UbuntuUpdates.org

Package "linux-aws-edge"


Moved to bionic:universe:security


Name: linux-aws-edge

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Header files related to Linux kernel version 4.18.0
  • Header files related to Linux kernel version 4.18.0
  • Header files related to Linux kernel version 4.18.0
  • Header files related to Linux kernel version 4.18.0

Latest version: *DELETED*
Release: bionic (18.04)
Level: proposed
Repository: universe

Links



Other versions of "linux-aws-edge" in Bionic

Repository Area Version
security universe 5.0.0-1019.21~18.04.1
updates universe 5.0.0-1019.21~18.04.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: *DELETED* 2019-11-06 13:07:08 UTC
Moved to bionic:universe:security
No changelog for deleted or moved packages.

Version: 5.0.0-1019.21~18.04.1 2019-10-04 16:06:47 UTC

  linux-aws-edge (5.0.0-1019.21~18.04.1) bionic; urgency=medium

  * bionic/linux-aws-edge: 5.0.0-1019.21~18.04.1 -proposed tracker
    (LP: #1846074)

  [ Ubuntu: 5.0.0-1019.21 ]

  * disco/linux-aws: 5.0.0-1019.21 -proposed tracker (LP: #1846075)
  * Support Hi1620 zip hw accelerator (LP: #1845355)
    - [config] Update configs after dependency change
  * disco/linux: 5.0.0-32.34 -proposed tracker (LP: #1846097)
  * CVE-2019-14814 // CVE-2019-14815 // CVE-2019-14816
    - mwifiex: Fix three heap overflow at parsing element in cfg80211_ap_settings
  * CVE-2019-15505
    - media: technisat-usb2: break out of loop at end of buffer
  * CVE-2019-2181
    - binder: check for overflow when alloc for security context
  * Support Hi1620 zip hw accelerator (LP: #1845355)
    - [Config] Enable HiSilicon QM/ZIP as modules
    - crypto: hisilicon - add queue management driver for HiSilicon QM module
    - crypto: hisilicon - add hardware SGL support
    - crypto: hisilicon - add HiSilicon ZIP accelerator support
    - crypto: hisilicon - add SRIOV support for ZIP
    - Documentation: Add debugfs doc for hisi_zip
    - crypto: hisilicon - add debugfs for ZIP and QM
    - MAINTAINERS: add maintainer for HiSilicon QM and ZIP controller driver
    - crypto: hisilicon - fix kbuild warnings
    - crypto: hisilicon - add dependency for CRYPTO_DEV_HISI_ZIP
    - crypto: hisilicon - init curr_sgl_dma to fix compile warning
    - crypto: hisilicon - add missing single_release
    - crypto: hisilicon - fix error handle in hisi_zip_create_req_q
    - crypto: hisilicon - Fix warning on printing %p with dma_addr_t
    - crypto: hisilicon - Fix return value check in hisi_zip_acompress()
    - crypto: hisilicon - avoid unused function warning
  * xfrm interface: several kernel panic (LP: #1836261)
    - xfrm interface: fix memory leak on creation
    - xfrm interface: avoid corruption on changelink
    - xfrm interface: ifname may be wrong in logs
    - xfrm interface: fix list corruption for x-netns
    - xfrm interface: fix management of phydev
  * shiftfs: drop entries from cache on unlink (LP: #1841977)
    - SAUCE: shiftfs: fix buggy unlink logic
  * shiftfs: mark kmem_cache as reclaimable (LP: #1842059)
    - SAUCE: shiftfs: mark slab objects SLAB_RECLAIM_ACCOUNT
  * Suspend to RAM(S3) does not wake up for latest megaraid and mpt3sas
    adapters(SAS3.5 onwards) (LP: #1838751)
    - PCI: Restore Resizable BAR size bits correctly for 1MB BARs
  * No sound inputs from the external microphone and headset on a Dell machine
    (LP: #1842265)
    - ALSA: hda - Expand pin_match function to match upcoming new tbls
    - ALSA: hda - Define a fallback_pin_fixup_tbl for alc269 family
  * Add -fcf-protection=none when using retpoline flags (LP: #1843291)
    - SAUCE: kbuild: add -fcf-protection=none when using retpoline flags
  * Disco update: upstream stable patchset 2019-09-25 (LP: #1845390)
    - bridge/mdb: remove wrong use of NLM_F_MULTI
    - cdc_ether: fix rndis support for Mediatek based smartphones
    - ipv6: Fix the link time qualifier of 'ping_v6_proc_exit_net()'
    - isdn/capi: check message length in capi_write()
    - ixgbe: Fix secpath usage for IPsec TX offload.
    - net: Fix null de-reference of device refcount
    - net: gso: Fix skb_segment splat when splitting gso_size mangled skb having
      linear-headed frag_list
    - net: phylink: Fix flow control resolution
    - net: sched: fix reordering issues
    - sch_hhf: ensure quantum and hhf_non_hh_weight are non-zero
    - sctp: Fix the link time qualifier of 'sctp_ctrlsock_exit()'
    - sctp: use transport pf_retrans in sctp_do_8_2_transport_strike
    - tcp: fix tcp_ecn_withdraw_cwr() to clear TCP_ECN_QUEUE_CWR
    - tipc: add NULL pointer check before calling kfree_rcu
    - tun: fix use-after-free when register netdev failed
    - gpiolib: acpi: Add gpiolib_acpi_run_edge_events_on_boot option and blacklist
    - gpio: fix line flag validation in linehandle_create
    - Btrfs: fix assertion failure during fsync and use of stale transaction
    - ixgbe: Prevent u8 wrapping of ITR value to something less than 10us
    - genirq: Prevent NULL pointer dereference in resend_irqs()
    - KVM: s390: kvm_s390_vm_start_migration: check dirty_bitmap before using it
      as target for memset()
    - KVM: s390: Do not leak kernel stack data in the KVM_S390_INTERRUPT ioctl
    - KVM: x86: work around leak of uninitialized stack contents
    - KVM: nVMX: handle page fault in vmread
    - x86/purgatory: Change compiler flags from -mcmodel=kernel to -mcmodel=large
      to fix kexec relocation errors
    - powerpc: Add barrier_nospec to raw_copy_in_user()
    - drm/meson: Add support for XBGR8888 & ABGR8888 formats
    - clk: rockchip: Don't yell about bad mmc phases when getting
    - mtd: rawnand: mtk: Fix wrongly assigned OOB buffer pointer issue
    - PCI: Always allow probing with driver_override
    - gpio: fix line flag validation in lineevent_create
    - ubifs: Correctly use tnc_next() in search_dh_cookie()
    - driver core: Fix use-after-free and double free on glue directory
    - crypto: talitos - check AES key size
    - crypto: talitos - fix CTR alg blocksize
    - crypto: talitos - check data blocksize in ablkcipher.
    - crypto: talitos - fix ECB algs ivsize
    - crypto: talitos - Do not modify req->cryptlen on decryption.
    - crypto: talitos - HMAC SNOOP NO AFEU mode requires SW icv checking.
    - firmware: ti_sci: Always request response from firmware
    - drm: panel-orientation-quirks: Add extra quirk table entry for GPD MicroPC
    - drm/mediatek: mtk_drm_drv.c: Add of_node_put() before goto
    - Revert "Bluetooth: btusb: driver to enable the usb-wakeup feature"
    - iio: adc: stm32-dfsdm: fix data type
    - modules: fix BUG when load module with rodata=n
    - modules: fix compile error if don't have strict module rwx
    - platform/x86: pmc_atom: Add CB4063 Beckhoff Automation board to
      critclk_systems DMI table
  

Source diff to previous version
1845355 Support Hi1620 zip hw accelerator
1836261 xfrm interface: several kernel panic
1841977 shiftfs: drop entries from cache on unlink
1842059 shiftfs: mark kmem_cache as reclaimable
1838751 Suspend to RAM(S3) does not wake up for latest megaraid and mpt3sas adapters(SAS3.5 onwards)
1842265 No sound inputs from the external microphone and headset on a Dell machine
1843291 Add -fcf-protection=none when using retpoline flags
1845390 Disco update: upstream stable patchset 2019-09-25
1844722 Disco update: upstream stable patchset 2019-09-19
1843622 Disco update: upstream stable patchset 2019-09-11
1838886 New ID in ums-realtek module breaks cardreader
1836912 ipv4: enable route flushing in network namespaces
1842774 Enhanced Hardware Support - Finalize Naming
CVE-2019-14814 There is heap-based buffer overflow in Linux kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows
CVE-2019-14816 There is heap-based buffer overflow in kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local
CVE-2019-15505 drivers/media/usb/dvb-usb/technisat-usb2.c in the Linux kernel through 5.2.9 has an out-of-bounds read via crafted USB device traffic (which may be r
CVE-2019-2181 In binder_transaction of binder.c in the Android kernel, there is a possible out of bounds write due to an integer overflow. This could lead to local
CVE-2019-16714 In the Linux kernel before 5.2.14, rds6_inc_info_copy in net/rds/recv.c allows attackers to obtain sensitive information from kernel stack memory bec
CVE-2019-14821 An out-of-bounds access issue was found in the Linux kernel, all versions through 5.3, in the way Linux kernel's KVM hypervisor implements the Coales

Version: 5.0.0-1018.20~18.04.1 2019-10-01 23:06:49 UTC

  linux-aws-edge (5.0.0-1018.20~18.04.1) bionic; urgency=medium

  * bionic/linux-aws-edge: 5.0.0-1018.20~18.04.1 -proposed tracker
    (LP: #1846002)

  [ Ubuntu: 5.0.0-1018.20 ]

  * disco/linux-aws: 5.0.0-1018.20 -proposed tracker (LP: #1846003)
  * disco/linux: 5.0.0-31.33 -proposed tracker (LP: #1846026)
  * Packaging resync (LP: #1786013)
    - [Packaging] update helper scripts
  * /proc/self/maps paths missing on live session (was vlc won't start; eoan
    19.10 & bionic 18.04 ubuntu/lubuntu/kubuntu/xubuntu/ubuntu-mate dailies)
    (LP: #1842382)
    - SAUCE: Revert "UBUNTU: SAUCE: shiftfs: enable overlayfs on shiftfs"

Source diff to previous version
1786013 Packaging resync
1842382 /proc/self/maps paths missing on live session (was vlc won't start; eoan 19.10 \u0026 bionic 18.04 ubuntu/lubuntu/kubuntu/xubuntu/ubuntu-mate dailies

Version: 5.0.0-1017.19~18.04.1 2019-09-19 21:06:29 UTC

  linux-aws-edge (5.0.0-1017.19~18.04.1) bionic; urgency=medium

  * bionic/linux-aws-edge: 5.0.0-1017.19~18.04.1 -proposed tracker
    (LP: #1844337)

  [ Ubuntu: 5.0.0-1017.19 ]

  * disco/linux-aws: 5.0.0-1017.19 -proposed tracker (LP: #1844338)
  * linux-aws: update EFA driver to version 1.4.0 (LP: #1844166)
    - SAUCE: efa: don't elide module initialization
    - SAUCE: linux/efa: Fix kcompat defines usage before include
    - SAUCE: linux/efa: Bump driver version to 1.3.1
    - SAUCE: linux/efa: Expose device statistics
    - SAUCE: linux/efa: Remove umem check on dereg MR flow
    - SAUCE: linux/efa: Add EFA definitions usage
    - SAUCE: linux/efa: Rate limit admin queue error prints
    - SAUCE: linux/efa: Remove check that prevents destroy of resources in error
      flows
    - SAUCE: linux/efa: Move driver_id into struct ib_device_ops
    - SAUCE: linux/efa: Move uverbs_abi_ver into struct ib_device_ops
    - SAUCE: linux/efa: Move owner into struct ib_device_ops
    - SAUCE: linux/efa: Clean destroy CQ in drivers do not return errors
    - SAUCE: linux/efa: Combine create CQ functions
    - SAUCE: linux/efa: Fix wrong ifdef clause
    - SAUCE: linux/efa: Align with CQ core allocations
    - SAUCE: linux/efa: Use existing FIELD_SIZEOF macro
    - SAUCE: linux/efa: Assign err when failing to create everbs device
    - SAUCE: linux/efa: Bump driver version to 1.4.0
  * Disco update: upstream stable patchset 2019-08-13 (LP: #1840076)
    - [Config] NOUVEAU_LEGACY_CTX_SUPPORT=y
  * AWS: per-device block I/O timeout support (LP: #1841461)
    - block: don't show io_timeout if driver has no timeout handler
  * disco/linux: 5.0.0-30.32 -proposed tracker (LP: #1844362)
  * Disco update: upstream stable patchset 2019-08-20 (LP: #1840846)
    - Revert "e1000e: fix cyclic resets at link up with active tx"
    - e1000e: start network tx queue only when link is up
    - Input: synaptics - enable SMBUS on T480 thinkpad trackpad
    - nilfs2: do not use unexported cpu_to_le32()/le32_to_cpu() in uapi header
    - drivers: base: cacheinfo: Ensure cpu hotplug work is done before Intel RDT
    - firmware: improve LSM/IMA security behaviour
    - irqchip/gic-v3-its: Fix command queue pointer comparison bug
    - clk: ti: clkctrl: Fix returning uninitialized data
    - efi/bgrt: Drop BGRT status field reserved bits check
    - perf/core: Fix perf_sample_regs_user() mm check
    - ARM: dts: gemini Fix up DNS-313 compatible string
    - ARM: omap2: remove incorrect __init annotation
    - afs: Fix uninitialised spinlock afs_volume::cb_break_lock
    - x86/apic: Fix integer overflow on 10 bit left shift of cpu_khz
    - be2net: fix link failure after ethtool offline test
    - ppp: mppe: Add softdep to arc4
    - sis900: fix TX completion
    - ARM: dts: imx6ul: fix PWM[1-4] interrupts
    - pinctrl: mcp23s08: Fix add_data and irqchip_add_nested call order
    - dm table: don't copy from a NULL pointer in realloc_argv()
    - dm verity: use message limit for data block corruption message
    - x86/boot/64: Fix crash if kernel image crosses page table boundary
    - x86/boot/64: Add missing fixup_pointer() for next_early_pgt access
    - HID: chicony: add another quirk for PixArt mouse
    - pinctrl: mediatek: Ignore interrupts that are wake only during resume
    - cpu/hotplug: Fix out-of-bounds read when setting fail state
    - pinctrl: mediatek: Update cur_mask in mask/mask ops
    - linux/kernel.h: fix overflow for DIV_ROUND_UP_ULL
    - genirq: Delay deactivation in free_irq()
    - genirq: Fix misleading synchronize_irq() documentation
    - genirq: Add optional hardware synchronization for shutdown
    - x86/ioapic: Implement irq_get_irqchip_state() callback
    - x86/irq: Handle spurious interrupt after shutdown gracefully
    - x86/irq: Seperate unused system vectors from spurious entry again
    - ARC: hide unused function unw_hdr_alloc
    - s390: fix stfle zero padding
    - s390/qdio: (re-)initialize tiqdio list entries
    - s390/qdio: don't touch the dsci in tiqdio_add_input_queues()
    - crypto: talitos - move struct talitos_edesc into talitos.h
    - crypto: talitos - fix hash on SEC1.
    - crypto/NX: Set receive window credits to max number of CRBs in RxFIFO
    - drm/udl: introduce a macro to convert dev to udl.
    - drm/udl: move to embedding drm device inside udl device.
    - x86/entry/32: Fix ENDPROC of common_spurious
    - irqchip/irq-csky-mpintc: Support auto irq deliver to all cpus
    - arm64: dts: ls1028a: Fix CPU idle fail.
    - selftests/powerpc: Add test of fork with mapping above 512TB
    - x86/efi: fix a -Wtype-limits compilation warning
    - pinctrl: ocelot: fix gpio direction for pins after 31
    - pinctrl: ocelot: fix pinmuxing for pins after 31
    - mm/oom_kill.c: fix uninitialized oc->constraint
    - fork,memcg: alloc_thread_stack_node needs to set tsk->stack
    - MIPS: ath79: fix ar933x uart parity mode
    - MIPS: fix build on non-linux hosts
    - arm64/efi: Mark __efistub_stext_offset as an absolute symbol explicitly
    - scsi: iscsi: set auth_protocol back to NULL if CHAP_A value is not supported
    - dmaengine: imx-sdma: fix use-after-free on probe error path
    - wil6210: fix potential out-of-bounds read
    - ath10k: Do not send probe response template for mesh
    - ath9k: Check for errors when reading SREV register
    - ath6kl: add some bounds checking
    - ath10k: add peer id check in ath10k_peer_find_by_id
    - wil6210: fix spurious interrupts in 3-msi
    - ath: DFS JP domain W56 fixed pulse type 3 RADAR detection
    - regmap: debugfs: Fix memory leak in regmap_debugfs_init
    - batman-adv: fix for leaked TVLV handler.
    - media: dvb: usb: fix use after free in dvb_usb_device_exit
    - media: spi: IR LED: add missing of table registration
    - crypto: talitos - fix skcipher failure due to wrong output IV
    - media: ov7740: avoid invalid framesize setting
    - media: marvell-ccic: fix DMA s/g desc number calculation
 

Source diff to previous version
1844166 linux-aws: update EFA driver to version 1.4.0
1840076 Disco update: upstream stable patchset 2019-08-13
1841461 AWS: per-device block I/O timeout support
1840846 Disco update: upstream stable patchset 2019-08-20
1841490 ACPI support for the ARMv8.2 Statistical Profiling Extension
1822870 Backport support for software count cache flush Spectre v2 mitigation. (CVE) (required for POWER9 DD2.3)
1832622 QEMU - count cache flush Spectre v2 mitigation (CVE) (required for POWER9 DD2.3)
1841483 Additional regression in CMA allocation rework
1840882 [SRU][B-OEM-OSP1/D/E] reduce s2idle power consumption when BIOS uses shared power resources
1834465 ipv6: fix neighbour resolution with raw socket
1838133 realtek r8822be kernel module fails after update to linux kernel-headers 5.0.0-21
1842128 Disco update: upstream stable patchset 2019-08-30
1841994 Disco update: upstream stable patchset 2019-08-29
1841681 Disco update: upstream stable patchset 2019-08-27
1841121 Disco update: upstream stable patchset 2019-08-22
1790595 Line 6 POD HD500 driver fault
1840961 Disco update: upstream stable patchset 2019-08-21
1840718 Disco update: upstream stable patchset 2019-08-19
1825718 Touchpad not detecting in Linux
1840521 Disco update: upstream stable patchset 2019-08-16
1840373 Disco update: upstream stable patchset 2019-08-15
1831482 VIMC module not available (CONFIG_VIDEO_VIMC not set)
1840395 reboot will introduce an alarm 'beep ...' during BIOS phase
1840394 Intel HDMI audio print \
1837231 UBUNTU: SAUCE: shiftfs: pass correct point down
1837223 shiftfs: add O_DIRECT support
1839693 p54usb module in linux-modules-extra-5.0.0-23-generic does not work
1840075 Goodix touchpad may drop first input event
1840028 NULL pointer dereference when Inserting the VIMC module
1841722 [SRU][B/OEM-B/OEM-OSP1/D] UBUNTU: SAUCE: enable middle button for one more ThinkPad
1839887 Disco update: upstream stable patchset 2019-08-12

Version: 5.0.0-1016.18~18.04.1 2019-09-17 21:06:24 UTC

  linux-aws-edge (5.0.0-1016.18~18.04.1) bionic; urgency=medium

  [ Ubuntu: 5.0.0-1016.18 ]

  * powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts
    (CVE-2019-15031) / powerpc/tm: Fix FP/VMX unavailable exceptions inside a
    transaction (CVE-2019-15030) (LP: #1843533) // CVE-2019-15031
    - powerpc/tm: Fix FP/VMX unavailable exceptions inside a transaction
    - powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts
  * CVE-2019-14835
    - vhost: fix dirty log buffer overflow
  * Packaging resync (LP: #1786013)
    - [Packaging] resync getabis

 -- Stefan Bader <email address hidden> Fri, 13 Sep 2019 11:55:58 +0200

1843533 powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts (CVE-2019-15031) / powerpc/tm: Fix FP/VMX unavailable exceptions inside a transac
1786013 Packaging resync
CVE-2019-15031 In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers of other users' processes via an interrupt. To exp
CVE-2019-15030 In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers of other users' processes via a Facility Unavailab
CVE-2019-14835 A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in ...



About   -   Send Feedback to @ubuntu_updates