43 -0500
1478
1479 linux (4.11.0-0.3) zesty; urgency=low
1480
1481 * Disable CONFIG_HVC_UDBG on ppc64el (LP: #1680888)
1482 - [Config] Disable CONFIG_HVC_UDBG on ppc64el
1483
1484 * smartpqi driver needed in initram disk and installer (LP: #1680156)
1485 - [Config] Add smartpqi to d-i
1486
1487 * Disable CONFIG_SECURITY_SELINUX_DISABLE (LP: #1680315)
1488 - [Config] CONFIG_SECURITY_SELINUX_DISABLE=n
1489
1490 * Miscellaneous Ubuntu changes
1491 - [Config] flash-kernel should be a Breaks
1492 - [Config] drop the info directory
1493 - [Config] drop NOTES as obsolete
1494 - [Config] drop changelog.historical as obsolete
1495 - rebase to v4.11-rc6
1496
1497 [ Upstream Kernel Changes ]
1498
1499 * rebase to v4.11-rc6
1500
1501 -- Tim Gardner <tim.gardner@canonical.com> Tue, 11 Apr 2017 07:16:52 -0600
1502
1503 linux (4.11.0-0.2) zesty; urgency=low
1504
1505 [ Upstream Kernel Changes ]
1506
1507 * rebase to v4.11-rc5
1508
1509 -- Tim Gardner <tim.gardner@canonical.com> Mon, 03 Apr 2017 08:26:07 +0100
1510
1511 linux (4.11.0-0.1) zesty; urgency=low
1512
1513 [ Upstream Kernel Changes ]
1514
1515 * rebase to v4.11-rc4
1516 - LP: #1591053
1517
1518 -- Tim Gardner <tim.gardner@canonical.com> Mon, 20 Mar 2017 05:15:32 -0600
1519
1520 linux (4.11.0-0.0) zesty; urgency=low
1521
1522 * dummy entry
1523
1524 -- Tim Gardner <tim.gardner@canonical.com> Mon, 20 Mar 2017 05:15:32 -0600