Xenial update to 4.4.90 stable release
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
linux (Ubuntu) |
Invalid
|
Undecided
|
Unassigned | ||
Xenial |
Fix Released
|
Medium
|
Stefan Bader |
Bug Description
SRU Justification
Impact:
The upstream process for stable tree updates is quite similar
in scope to the Ubuntu SRU process, e.g., each patch has to
demonstrably fix a bug, and each patch is vetted by upstream
by originating either directly from a mainline/stable Linux tree or
a minimally backported form of that patch. The 4.4.90 upstream stable
patch set is now available. It should be included in the Ubuntu
kernel as well.
TEST CASE: TBD
The following patches from the 4.4.90 stable release shall be applied:
* cifs: release auth_key.response for reconnect.
* mac80211: flush hw_roc_start work before cancelling the ROC
* KVM: PPC: Book3S: Fix race and leak in kvm_vm_
* tracing: Fix trace_pipe behavior for instance traces
* tracing: Erase irqsoff trace with empty write
* md/raid5: fix a race condition in stripe batch
* md/raid5: preserve STRIPE_
* scsi: scsi_transport_
nlmsg properly
* crypto: talitos - Don't provide setkey for non hmac hashing algs.
* crypto: talitos - fix sha224
* KEYS: fix writing past end of user-supplied buffer in keyring_read()
* KEYS: prevent creating a different user's keyrings
* KEYS: prevent KEYCTL_READ on negative key
* powerpc/pseries: Fix parent_dn reference leak in add_dt_node()
* Fix SMB3.1.1 guest authentication to Samba
* SMB: Validate negotiate (to protect against downgrade) even if signing off
* SMB3: Don't ignore O_SYNC/O_DSYNC and O_DIRECT flags
* vfs: Return -ENXIO for negative SEEK_HOLE / SEEK_DATA offsets
* nl80211: check for the required netlink attributes presence
* bsg-lib: don't free job in bsg_prepare_job
* seccomp: fix the usage of get/put_
* arm64: Make sure SPsel is always set
* arm64: fault: Route pte translation faults via do_translation_
* KVM: VMX: Do not BUG() on out-of-bounds guest IRQ
* kvm: nVMX: Don't allow L2 to access the hardware CR8
* PCI: Fix race condition with driver_override
* btrfs: fix NULL pointer dereference from free_reloc_roots()
* btrfs: propagate error to btrfs_cmp_
* btrfs: prevent to set invalid default subvolid
* x86/fpu: Don't let userspace set bogus xcomp_bv
* gfs2: Fix debugfs glocks dump
* timer/sysclt: Restrict timer migration sysctl values to 0 and 1
* KVM: VMX: do not change SN bit in vmx_update_
* KVM: VMX: remove WARN_ON_ONCE in kvm_vcpu_
* cxl: Fix driver use count
* dmaengine: mmp-pdma: add number of requestors
* ARM: pxa: add the number of DMA requestor lines
* ARM: pxa: fix the number of DMA requestor lines
* KVM: VMX: use cmpxchg64
* video: fbdev: aty: do not leak uninitialized padding in clk to userspace
* swiotlb-xen: implement xen_swiotlb_
* fix xen_swiotlb_
* Linux 4.4.90
CVE References
tags: | added: kernel-stable-tracking-bug |
Changed in linux (Ubuntu Xenial): | |
assignee: | nobody → Stefan Bader (smb) |
importance: | Undecided → Medium |
status: | New → In Progress |
Changed in linux (Ubuntu): | |
status: | New → Invalid |
Changed in linux (Ubuntu Xenial): | |
status: | In Progress → Fix Committed |
Fixed up "KEYS: prevent creating a different user's keyrings" because it failed to apply cleanly as we carry a delta for bug #1569924 "linux: Add UEFI keyring for externally signed modules".
Fixed up "cxl: Fix driver use count" because it failed to apply cleanly as we carry a delta for bug #1588468 "CAPI: CGZIP AFU contexts do not receive interrupts after heavy afu open/close".