lunar/linux-aws: 6.2.0-1005.5 -proposed tracker

Bug #2019835 reported by Roxana Nicolescu
28
This bug affects 3 people
Affects Status Importance Assigned to Milestone
Kernel SRU Workflow
Fix Released
Medium
Andrei Gherzan
Automated-testing
Fix Released
Medium
Canonical Kernel Team
Boot-testing
Fix Released
Medium
Unassigned
Certification-testing
Invalid
Medium
Unassigned
New-review
Fix Released
Medium
Andy Whitcroft
Prepare-package
Fix Released
Medium
Andrei Gherzan
Prepare-package-generate
Fix Released
Medium
Andrei Gherzan
Prepare-package-lrg
Fix Released
Medium
Andrei Gherzan
Prepare-package-lrm
Fix Released
Medium
Andrei Gherzan
Prepare-package-lrs
Fix Released
Medium
Andrei Gherzan
Prepare-package-meta
Fix Released
Medium
Andrei Gherzan
Prepare-package-signed
Fix Released
Medium
Andrei Gherzan
Promote-signing-to-proposed
Invalid
Medium
Unassigned
Promote-to-proposed
Fix Released
Medium
Ubuntu Stable Release Updates Team
Promote-to-security
Fix Released
Medium
Andy Whitcroft
Promote-to-updates
Fix Released
Medium
Andy Whitcroft
Regression-testing
Fix Released
Medium
Canonical Kernel Team
Security-signoff
Fix Released
Medium
Steve Beattie
Signing-signoff
Fix Released
Undecided
Andrea Righi
Sru-review
Fix Released
Medium
Andy Whitcroft
Verification-testing
Fix Released
Medium
Canonical Kernel Team
canonical-signing-jobs
Task00
Fix Released
Medium
Andy Whitcroft
linux-aws (Ubuntu)
Lunar
Fix Released
Medium
Unassigned

Bug Description

This bug will contain status and test results related to a kernel source (or snap) as stated in the title.

For an explanation of the tasks and the associated workflow see:
  https://wiki.ubuntu.com/Kernel/kernel-sru-workflow

-- swm properties --
built:
  from: 5ff7f7cbf7074943
  route-entry: 1
delta:
  promote-to-proposed: [lrm, lrs, main, meta, signed, lrg, generate]
  promote-to-security: []
  promote-to-updates: [lrm, lrs, main, meta, signed]
flag:
  boot-testing-requested: true
  bugs-spammed: true
  proposed-announcement-sent: true
  proposed-testing-requested: true
issue: KSRU-7691
kernel-stable-master-bug: 2019845
packages:
  generate: linux-generate-aws
  lrg: linux-restricted-generate-aws
  lrm: linux-restricted-modules-aws
  lrs: linux-restricted-signatures-aws
  main: linux-aws
  meta: linux-meta-aws
  signed: linux-signed-aws
phase: Complete
phase-changed: Friday, 16. June 2023 08:46 UTC
reason: {}
synthetic:
  :promote-to-as-proposed: Fix Released
trackers:
  jammy/linux-aws-6.2: bug 2019571, bug 2019834
variant: debs
versions:
  lrm: 6.2.0-1005.5
  main: 6.2.0-1005.5
  meta: 6.2.0.1005.6
  signed: 6.2.0-1005.5
~~:
  clamps:
    new-review: 5ff7f7cbf7074943
    promote-to-proposed: 5ff7f7cbf7074943
    self: 6.2.0-1005.5
    sru-review: 5ff7f7cbf7074943

tags: added: kernel-release-tracking-bug-live
description: updated
tags: added: kernel-sru-cycle-2023.05.15-1
description: updated
tags: added: kernel-sru-derivative-of-2019845
Changed in kernel-sru-workflow:
status: New → Confirmed
importance: Undecided → Medium
Changed in linux-aws (Ubuntu Lunar):
importance: Undecided → Medium
Changed in kernel-sru-workflow:
status: Confirmed → Triaged
description: updated
Changed in kernel-sru-workflow:
status: Triaged → In Progress
tags: added: kernel-jira-issue-ksru-7691
description: updated
Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in linux-aws (Ubuntu Lunar):
status: New → Confirmed
description: updated
Changed in kernel-sru-workflow:
assignee: nobody → Andrei Gherzan (agherzan)
description: updated
summary: - lunar/linux-aws: <version to be filled> -proposed tracker
+ lunar/linux-aws: 6.2.0-1005.5 -proposed tracker
description: updated
tags: added: kernel-jira-in-review
description: updated
description: updated
tags: removed: kernel-jira-in-review
description: updated
description: updated
description: updated
description: updated
description: updated
Revision history for this message
Ubuntu Kernel Bot (ubuntu-kernel-bot) wrote : Kernel requires additional signoff

New kernel with signed kernels; signing-review required.

description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
Revision history for this message
Andrea Righi (arighi) wrote :

Secure boot / kernel lockdown test passed:

ubuntu@lunarsecure:~$ uname -a
Linux lunarsecure 6.2.0-1005-aws #5-Ubuntu SMP Wed May 31 14:12:21 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux
ubuntu@lunarsecure:~$ sudo dmesg | grep lockdown
[ 0.000000] Kernel is locked down from EFI Secure Boot mode; see man kernel_lockdown.7
[ 0.268724] LSM: initializing lsm=lockdown,capability,landlock,yama,integrity,apparmor
[ 1.541228] Lockdown: swapper/0: hibernation is restricted; see man kernel_lockdown.7
ubuntu@lunarsecure:~$ cat /sys/kernel/security/lockdown
none [integrity] confidentiality

description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
Andy Whitcroft (apw)
description: updated
description: updated
description: updated
description: updated
Revision history for this message
Launchpad Janitor (janitor) wrote :
Download full text (72.2 KiB)

This bug was fixed in the package linux-aws - 6.2.0-1005.5

---------------
linux-aws (6.2.0-1005.5) lunar; urgency=medium

  * lunar/linux-aws: 6.2.0-1005.5 -proposed tracker (LP: #2019835)

  * introduce do_lib_rust=true|false to enable/disable linux-lib-rust package
    (LP: #2021605)
    - [Packaging] enable rust only in the generic kernel for amd64

  * Packaging resync (LP: #1786013)
    - [Packaging] resync git-ubuntu-log
    - [Packaging] resync getabis

  * move sev-guest module from linux-modules-extra to linux-modules
    (LP: #2018303)
    - Move sev-guest to linux-modules

  [ Ubuntu: 6.2.0-23.23 ]

  * lunar/linux: 6.2.0-23.23 -proposed tracker (LP: #2019845)
  * Packaging resync (LP: #1786013)
    - [Packaging] update helper scripts
    - debian/dkms-versions -- update from kernel-versions (main/2023.05.15)
  * Fix flicker display problem on some panels which support PSR2 (LP: #2002968)
    - drm/i915/psr: Add continuous full frame bit together with single
  * Kernel 6.1 bumped the disk consumption on default images by 15%
    (LP: #2015867)
    - [Packaging] introduce a separate linux-lib-rust package
  * Update I915 PSR calculation on Linux 6.2 (LP: #2018655)
    - drm/i915: Fix fast wake AUX sync len
    - drm/i915: Explain the magic numbers for AUX SYNC/precharge length
  * Computer with Intel Atom CPU will not boot with Kernel 6.2.0-20
    (LP: #2017444)
    - [Config]: Disable CONFIG_INTEL_ATOMISP
  * udev fails to make prctl() syscall with apparmor=0 (as used by maas by
    default) (LP: #2016908)
    - SAUCE: (no-up) Stacking v38: Fix prctl() syscall with apparmor=0
  * CVE-2023-32233
    - netfilter: nf_tables: deactivate anonymous set from preparation phase
  * CVE-2023-2612
    - SAUCE: shiftfs: prevent lock unbalance in shiftfs_create_object()
  * CVE-2023-31436
    - net: sched: sch_qfq: prevent slab-out-of-bounds in qfq_activate_agg
  * CVE-2023-1380
    - wifi: brcmfmac: slab-out-of-bounds read in brcmf_get_assoc_ies()
  * 5.19 not reporting cgroups v1 blkio.throttle.io_serviced (LP: #2016186)
    - SAUCE: blk-throttle: Fix io statistics for cgroup v1
  * LSM stacking and AppArmor for 6.2: additional fixes (LP: #2017903)
    - SAUCE: (no-up) apparmor: fix policy_compat perms remap for file dfa
    - SAUCE: (no-up) apparmor: fix profile verification and enable it
    - SAUCE: (no-up) apparmor: fix: add missing failure check in
      compute_xmatch_perms
    - SAUCE: (no-up) apparmor: fix: kzalloc perms tables for shared dfas
  * Lunar update: v6.2.12 upstream stable release (LP: #2017219)
    - Revert "pinctrl: amd: Disable and mask interrupts on resume"
    - drm/amd/display: Pass the right info to drm_dp_remove_payload
    - drm/i915: Workaround ICL CSC_MODE sticky arming
    - ALSA: emu10k1: fix capture interrupt handler unlinking
    - ALSA: hda/sigmatel: add pin overrides for Intel DP45SG motherboard
    - ALSA: i2c/cs8427: fix iec958 mixer control deactivation
    - ALSA: hda: patch_realtek: add quirk for Asus N7601ZM
    - ALSA: hda/realtek: Add quirks for Lenovo Z13/Z16 Gen2
    - ALSA: firewire-tascam: add missing unwind goto in
      snd_tscm_stream_start_duplex()
    - ALSA: emu10k1: don't create old ...

Changed in linux-aws (Ubuntu Lunar):
status: Confirmed → Fix Released
description: updated
description: updated
description: updated
description: updated
Revision history for this message
Ubuntu Kernel Bot (ubuntu-kernel-bot) wrote : Workflow done!

All tasks have been completed and the bug is being closed

Changed in kernel-sru-workflow:
status: In Progress → Fix Committed
Changed in kernel-sru-workflow:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.