Change log for linux-signed-amd64 package in Debian

226239 of 239 results
Superseded in buster-release
Superseded in sid-release
linux-signed-amd64 (4.19.16+1) unstable; urgency=medium

  * Sign kernel from linux 4.19.16-1

  * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.14
    - ax25: fix a use-after-free in ax25_fillin_cb()
    - gro_cell: add napi_disable in gro_cells_destroy
    - ip6mr: Fix potential Spectre v1 vulnerability
    - ipv4: Fix potential Spectre v1 vulnerability
    - ipv6: explicitly initialize udp6_addr in udp_sock_create6()
    - ipv6: tunnels: fix two use-after-free
    - ip: validate header length on virtual device xmit
    - isdn: fix kernel-infoleak in capi_unlocked_ioctl
    - net/wan: fix a double free in x25_asy_open_tty()
    - packet: validate address length
    - packet: validate address length if non-zero
    - ptr_ring: wrap back ->producer in __ptr_ring_swap_queue()
    - sctp: initialize sin6_flowinfo for ipv6 addrs in sctp_inet6addr_event
    - tipc: compare remote and local protocols in tipc_udp_enable()
    - tipc: fix a double free in tipc_enable_bearer()
    - tipc: fix a double kfree_skb()
    - ipv6: frags: Fix bogus skb->sk in reassembled packets
    - ipv6: route: Fix return value of ip6_neigh_lookup() on neigh_create()
      error
    - ALSA: rme9652: Fix potential Spectre v1 vulnerability
    - ALSA: emu10k1: Fix potential Spectre v1 vulnerabilities
    - ALSA: pcm: Fix potential Spectre v1 vulnerability
    - ALSA: emux: Fix potential Spectre v1 vulnerabilities
    - powerpc/fsl: Fix spectre_v2 mitigations reporting
    - usb: r8a66597: Fix a possible concurrency use-after-free bug in
      r8a66597_endpoint_disable()
    - [s390x] s390/pci: fix sleeping in atomic during hotplug
    - [x86] x86/speculation/l1tf: Drop the swap storage limit restriction when
      l1tf=off
    - [x86] x86/mm: Drop usage of __flush_tlb_all() in
      kernel_physical_mapping_init()
    - [x86] KVM: x86: Use jmp to invoke kvm_spurious_fault() from .fixup
    - [arm64] arm64: KVM: Make VHE Stage-2 TLB invalidation operations
      non-interruptible
    - perf pmu: Suppress potential format-truncation warning
    - perf env: Also consider env->arch == NULL as local operation
    - ext4: fix possible use after free in ext4_quota_enable
    - ext4: missing unlock/put_page() in ext4_try_to_write_inline_data()
    - ext4: include terminating u32 in size of xattr entries when expanding
      inodes
    - ext4: force inode writes when nfsd calls commit_metadata()
    - ext4: check for shutdown and r/o file system in ext4_write_inode()
    - [armhf,arm64] spi: bcm2835: Fix race on DMA termination
    - [armhf,arm64] spi: bcm2835: Fix book-keeping of DMA termination
    - [armhf,arm64] spi: bcm2835: Avoid finishing transfer prematurely in IRQ
      mode
    - btrfs: dev-replace: go back to suspended state if target device is missing
    - btrfs: dev-replace: go back to suspend state if another EXCL_OP is running
    - btrfs: skip file_extent generation check for free_space_inode in
      run_delalloc_nocow
    - Btrfs: fix fsync of files with multiple hard links in new directories
    - btrfs: run delayed items before dropping the snapshot
    - Btrfs: send, fix race with transaction commits that create snapshots
    - brcmfmac: Fix out of bounds memory access during fw load
    - dax: Don't access a freed inode
    - f2fs: read page index before freeing
    - f2fs: sanity check of xattr entry size
    - media: imx274: fix stack corruption in imx274_read_reg
    - media: v4l2-tpg: array index could become negative
    - tools lib traceevent: Fix processing of dereferenced args in bprintk
      events
    - [mips*] MIPS: math-emu: Write-protect delay slot emulation pages
    - [mips*] MIPS: Ensure pmd_present() returns false after pmd_mknotpresent()
    - [mips*] MIPS: Align kernel load address to 64KB
    - [mips*] MIPS: Expand MIPS32 ASIDs to 64 bits
    - CIFS: Fix error mapping for SMB2_LOCK command which caused OFD lock
      problem
    - smb3: fix large reads on encrypted connections
    - [arm*] KVM: arm/arm64: vgic: Cap SPIs to the VM-defined maximum
    - [arm*] KVM: arm/arm64: vgic-v2: Set active_source to 0 when restoring
      state
    - [arm*] KVM: arm/arm64: vgic: Fix off-by-one bug in vgic_get_irq()
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.15
    - IB/core: Fix oops in netdev_next_upper_dev_rcu()
    - xfrm: Fix NULL pointer dereference in xfrm_input when skb_dst_force
      clears the dst_entry.
    - ieee802154: hwsim: fix off-by-one in parse nested
    - netfilter: seqadj: re-load tcp header pointer after possible head
      reallocation
    - scsi: bnx2fc: Fix NULL dereference in error handling
    - [ppc64el] ibmvnic: Convert reset work item mutex to spin lock
    - [ppc64el] ibmvnic: Fix non-atomic memory allocation in IRQ context
    - [x86] x86/mm: Fix guard hole handling
    - i40e: fix mac filter delete when setting mac address
    - ixgbe: Fix race when the VF driver does a reset
    - netfilter: nat: can't use dst_hold on noref dst
    - bnx2x: Clear fip MAC when fcoe offload support is disabled
    - bnx2x: Remove configured vlans as part of unload sequence.
    - bnx2x: Send update-svid ramrod with retry/poll flags enabled
    - mt76: fix potential NULL pointer dereference in mt76_stop_tx_queues
    - [x86] x86, hyperv: remove PCI dependency
    - [arm64] net: hns: All ports can not work when insmod hns ko after rmmod.
    - [arm64] net: hns: Fixed bug that netdev was opened twice
    - [arm64] net: hns: Clean rx fbd when ae stopped.
    - [arm64] net: hns: Avoid net reset caused by pause frames storm
    - [arm64] net: hns: Add mac pcs config when enable|disable mac
    - [arm64] net: hns: Fix ping failed when use net bridge and send multicast
    - mac80211: fix a kernel panic when TXing after TXQ teardown
    - [arm64,riscv64] net: macb: fix random memory corruption on RX with
      64-bit DMA
    - [arm64.risvv64] net: macb: fix dropped RX frames due to a race
    - lan78xx: Resolve issue with changing MAC address
    - [s390x] scsi: zfcp: fix posting too many status read buffers leading to
      adapter shutdown
    - fork: record start_time late
    - zram: fix double free backing device
    - hwpoison, memory_hotplug: allow hwpoisoned pages to be offlined
    - mm, devm_memremap_pages: kill mapping "System RAM" support
    - memcg, oom: notify on oom killer invocation from the charge path
    - mt76x0: init hw capabilities
    - [amd64] media: cx23885: only reset DMA on problematic CPUs
    - ALSA: cs46xx: Potential NULL dereference in probe
    - ALSA: usb-audio: Avoid access before bLength check in
      build_audio_procunit()
    - ALSA: usb-audio: Check mixer unit descriptors more strictly
    - ALSA: usb-audio: Fix an out-of-bound read in create_composite_quirks
    - ALSA: usb-audio: Always check descriptor sizes in parser code
    - Fix failure path in alloc_pid()
    - block: deactivate blk_stat timer in wbt_disable_default()
    - gfs2: Get rid of potential double-freeing in gfs2_create_inode
    - gfs2: Fix loop in gfs2_rbm_find
    - b43: Fix error in cordic routine
    - nfsd4: zero-length WRITE should succeed
    - [ppc*] powerpc/tm: Set MSR[TS] just prior to recheckpoint
    - RDMA/srpt: Fix a use-after-free in the channel release code
    - sched/fair: Fix infinite loop in update_blocked_averages() by reverting
      a9e7f6544b9c
    - [s390x] genwqe: Fix size check
    - [x86] intel_th: msu: Fix an off-by-one in attribute store
    - [armhf,arm64] drm/rockchip: psr: do not dereference encoder before it is
      null checked.
    - bnx2x: Fix NULL pointer dereference in bnx2x_del_all_vlans() on some hw
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.16
    - Btrfs: fix deadlock when using free space tree due to block group
      creation
    - staging: rtl8188eu: Fix module loading from tasklet for CCMP encryption
    - staging: rtl8188eu: Fix module loading from tasklet for WEP encryption
    - cpufreq: scmi: Fix frequency invariance in slow path
    - [x86] modpost: Replace last remnants of RETPOLINE with CONFIG_RETPOLINE
    - ALSA: hda/realtek - Support Dell headset mode for New AIO platform
    - ALSA: hda/realtek - Add unplug function into unplug state of Headset Mode
      for ALC225
    - ALSA: hda/realtek - Disable headset Mic VREF for headset mode of ALC225
    - CIFS: Fix adjustment of credits for MTU requests
    - CIFS: Do not set credits to 1 if the server didn't grant anything
    - CIFS: Do not hide EINTR after sending network packets
    - CIFS: Fix credit computation for compounded requests
    - cifs: Fix potential OOB access of lock element array
    - usb: cdc-acm: send ZLP for Telit 3G Intel based modems
    - USB: storage: don't insert sane sense for SPC3+ when bad sense specified
    - USB: storage: add quirk for SMI SM3350
    - USB: Add USB_QUIRK_DELAY_CTRL_MSG quirk for Corsair K70 RGB
    - slab: alien caches must not be initialized if the allocation of the alien
      cache failed
    - mm/usercopy.c: no check page span for stack objects
    - mm, memcg: fix reclaim deadlock with writeback
    - ACPI: power: Skip duplicate power resource references in _PRx
    - ACPI / PMIC: xpower: Fix TS-pin current-source handling
    - ACPI/IORT: Fix rc_dma_get_range()
    - i2c: dev: prevent adapter retries and timeout being set as minus value
    - vfio/type1: Fix unmap overflow off-by-one
    - drm/amdgpu: Add new VegaM pci id
    - PCI: dwc: Use interrupt masking instead of disabling
    - PCI: dwc: Take lock when ACKing an interrupt
    - PCI: dwc: Move interrupt acking into the proper callback
    - drm/amd/display: Fix MST dp_blank REG_WAIT timeout
    - drm/fb_helper: Allow leaking fbdev smem_start
    - drm/fb-helper: Partially bring back workaround for bugs of SDL 1.2
    - [x86] drm/i915: Unwind failure on pinning the gen7 ppgtt
    - drm/amdgpu: Don't ignore rc from drm_dp_mst_topology_mgr_resume()
    - drm/amdgpu: Don't fail resume process if resuming atomic state fails
    - rbd: don't return 0 on unmap if RBD_DEV_FLAG_REMOVING is set
    - ext4: make sure enough credits are reserved for dioread_nolock writes
    - ext4: fix a potential fiemap/page fault deadlock w/ inline_data
    - ext4: avoid kernel warning when writing the superblock to a dead device
    - ext4: use ext4_write_inode() when fsyncing w/o a journal
    - ext4: track writeback errors using the generic tracking infrastructure
    - ext4: fix special inode number checks in __ext4_iget()
    - mm: page_mapped: don't assume compound page is huge or THP
    - sunrpc: use-after-free in svc_process_common()
    - [armhf,arm64] KVM: Fix VMID alloc race by reverting to lock-less
    - [arm64] compat: Don't pull syscall number from regs in arm_compat_syscall
    - Btrfs: fix access to available allocation bits when starting balance
    - Btrfs: fix deadlock when enabling quotas due to concurrent snapshot
      creation
    - Btrfs: use nofs context when initializing security xattrs to avoid
      deadlock

  [ John Paul Adrian Glaubitz ]
  * [m68k] Add patch to build with -ffreestanding to fix FTBFS

  [ Ben Hutchings ]
  * [ia64,m68k] libbpf: Really don't build on architectures without perf events
  * Use dh_listpackages to determine which packages to build
  * Add pkg.linux.nokernel build profile that excludes kernel image and header
    packages

  [ Yves-Alexis Perez ]
  * Bump ABI to 2 because of changes in struct sock_common from 60f05dddf1eb
  * [rt] Update to 4.19.15-rt12
    - rtmutex/rwlock: preserve state like a sleeping lock

  [ Salvatore Bonaccorso ]
  * ipv6: Consider sk_bound_dev_if when binding a socket to an address
    (Closes: #918103)
  * posix-cpu-timers: Unbreak timer rearming (Closes: #919019, #919049)

  [ Michal Simek ]
  * [arm64] Enable Xilinx ZynqMP SoC and drivers

  [ YunQiang Su ]
  * [mipsel, mips64el] Enable DRM_AST and FB_SM750 for loongson-3
    install ast and sm750fb to loongson-3's fb-modules

  [ Romain Perier ]
  * [rt] Update to 4.19.13-rt10

  [ Luigi Baldoni ]
  * [x86] Enable LEDS_APU to support leds on PC Engines
    APU SBC series

 -- Ben Hutchings <email address hidden>  Thu, 17 Jan 2019 18:56:17 +0000

Available diffs

Superseded in sid-release
linux-signed-amd64 (4.19.13+1) unstable; urgency=medium

  * Sign kernel from linux 4.19.13-1

  * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.13
    - Revert "vfs: Allow userns root to call mknod on owned filesystems."
    - USB: hso: Fix OOB memory access in hso_probe/hso_get_config_data
      (CVE-2018-19985)
    - xhci: Don't prevent USB2 bus suspend in state check intended for USB3
      only
    - USB: xhci: fix 'broken_suspend' placement in struct xchi_hcd
    - USB: serial: option: add GosunCn ZTE WeLink ME3630
    - USB: serial: option: add HP lt4132
    - USB: serial: option: add Simcom SIM7500/SIM7600 (MBIM mode)
    - USB: serial: option: add Fibocom NL668 series
    - USB: serial: option: add Telit LN940 series
    - ubifs: Handle re-linking of inodes correctly while recovery
    - scsi: t10-pi: Return correct ref tag when queue has no integrity profile
    - scsi: sd: use mempool for discard special page
    - mmc: core: Reset HPI enabled state during re-init and in case of errors
    - mmc: core: Allow BKOPS and CACHE ctrl even if no HPI support
    - mmc: core: Use a minimum 1600ms timeout when enabling CACHE ctrl
    - [armhf] mmc: omap_hsmmc: fix DMA API warning
    - gpiolib-acpi: Only defer request_irq for GpioInt ACPI event handlers
    - posix-timers: Fix division by zero bug
    - [x86] KVM: Fix NULL deref in vcpu_scan_ioapic
    - [x86] kvm: Add AMD's EX_CFG to the list of ignored MSRs
    - [x86] KVM: Fix UAF in nested posted interrupt processing
    - [x86] Drivers: hv: vmbus: Return -EINVAL for the sys files for unopened
      channels
    - futex: Cure exit race
    - [x86] mtrr: Don't copy uninitialized gentry fields back to userspace
    - [x86] mm: Fix decoy address handling vs 32-bit builds (Closes: #917569)
    - [x86] vdso: Pass --eh-frame-hdr to the linker
    - panic: avoid deadlocks in re-entrant console drivers
    - mm: add mm_pxd_folded checks to pgtable_bytes accounting functions
    - mm: make the __PAGETABLE_PxD_FOLDED defines non-empty
    - mm: introduce mm_[p4d|pud|pmd]_folded
    - xfrm_user: fix freeing of xfrm states on acquire
    - rtlwifi: Fix leak of skb when processing C2H_BT_INFO
    - iwlwifi: mvm: don't send GEO_TX_POWER_LIMIT to old firmwares
    - Revert "mwifiex: restructure rx_reorder_tbl_lock usage"
    - iwlwifi: add new cards for 9560, 9462, 9461 and killer series
    - mm, memory_hotplug: initialize struct pages for the full memory section
    - mm: thp: fix flags for pmd migration when split
    - mm, page_alloc: fix has_unmovable_pages for HugePages
    - mm: don't miss the last page because of round-off error
    - Input: elantech - disable elan-i2c for P52 and P72
    - proc/sysctl: don't return ENOMEM on lookup when a table is unregistering
    - drm/ioctl: Fix Spectre v1 vulnerabilities

  [ Uwe Kleine-König ]
  * [armhf] enable some kconfig items for Allwinner SoCs (SUNXI_CCU=y,
    SUN8I_DE2_CCU=y, DRM_SUN8I_DW_HDMI=m, SND_SUN8I_CODEC=m,
    SND_SUN8I_CODEC_ANALOG=m). (Closes: #915899)

  [ Ben Hutchings ]
  * linux-image-*-unsigned: Remove Provides field (Closes: #916927)
  * [ia64,m68k] libbpf: Don't build on architectures without performance events
  * [riscv64] tools uapi: fix RISC-V 64-bit support
  * [powerpc,powerpcspe,ppc64] linux-config: Eliminate config.*_bootwrapper.gz
    files
  * [powerpcspe] Fix -mcpu= options for SPE-only compiler
  * debian/lib/python/debian_linux/debian.py: Fix deprecated import of
    MutableSet
  * Fix pycodestyle "line break after binary operator" warnings
  * Fix pycodestyle "inalid escape sequence" warnings

  [ Romain Perier ]
  * [rt] Update to 4.19.10-rt8

 -- Salvatore Bonaccorso <email address hidden>  Sun, 30 Dec 2018 10:04:03 +0100

Available diffs

Superseded in experimental-release
linux-signed-amd64 (4.20+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.20-1~exp1

  * New upstream release: https://kernelnewbies.org/Linux_4.20

  [ Ben Hutchings ]
  * aufs: Update support patchset to aufs4.x-rcN 20181217
  * [rt] Disable until it is updated for 4.20 or later
  * [x86] udeb: Move rfkill to new rfkill-modules package to avoid duplication
  * debian/source/lintian-overrides: Update overrides for GFDL notices

 -- Ben Hutchings <email address hidden>  Mon, 24 Dec 2018 04:26:47 +0000
Superseded in buster-release
Superseded in sid-release
linux-signed-amd64 (4.19.12+1) unstable; urgency=medium

  * Sign kernel from linux 4.19.12-1

  * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.10
    - ipv4: ipv6: netfilter: Adjust the frag mem limit when truesize changes
    - ipv6: Check available headroom in ip6_xmit() even without options
    - ipv6: sr: properly initialize flowi6 prior passing to ip6_route_output
    - [arm64, hppa, powerpc, x86, alpha, armhf, mips*] net: 8139cp: fix a BUG
      triggered by changing mtu with network traffic
    - net: phy: don't allow __set_phy_supported to add unsupported modes
    - net: Prevent invalid access to skb->prev in __qdisc_drop_all
    - net: use skb_list_del_init() to remove from RX sublists
    - Revert "net/ibm/emac: wrong bit is used for STA control"
    - rtnetlink: ndo_dflt_fdb_dump() only work for ARPHRD_ETHER devices
    - sctp: kfree_rcu asoc
    - tcp: Do not underestimate rwnd_limited
    - tcp: fix NULL ref in tail loss probe
    - tun: forbid iface creation with rtnl ops
    - virtio-net: keep vnet header zeroed after processing XDP
    - net: phy: sfp: correct store of detected link modes
    - sctp: update frag_point when stream_interleave is set
    - net: restore call to netdev_queue_numa_node_write when resetting XPS
    - net: fix XPS static_key accounting
    - [armhf] OMAP2+: prm44xx: Fix section annotation on
      omap44xx_prm_enable_io_wakeup
    - [arm64, x86] staging: rtl8723bs: Fix the return value in case of error in
      'rtw_wx_read32()'
    - [armhf] dts: am3517: Fix pinmuxing for CD on MMC1
    - [armhf] dts: LogicPD Torpedo: Fix mmc3_dat1 interrupt
    - [armhf] dts: logicpd-somlv: Fix interrupt on mmc3_dat1
    - [armhf] dts: am3517-som: Fix WL127x Wifi interrupt
    - tools: bpftool: prevent infinite loop in get_fdinfo()
    - [arm64] dts: sdm845-mtp: Reserve reserved gpios
    - sysv: return 'err' instead of 0 in __sysv_write_inode
    - netfilter: nf_tables: don't skip inactive chains during update
    - perf tools: Fix crash on synthesizing the unit
    - netfilter: xt_RATEEST: remove netns exit routine
    - netfilter: nf_tables: fix use-after-free when deleting compat expressions
    - [armhf] ASoC: rockchip: add missing slave_config setting for I2S
    - s390/cpum_cf: Reject request for sampling in event initialization
    - [arm64, armel, x86, armhf] ASoC: dapm: Recalculate audio map forcely when
      card instantiated
    - [armhf] spi: omap2-mcspi: Add missing suspend and resume calls
    - bpf: allocate local storage buffers using GFP_ATOMIC
    - aio: fix failure to put the file pointer
    - netfilter: xt_hashlimit: fix a possible memory leak in htable_create()
    - hwmon: (w83795) temp4_type has writable permission
    - perf tools: Restore proper cwd on return from mnt namespace
    - [armhf] PCI: imx6: Fix link training status detection in link up check
    - objtool: Fix double-free in .cold detection error path
    - objtool: Fix segfault in .cold detection with -ffunction-sections
    - [arm64] phy: qcom-qusb2: Use HSTX_TRIM fused value as is
    - [arm64] phy: qcom-qusb2: Fix HSTX_TRIM tuning with fused value for SDM845
    - Btrfs: send, fix infinite loop due to directory rename dependencies
    - RDMA/mlx5: Fix fence type for IB_WR_LOCAL_INV WR
    - RDMA/core: Add GIDs while changing MAC addr only for registered ndev
    - RDMA/rdmavt: Fix rvt_create_ah function signature
    - tools: bpftool: fix potential NULL pointer dereference in do_load
    - ipvs: call ip_vs_dst_notifier earlier than ipv6_dev_notf
    - [x86] thunderbolt: Prevent root port runtime suspend during NVM upgrade
    - [arm64] drm/meson: add support for 1080p25 mode
    - netfilter: ipv6: Preserve link scope traffic original oif
    - IB/mlx5: Fix page fault handling for MW
    - netfilter: add missing error handling code for register functions
    - [x86] KVM: VMX: Update shared MSRs to be saved/restored on MSR_EFER.LMA
      changes
    - [x86] kvm/vmx: fix old-style function declaration
    - [arm64] net: thunderx: fix NULL pointer dereference in nic_remove
    - netfilter: nf_tables: deactivate expressions in rule replecement routine
    - ALSA: usb-audio: Add vendor and product name for Dell WD19 Dock
    - cachefiles: Fix an assertion failure when trying to update a failed object
    - fscache: Fix race in fscache_op_complete() due to split atomic_sub & read
    - cachefiles: Fix page leak in cachefiles_read_backing_file while vmscan is
      active
    - igb: fix uninitialized variables
    - ixgbe: recognize 1000BaseLX SFP modules as 1Gbps
    - [arm64] net: hisilicon: remove unexpected free_netdev
    - drm/amdgpu: Add delay after enable RLC ucode
    - [arm64, powerpc, x86] drm/ast: fixed reading monitor EDID not stable issue
    - Revert "xen/balloon: Mark unallocated host memory as UNUSABLE"
    - afs: Fix validation/callback interaction
    - fscache: fix race between enablement and dropping of object
    - cachefiles: Explicitly cast enumerated type in put_object
    - fscache, cachefiles: remove redundant variable 'cache'
    - nvme: warn when finding multi-port subsystems without multipathing enabled
    - ocfs2: fix deadlock caused by ocfs2_defrag_extent()
    - mm/page_alloc.c: fix calculation of pgdat->nr_zones
    - hfs: do not free node before using
    - hfsplus: do not free node before using
    - initramfs: clean old path before creating a hardlink
    - ocfs2: fix potential use after free
    - dax: Check page->mapping isn't NULL
    - ALSA: hda/realtek - Fixed headphone issue for ALC700
    - ALSA: hda/realtek: ALC294 mic and headset-mode fixups for ASUS X542UN
    - ALSA: hda/realtek: Enable audio jacks of ASUS UX533FD with ALC294
    - ALSA: hda/realtek: Enable audio jacks of ASUS UX433FN/UX333FA with ALC294
    - ALSA: hda/realtek - Fix the mute LED regresion on Lenovo X1 Carbon
    - IB/hfi1: Fix an out-of-bounds access in get_hw_stats
    - bpf: fix off-by-one error in adjust_subprog_starts
    - tcp: lack of available data can also cause TSO defer
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.11
    - sched/pelt: Fix warning and clean up IRQ PELT config
    - scsi: raid_attrs: fix unused variable warning
    - [i386] staging: olpc_dcon: add a missing dependency
    - [arm64] dts: qcom-apq8064-arrow-sd-600eval fix graph_endpoint warning
    - [arm64] drm/msm: fix address space warning
    - aio: fix spectre gadget in lookup_ioctx
    - fs/iomap.c: get/put the page in iomap_page_create/release()
    - userfaultfd: check VM_MAYWRITE was set after verifying the uffd is
      registered
    - [arm64] dma-mapping: Fix FORCE_CONTIGUOUS buffer clearing
    - block/bio: Do not zero user pages
    - ovl: fix decode of dir file handle with multi lower layers
    - ovl: fix missing override creds in link of a metacopy upper
    - [armhf] MMC: OMAP: fix broken MMC on OMAP15XX/OMAP5910/OMAP310
    - mmc: core: use mrq->sbc when sending CMD23 for RPMB
    - mmc: sdhci: fix the timeout check window for clock and reset
    - fuse: continue to send FUSE_RELEASEDIR when FUSE_OPEN returns ENOSYS
    - [arm] mmp/mmp2: fix cpu_is_mmp2() on mmp2-dt
    - [arm] dts: bcm2837: Fix polarity of wifi reset GPIOs (Closes: #911443)
    - dm thin: send event about thin-pool state change _after_ making it
    - dm cache metadata: verify cache has blocks in
      blocks_are_clean_separate_dirty()
    - dm: call blk_queue_split() to impose device limits on bios
    - tracing: Fix memory leak of instance function hash filters
    - [powerpc*] msi: Fix NULL pointer access in teardown code
    - drm/nouveau/kms: Fix memory leak in nv50_mstm_del()
    - drm/nouveau/kms/nv50-: also flush fb writes when rewinding push buffer
    - Revert "drm/rockchip: Allow driver to be shutdown on reboot/kexec"
    - [x86] drm/i915/execlists: Apply a full mb before execution for Braswell
    - [amd64] drm/amdkfd: add new vega10 pci ids
    - drm/amdgpu: add some additional vega10 pci ids
    - drm/amdgpu: update smu firmware images for VI variants (v2)
    - drm/amdgpu: update SMC firmware image for polaris10 variants
    - [x86] build: Fix compiler support check for CONFIG_RETPOLINE
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.12
    - locking/qspinlock: Re-order code
    - [x86] locking/qspinlock, x86: Provide liveness guarantee
    - [amd64] IB/hfi1: Remove race conditions in user_sdma send path
    - mac80211_hwsim: fix module init error paths for netlink
    - [x86] Input: hyper-v - fix wakeup from suspend-to-idle
    - scsi: libiscsi: Fix NULL pointer dereference in iscsi_eh_session_reset
    - [x86] scsi: vmw_pscsi: Rearrange code to avoid multiple calls to
      free_irq during unload
    - [x86] earlyprintk/efi: Fix infinite loop on some screen widths
    - [arm64] drm/msm: Fix task dump in gpu recovery
    - [arm64] drm/msm/gpu: Fix a couple memory leaks in debugfs
    - [arm64] drm/msm: fix handling of cmdstream offset
    - [arm64] drm/msm/dsi: configure VCO rate for 10nm PLL driver
    - [arm64] drm/msm: Grab a vblank reference when waiting for commit_done
    - drm/ttm: fix LRU handling in ttm_buffer_object_transfer
    - drm/amdgpu: wait for IB test on first device open
    - [arm64,armhf] net: stmmac: Move debugfs init/exit to
      ->probe()/->remove()
    - [amd64] net: aquantia: fix rx checksum offload bits
    - bonding: fix 802.3ad state sent to partner when unbinding slave
    - liquidio: read sc->iq_no before release sc
    - nfs: don't dirty kernel pages read by direct-io
    - SUNRPC: Fix a potential race in xprt_connect()
    - [sparc64] sbus: char: add of_node_put()
    - [sparc64] drivers/sbus/char: add of_node_put()
    - [sparc64] drivers/tty: add missing of_node_put()
    - [arm64] drm/msm/hdmi: Enable HPD after HDMI IRQ is set up
    - [amr64] drm/msm: dpu: Don't set legacy plane->crtc pointer
    - [arm64] drm/msm: dpu: Fix "WARNING: invalid free of devm_ allocated
      data"
    - [arm64] drm/msm: Fix error return checking
    - [arm64] clk: mvebu: Off by one bugs in cp110_of_clk_get()
    - Input: synaptics - enable SMBus for HP 15-ay000
    - [armhf] Input: omap-keypad - fix keyboard debounce configuration
    - libata: whitelist all SAMSUNG MZ7KM* solid-state disks
    - macvlan: return correct error value
    - [arm64,armhf] mv88e6060: disable hardware level MAC learning
    - net/mlx4_en: Fix build break when CONFIG_INET is off
    - bpf: check pending signals while verifying programs
    - [arm*] 8814/1: mm: improve/fix ARM v7_dma_inv_range() unaligned address
      handling
    - [arm*] 8815/1: V7M: align v7m_dma_inv_range() with v7 counterpart
    - [arm*] 8816/1: dma-mapping: fix potential uninitialized return
    - [arm64,armhf] thermal: armada: fix legacy validity test sense
    - [arm64,armhf] net: mvpp2: fix detection of 10G SFP modules
    - [arm64,armhf] net: mvpp2: fix phylink handling of invalid PHY modes
    - drm/amdgpu/vcn: Update vcn.cur_state during suspend
    - [amd64,arm64] acpi/nfit: Fix user-initiated ARS to be "ARS-long" rather
      than "ARS-short"
    - drm/ast: Fix connector leak during driver unload
    - cifs: In Kconfig CONFIG_CIFS_POSIX needs depends on legacy (insecure
      cifs)
    - vhost/vsock: fix reset orphans race with close timeout
    - [x86] i2c: scmi: Fix probe error on devices with an empty SMB0001 ACPI
      device node
    - nvme: validate controller state before rescheduling keep alive
    - nvmet-rdma: fix response use after free
    - Btrfs: fix missing delayed iputs on unmount

  [ Uwe Kleine-König ]
  * [arm] Fix probing of 3rd gpio device on Armada 370.

  [ Ben Hutchings ]
  * linux-perf: Fix build-time check for unversioned files
  * linux-perf: Fix installation directories for BPF headers and examples
    (Closes: #916774)

  [ Noah Meyerhans ]
  * drivers/net/ethernet/amazon: Backport v2.0.2 from Linux 4.20

  [ Bastian Blank ]
  * Ignore various ABI changes.

  [ Salvatore Bonaccorso ]
  * iomap: Revert "fs/iomap.c: get/put the page in
    iomap_page_create/release()"

 -- Salvatore Bonaccorso <email address hidden>  Sat, 22 Dec 2018 09:06:45 +0100

Available diffs

Superseded in sid-release
linux-signed-amd64 (4.19.9+1) unstable; urgency=medium

  * Sign kernel from linux 4.19.9-1

  * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.6
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.7
    - [x86] KVM: LAPIC: Fix pv ipis use-before-initialization (CVE-2018-19406)
    - mm: cleancache: fix corruption on missed inode invalidation
      (CVE-2018-16862)
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.8
    - blk-mq: fix corruption with direct issue (Closes: #915666)
    - userfaultfd: use ENOENT instead of EFAULT if the atomic copy user fails
      (CVE-2018-18397)
    - userfaultfd: shmem: allocate anonymous memory for MAP_PRIVATE shmem
      (CVE-2018-18397)
    - userfaultfd: shmem: add i_size checks (CVE-2018-18397)
    - userfaultfd: shmem: UFFDIO_COPY: set the page dirty if VM_WRITE is not
      set (CVE-2018-18397)
    - blk-mq: punt failed direct issue to dispatch list
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.9
    - ALSA: usb-audio: Fix UAF decrement if card has no live interfaces in
      card.c (CVE-2018-19824)
    - vhost/vsock: fix use-after-free in network stack callers
      (CVE-2018-14625)

  [ Marcin Juszkiewicz ]
  * [arm64] Enable ACPI IMPI
  * [arm64] Enable IPMI watchdog and power off support
  * [arm64] Enable PCI Express hotplug
  * [arm64] Enable PMU for several server cpus
  * [arm64] Enable HiSilicon LPC for serial/ipmi access

  [ Romain Perier ]
  * [x86] Enable support for error detection and correction on the Intel
    Pondicherry2 Integrated Memory Controller (Closes: #914946)
  * [rt] Update to 4.19.8-rt6

  [ Uwe Kleine-König ]
  * Enable usb support for ATH10K (Closes: #915083)

  [ Luca Boccassi ]
  * debian/rules.real: Split the rules so that the [un]versioned_tools
    knobs can be used to avoid building them. Fixes FTBFS with unversioned
    tools disabled.
  * perf: do not ship python2-only call-graph-from-sql script.
  * Override Lintian warning dbg-package-missing-depends in source too.

  [ Ben Hutchings ]
  * debian/rules.real: Mark most targets as phony
  * debian/rules: Mark more targets as phony
  * libcpupower: Hide private function and drop it from .symbols file
  * integrity: Disable INTEGRITY_TRUSTED_KEYRING (Closes: #865277)

  [ Vagrant Cascadian ]
  * debian/config/config: Enable Z3FOLD as a module.

  [ Salvatore Bonaccorso ]
  * Set ABI to 1

  [ Nicolas Schier ]
  * ovl: permit overlayfs mounts in user namespaces (Closes: #913880)

  [ Hilko Bengen ]
  * Add patches to build libbpf.so with SONAME, link against libelf
  * Add versioned libbpf, libbpf-dev package (Closes: #914428)

  [ Hans van Kranenburg ]
  * [x86] Add patch to repair booting as Xen dom0 (Closes: #914951)
  * [x86] Add patches to support booting a Xen PVH guest via Grub2

  [ Christoph Anton Mitterer ]
  * crypto: Enable MORUS and AEGIS AEAD ciphers (Closes: #914136)
  * [amd64]: Enable AES-NI/SSE2/AVX2 optimised implementations of the MORUS
    and AEGIS AEAD ciphers

  [ Bastian Blank ]
  * Enable NFT_CONNLIMIT, NFT_TUNNEL, NFT_SOCKET, NFT_OSF, NFT_TPROXY,
    IP_VS_MH.
  * Enable netfilter flow table support.
  * [x86] Enable DRM_XEN_FRONTEND.
  * Enable EFI_BOOTLOADER_CONTROL, EFI_CAPSULE_LOADER.

 -- Bastian Blank <email address hidden>  Sun, 16 Dec 2018 19:45:54 +0100
Deleted in experimental-release (Reason: None provided.)
linux-signed-amd64 (4.19.5+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.19.5-1~exp1

  * New upstream release: https://kernelnewbies.org/Linux_4.19
  * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.1
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.2
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.3
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.4
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.5

  [ Ben Hutchings ]
  * linux-perf: Enable verbose output for build-time feature detection
  * udeb: Define mtd-core-modules package to contain MTD core if not built-in
  * udeb: Move MTD core from nic-modules to mtd-core-modules
  * debian/changelog: Move older entries to changelog.old
  * debian/rules: Checksum only the source name and version from
    debian/changelog
  * Move generation of CONFIG_BUILD_SALT to gencontrol.py
  * [x86] hyperv-daemons: Make all services conditional on device existence
  * debian/rules.real: Fix build failure with pkg.linux.nosource profile
  * debian/source/options: Delete redundant compression setting; satisfy
    lintian
  * Documentation/media: uapi: Explicitly say there are no Invariant Sections
    (Closes: #698668)

  [ Karsten Merker ]
  * [riscv64] Build a kernel image and udebs for riscv64 (Closes: #908161)

  [ Uwe Kleine-König ]
  * [armhf,arm64] enable SND_BCM2835 as a module (Closes: #911121)
  * Enable Orange filesystem (Closes: #911743)
  * [arm64] Enable hns3 network driver as a module. (Closes: #914422)

  [ Noah Meyerhans ]
  * [cloud-amd64] Enable Amazon ENA ethernet driver (Closes: #910049)

  [ Romain Perier ]
  * [rt] Update to 4.19.1-rt3
  * [rt] Update patch arm-disable-NEON-in-kernel-mode.patch, so it can be
    applied onto 4.19.2
  * [rt] Update patch
    irq-allow-disabling-of-softirq-processing-in-irq-thread-context.patch, so
    it can be applied onto 4.19.2
  * [amd64] Enable AMD pinctrl driver (Closes: #908954)
  * Enable Diffie-Hellman operations on retained keys (Closes: #911998)
  * Update patch features/all/lockdown/enable-cold-boot-attack-mitigation.patch,
    so it can be applied onto 4.19.2
  * [x86] Enable DisplayPort CEC-Tunneling-over-AUX HDMI support
    (Closes: #913199)

 -- Bastian Blank <email address hidden>  Tue, 27 Nov 2018 20:06:42 +0100
Superseded in experimental-release
linux-signed-amd64 (4.19~rc7+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.19~rc7-1~exp1

  * New upstream release candidate

  [ Uwe Kleine-König ]
  * [armhf] enable MVNETA_BM_ENABLE and CAN_FLEXCAN as a module
  * enable NET_SCH_CAKE as a module (Closes: #908709)
  * enable HID_NTI as a module (Closes: #910260)

  [ Ben Hutchings ]
  * linux-kbuild: Include scripts/subarch.include (Closes: #910348)

 -- Ben Hutchings <email address hidden>  Sun, 07 Oct 2018 23:48:27 +0100
Superseded in experimental-release
linux-signed-amd64 (4.19~rc6+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.19~rc6-1~exp1

  * New upstream release candidate

  [ Ben Hutchings ]
  * [ppc64el] udeb: Fix relative #include filenames in kernel-image module
    list (really fixes FTBFS?)
  * debian/bin, debian/lib/python: Fix most errors reported by pycodestyle
  * debian/bin, debian/rules.real: Add symlink to Python package directory
    instead of editing path
  * debian/bin, debian/lib/python: Clean up imports based on pyflakes report
  * debian/bin, debian/lib/python: Delete write-only vars reported by pyflakes
  * debian/lib/python/debian_linux/gencontrol.py: Delete broken methods
  * debian/lib/python/debian_linux/config.py: Fix undefined exception type
  * Add Python static checks and unit tests to autopkgtest tests

 -- Ben Hutchings <email address hidden>  Wed, 03 Oct 2018 18:57:08 +0100
Superseded in experimental-release
linux-signed-amd64 (4.19~rc4+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.19~rc4-1~exp1

  * New upstream release candidate

  [ Ben Hutchings ]
  * debian/control: Add arch-qualification to build-dependencies for linux-perf
    (Closes: #908519)
  * debian/control: Build-depend on libunwind-dev instead of libunwind8-dev
  * [hppa,mips*,powerpc*,sh4] debian/control: Build-depend on libunwind-dev for
    linux-perf
  * debian/control: Build-depend on libnuma-dev for linux-perf on all arches
  * debian/control: Remove "cross" from profiles for build-dep on libssl-dev
  * [mips64*] debian/control: Build-depend on gcc-multilib for linux-perf
  * debian/lib/python: Use raw strings for all regexes
  * debian/control: Fix restrictions for build-deps on asciidoctor and
    patchutils
  * Add support for specifying build-dependencies in binary package templates
  * debian/templates: Move various build-dependencies to binary package
    templates
  * linux-perf: Fix generation of Perl and Python interpreter dependencies
    (Closes: #908547)
  * lockdep, lib{cpupower,lockdep}-dev: Remove bogus deps on ${shlibs:Depends}
  * debian/rules.d/tools/power/linux-cpupower: Add "+" to recursive make
    commands
  * tools: x86_energy_perf_policy: Fix "uninitialized variable" warnings at -O2
  * tools: turbostat: Add checks for failure of fgets() and fscanf()
  * debian/control: Build-depend on texlive-latex-{base,extra}, dvipng for
    linux-doc
  * debian/rules{,.real}: Use /usr/share/dpkg/architecture.mk
  * debian/signing_templates/rules: Use /usr/share/dpkg/architecture.mk
  * linux-image-*-signed-template: Add ${misc:Depends} to Depends
  * linux-image-*-signed-template: Include changelog and copyright files
  * linux-image-*-signed-template: Depend on dpkg-dev
  * linux-image-*-signed-template: Override lintian warnings about non-
    executable scripts
  * [ia64] udeb: Fix priority of sn-modules
  * Revert "Revert "net: increase fragment memory usage limits"", as 4.19
    includes a better fix for CVE-2018-5391
  * debian/patches: Add Forwarded fields to several patches
  * [ppc64el] udeb: Fix relative #include filenames in module lists (fixes
    FTBFS)
  * [ppc64] udeb: Revert accidental change to nic-pcmcia-modules dependencies
    (fixes FTBFS)

 -- Ben Hutchings <email address hidden>  Tue, 18 Sep 2018 15:52:02 +0100
Superseded in experimental-release
linux-signed-amd64 (4.19~rc3+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.19~rc3-1~exp1

  * New upstream release candidate

  [ Ben Hutchings ]
  * [s390x] linux-image: Install compressed kernel image (fixes FTBFS)
  * [powerpc*] boot: Fix missing crc32poly.h when building with KERNEL_XZ
    (fixes FTBFS)
  * [x86] boot: Fix EFI stub alignment
  * wireless: Update "wireless: Disable regulatory.db direct loading" for
    4.19-rc3
  * aufs: Update support patchset to aufs4.x-rcN 20180910

 -- Ben Hutchings <email address hidden>  Mon, 10 Sep 2018 20:13:55 +0100
Superseded in experimental-release
linux-signed-amd64 (4.19~rc2+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.19~rc2-1~exp1

  * New upstream release candidate

  [ Ben Hutchings ]
  * aufs: Disable until it is updated for Linux 4.19
  * debian/rules.d: Update for move of bin2c back up to scripts
  * locking/lockdep: Delete unnecesary #include (fixes liblockdep build)
  * [hppa] debian/control: Simplify build-dependencies for 64-bit toolchain
  * Compile with gcc-8 on all architectures
  * udeb: Merge configuration directories and files across architectures
  * [alpha,hppa] udeb: Remove incorrect dependency overrides

 -- Ben Hutchings <email address hidden>  Mon, 03 Sep 2018 21:34:41 +0100
Superseded in experimental-release
linux-signed-amd64 (4.18.5+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.18.5-1~exp1

  * New upstream release: https://kernelnewbies.org/Linux_4.18
  * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.18.1
    - [x86] paravirt: Fix spectre-v2 mitigations for paravirt guests
    - [x86] speculation: Protect against userspace-userspace spectreRSB
    - [x86] kprobes: Fix %p uses in error messages
    - [x86] irqflags: Provide a declaration for native_save_fl
    - [x86] speculation/l1tf: Increase 32bit PAE __PHYSICAL_PAGE_SHIFT
    - [x86] speculation/l1tf: Change order of offset/type in swap entry
    - [x86] speculation/l1tf: Protect swap entries against L1TF
    - [x86] speculation/l1tf: Protect PROT_NONE PTEs against speculation
    - [x86] speculation/l1tf: Make sure the first page is always reserved
    - [x86] speculation/l1tf: Add sysfs reporting for l1tf
    - [x86] speculation/l1tf: Disallow non privileged high MMIO PROT_NONE
      mappings
    - [x86] speculation/l1tf: Limit swap file size to MAX_PA/2
    - [x86] Move the l1tf function and define pr_fmt properly
    - sched/smt: Update sched_smt_present at runtime
    - [x86] smp: Provide topology_is_primary_thread()
    - [x86] topology: Provide topology_smt_supported()
    - cpu/hotplug: Make bringup/teardown of smp threads symmetric
    - cpu/hotplug: Split do_cpu_down()
    - cpu/hotplug: Provide knobs to control SMT
    - [x86] cpu: Remove the pointless CPU printout
    - [x86] cpu/AMD: Remove the pointless detect_ht() call
    - [x86] cpu/common: Provide detect_ht_early()
    - [x86] cpu/topology: Provide detect_extended_topology_early()
    - [x86] cpu/intel: Evaluate smp_num_siblings early
    - [x86] cpu/AMD: Do not check CPUID max ext level before parsing SMP info
    - [x86] cpu/AMD: Evaluate smp_num_siblings early
    - [x86] apic: Ignore secondary threads if nosmt=force
    - [x86] speculation/l1tf: Extend 64bit swap file size limit
    - [x86] cpufeatures: Add detection of L1D cache flush support.
    - [x86] cpu/AMD: Move TOPOEXT reenablement before reading smp_num_siblings
    - [x86] speculation/l1tf: Protect PAE swap entries against L1TF
    - [x86] speculation/l1tf: Fix up pte->pfn conversion for PAE
    - Revert "x86/apic: Ignore secondary threads if nosmt=force"
    - cpu/hotplug: Boot HT siblings at least once
    - [x86] KVM: Warn user if KVM is loaded SMT and L1TF CPU bug being present
    - [x86] KVM/VMX: Add module argument for L1TF mitigation
    - [x86] KVM/VMX: Add L1D flush algorithm
    - [x86] KVM/VMX: Add L1D MSR based flush
    - [x86] KVM/VMX: Add L1D flush logic
    - [x86] KVM/VMX: Split the VMX MSR LOAD structures to have an host/guest
      numbers
    - [x86] KVM/VMX: Add find_msr() helper function
    - [x86] KVM/VMX: Separate the VMX AUTOLOAD guest/host number accounting
    - [x86] KVM/VMX: Extend add_atomic_switch_msr() to allow VMENTER only MSRs
    - [x86] KVM/VMX: Use MSR save list for IA32_FLUSH_CMD if required
    - cpu/hotplug: Online siblings when SMT control is turned on
    - [x86] litf: Introduce vmx status variable
    - [x86] kvm: Drop L1TF MSR list approach
    - [x86] l1tf: Handle EPT disabled state proper
    - [x86] kvm: Move l1tf setup function
    - [x86] kvm: Add static key for flush always
    - [x86] kvm: Serialize L1D flush parameter setter
    - [x86] kvm: Allow runtime control of L1D flush
    - cpu/hotplug: Expose SMT control init function
    - cpu/hotplug: Set CPU_SMT_NOT_SUPPORTED early
    - [x86] bugs, kvm: Introduce boot-time control of L1TF mitigations
    - [x86] speculation/l1tf: Unbreak !__HAVE_ARCH_PFN_MODIFY_ALLOWED
      architectures
    - [x86] KVM/VMX: Initialize the vmx_l1d_flush_pages' content
    - cpu/hotplug: detect SMT disabled by BIOS
    - [x86] KVM/VMX: Don't set l1tf_flush_l1d to true from vmx_l1d_flush()
    - [x86] KVM/VMX: Replace 'vmx_l1d_flush_always' with 'vmx_l1d_flush_cond'
    - [x86] KVM/VMX: Move the l1tf_flush_l1d test to vmx_l1d_flush()
    - [x86] irq: Demote irq_cpustat_t::__softirq_pending to u16
    - [x86] KVM/VMX: Introduce per-host-cpu analogue of l1tf_flush_l1d
    - [x86] Don't include linux/irq.h from asm/hardirq.h
    - [x86] irq: Let interrupt handlers set kvm_cpu_l1tf_flush_l1d
    - [x86] KVM/VMX: Don't set l1tf_flush_l1d from vmx_handle_external_intr()
    - [x86] speculation: Simplify sysfs report of VMX L1TF vulnerability
    - [x86] speculation: Use ARCH_CAPABILITIES to skip L1D flush on vmentry
    - [x86] KVM/VMX: Tell the nested hypervisor to skip L1D flush on vmentry
    - cpu/hotplug: Fix SMT supported evaluation
    - [x86] speculation/l1tf: Invert all not present mappings
    - [x86] speculation/l1tf: Make pmd/pud_mknotpresent() invert
    - [x86] mm/pat: Make set_memory_np() L1TF safe
    - [x86] mm/kmmio: Make the tracer robust against L1TF
    - tools headers: Synchronise x86 cpufeatures.h for L1TF additions
    - [x86] microcode: Allow late microcode loading with SMT disabled
    - cpu/hotplug: Non-SMP machines do not make use of booted_once
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.18.2
    - [x86] l1tf: Fix build error seen if CONFIG_KVM_INTEL is disabled
    - [x86] hyper-v: Check for VP_INVAL in hyperv_flush_tlb_others()
    - [x86] platform/UV: Mark memblock related init code and data correctly
    - [x86] mm/pti: Clear Global bit more aggressively
    - [x86] xen/pv: Call get_cpu_address_sizes to set x86_virt/phys_bits
    - [x86] mm: Disable ioremap free page handling on x86-PAE
    - crypto: ccp - Check for NULL PSP pointer at module unload
    - crypto: ccp - Fix command completion detection race
    - [x86] crypto: x86/sha256-mb - fix digest copy in
      sha256_mb_mgr_get_comp_job_avx2()
    - crypto: vmac - require a block cipher with 128-bit block size
    - crypto: vmac - separate tfm and request context
    - Bluetooth: hidp: buffer overflow in hidp_process_report (CVE-2018-9363)
    - ioremap: Update pgtable free interfaces with addr
    - [x86] mm: Add TLB purge to free pmd/pte page interfaces
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.18.3
    - [x86] speculation/l1tf: Exempt zeroed PTEs from inversion
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.18.4
    - l2tp: use sk_dst_check() to avoid race on sk->sk_dst_cache
    - net_sched: fix NULL pointer dereference when delete tcindex filter
    - net_sched: Fix missing res info when create new tc_index filter
    - r8169: don't use MSI-X on RTL8168g
    - ALSA: hda - Sleep for 10ms after entering D3 on Conexant codecs
    - ALSA: hda - Turn CX8200 into D3 as well upon reboot
    - ALSA: vx222: Fix invalid endian conversions
    - ALSA: cs5535audio: Fix invalid endian conversion
    - ALSA: dice: fix wrong copy to rx parameters for Alesis iO26
    - ALSA: hda: Correct Asrock B85M-ITX power_save blacklist entry
    - ALSA: memalloc: Don't exceed over the requested size
    - ALSA: vxpocket: Fix invalid endian conversions
    - ALSA: seq: Fix poll() error return
    - media: gl861: fix probe of dvb_usb_gl861
    - USB: serial: sierra: fix potential deadlock at close
    - USB: serial: pl2303: add a new device id for ATEN
    - USB: option: add support for DW5821e
    - [x86] ACPI / PM: save NVS memory for ASUS 1025C laptop
    - tty: serial: 8250: Revert NXP SC16C2552 workaround
    - serial: 8250_exar: Read INT0 from slave device, too
    - [x86, armhf, arm64] serial: 8250_dw: always set baud rate in
      dw8250_set_termios
    - [armhf, arm64] serial: 8250_dw: Add ACPI support for uart on Broadcom SoC
    - uio: fix wrong return value from uio_mmap()
    - Revert "uio: use request_threaded_irq instead"
    - Bluetooth: avoid killing an already killed socket
    - net: sock_diag: Fix spectre v1 gadget in __sock_diag_cmd()
    - [x86] hv/netvsc: Fix NULL dereference at single queue mode fallback
    - r8169: don't use MSI-X on RTL8106e
    - ip_vti: fix a null pointer deferrence when create vti fallback tunnel
    - [arm64] net: ethernet: mvneta: Fix napi structure mixup on armada 3700
    - [arm64] net: mvneta: fix mvneta_config_rss on armada 3700
    - cls_matchall: fix tcf_unbind_filter missing
    https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.18.5
    - [mips*, x86] EDAC: Add missing MEM_LRDDR4 entry in edac_mem_types[]
    - pty: fix O_CLOEXEC for TIOCGPTPEER
    - mm: Allow non-direct-map arguments to free_reserved_area()
    - [x86] mm/init: Pass unconverted symbol addresses to free_init_pages()
    - [x86] mm/init: Add helper for freeing kernel image pages
    - [x86] mm/init: Remove freed kernel image areas from alias mapping
    - [powerpc64] Show ori31 availability in spectre_v1 sysfs file not v2
    - ext4: fix spectre gadget in ext4_mb_regular_allocator()
    - [x86] drm/i915/kvmgt: Fix potential Spectre v1
    - drm/amdgpu/pm: Fix potential Spectre v1
    - [hppa/parisc] Remove unnecessary barriers from spinlock.h
    - [hppa/parisc] Remove ordered stores from syscall.S
    - PCI: Restore resized BAR state on resume
    - PCI/ACPI/PM: Resume all bridges on suspend-to-RAM
    - PCI: hotplug: Don't leak pci_slot on registration failure
    - [arm64] PCI: aardvark: Size bridges before resources allocation
    - PCI: Skip MPS logic for Virtual Functions (VFs)
    - PCI: pciehp: Fix use-after-free on unplug
    - PCI: pciehp: Fix unprotected list iteration in IRQ handler
    - i2c: core: ACPI: Properly set status byte to 0 for multi-byte writes
    - [armhf] i2c: imx: Fix race condition in dma read
    - reiserfs: fix broken xattr handling (heap corruption, bad retval)

  [ Uwe Kleine-König ]
  * [arm64] enable RTC_DRV_PCF8563 for Odroid-C2

  [ Romain Perier ]
  * [armhf, arm64] add the rt featureset, which adds support for
    PREEMPT_RT (Closes #719547)
  * spi: Enable CONFIG_SPI_SPIDEV (Closes: #904043)

  [ Ben Hutchings ]
  * certs: Remove certificate for my personal signing key
  * Update policy version to 4.2.0:
    - linux-kbuild: Change "#!/usr/bin/env perl" to "#!/usr/bin/perl"
    - Build with KBUILD_VERBOSE=1 by default
    - objtool, usbip: Build with V=1 by default
  * cpupower: Fix handling of noopt and nostrip build options
  * debian/bin/gencontrol_signed.py: Add certificate fingerprints to template
    metadata
  * scripts/kernel-doc: Escape all literal braces in regexes (Closes: #905116)
  * debian/bin/genorig.py: Add support for debian/copyright Files-Excluded
    field
  * Move file exclusion from d/p/debian/dfsg/files-1 to d/copyright
  * Move disabling of broken features from d/p/series-orig to d/p/series
  * Remove our private patch system, which is no longer needed
  * debian/bin: Change "#!/usr/bin/env python3" to "#!/usr/bin/python3"

 -- Ben Hutchings <email address hidden>  Sun, 26 Aug 2018 20:52:17 +0100
Superseded in experimental-release
linux-signed-amd64 (4.18~rc4+1~exp1) experimental; urgency=medium

  * Sign kernel from linux 4.18~rc4-1~exp1

  * New upstream release candidate

  * Remove remaining Python 2 (build-)dependencies:
    - Build docs using Python 3 version of Sphinx
    - linux-perf: Build docs using asciidoctor
    - linux-perf: Use Python 3 for scripts
  * autofs: rename 'autofs' module back to 'autofs4' (Closes: #902946)
  * udeb: Move of_mdio to nic-shared-modules (Closes: #903587)
  * [armhf] mm: Export __sync_icache_dcache() for xen-privcmd (fixes FTBFS)

 -- Ben Hutchings <email address hidden>  Thu, 12 Jul 2018 05:12:50 +0100
Superseded in experimental-release
linux-signed-amd64 (1+4.17~rc3+1~exp1) experimental; urgency=medium

  * Update to linux 4.17~rc3-1~exp1

 -- Ben Hutchings <email address hidden>  Mon, 30 Apr 2018 00:13:06 +0100
226239 of 239 results