Maverick update to 2.6.35.13 stable release

Bug #772560 reported by Tim Gardner on 2011-04-28
16
This bug affects 2 people
Affects Status Importance Assigned to Milestone
linux (Ubuntu)
Undecided
Unassigned
Maverick
Undecided
Unassigned

Bug Description

    SRU Justification

    Impact:
       The upstream process for stable tree updates is quite similar
       in scope to the Ubuntu SRU process, e.g., each patch has to
       demonstrably fix a bug, and each patch is vetted by upstream
       by originating either directly from Linus' tree or in a minimally
       backported form of that patch. The 2.6.35.13 upstream stable
       patch set is now available. It should be included in the Ubuntu
       kernel as well.

       git://git.kernel.org/

    TEST CASE: TBD

       The following patches are in the 2.6.35.13 stable release:

qla2xxx: Make the FC port capability mutual exclusive.
staging: usbip: bugfixes related to kthread conversion
staging: usbip: bugfix add number of packets for isochronous frames
staging: usbip: bugfix for isochronous packets and optimization
staging: hv: Fix GARP not sent after Quick Migration
staging: hv: use sync_bitops when interacting with the hypervisor
irda: validate peer name and attribute lengths
irda: prevent heap corruption on invalid nickname
nilfs2: fix data loss in mmap page write for hole blocks
ASoC: Explicitly say registerless widgets have no register
ALSA: ens1371: fix Creative Ectiva support
ROSE: prevent heap corruption with bad facilities
Btrfs: Fix uninitialized root flags for subvolumes
x86, mtrr, pat: Fix one cpu getting out of sync during resume
UBIFS: do not read flash unnecessarily
UBIFS: fix oops on error path in read_pnode
UBIFS: fix debugging failure in dbg_check_space_info
quota: Don't write quota info in dquot_commit()
mm: avoid wrapping vm_pgoff in mremap()
p54usb: IDs for two new devices
b43: allocate receive buffers big enough for max frame len + offset
Bluetooth: sco: fix information leak to userspace
bridge: netfilter: fix information leak
Bluetooth: bnep: fix buffer overflow
Bluetooth: add support for Apple MacBook Pro 8,2
char/tpm: Fix unitialized usage of data buffer
netfilter: ip_tables: fix infoleak to userspace
netfilter: arp_tables: fix infoleak to userspace
netfilter: ipt_CLUSTERIP: fix buffer overflow
ipv6: netfilter: ip6_tables: fix infoleak to userspace
mfd: ab3100: world-writable debugfs *_priv files
drivers/rtc/rtc-ds1511.c: world-writable sysfs nvram file
drivers/misc/ep93xx_pwm.c: world-writable sysfs files
econet: 4 byte infoleak to the network
sound/oss: remove offset from load_patch callbacks
sound: oss: midi_synth: check get_user() return value
gro: Reset dev pointer on reuse
gro: reset skb_iif on reuse
x86, microcode, AMD: Extend ucode size verification
Squashfs: handle corruption of directory structure
atm/solos-pci: Don't include frame pseudo-header on transmit hex-dump
ext4: fix credits computing for indirect mapped files
nfsd: fix auth_domain reference leak on nlm operations
inet_diag: Make sure we actually run the same bytecode we audited.
xfs: zero proper structure size for geometry calls
cifs: always do is_path_accessible check in cifs_mount
video: sn9c102: world-wirtable sysfs files
UBIFS: restrict world-writable debugfs files
NET: cdc-phonet, handle empty phonet header
x86: Fix a bogus unwind annotation in lib/semaphore_32.S
tioca: Fix assignment from incompatible pointer warnings
mca.c: Fix cast from integer to pointer warning
ramfs: fix memleak on no-mmu arch
MAINTAINERS: update STABLE BRANCH info
UBIFS: fix oops when R/O file-system is fsync'ed
x86, cpu: AMD errata checking framework
x86, cpu: Clean up AMD erratum 400 workaround
x86, AMD: Set ARAT feature on AMD processors
x86, amd: Disable GartTlbWlkErr when BIOS forgets it
USB: ftdi_sio: Added IDs for CTI USB Serial Devices
USB: ftdi_sio: add PID for OCT DK201 docking station
USB: ftdi_sio: add ids for Hameg HO720 and HO730
USB: option: Add new ONDA vendor id and product id for ONDA MT825UP
USB: option: Added support for Samsung GT-B3730/GT-B3710 LTE USB modem.
next_pidmap: fix overflow condition
proc: do proper range check on readdir offset
USB: EHCI: unlink unused QHs when the controller is stopped
USB: fix formatting of SuperSpeed endpoints in /proc/bus/usb/devices
USB: xhci - fix unsafe macro definitions
USB: xhci - fix math in xhci_get_endpoint_interval()
x86, cpu: Fix regression in AMD errata checking code
Input: synaptics - fix crash in synaptics_module_init()
ath9k: fix a chip wakeup related crash in ath9k_start
ath: add missing regdomain pair 0x5c mapping
block, blk-sysfs: Fix an err return path in blk_register_queue()
p54: Initialize extra_len in p54_tx_80211
x86, gart: Make sure GART does not map physmem above 1TB
intel-iommu: Unlink domain from iommu
intel-iommu: Fix get_domain_for_dev() error path
drm/radeon/kms: fix bad shift in atom iio table parser
NFS: nfs_wcc_update_inode() should set nfsi->attr_gencount
serial/imx: read cts state only after acking cts change irq
ASoC: Fix output PGA enabling in wm_hubs CODECs
kconfig: Avoid buffer underrun in choice input
UBIFS: fix master node recovery
Remove extra struct page member from the buffer info structure
dasd: correct device table
iwlagn: Support new 5000 microcode.
uvcvideo: Fix descriptor parsing for video output devices
Revert "intel_idle: PCI quirk to prevent Lenovo Ideapad s10-3 boot hang"
ALSA: hda - VIA: Add missing support for VT1718S in A-A path
ALSA: hda - VIA: Fix stereo mixer recording no sound issue
iwlwifi: fix skb usage after free
intel-iommu: Fix use after release during device attach
USB: Fix unplug of device with active streams
USB: xhci - also free streams when resetting devices
2.6.35.y: Revert "SH: Add missing consts to sys_execve() declaration"
Revert "TPM: Long default timeout fix"
Revert "tpm_tis: Use timeouts returned from TPM"
2.6.35.13 longterm review
release-2.6.35.13

Tim Gardner (timg-tpi) on 2011-04-28
tags: added: kernel-stable-tracking-bug
Tim Gardner (timg-tpi) on 2011-04-28
description: updated
Martin Pitt (pitti) on 2011-06-06
Changed in linux (Ubuntu):
status: New → Invalid
Launchpad Janitor (janitor) wrote :
Download full text (30.0 KiB)

This bug was fixed in the package linux - 2.6.35-30.54

---------------
linux (2.6.35-30.54) maverick-proposed; urgency=low

  [ Brad Figg ]

  * Release Tracking Bug
    - LP: #794114

  [ Upstream Kernel Changes ]

  * Revert "xhci: Fix full speed bInterval encoding."
  * Revert "USB: xhci - also free streams when resetting devices"
  * Revert "USB: xhci - fix math in xhci_get_endpoint_interval()"
  * Revert "USB: xhci - fix unsafe macro definitions"

linux (2.6.35-30.53) maverick-proposed; urgency=low

  [ Upstream Kernel Changes ]

  * xhci: Fix full speed bInterval encoding.
    - LP: #792959

linux (2.6.35-30.52) maverick-proposed; urgency=low

  [ Herton R. Krzesinski ]

  * Release Tracking Bug
    - LP: #790653

  [ Stefan Bader ]

  * Include nls_iso8859-1 for virtual images
    - LP: #732046

  [ Thomas Schlichter ]

  * SAUCE: vesafb: mtrr module parameter is uint, not bool
    - LP: #778043

  [ Tim Gardner ]

  * [Config] Add cachefiles.ko to virtual flavour
    - LP: #770430

  [ Upstream Kernel Changes ]

  * Revert "intel_idle: PCI quirk to prevent Lenovo Ideapad s10-3 boot
    hang"
    - LP: #772560
  * Revert "TPM: Long default timeout fix"
    - LP: #772560
  * Revert "tpm_tis: Use timeouts returned from TPM"
    - LP: #772560
  * Revert "xen: set max_pfn_mapped to the last pfn mapped"
  * CAN: Use inode instead of kernel address for /proc file, CVE-2010-4565
    - LP: #765007
    - CVE-2010-4565
  * xfs: prevent leaking uninitialized stack memory in FSGEOMETRY_V1,
    CVE-2011-0711
    - LP: #767740
    - CVE-2011-0711
  * Treat writes as new when holes span across page boundaries,
    CVE-2011-0463
    - LP: #770483
    - CVE-2011-0463
  * fs/partitions/ldm.c: fix oops caused by corrupted partition table,
    CVE-2011-1017
    - LP: #771382
    - CVE-2011-1017
  * qla2xxx: Make the FC port capability mutual exclusive.
    - LP: #772560
  * staging: usbip: bugfixes related to kthread conversion
    - LP: #772560
  * staging: usbip: bugfix add number of packets for isochronous frames
    - LP: #772560
  * staging: usbip: bugfix for isochronous packets and optimization
    - LP: #772560
  * staging: hv: Fix GARP not sent after Quick Migration
    - LP: #772560
  * staging: hv: use sync_bitops when interacting with the hypervisor
    - LP: #772560
  * irda: validate peer name and attribute lengths
    - LP: #772560
  * irda: prevent heap corruption on invalid nickname
    - LP: #772560
  * nilfs2: fix data loss in mmap page write for hole blocks
    - LP: #772560
  * ASoC: Explicitly say registerless widgets have no register
    - LP: #772560
  * ALSA: ens1371: fix Creative Ectiva support
    - LP: #772560
  * ROSE: prevent heap corruption with bad facilities
    - LP: #772560
  * Btrfs: Fix uninitialized root flags for subvolumes
    - LP: #772560
  * x86, mtrr, pat: Fix one cpu getting out of sync during resume
    - LP: #772560
  * UBIFS: do not read flash unnecessarily
    - LP: #772560
  * UBIFS: fix oops on error path in read_pnode
    - LP: #772560
  * UBIFS: fix debugging failure in dbg_check_space_info
    - LP: #772560
  * quota: Don't write quota info in dquot_commit()
    - LP: #772560
  * mm: avoid wrapping vm_...

Changed in linux (Ubuntu Maverick):
status: New → Fix Released
tags: added: testcase
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers