linux-aws: 4.4.0-1011.11 -proposed tracker

Bug #1742998 reported by Marcelo Cerri on 2018-01-12
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Kernel SRU Workflow
Canonical Kernel Team
Canonical Hardware Certification
Kamal Mostafa
Kamal Mostafa
Adam Conrad
Łukasz Zemczak
Łukasz Zemczak
Po-Hsu Lin
Steve Beattie
Canonical Kernel Team
Canonical Kernel Team
linux-aws (Ubuntu)

Bug Description

This bug is for tracking the <version to be filled> upload package. This bug will contain status and testing results related to that upload.

For an explanation of the tasks and the associated workflow see:
-- swm properties --
boot-testing-requested: true
kernel-stable-master-bug: 1744244
phase: Released
proposed-announcement-sent: true
proposed-testing-requested: true

CVE References

Marcelo Cerri (mhcerri) on 2018-01-12
tags: added: kernel-release-tracking-bug
tags: added: kernel-release-tracking-bug-live
tags: added: trusty
Changed in kernel-sru-workflow:
status: New → In Progress
importance: Undecided → Medium
Changed in linux-aws (Ubuntu):
status: New → Invalid
tags: added: kernel-sru-cycle-2017.11.20-8
tags: added: kernel-sru-backport-of-1742995
summary: - linux-aws: <version to be filled> -proposed tracker
+ linux-aws: 4.4.0-1011.11 -proposed tracker
Brad Figg (brad-figg) on 2018-01-13
tags: added: block-proposed-trusty
tags: added: block-proposed
description: updated
description: updated
Brad Figg (brad-figg) on 2018-01-13
description: updated
description: updated
Andy Whitcroft (apw) on 2018-01-15
Changed in linux-aws (Ubuntu Trusty):
status: New → Confirmed
description: updated
tags: added: kernel-sru-backport-of-1743362
removed: kernel-sru-backport-of-1742995
Po-Hsu Lin (cypressyew) wrote :

4.4.0-10011.11 - aws
Regression test CMPL.

Issue to note in x86_64 (aws):
  libhugetlbfs - 1 failed (alloc-instantiate-race shared), bad config 3 on t2.small
  ubuntu_fan_smoke_test - should be skipped on Trusty
  ubuntu_kvm_unit_tests - test disabled
  ubuntu_ltp - should be skipped on Trusty
  ubuntu_lttng_smoke_test - should be skipped on Trusty
  ubuntu_stress_smoke_test - should be skipped on Trusty
  ubuntu_sysdig_smoke_test - should be skipped on Trusty

tags: added: regression-testing-passed
Stefan Bader (smb) on 2018-01-19
description: updated
tags: added: kernel-sru-backport-of-1744244
removed: kernel-sru-backport-of-1743362
Brad Figg (brad-figg) on 2018-01-22
tags: removed: block-proposed-trusty
tags: removed: block-proposed
Launchpad Janitor (janitor) wrote :
Download full text (9.8 KiB)

This bug was fixed in the package linux-aws - 4.4.0-1011.11

linux-aws (4.4.0-1011.11) trusty; urgency=low

  * linux-aws: 4.4.0-1011.11 -proposed tracker (LP: #1742998)

  [ Ubuntu: 4.4.0-110.133 ]

  * linux: 4.4.0-110.133 -proposed tracker (LP: #1742995)
  * CVE-2017-5753
    - x86/microcode/AMD: Add support for fam17h microcode loading
    - bpf: add bpf_patch_insn_single helper
    - bpf: prepare bpf_int_jit_compile/bpf_prog_select_runtime apis
    - bpf: add generic constant blinding for use in jits
    - locking/barriers: introduce new memory barrier gmb()
    - bpf: prevent speculative execution in eBPF interpreter
    - x86, bpf, jit: prevent speculative execution when JIT is enabled
    - uvcvideo: prevent speculative execution
    - carl9170: prevent speculative execution
    - qla2xxx: prevent speculative execution
    - Thermal/int340x: prevent speculative execution
    - userns: prevent speculative execution
    - ipv6: prevent speculative execution
    - fs: prevent speculative execution
    - net: mpls: prevent speculative execution
    - udf: prevent speculative execution
    - x86/feature: Enable the x86 feature to control Speculation
    - x86/feature: Report presence of IBPB and IBRS control
    - x86/enter: MACROS to set/clear IBRS and set IBPB
    - x86/enter: Use IBRS on syscall and interrupts
    - x86/idle: Disable IBRS entering idle and enable it on wakeup
    - x86/idle: Disable IBRS when offlining cpu and re-enable on wakeup
    - x86/mm: Set IBPB upon context switch
    - x86/mm: Only set IBPB when the new thread cannot ptrace current thread
    - x86/entry: Stuff RSB for entry to kernel for non-SMEP platform
    - x86/kvm: add MSR_IA32_SPEC_CTRL and MSR_IA32_PRED_CMD to kvm
    - x86/kvm: Set IBPB when switching VM
    - x86/kvm: Toggle IBRS on VM entry and exit
    - x86/kvm: Pad RSB on VM transition
    - x86/spec_ctrl: Add sysctl knobs to enable/disable SPEC_CTRL feature
    - x86/spec_ctrl: Add lock to serialize changes to ibrs and ibpb control
    - x86/syscall: Clear unused extra registers on syscall entrance
    - x86/syscall: Clear unused extra registers on 32-bit compatible syscall
    - x86/entry: Use retpoline for syscall's indirect calls
    - x86/cpu/amd, kvm: Satisfy guest kernel reads of IC_CFG MSR
    - x86/cpu/AMD: Add speculative control support for AMD
    - x86/microcode: Extend post microcode reload to support IBPB feature
    - KVM: SVM: Do not intercept new speculative control MSRs
    - x86/svm: Set IBRS value on VM entry and exit
    - x86/svm: Set IBPB when running a different VCPU
    - KVM: x86: Add speculative control CPUID support for guests
    - x86/svm: Add code to clobber the RSB on VM exit
    - x86/svm: Add code to clear registers on VM exit
    - x86/cpu/AMD: Make the LFENCE instruction serialized
    - x86/cpu/AMD: Remove now unused definition of MFENCE_RDTSC feature
    - powerpc: add gmb barrier
    - s390/spinlock: add gmb memory barrier
    - SAUCE: x86/kvm: Fix stuff_RSB() for 32-bit
    - arm64: no gmb() implementation yet
    - arm: no gmb() implementation yet
  * CVE-2017-5715
    - x86/microcode/AMD: Add support for fam17h microcode loa...

Changed in linux-aws (Ubuntu Trusty):
status: Confirmed → Fix Released
status: Confirmed → Fix Released
Brad Figg (brad-figg) on 2018-01-22
description: updated
description: updated

The package has been published and the bug is being set to Fix Released

Changed in kernel-sru-workflow:
status: In Progress → Fix Released
description: updated
description: updated
tags: removed: kernel-release-tracking-bug-live
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers