jammy/linux-gcp-6.5: 6.5.0-1014.14~22.04.1 -proposed tracker

Bug #2052274 reported by Manuel Diewald
12
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Kernel SRU Workflow
Fix Released
Medium
Unassigned
Abi-testing
Fix Released
Medium
Unassigned
Automated-testing
Invalid
Medium
Canonical Kernel Team
Boot-testing
Fix Released
Medium
Unassigned
Certification-testing
Invalid
Medium
Unassigned
New-review
Fix Released
Medium
Andy Whitcroft
Prepare-package
Fix Released
Medium
John Cabaj
Prepare-package-generate
Fix Released
Medium
John Cabaj
Prepare-package-lrg
Fix Released
Medium
John Cabaj
Prepare-package-lrm
Fix Released
Medium
John Cabaj
Prepare-package-lrs
Fix Released
Medium
John Cabaj
Prepare-package-meta
Fix Released
Medium
John Cabaj
Prepare-package-signed
Fix Released
Medium
John Cabaj
Promote-signing-to-proposed
Invalid
Medium
Unassigned
Promote-to-proposed
Fix Released
Medium
Ubuntu Stable Release Updates Team
Promote-to-security
Fix Released
Medium
Andy Whitcroft
Promote-to-updates
Fix Released
Medium
Andy Whitcroft
Regression-testing
Fix Released
Medium
Canonical Kernel Team
Security-signoff
Fix Released
Medium
John Cabaj
Signing-signoff
Fix Released
Undecided
John Cabaj
Sru-review
Fix Released
Medium
Andy Whitcroft
Verification-testing
Fix Released
Medium
Canonical Kernel Team
canonical-signing-jobs
Task00
Fix Released
Medium
Andy Whitcroft
linux-gcp-6.5 (Ubuntu)
Jammy
Fix Released
Medium
Unassigned

Bug Description

This bug will contain status and test results related to a kernel source (or snap) as stated in the title.

For an explanation of the tasks and the associated workflow see:
  https://wiki.ubuntu.com/Kernel/kernel-sru-workflow

-- swm properties --
built:
  from: c60e7f5a75a20644
  route-entry: 2
comments:
  abi-testing: 1
delta:
  promote-to-proposed: [lrm, lrs, main, meta, signed, lrg, generate]
  promote-to-security: []
  promote-to-updates: [lrm, lrs, main, meta, signed]
flag:
  boot-testing-requested: true
  bugs-spammed: true
  proposed-announcement-sent: true
  proposed-testing-requested: true
  stream-from-cycle: true
issue: KSRU-11230
kernel-stable-master-bug: 2052275
packages:
  generate: linux-generate-gcp-6.5
  lrg: linux-restricted-generate-gcp-6.5
  lrm: linux-restricted-modules-gcp-6.5
  lrs: linux-restricted-signatures-gcp-6.5
  main: linux-gcp-6.5
  meta: linux-meta-gcp-6.5
  signed: linux-signed-gcp-6.5
phase: Complete
phase-changed: Monday, 26. February 2024 20:57 UTC
reason: {}
synthetic:
  :promote-to-as-proposed: Invalid
variant: debs
versions:
  lrm: 6.5.0-1014.14~22.04.1
  main: 6.5.0-1014.14~22.04.1
  meta: 6.5.0.1014.14~22.04.1
  signed: 6.5.0-1014.14~22.04.1
~~:
  announce:
    swm-transition-crankable: 2024-02-10 00:53:43.220039
  clamps:
    new-review: c60e7f5a75a20644
    promote-to-proposed: c60e7f5a75a20644
    self: 6.5.0-1014.14~22.04.1
    sru-review: c60e7f5a75a20644
  tracker:
    last-message: '2024-02-26 22:01:33.065992+00:00'

Manuel Diewald (diewald)
tags: added: kernel-release-tracking-bug-live
description: updated
tags: added: kernel-sru-cycle-s2024.01.08-1
description: updated
tags: added: kernel-sru-backport-of-2052275
Changed in kernel-sru-workflow:
status: New → Confirmed
importance: Undecided → Medium
Changed in linux-gcp-6.5 (Ubuntu Jammy):
importance: Undecided → Medium
Changed in kernel-sru-workflow:
status: Confirmed → Triaged
description: updated
Changed in kernel-sru-workflow:
status: Triaged → In Progress
tags: added: kernel-jira-issue-ksru-11230
description: updated
description: updated
John Cabaj (john-cabaj)
summary: - jammy/linux-gcp-6.5: <version to be filled> -proposed tracker
+ jammy/linux-gcp-6.5: 6.5.0-1014.14~22.04.1 -proposed tracker
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
Revision history for this message
Ubuntu Kernel Ancillary Bot (ubuntu-kernel-ancillary-bot) wrote : ABI testing

amd64/gcp canonical-certs.pem unchanged
amd64/gcp canonical-revoked-certs.pem unchanged
amd64/gcp fwinfo unchanged
amd64/gcp modules unchanged
amd64/gcp retpoline unchanged
arm64/gcp canonical-certs.pem unchanged
arm64/gcp canonical-revoked-certs.pem unchanged
arm64/gcp fwinfo unchanged
arm64/gcp modules unchanged
arm64/gcp retpoline unchanged

description: updated
description: updated
description: updated
description: updated
description: updated
Revision history for this message
Ubuntu Kernel Bot (ubuntu-kernel-bot) wrote : Kernel requires additional signoff

New kernel with signed kernels; signing-review required.

description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
Revision history for this message
John Cabaj (john-cabaj) wrote :

Passed Secure Boot testing

root@jammy-vm:~# dmesg | grep -i secure
[ 0.000000] secureboot: Secure boot enabled
[ 0.000000] Kernel is locked down from EFI Secure Boot mode; see man kernel_lockdown.7
[ 0.003882] secureboot: Secure boot enabled
[ 0.977112] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing: 61482aa2830d0ab2ad5af10b7250da9033ddcef0'
[ 0.978556] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2017): 242ade75ac4a15e50d50c84b0d45ff3eae707a03'
[ 0.979848] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (ESM 2018): 365188c1d374d6b07c3c8f240f8ef722433d6a8b'
[ 0.982770] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2019): c0746fd6c5da3ae827864651ad66ae47fe24b3e8'
[ 0.986137] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2021 v1): a8d54bbb3825cfb94fa13c9f8a594a195c107b8d'
[ 0.987342] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2021 v2): 4cf046892d6fd3c9a5b03f98d845f90851dc6a8c'
[ 0.988614] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2021 v3): 100437bb6de6e469b581e61cd66bce3ef4ed53af'
[ 0.989983] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (Ubuntu Core 2019): c1d57b8f6b743f23ee41f4f7ee292f06eecadfb9'
root@jammy-vm:~# cat /sys/kernel/security/lockdown
none [integrity] confidentiality

description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
description: updated
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package linux-gcp-6.5 - 6.5.0-1014.14~22.04.1

---------------
linux-gcp-6.5 (6.5.0-1014.14~22.04.1) jammy; urgency=medium

  * jammy/linux-gcp-6.5: 6.5.0-1014.14~22.04.1 -proposed tracker (LP: #2052274)

  [ Ubuntu: 6.5.0-1014.14 ]

  * mantic/linux-gcp: 6.5.0-1014.14 -proposed tracker (LP: #2052275)
  * mantic/linux: 6.5.0-21.21 -proposed tracker (LP: #2052603)
  * The display becomes frozen after some time when a HDMI device is connected.
    (LP: #2049027)
    - drm/i915/dmc: Don't enable any pipe DMC events
  * partproke is broken on empty loopback device (LP: #2049689)
    - block: Move checking GENHD_FL_NO_PART to bdev_add_partition()
  * CVE-2023-51781
    - appletalk: Fix Use-After-Free in atalk_ioctl
  * CVE-2023-51780
    - atm: Fix Use-After-Free in do_vcc_ioctl
  * CVE-2023-6915
    - ida: Fix crash in ida_free when the bitmap is empty
  * CVE-2024-0565
    - smb: client: fix OOB in receive_encrypted_standard()
  * CVE-2024-0582
    - io_uring: enable io_mem_alloc/free to be used in other parts
    - io_uring/kbuf: defer release of mapped buffer rings
  * CVE-2024-0646
    - net: tls, update curr on splice as well

 -- John Cabaj <email address hidden> Fri, 09 Feb 2024 21:07:01 -0600

Changed in linux-gcp-6.5 (Ubuntu Jammy):
status: New → Fix Released
description: updated
description: updated
Revision history for this message
Ubuntu Kernel Bot (ubuntu-kernel-bot) wrote : Workflow done!

All tasks have been completed and the bug is being closed

Changed in kernel-sru-workflow:
status: In Progress → Fix Committed
description: updated
John Cabaj (john-cabaj)
Changed in kernel-sru-workflow:
status: Fix Committed → In Progress
description: updated
description: updated
description: updated
description: updated
Changed in kernel-sru-workflow:
status: In Progress → Fix Committed
Changed in kernel-sru-workflow:
status: Fix Committed → Fix Released
description: updated
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.