This bug will contain status and test results related to a kernel source (or snap) as stated in the title.
For an explanation of the tasks and the associated workflow see:
https://wiki.ubuntu.com/Kernel/kernel-sru-workflow
-- swm properties --
boot-testing-requested: true
built:
lrg: build#1
lrm: build#1
lrs: build#1
main: build#1
meta: build#1
signed: build#1
delta:
promote-signing-to-proposed:
- lrm
- main
- meta
- lrs
- signed
promote-to-proposed:
- meta
- signed
- main
- lrg
- lrm
- lrs
sru-review:
- lrg
- main
- lrs
- meta
- lrm
- signed
kernel-stable-master-bug: 1930013
packages:
lrg: linux-restricted-generate-gcp-5.4
lrm: linux-restricted-modules-gcp-5.4
lrs: linux-restricted-signatures-gcp-5.4
main: linux-gcp-5.4
meta: linux-meta-gcp-5.4
signed: linux-signed-gcp-5.4
phase: Holding before Promote to Updates
phase-changed: Monday, 21. June 2021 16:33 UTC
proposed-announcement-sent: true
proposed-testing-requested: true
reason:
promote-to-updates: Holding -- master bug not ready for release
synthetic:
:promote-to-as-proposed: Fix Released
trackers:
bionic/linux-gcp-5.4/gcp-kernel: bug 1930011
variant: debs
versions:
lrm: 5.4.0-1045.48~18.04.1
main: 5.4.0-1045.48~18.04.1
meta: 5.4.0.1045.32
signed: 5.4.0-1045.48~18.04.1
source: 5.4.0-1045.48~18.04.1
This bug was fixed in the package linux-gcp-5.4 - 5.4.0-1046. 49~18.04. 1
--------------- 1046.49~ 18.04.1) bionic; urgency=medium
linux-gcp-5.4 (5.4.0-
[ Ubuntu: 5.4.0-1046.49 ]
* UAF on CAN J1939 j1939_can_recv (LP: #1932209) RY_MODULE" text_address"
- SAUCE: can: j1939: delay release of j1939_priv after synchronize_rcu
* UAF on CAN BCM bcm_rx_handler (LP: #1931855)
- SAUCE: can: bcm: delay release of struct bcm_op after synchronize_rcu
* focal/linux: 5.4.0-76.85 -proposed tracker (LP: #1932123)
* Upstream v5.9 introduced 'module' patches that removed exported symbols
(LP: #1932065)
- SAUCE: Revert "modules: inherit TAINT_PROPRIETA
- SAUCE: Revert "modules: return licensing information from find_symbol"
- SAUCE: Revert "modules: rename the licence field in struct symsearch to
license"
- SAUCE: Revert "modules: unexport __module_address"
- SAUCE: Revert "modules: unexport __module_
- SAUCE: Revert "modules: mark each_symbol_section static"
- SAUCE: Revert "modules: mark find_symbol static"
- SAUCE: Revert "modules: mark ref_module static"
linux-gcp-5.4 (5.4.0- 1045.48~ 18.04.1) bionic; urgency=medium
* bionic/ linux-gcp- 5.4: 5.4.0-1045. 48~18.04. 1 -proposed tracker (LP: #1930012)
[ Ubuntu: 5.4.0-1045.48 ]
* focal/linux-gcp: 5.4.0-1045.48 -proposed tracker (LP: #1930013) discard_ bio() for submitting discard bi...
* Packaging resync (LP: #1786013)
- [Packaging] update variants
* focal/linux: 5.4.0-75.84 -proposed tracker (LP: #1930032)
* Packaging resync (LP: #1786013)
- update dkms package versions
* CVE-2021-33200
- bpf: Wrap aux data inside bpf_sanitize_info container
- bpf: Fix mask direction swap upon off reg sign change
- bpf: No need to simulate speculative domain for immediates
* Realtek USB hubs in Dell WD19SC/DC/TB fail to work after exiting s2idle
(LP: #1928242)
- USB: Verify the port status when timeout happens during port suspend
* CVE-2020-26145
- ath10k: drop fragments with multicast DA for SDIO
- ath10k: add CCMP PN replay protection for fragmented frames for PCIe
- ath10k: drop fragments with multicast DA for PCIe
* CVE-2020-26141
- ath10k: Fix TKIP Michael MIC verification for PCIe
* CVE-2020-24588
- mac80211: properly handle A-MSDUs that start with an RFC 1042 header
- cfg80211: mitigate A-MSDU aggregation attacks
- mac80211: drop A-MSDUs on old ciphers
- ath10k: drop MPDU which has discard flag set by firmware for SDIO
* CVE-2020-26139
- mac80211: do not accept/forward invalid EAPOL frames
* CVE-2020-24586 // CVE-2020-24587 // CVE-2020-24587 for such cases.
- mac80211: extend protection against mixed key and fragment cache attacks
* CVE-2020-24586 // CVE-2020-24587
- mac80211: prevent mixed key and fragment cache attacks
- mac80211: add fragment cache to sta_info
- mac80211: check defrag PN against current frame
- mac80211: prevent attacks on TKIP/WEP as well
* CVE-2020-26147
- mac80211: assure all fragments are encrypted
* raid10: Block discard is very slow, causing severe delays for mkfs and
fstrim operations (LP: #1896578)
- md: add md_submit_