Ben Hutchings
e90dec2a0e
bcache: Add upstream fixes marked for stable
...
- fix a livelock when we cause a huge number of cache misses
- Add a cond_resched() call to gc
- clear BCACHE_DEV_UNLINK_DONE flag when attaching a backing device
- fix a leak in bch_cached_dev_run()
- unregister reboot notifier if bcache fails to unregister device
- allows use of register in udev to avoid "device_busy" error.
- prevent crash on changing writeback_running
- Change refill_dirty() to always scan entire disk if necessary
As requested in
https://lists.debian.org/debian-backports/2016/01/msg00067.html
2016-01-17 21:59:33 +00:00
Ben Hutchings
a9736a8ea4
Revert "block/sd: Fix device-imposed transfer length limits"
...
This introduces an ABI change and it's not obvious how to work around that.
2016-01-17 16:40:35 +00:00
Salvatore Bonaccorso
f335c0cfcc
unix: properly account for FDs passed over unix sockets (CVE-2013-4312)
2016-01-17 09:27:47 +01:00
Ben Hutchings
74cadf39f7
block/sd: Fix device-imposed transfer length limits ( Closes : #805252 )
2016-01-16 03:50:08 +00:00
Ben Hutchings
18e70e2c53
Add some security fixes
2016-01-14 23:39:40 +00:00
Ben Hutchings
d2547e3561
xen/gntdev: Grant maps should not be subject to NUMA balancing ( Closes : #810472 )
2016-01-08 19:32:35 +00:00
Ben Hutchings
eafb4c30fd
Revert "xhci: don't finish a TD if we get a short transfer event mid TD"
...
Closes : #808602 , #808953 , regression in 4.3-rc7
2016-01-02 03:09:56 +00:00
Ben Hutchings
45e2ecad07
drm/nouveau/pmu: do not assume a PMU is present ( Closes : #809481 )
2016-01-01 18:41:43 +00:00
Ben Hutchings
e57c91d886
KEYS: Fix race between read and revoke (CVE-2015-7550)
2015-12-31 02:53:31 +00:00
Ben Hutchings
fd75678652
Update 'net: add validation for the socket syscall protocol argument' to upstream version
2015-12-27 19:21:59 +00:00
Ben Hutchings
6408412cc6
Add upstream references to selftest patches
2015-12-27 14:14:49 +00:00
Ben Hutchings
3fac5cf03c
ptrace: being capable wrt a process requires mapped uids/gids
2015-12-27 06:19:08 +00:00
Ben Hutchings
7b6f99cec5
[xen] pciback: Fix state validation in MSI control operations (CVE-2015-8551, CVE-2015-8852, XSA-157)
2015-12-27 05:54:06 +00:00
Ben Hutchings
94b974ce0f
[xen] Fix race conditions in back-end drivers (CVE-2015-8550, XSA-155)
2015-12-27 05:49:13 +00:00
Ben Hutchings
1ff79b037c
bluetooth: Validate socket address length in sco_sock_bind() (CVE-2015-8575)
2015-12-27 04:26:45 +00:00
Ben Hutchings
e9708970a6
pptp: verify sockaddr_len in pptp_bind() and pptp_connect() (CVE-2015-8569)
2015-12-27 04:26:45 +00:00
Ben Hutchings
5db0f0e307
block: ensure to split after potentially bouncing a bio ( Closes : #809082 )
2015-12-27 04:26:45 +00:00
Salvatore Bonaccorso
d6b9e3f082
ovl: fix permission checking for setattr (CVE-2015-8660)
2015-12-24 06:42:25 +01:00
Ben Hutchings
ca0bbf698b
tipc: Fix kfree_skb() of uninitialised pointer (regression in 4.3.3)
2015-12-15 21:25:16 +00:00
Ben Hutchings
8fd06d9868
vrf: Fix broken backport of "vrf: fix double free and memory corruption on register_netdevice failure" in 4.3.3
2015-12-15 17:44:38 +00:00
Ben Hutchings
c4e89babe4
Update to 4.3.3
...
Drop 3 security fixes that were included in it.
2015-12-15 17:40:55 +00:00
Ben Hutchings
61acdc692c
net: add validation for the socket syscall protocol argument (CVE-2015-8543)
2015-12-14 20:59:45 +00:00
Ben Hutchings
12dc87aa9c
Release linux (4.2.6-2).
...
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=jlfq
-----END PGP SIGNATURE-----
Merge tag 'debian/4.2.6-2'
Exclude one new patch that's already in 4.3, and the ABI stuff.
Remove items from the open changelog entry that are now redundant.
2015-12-04 18:03:02 +00:00
Ben Hutchings
7d0a4425fd
firmware_class: Fix condition in directory search loop ( Closes : #804862 )
...
(cherry picked from commit 5269f93afe
)
2015-12-04 01:15:54 +00:00
Ben Hutchings
4668d13b75
Btrfs: fix truncation of compressed and inlined extents (CVE-2015-8374)
2015-12-03 00:50:36 +00:00
Ben Hutchings
1060c43c3d
ppp, slip: Validate VJ compression slot parameters completely (CVE-2015-7799)
...
Plus a preparatory fix to isdn_ppp.
2015-12-03 00:48:31 +00:00
Ben Hutchings
045f1d7a16
unix: avoid use-after-free in ep_remove_wait_queue (CVE-2013-7446)
2015-12-03 00:45:29 +00:00
Ben Hutchings
22ad2142d1
media: usbvision: fix crash on detecting device with invalid configuration
...
(CVE-2015-7833, partly fixed in 4.2.6-1)
Also update headers of the previous patch to match the commit in
media_tree.git.
2015-11-24 17:09:48 +00:00
Ben Hutchings
5269f93afe
firmware_class: Fix condition in directory search loop ( Closes : #804862 )
2015-11-12 14:59:37 +00:00
Ben Hutchings
b531af6929
Release linux (4.2.6-1).
...
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=Bxdo
-----END PGP SIGNATURE-----
Merge tag 'debian/4.2.6-1'
Refresh some patches.
2015-11-10 16:12:32 +00:00
Ben Hutchings
7f79eccf5e
Update to 4.2.6
2015-11-10 11:32:17 +00:00
Ben Hutchings
b2076bbc37
media/vivid-osd: fix info leak in ioctl (CVE-2015-7884)
2015-11-08 15:01:04 +00:00
Ben Hutchings
ed853af7cb
RDS: fix race condition when sending a message on unbound socket (CVE-2015-7990)
2015-11-08 14:48:48 +00:00
Ben Hutchings
222755c823
usbvision: fix overflow of interfaces array (CVE-2015-7833)
2015-11-08 14:48:04 +00:00
Ben Hutchings
e317536be0
mv643xx_eth: Re-enable TSO, fixed upstream in 4.3
2015-11-07 14:23:40 +00:00
Ben Hutchings
c5e06b9078
Update to 4.3
2015-11-02 10:29:06 +00:00
Ben Hutchings
4c1226a6c4
selftests: breakpoint: Actually build it
2015-10-31 22:04:13 +00:00
Ben Hutchings
a29879587a
selftests: vm: Try harder to allocate huge pages
2015-10-31 22:04:13 +00:00
Ben Hutchings
a748a69c46
selftests: Make scripts executable
2015-10-31 22:04:13 +00:00
Ben Hutchings
47af940cea
selftests: kprobe: Choose an always-defined function to probe
2015-10-31 22:04:13 +00:00
Ben Hutchings
ac28c69026
selftests: Ignore compiler warnings
...
We can't fix them all yet, and they shouldn't cause a test failure.
Patch memfd makefile to ensure we don't rebuild it and thus emit
warnings during a test run.
2015-10-31 22:04:13 +00:00
Ben Hutchings
499a3df5b5
selftests: Add missing #include directives
2015-10-31 22:04:13 +00:00
Ben Hutchings
3bbce43ea7
Update to 4.2.4
...
Drop patches applied upstream.
Fix two ABI changes.
2015-10-23 01:37:19 +01:00
Salvatore Bonaccorso
4a5cabce55
Rename patches for crash issue when attempting to garbage collect an uninstantiated keyring
2015-10-20 14:06:05 +02:00
Salvatore Bonaccorso
6dd6bf4bb2
KEYS: Don't permit request_key() to construct a new keyring
2015-10-19 21:33:39 +02:00
Salvatore Bonaccorso
a4b71a2ac3
KEYS: Fix crash when attempt to garbage collect an uninstantiated keyring
2015-10-19 21:31:55 +02:00
Salvatore Bonaccorso
0856d72c31
KEYS: Fix race between key destruction and finding a keyring by name
2015-10-19 21:24:41 +02:00
Ben Hutchings
e3bec54b78
nbd: Restore request timeout detection ( Closes : #770479 )
2015-10-08 21:26:03 +01:00
Ben Hutchings
48bbfe3b4f
Update to 4.3-rc4
2015-10-06 23:13:52 +01:00
Ben Hutchings
74a655e99e
Release linux (4.2.3-1).
...
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=C10r
-----END PGP SIGNATURE-----
Merge tag 'debian/4.2.3-1'
Drop ABI reference files and ABI fixes.
2015-10-06 22:16:11 +01:00