disco/linux-kvm: 5.0.0-1021.22 -proposed tracker
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Kernel SRU Workflow |
Medium
|
Unassigned | |||
Automated-testing |
Medium
|
Canonical Kernel Team | |||
Certification-testing |
Medium
|
Canonical Hardware Certification | |||
Prepare-package |
Medium
|
Connor Kuehl | |||
Prepare-package-meta |
Medium
|
Connor Kuehl | |||
Promote-to-proposed |
Medium
|
Łukasz Zemczak | |||
Promote-to-security |
Medium
|
Ubuntu Stable Release Updates Team | |||
Promote-to-updates |
Medium
|
Ubuntu Stable Release Updates Team | |||
Regression-testing |
Medium
|
Po-Hsu Lin | |||
Security-signoff |
Medium
|
Steve Beattie | |||
Verification-testing |
Medium
|
Canonical Kernel Team | |||
linux-kvm (Ubuntu) |
Undecided
|
Unassigned | |||
Disco |
Medium
|
Unassigned |
Bug Description
This bug will contain status and test results related to a kernel source (or snap) as stated in the title.
For an explanation of the tasks and the associated workflow see:
https:/
-- swm properties --
boot-testing-
packages:
main: linux-kvm
meta: linux-meta-kvm
phase: Holding before Promote to Updates
phase-changed: Monday, 11. November 2019 16:53 UTC
proposed-
proposed-
variant: debs
CVE References
tags: | added: disco kernel-release-tracking-bug |
Changed in linux-kvm (Ubuntu Disco): | |
status: | New → Confirmed |
Changed in linux-kvm (Ubuntu): | |
status: | New → Invalid |
Changed in linux-kvm (Ubuntu Disco): | |
importance: | Undecided → Medium |
tags: | added: kernel-release-tracking-bug-live |
description: | updated |
tags: | added: kernel-sru-cycle-2019.10.21-1 |
description: | updated |
tags: | added: kernel-sru-derivative-of-1849003 |
Changed in kernel-sru-workflow: | |
status: | New → In Progress |
importance: | Undecided → Medium |
summary: |
- linux-kvm: <version to be filled> -proposed tracker + disco/linux-kvm: <version to be filled> -proposed tracker |
description: | updated |
description: | updated |
summary: |
- disco/linux-kvm: <version to be filled> -proposed tracker + disco/linux-kvm: 5.0.0-1021.22 -proposed tracker |
description: | updated |
description: | updated |
description: | updated |
tags: | added: block-proposed-disco |
tags: | added: block-proposed |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
tags: | removed: kernel-sru-derivative-of-1849003 |
tags: | added: kernel-sru-derivative-of-1850574 |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
Launchpad Janitor (janitor) wrote : | #2 |
This bug was fixed in the package linux-kvm - 5.0.0-1022.24
---------------
linux-kvm (5.0.0-1022.24) disco; urgency=medium
* CVE-2019-11135
- [Config] Disable TSX by default when possible
[ Ubuntu: 5.0.0-35.38 ]
* [REGRESSION] md/raid0: cannot assemble multi-zone RAID0 with default_layout
setting (LP: #1849682)
- SAUCE: Fix revert "md/raid0: avoid RAID0 data corruption due to layout
confusion."
* refcount underflow and type confusion in shiftfs (LP: #1850867) // CVE-2019-15793
- SAUCE: shiftfs: Correct id translation for lower fs operations
- SAUCE: shiftfs: prevent type confusion
- SAUCE: shiftfs: Fix refcount underflow in btrfs ioctl handling
* CVE-2018-12207
- kvm: Convert kvm_lock to a mutex
- kvm: x86: Do not release the page inside mmu_set_spte()
- KVM: x86: make FNAME(fetch) and __direct_map more similar
- KVM: x86: remove now unneeded hugepage gfn adjustment
- KVM: x86: change kvm_mmu_
- KVM: x86: add tracepoints around __direct_map and FNAME(fetch)
- kvm: x86, powerpc: do not allow clearing largepages debugfs entry
- SAUCE: KVM: vmx, svm: always run with EFER.NXE=1 when shadow paging is
active
- SAUCE: x86: Add ITLB_MULTIHIT bug infrastructure
- SAUCE: kvm: mmu: ITLB_MULTIHIT mitigation
- SAUCE: kvm: Add helper function for creating VM worker threads
- SAUCE: kvm: x86: mmu: Recovery of shattered NX large pages
- SAUCE: cpu/speculation: Uninline and export CPU mitigations helpers
- SAUCE: kvm: x86: mmu: Apply global mitigations knob to ITLB_MULTIHIT
* CVE-2019-11135
- KVM: x86: use Intel speculation bugs and features as derived in generic x86
code
- x86/msr: Add the IA32_TSX_CTRL MSR
- x86/cpu: Add a helper function x86_read_
- x86/cpu: Add a "tsx=" cmdline option with TSX disabled by default
- x86/speculation
- x86/speculation
- kvm/x86: Export MDS_NO=0 to guests when TSX is enabled
- x86/tsx: Add "auto" option to the tsx= cmdline parameter
- x86/speculation
- x86/tsx: Add config options to set tsx=on|off|auto
- SAUCE: x86/speculation
- [Config] Disable TSX by default when possible
* CVE-2019-0154
- SAUCE: drm/i915: Lower RM timeout to avoid DSI hard hangs
- SAUCE: drm/i915/gen8+: Add RC6 CTX corruption WA
* CVE-2019-0155
- SAUCE: drm/i915: Rename gen7 cmdparser tables
- SAUCE: drm/i915: Disable Secure Batches for gen6+
- SAUCE: drm/i915: Remove Master tables from cmdparser
- SAUCE: drm/i915: Add support for mandatory cmdparsing
- SAUCE: drm/i915: Support ro ppgtt mapped cmdparser shadow buffers
- SAUCE: drm/i915: Allow parsing of unsized batches
- SAUCE: drm/i915: Add gen9 BCS cmdparsing
- SAUCE: drm/i915/cmdparser: Use explicit goto for error paths
- SAUCE: drm/i915/cmdparser: Add support for backward jumps
- SAUCE: drm/i915/cmdparser: Ignore Length operands during command matching
[ Ubuntu: 5.0.0-34.36 ]
* disco/linux: <ver...
Changed in linux-kvm (Ubuntu Disco): | |
status: | Confirmed → Fix Released |
tags: | removed: kernel-sru-derivative-of-1850574 |
description: | updated |
tags: | removed: kernel-release-tracking-bug-live |
Changed in kernel-sru-workflow: | |
status: | In Progress → Invalid |
Changed in linux-kvm (Ubuntu Disco): | |
status: | Fix Released → Invalid |
5.0.0-1021.22 - kvm
Regression test CMPL, RTB.
Issue to note in amd64: kernel_ selftests - psock_tpacket in net (bug 1812176) test_bpf in net (bug 1812189) rtnetlink in net (bug 1812194) fib_tests in net (bug 1812622) fib-onlink-tests in net (bug 1812622) fib_rule_tests in net (bug 1812622) msg_zerocopy in net (bug 1812620) test_vxlan_ under_vrf in net (bug 1837348) ftrace (bug 1812318) kvm_unit_ tests - apic timeouted (bug 1748103) apic-split timeouted (bug 1821390) memory (bug 1845687) port80 (bug 1748105) vmx (bug 1821394) usage_in_ bytes (bug 1829979) memcg_stat (bug 1829983) memcg_usage_ in_bytes (bug 1829984) memcg_use_hierarchy (bug 1829989) hugetlb tests failed with the whole suite (bug 1848680) getaddrinfo_01 (bug 1829995) ltp_acpi (bug 1830676) ltp_syscalls - clock_settime01 (bug 1850741) fallocate04, fallocate05, fdatasync03, fremovexattr01, fremovexattr02, fsync01, fsync04, msync04, preadv03, preadv03_64, preadv203, preadv203_64, pwritev03, pwritev03_64, sync03, syncfs01, sync_file_range02, copy_file_range01, statx04 (bug 1842266) fsetxattr01, fgetxattr01, fanotify13, fanotify14, lremovexattr01, setxattr01 (bug 1842266) msgstress03 (bug 1797341) msgstress04 (bug 1797348) quotactl02, quotactl03 (bug 1797325) stime01 (bug 1845620)
ubuntu_bpf - 2 tests in test_verifier failed (bug 1848005) test_maps failed with sockmap creation (bug 1848004)
ubuntu_
ubuntu_
ubuntu_ltp - proc01 (bug 1829849) fs_fill (bug 1842266) hackbench01 (bug 1830675) netns_sysfs (bug 1830678) cpuacct_100_100 (bug 1829978) memcg_max_
ubuntu_
xfstests - failed because no scratch drive
Skipped / blacklisted: blktrace_ smoke_test fan_smoke_ test ftrace_ smoke_test lttng_smoke_ test
* libhugetlbfs
* ubuntu_
* ubuntu_ecryptfs
* ubuntu_
* ubuntu_
* ubuntu_
* ubuntu_seccomp