UbuntuUpdates.org

Package "linux-azure-edge"

This package belongs to a PPA: Canonical Kernel Team




Name: linux-azure-edge

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Header files related to Linux kernel version 4.18.0
  • Header files related to Linux kernel version 4.18.0
  • Header files related to Linux kernel version 4.18.0
  • Header files related to Linux kernel version 4.18.0

Latest version: *DELETED*
Release: bionic (18.04)
Level: base
Repository: main

Links



Other versions of "linux-azure-edge" in Bionic

Repository Area Version
security main 5.0.0-1012.12~18.04.2
updates main 5.0.0-1012.12~18.04.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 4.18.0-1005.5~18.04.1 2018-11-22 09:08:03 UTC

 linux-azure-edge (4.18.0-1005.5~18.04.1) bionic; urgency=medium
 .
   * linux-azure-edge: 4.18.0-1005.5~18.04.1 -proposed tracker (LP: #1802747)
 .
   * linux-headers-4.18.0-1004-azure contains links to non-existing targets
     (LP: #1803335)
     - [Package] fix indep_hdrs_pkg_name
 .
   * linux-azure: 4.18.0-1005.5 -proposed tracker (LP: #1802752)
 .
   * [Hyper-V] Fix IRQ spreading on NVMe devices with lower numbers of channels
     (LP: #1802358)
     - SAUCE: genirq/affinity: Spread IRQs to all available NUMA nodes
     - SAUCE: irq/matrix: Split out the CPU selection code into a helper
     - SAUCE: irq/matrix: Spread managed interrupts on allocation
     - SAUCE: genirq/matrix: Improve target CPU selection for managed interrupts.
 .
   [ Ubuntu: 4.18.0-12.13 ]
 .
   * linux: 4.18.0-12.13 -proposed tracker (LP: #1802743)
   * [FEAT] Guest-dedicated Crypto Adapters (LP: #1787405)
     - s390/zcrypt: Add ZAPQ inline function.
     - s390/zcrypt: Review inline assembler constraints.
     - s390/zcrypt: Integrate ap_asm.h into include/asm/ap.h.
     - s390/zcrypt: fix ap_instructions_available() returncodes
     - KVM: s390: vsie: simulate VCPU SIE entry/exit
     - KVM: s390: introduce and use KVM_REQ_VSIE_RESTART
     - KVM: s390: refactor crypto initialization
     - s390: vfio-ap: base implementation of VFIO AP device driver
     - s390: vfio-ap: register matrix device with VFIO mdev framework
     - s390: vfio-ap: sysfs interfaces to configure adapters
     - s390: vfio-ap: sysfs interfaces to configure domains
     - s390: vfio-ap: sysfs interfaces to configure control domains
     - s390: vfio-ap: sysfs interface to view matrix mdev matrix
     - KVM: s390: interface to clear CRYCB masks
     - s390: vfio-ap: implement mediated device open callback
     - s390: vfio-ap: implement VFIO_DEVICE_GET_INFO ioctl
     - s390: vfio-ap: zeroize the AP queues
     - s390: vfio-ap: implement VFIO_DEVICE_RESET ioctl
     - KVM: s390: Clear Crypto Control Block when using vSIE
     - KVM: s390: vsie: Do the CRYCB validation first
     - KVM: s390: vsie: Make use of CRYCB FORMAT2 clear
     - KVM: s390: vsie: Allow CRYCB FORMAT-2
     - KVM: s390: vsie: allow CRYCB FORMAT-1
     - KVM: s390: vsie: allow CRYCB FORMAT-0
     - KVM: s390: vsie: allow guest FORMAT-0 CRYCB on host FORMAT-1
     - KVM: s390: vsie: allow guest FORMAT-1 CRYCB on host FORMAT-2
     - KVM: s390: vsie: allow guest FORMAT-0 CRYCB on host FORMAT-2
     - KVM: s390: device attrs to enable/disable AP interpretation
     - KVM: s390: CPU model support for AP virtualization
     - s390: doc: detailed specifications for AP virtualization
     - KVM: s390: fix locking for crypto setting error path
     - KVM: s390: Tracing APCB changes
     - s390: vfio-ap: setup APCB mask using KVM dedicated function
     - [Config:] Enable CONFIG_S390_AP_IOMMU and set CONFIG_VFIO_AP to module.
   * Bypass of mount visibility through userns + mount propagation (LP: #1789161)
     - mount: Retest MNT_LOCKED in do_umount
     - mount: Don't allow copying MNT_UNBINDABLE|MNT_LOCKED mounts
   * CVE-2018-18955: nested user namespaces with more than five extents
     incorrectly grant privileges over inode (LP: #1801924) // CVE-2018-18955
     - userns: also map extents in the reverse map to kernel IDs
   * kdump fail due to an IRQ storm (LP: #1797990)
     - SAUCE: x86/PCI: Export find_cap() to be used in early PCI code
     - SAUCE: x86/quirks: Add parameter to clear MSIs early on boot
     - SAUCE: x86/quirks: Scan all busses for early PCI quirks
   * crash in ENA driver on removing an interface (LP: #1802341)
     - SAUCE: net: ena: fix crash during ena_remove()
   * Ubuntu 18.04.1 - [s390x] Kernel panic while stressing network bonding
     (LP: #1797367)
     - s390/qeth: reduce hard-coded access to ccw channels
     - s390/qeth: sanitize strings in debug messages
   * Add checksum offload and TSO support for HiNIC adapters (LP: #1800664)
     - net-next/hinic: add checksum offload and TSO support
   * smartpqi updates for ubuntu 18.04.2 (LP: #1798208)
     - scsi: smartpqi: improve handling for sync requests
     - scsi: smartpqi: improve error checking for sync requests
     - scsi: smartpqi: add inspur advantech ids
     - scsi: smartpqi: fix critical ARM issue reading PQI index registers
     - scsi: smartpqi: bump driver version to 1.1.4-130
   * [GLK/CLX] Enhanced IBRS (LP: #1786139)
     - x86/speculation: Remove SPECTRE_V2_IBRS in enum spectre_v2_mitigation
     - x86/speculation: Support Enhanced IBRS on future CPUs
   * Enable keyboard wakeup for S2Idle laptops (LP: #1798552)
     - Input: i8042 - enable keyboard wakeups by default when s2idle is used
   * Overlayfs in user namespace leaks directory content of inaccessible
     directories (LP: #1793458) // CVE-2018-6559
     - SAUCE: overlayfs: ensure mounter privileges when reading directories
   * Update ENA driver to version 2.0.1K (LP: #1798182)
     - net: ena: remove ndo_poll_controller
     - net: ena: fix auto casting to boolean
     - net: ena: minor performance improvement
     - net: ena: complete host info to match latest ENA spec
     - net: ena: introduce Low Latency Queues data structures according to ENA spec
     - net: ena: add functions for handling Low Latency Queues in ena_com
     - net: ena: add functions for handling Low Latency Queues in ena_netdev
     - net: ena: use CSUM_CHECKED device indication to report skb's checksum status
     - net: ena: explicit casting and initialization, and clearer error handling
     - net: ena: limit refill Rx threshold to 256 to avoid latency issues
     - net: ena: change rx copybreak default to reduce kernel memory pressure
     - net: ena: remove redundant parameter in ena_com_admin_init()
     - net: ena: update driver version to 2.0.1
     - net: ena: fix indentations in ena_defs for better readability
     - net: ena: Fix Kconfig dependency on X86
     - net: ena: enable Low Latency Queues
     - net: ena: fix compila

Source diff to previous version
1803335 linux-headers-4.18.0-1004-azure contains links to non-existing targets
1802358 [Hyper-V] Fix IRQ spreading on NVMe devices with lower numbers of channels
1787405 [FEAT] Guest-dedicated Crypto Adapters
1789161 Bypass of mount visibility through userns + mount propagation
1801924 CVE-2018-18955: nested user namespaces with more than five extents incorrectly grant privileges over inode
1797990 kdump fail due to an IRQ storm
1797367 Ubuntu 18.04.1 - [s390x] Kernel panic while stressing network bonding
1800664 Add checksum offload and TSO support for HiNIC adapters
1798208 smartpqi updates for ubuntu 18.04.2
1786139 [GLK/CLX] Enhanced IBRS
1798552 Enable keyboard wakeup for S2Idle laptops
1793458 Overlayfs in user namespace leaks directory content of inaccessible directories
1798182 Update ENA driver to version 2.0.1K
1802119 Cosmic update: 4.18.17 upstream stable release
1802100 Cosmic update: 4.18.16 upstream stable release
1802082 Cosmic update: 4.18.15 upstream stable release
1801986 Cosmic update: 4.18.14 upstream stable release
1801931 Cosmic update: 4.18.13 upstream stable release
1775068 Volume control not working Dell XPS 27 (7760)
1799281 [Bionic][Cosmic] ipmi: Fix timer race with module unload
1799794 [Bionic][Cosmic] Fix to ipmi to support vendor specific messages greater than 255 bytes
1798863 18.10 kernel does not appear to validate kernel module signatures correctly
1800639 [Ubuntu] net/af_iucv: fix skb leaks for HiperTransport
1801875 Power consumption during s2idle is higher than long idle(sk hynix)
1801878 NULL pointer dereference at 0000000000000020 when access dst_orig-\u003eops-\u003efamily in function xfrm_lookup_with_ifid()
1802023 hns3: map tx ring to tc
1800641 [Ubuntu] qeth: Fix potential array overrun in cmd/rc lookup
1799393 Mellanox CX5 stops pinging with rx_wqe_err (mlx5_core)
1798165 Vulkan applications cause permanent memory leak with Intel GPU
1786013 Packaging resync
CVE-2018-18955 userns: also map extents in the reverse map to kernel IDs
CVE-2018-6559 The Linux kernel, as used in Ubuntu 18.04 LTS and Ubuntu 18.10, allows local users to obtain names of files in which they would not normally be able
CVE-2018-18653 The Linux kernel, as used in Ubuntu 18.10 and when booted with UEFI Secure Boot enabled, allows privileged local users to bypass intended Secure Boot

Version: 4.18.0-1004.4~18.04.1 2018-10-25 16:08:41 UTC

 linux-azure-edge (4.18.0-1004.4~18.04.1) bionic; urgency=medium
 .
   * linux-azure-edge: 4.18.0-1004.4~18.04.1 -proposed tracker (LP: #1799448)
 .
   [ Ubuntu: 4.18.0-1004.4 ]
 .
   * linux-azure: 4.18.0-1004.4 -proposed tracker (LP: #1799451)
   * Shared folders cannot be mounted in ubuntu/cosmic64 due to missing vbox
     modules (LP: #1796647)
     - [Config] azure: CONFIG_VBOXGUEST=n
   * netfilter: nf_conntrack: resolve clash for matching conntracks
     (LP: #1795493)
     - SAUCE: netfilter: nf_conntrack: resolve clash for matching conntracks
     - SAUCE: netfilter: nf_nat: return the same reply tuple for matching CTs
   * [Hyper-V] Enable NVME devices (LP: #1793386)
     - [Config] linux-azure: CONFIG_BLK_DEV_NVME=y
   * linux-azure: fix getabis information (LP: #1793462)
     - [Packaging] linux-azure: fix getabis
   * linux: 4.18.0-11.12 -proposed tracker (LP: #1799445)
   * arm64: snapdragon: WARNING: CPU: 0 PID: 1 arch/arm64/kernel/setup.c:271
     reserve_memblock_reserved_regions (LP: #1797139)
     - SAUCE: arm64: Fix /proc/iomem for reserved but not memory regions
   * arm64: snapdragon: WARNING: CPU: 0 PID: 1 at drivers/irqchip/irq-gic.c:1016
     gic_irq_domain_translate (LP: #1797143)
     - SAUCE: arm64: dts: msm8916: camms: fix gic_irq_domain_translate warnings
   * The front MIC can't work on the Lenovo M715 (LP: #1797292)
     - ALSA: hda/realtek - Fix the problem of the front MIC on the Lenovo M715
   * Provide mode where all vCPUs on a core must be the same VM (LP: #1792957)
     - KVM: PPC: Book3S HV: Provide mode where all vCPUs on a core must be the same
       VM
   * fscache: bad refcounting in fscache_op_complete leads to OOPS (LP: #1797314)
     - SAUCE: fscache: Fix race in decrementing refcount of op->npages
   * hns3: autoneg settings get lost on down/up (LP: #1797654)
     - net: hns3: Fix for information of phydev lost problem when down/up
   * not able to unwind the stack from within __kernel_clock_gettime in the Linux
     vDSO (LP: #1797963)
     - powerpc/vdso: Correct call frame information
   * Signal 7 error when running GPFS tracing in cluster (LP: #1792195)
     - powerpc/mm/books3s: Add new pte bit to mark pte temporarily invalid.
     - powerpc/mm/radix: Only need the Nest MMU workaround for R -> RW transition
   * Support Edge Gateway's WIFI LED (LP: #1798330)
     - SAUCE: mwifiex: Switch WiFi LED state according to the device status
   * Support Edge Gateway's Bluetooth LED (LP: #1798332)
     - SAUCE: Bluetooth: Support for LED on Edge Gateways
   * kvm doesn't work on 36 physical bits systems (LP: #1798427)
     - KVM: x86: fix L1TF's MMIO GFN calculation
   * CVE-2018-15471
     - xen-netback: fix input validation in xenvif_set_hash_mapping()
   * regression in 'ip --family bridge neigh' since linux v4.12 (LP: #1796748)
     - rtnetlink: fix rtnl_fdb_dump() for ndmsg header
   * linux: 4.18.0-10.11 -proposed tracker (LP: #1797379)
   * the machine of lenovo M715 with the AMD GPU (Radeon Vega 8 Mobile, rev ca,
     1002:15dd) often hangs randomly (LP: #1796789)
     - drm/amd: Add missing fields in atom_integrated_system_info_v1_11
   * Miscellaneous Ubuntu changes
     - [Config] CONFIG_VBOXGUEST=n
     - ubuntu: vbox -- update to 5.2.18-dfsg-2
     - ubuntu: enable vbox build

Source diff to previous version
1796647 Shared folders cannot be mounted in ubuntu/cosmic64 due to missing vbox modules
1795493 netfilter: nf_conntrack: resolve clash for matching conntracks
1793386 [Hyper-V] Enable NVME devices
1793462 linux-azure: fix getabis information
1797139 arm64: snapdragon: WARNING: CPU: 0 PID: 1 arch/arm64/kernel/setup.c:271 reserve_memblock_reserved_regions
1797143 arm64: snapdragon: WARNING: CPU: 0 PID: 1 at drivers/irqchip/irq-gic.c:1016 gic_irq_domain_translate
1797292 The front MIC can't work on the Lenovo M715
1792957 Provide mode where all vCPUs on a core must be the same VM
1797314 fscache: bad refcounting in fscache_op_complete leads to OOPS
1797654 hns3: autoneg settings get lost on down/up
1797963 not able to unwind the stack from within __kernel_clock_gettime in the Linux vDSO
1792195 Signal 7 error when running GPFS tracing in cluster
1798330 Support Edge Gateway's WIFI LED
1798332 Support Edge Gateway's Bluetooth LED
1798427 kvm doesn't work on 36 physical bits systems
1796748 regression in 'ip --family bridge neigh' since linux v4.12
1796789 the machine of lenovo M715 with the AMD GPU (Radeon Vega 8 Mobile, rev ca, 1002:15dd) often hangs randomly
CVE-2018-15471 An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.

Version: 4.18.0-1003.3~18.04.1 2018-10-10 01:07:49 UTC

 linux-azure-edge (4.18.0-1003.3~18.04.1) bionic; urgency=medium
 .
   * linux-azure-edge: 4.18.0-1003.3~18.04.1 -proposed tracker (LP: #1796348)
 .
   * netfilter: nf_conntrack: resolve clash for matching conntracks
     (LP: #1795493)
     - SAUCE: netfilter: nf_conntrack: resolve clash for matching conntracks
     - SAUCE: netfilter: nf_nat: return the same reply tuple for matching CTs
 .
   [ Ubuntu: 4.18.0-9.10 ]
 .
   * linux: 4.18.0-9.10 -proposed tracker (LP: #1796346)
   * Cosmic update: v4.18.12 upstream stable release (LP: #1796139)
     - crypto: skcipher - Fix -Wstringop-truncation warnings
     - iio: adc: ina2xx: avoid kthread_stop() with stale task_struct
     - tsl2550: fix lux1_input error in low light
     - misc: ibmvmc: Use GFP_ATOMIC under spin lock
     - vmci: type promotion bug in qp_host_get_user_memory()
     - siox: don't create a thread without starting it
     - x86/numa_emulation: Fix emulated-to-physical node mapping
     - staging: rts5208: fix missing error check on call to rtsx_write_register
     - power: supply: axp288_charger: Fix initial constant_charge_current value
     - misc: sram: enable clock before registering regions
     - serial: sh-sci: Stop RX FIFO timer during port shutdown
     - uwb: hwa-rc: fix memory leak at probe
     - power: vexpress: fix corruption in notifier registration
     - iommu/amd: make sure TLB to be flushed before IOVA freed
     - Bluetooth: Add a new Realtek 8723DE ID 0bda:b009
     - USB: serial: kobil_sct: fix modem-status error handling
     - 6lowpan: iphc: reset mac_header after decompress to fix panic
     - iommu/msm: Don't call iommu_device_{,un}link from atomic context
     - s390/mm: correct allocate_pgste proc_handler callback
     - power: remove possible deadlock when unregistering power_supply
     - drm/amd/display/dc/dce: Fix multiple potential integer overflows
     - drm/amd/display: fix use of uninitialized memory
     - md-cluster: clear another node's suspend_area after the copy is finished
     - cxgb4: Fix the condition to check if the card is T5
     - RDMA/bnxt_re: Fix a couple off by one bugs
     - RDMA/i40w: Hold read semaphore while looking after VMA
     - RDMA/bnxt_re: Fix a bunch of off by one bugs in qplib_fp.c
     - IB/core: type promotion bug in rdma_rw_init_one_mr()
     - media: exynos4-is: Prevent NULL pointer dereference in __isp_video_try_fmt()
     - IB/mlx4: Test port number before querying type.
     - powerpc/kdump: Handle crashkernel memory reservation failure
     - media: fsl-viu: fix error handling in viu_of_probe()
     - vhost_net: Avoid tx vring kicks during busyloop
     - media: staging/imx: fill vb2_v4l2_buffer field entry
     - IB/mlx5: Fix GRE flow specification
     - include/rdma/opa_addr.h: Fix an endianness issue
     - x86/tsc: Add missing header to tsc_msr.c
     - ARM: hwmod: RTC: Don't assume lock/unlock will be called with irq enabled
     - x86/entry/64: Add two more instruction suffixes
     - ARM: dts: ls1021a: Add missing cooling device properties for CPUs
     - scsi: target/iscsi: Make iscsit_ta_authentication() respect the output
       buffer size
     - thermal: i.MX: Allow thermal probe to fail gracefully in case of bad
       calibration.
     - scsi: klist: Make it safe to use klists in atomic context
     - scsi: ibmvscsi: Improve strings handling
     - scsi: target: Avoid that EXTENDED COPY commands trigger lock inversion
     - usb: wusbcore: security: cast sizeof to int for comparison
     - ath10k: sdio: use same endpoint id for all packets in a bundle
     - ath10k: sdio: set skb len for all rx packets
     - powerpc/powernv/ioda2: Reduce upper limit for DMA window size
     - platform/x86: asus-wireless: Fix uninitialized symbol usage
     - ACPI / button: increment wakeup count only when notified
     - s390/sysinfo: add missing #ifdef CONFIG_PROC_FS
     - alarmtimer: Prevent overflow for relative nanosleep
     - s390/dasd: correct numa_node in dasd_alloc_queue
     - s390/scm_blk: correct numa_node in scm_blk_dev_setup
     - s390/extmem: fix gcc 8 stringop-overflow warning
     - mtd: rawnand: atmel: add module param to avoid using dma
     - iio: accel: adxl345: convert address field usage in iio_chan_spec
     - posix-timers: Make forward callback return s64
     - posix-timers: Sanitize overrun handling
     - ALSA: snd-aoa: add of_node_put() in error path
     - selftests: forwarding: Tweak tc filters for mirror-to-gretap tests
     - ath10k: use locked skb_dequeue for rx completions
     - media: s3c-camif: ignore -ENOIOCTLCMD from v4l2_subdev_call for s_power
     - media: soc_camera: ov772x: correct setting of banding filter
     - media: omap3isp: zero-initialize the isp cam_xclk{a,b} initial data
     - media: ov772x: add checks for register read errors
     - staging: android: ashmem: Fix mmap size validation
     - media: ov772x: allow i2c controllers without I2C_FUNC_PROTOCOL_MANGLING
     - staging: mt7621-eth: Fix memory leak in mtk_add_mac() error path
     - drivers/tty: add error handling for pcmcia_loop_config
     - arm64: dts: renesas: salvator-common: Fix adv7482 decimal unit addresses
     - serial: pxa: Fix an error handling path in 'serial_pxa_probe()'
     - staging: mt7621-dts: Fix remaining pcie warnings
     - media: tm6000: add error handling for dvb_register_adapter
     - ASoC: qdsp6: qdafe: fix some off by one bugs
     - net: phy: xgmiitorgmii: Check read_status results
     - ath10k: protect ath10k_htt_rx_ring_free with rx_ring.lock
     - drm/sun4i: Enable DW HDMI PHY clock
     - net: phy: xgmiitorgmii: Check phy_driver ready before accessing
     - drm/sun4i: Fix releasing node when enumerating enpoints
     - ath10k: transmit queued frames after processing rx packets
     - mt76x2: fix mrr idx/count estimation in mt76x2_mac_fill_tx_status()
     - rndis_wlan: potential buffer overflow in rndis_wlan_auth_indication()
     - brcmsmac: fix wrap around in conversion from constant to s16
     

Source diff to previous version
1795493 netfilter: nf_conntrack: resolve clash for matching conntracks
1796139 Cosmic update: v4.18.12 upstream stable release
1795784 Fix usbcore.quirks when used at boot
1727235 Dell new AIO requires a new uart backlight driver
1783964 Please make CONFIG_PWM_LPSS_PCI and CONFIG_PWM_LPSS_PLATFORM built in to make brightness adjustment working on various BayTrail/CherryTrail-based dev
1794346 check and fix zkey required kernel modules locations in debs, udebs, and initramfs
1795036 iptables --list --numeric fails on -virtual kernel / -virtual missing bpfilter
1795665 fails to build on armhf because of module rename
1793086 qeth: use vzalloc for QUERY OAT buffer
1795486 Cosmic update to 4.18.11 stable release
1794597 Cosmic update to 4.18.10 stable release
1774366 Fix MCE handling for user access of poisoned device-dax mapping
1794294 [Ubuntu] s390/crypto: Fix return code checking in cbc_paes_crypt.
1790652 Oracle cosmic image does not find broadcom network device in Shape VMStandard2.1
1793430 Page leaking in cachefiles_read_backing_file while vmscan is active
1793394 hns3: enable ethtool rx-vlan-filter on supported hw
1793404 hns3: Modifying channel parameters will reset ring parameters back to defaults
1794151 hisi_sas: Add SATA FIX check for v3 hw
1794156 Fix potential corruption using SAS controller on HiSilicon arm64 boards
1794165 hisi_sas: Reduce unnecessary spin lock contention
1794166 Add functional level reset support for the SAS controller on HiSilicon D06 systems
1794172 HiSilicon SAS controller doesn't recover from PHY STP link timeout
1793682 Cosmic update to 4.18.9 stable release
1793463 SRU: Enable middle button of touchpad on ThinkPad P72
1793461 Improvements to the kernel source package preparation
1793221 hns3: Retrieve RoCE MSI-X config from firmware
1793338 Fix unusable NVIDIA GPU after S3
1792209 net: hns: Avoid hang when link is changed while handling packets
1793069 Cosmic update to v4.18.8 stable release
1788308 [Regression] Colour banding appears on Lenovo B50-80 integrated display
1792309 Fix I2C touchpanels' interrupt storms after system suspend
1769937 Error reported when creating ZFS pool with \
1792044 update ENA driver to latest mainline version
1792099 device hotplug of vfio devices can lead to deadlock in vfio_pci_release
1787089 [AEP-bug] ext4: more rare direct I/O vs unmap failures
1789146 [Bug][CLX]assertion failure with util_range_rw using libpmemlog, possible kernel DAX bug
1730836 [Feature] Optimize huge page clear/copy cache behavior
1771245 [ICL] Touch support
CVE-2018-5391 RESERVED
CVE-2018-14633 A security flaw was found in the chap_server_compute_md5() function in the ISCSI target code in the Linux kernel in a way an authentication request f

Version: 4.18.0-1002.2~18.04.1 2018-09-27 16:09:24 UTC

 linux-azure-edge (4.18.0-1002.2~18.04.1) bionic; urgency=medium
 .
   * linux-azure-edge: 4.18.0-1002.2~18.04.1 -proposed tracker (LP: #1794610)
     - link-to-tracker: update tracking bug
 .
   * Improvements to the kernel source package preparation (LP: #1793461)
     - Packaging: update-from-master: allow rebase to be skipped
     - [Packaging] startnewrelease: add support for backport kernels
 .
   * linux-azure: fix getabis information (LP: #1793462)
     - [Packaging] linux-azure-edge: fix getabis
 .
   * Miscellaneous Ubuntu changes
     - Packaging: final-checks: remove trailing backport suffix
 .
   [ Ubuntu: 4.18.0-8.9 ]
 .
   * linux: 4.18.0-8.9 -proposed tracker (LP: #1791663)
   * Cosmic update to v4.18.7 stable release (LP: #1791660)
     - rcu: Make expedited GPs handle CPU 0 being offline
     - net: 6lowpan: fix reserved space for single frames
     - net: mac802154: tx: expand tailroom if necessary
     - 9p/net: Fix zero-copy path in the 9p virtio transport
     - spi: davinci: fix a NULL pointer dereference
     - spi: pxa2xx: Add support for Intel Ice Lake
     - spi: spi-fsl-dspi: Fix imprecise abort on VF500 during probe
     - spi: cadence: Change usleep_range() to udelay(), for atomic context
     - mmc: block: Fix unsupported parallel dispatch of requests
     - mmc: renesas_sdhi_internal_dmac: mask DMAC interrupts
     - mmc: renesas_sdhi_internal_dmac: fix #define RST_RESERVED_BITS
     - readahead: stricter check for bdi io_pages
     - block: fix infinite loop if the device loses discard capability
     - block: blk_init_allocated_queue() set q->fq as NULL in the fail case
     - block: really disable runtime-pm for blk-mq
     - blkcg: Introduce blkg_root_lookup()
     - block: Introduce blk_exit_queue()
     - block: Ensure that a request queue is dissociated from the cgroup controller
     - apparmor: fix bad debug check in apparmor_secid_to_secctx()
     - dma-buf: Move BUG_ON from _add_shared_fence to _add_shared_inplace
     - libertas: fix suspend and resume for SDIO connected cards
     - media: Revert "[media] tvp5150: fix pad format frame height"
     - mailbox: xgene-slimpro: Fix potential NULL pointer dereference
     - Replace magic for trusting the secondary keyring with #define
     - Fix kexec forbidding kernels signed with keys in the secondary keyring to
       boot
     - powerpc/fadump: handle crash memory ranges array index overflow
     - powerpc/64s: Fix page table fragment refcount race vs speculative references
     - powerpc/pseries: Fix endianness while restoring of r3 in MCE handler.
     - powerpc/pkeys: Give all threads control of their key permissions
     - powerpc/pkeys: Deny read/write/execute by default
     - powerpc/pkeys: key allocation/deallocation must not change pkey registers
     - powerpc/pkeys: Save the pkey registers before fork
     - powerpc/pkeys: Fix calculation of total pkeys.
     - powerpc/pkeys: Preallocate execute-only key
     - powerpc/nohash: fix pte_access_permitted()
     - powerpc64/ftrace: Include ftrace.h needed for enable/disable calls
     - powerpc/powernv/pci: Work around races in PCI bridge enabling
     - cxl: Fix wrong comparison in cxl_adapter_context_get()
     - IB/mlx5: Honor cnt_set_id_valid flag instead of set_id
     - IB/mlx5: Fix leaking stack memory to userspace
     - IB/srpt: Fix srpt_cm_req_recv() error path (1/2)
     - IB/srpt: Fix srpt_cm_req_recv() error path (2/2)
     - IB/srpt: Support HCAs with more than two ports
     - overflow.h: Add arithmetic shift helper
     - RDMA/mlx5: Fix shift overflow in mlx5_ib_create_wq
     - ib_srpt: Fix a use-after-free in srpt_close_ch()
     - ib_srpt: Fix a use-after-free in __srpt_close_all_ch()
     - RDMA/rxe: Set wqe->status correctly if an unexpected response is received
     - 9p: fix multiple NULL-pointer-dereferences
     - fs/9p/xattr.c: catch the error of p9_client_clunk when setting xattr failed
     - 9p/virtio: fix off-by-one error in sg list bounds check
     - net/9p/client.c: version pointer uninitialized
     - net/9p/trans_fd.c: fix race-condition by flushing workqueue before the
       kfree()
     - dm integrity: change 'suspending' variable from bool to int
     - dm thin: stop no_space_timeout worker when switching to write-mode
     - dm cache metadata: save in-core policy_hint_size to on-disk superblock
     - dm cache metadata: set dirty on all cache blocks after a crash
     - dm crypt: don't decrease device limits
     - dm writecache: fix a crash due to reading past end of dirty_bitmap
     - uart: fix race between uart_put_char() and uart_shutdown()
     - Drivers: hv: vmbus: Fix the offer_in_progress in vmbus_process_offer()
     - Drivers: hv: vmbus: Reset the channel callback in vmbus_onoffer_rescind()
     - iio: sca3000: Fix missing return in switch
     - iio: ad9523: Fix displayed phase
     - iio: ad9523: Fix return value for ad952x_store()
     - extcon: Release locking when sending the notification of connector state
     - eventpoll.h: wrap casts in () properly
     - vmw_balloon: fix inflation of 64-bit GFNs
     - vmw_balloon: do not use 2MB without batching
     - vmw_balloon: VMCI_DOORBELL_SET does not check status
     - vmw_balloon: fix VMCI use when balloon built into kernel
     - rtc: omap: fix resource leak in registration error path
     - rtc: omap: fix potential crash on power off
     - tracing: Do not call start/stop() functions when tracing_on does not change
     - tracing/blktrace: Fix to allow setting same value
     - printk/tracing: Do not trace printk_nmi_enter()
     - livepatch: Validate module/old func name length
     - uprobes: Use synchronize_rcu() not synchronize_sched()
     - mfd: hi655x: Fix regmap area declared size for hi655x
     - ovl: fix wrong use of impure dir cache in ovl_iterate()
     - ACPICA: AML Parser: skip opcodes that open a scope upon parse failure
     - ACPICA: Clear status of all events when entering sleep states
     - drivers/block/z

1793461 Improvements to the kernel source package preparation
1793462 linux-azure: fix getabis information
1791660 Cosmic update to v4.18.7 stable release
1789924 Missing Intel GPU pci-id's
1789934 [18.10 FEAT] Add kernel config options for SMC-R/D
1791105 Cosmic update to v4.18.6 stable release
1790480 random oopses on s390 systems using NVMe devices
1784331 [18.10 FEAT] zcrypt DD: introduce APQN tags to support deterministic driver binding
1788097 performance drop with ATS enabled
1774366 Fix MCE handling for user access of poisoned device-dax mapping
1787477 Reconcile hns3 SAUCE patches with upstream
1786878 [Regression] kernel crashdump fails on arm64
1785780 TB 16 issue on Dell Lattitude 7490 with large amount of data
1789358 Support Power Management for Thunderbolt Controller
1773940 Enable AMD PCIe MP2 for AMDI0011
1789145 Microphone cannot be detected with front panel audio combo jack on HP Z8-G4 machine
1783651 Please enable CONFIG_PAGE_POISONING
1787945 Tango platform uses __initcall without further checks
1786902 [18.10 FEAT] SMC-Direct
CVE-2017-5715 Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an at



About   -   Send Feedback to @ubuntu_updates