Change logs for linux source package in Wheezy

  • linux (3.2.78-1) wheezy; urgency=medium
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.74
        - PCI: Fix devfn for VPD access through function 0
        - PCI: Use function 0 VPD for identical functions, regular VPD for others
        - mac80211: fix driver RSSI event calculations
        - HID: core: Avoid uninitialized buffer access
        - wm831x_power: Use IRQF_ONESHOT to request threaded IRQs
        - mwifiex: fix mwifiex_rdeeprom_read()
        - mtd: mtdpart: fix add_mtd_partitions error path
        - devres: fix a for loop bounds check
        - packet: fix match_fanout_group()
        - Btrfs: added helper btrfs_next_item()
        - Btrfs: fix file corruption and data loss after cloning inline extents
        - [x86] iommu/vt-d: Fix ATSR handling for Root-Complex integrated endpoints
        - Btrfs: don't use ram_bytes for uncompressed inline items
        - Btrfs: fix truncation of compressed and inlined extents
        - ext4, jbd2: ensure entering into panic after recording an error in
          superblock
        - ACPI: Use correct IRQ when uninstalling ACPI interrupt handler
        - ALSA: hda - Disable 64bit address for Creative HDA controllers
        - megaraid_sas: Do not use PAGE_SIZE for max_sectors
        - can: Use correct type in sizeof() in nla_put()
        - mtd: blkdevs: fix potential deadlock + lockdep warnings
        - crypto: algif_hash - Only export and import on sockets with data
        - megaraid_sas : do not access user memory from IOCTL code
        - ipv6: fix tunnel error handling
        - ALSA: hda - Apply pin fixup for HP ProBook 6550b
        - firewire: ohci: fix JMicron JMB38x IT context discovery
        - scsi: restart list search after unlock in scsi_remove_target
        - [amd64] cpu: Call verify_cpu() after having entered long mode too
        - Btrfs: fix race leading to incorrect item deletion when dropping extents
        - Btrfs: fix race leading to BUG_ON when running delalloc for nodatacow
        - perf: Fix inherited events vs. tracepoint filters
        - scsi_sysfs: Fix queue_ramp_up_period return code
        - Btrfs: fix race when listing an inode's xattrs
        - net: fix a race in dst_release()
        - FS-Cache: Increase reference of parent after registering, netfs success
        - FS-Cache: Don't override netfs's primary_index if registering failed
        - FS-Cache: Handle a write to the page immediately beyond the EOF marker
        - binfmt_elf: Don't clobber passed executable's file header
        - fs: make dumpable=2 require fully qualified path
        - fs: if a coredump already exists, unlink and recreate with O_EXCL
        - irda: precedence bug in irlmp_seq_hb_idx()
        - RDS-TCP: Recover correctly from pskb_pull()/pksb_trim() failure in
          rds_tcp_data_recv
        - ipmr: fix possible race resulting from improper usage of IP_INC_STATS_BH()
          in preemptible context.
        - net: avoid NULL deref in inet_ctl_sock_destroy()
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.75
        - fuse: break infinite loop in fuse_fill_write_pages()
        - sctp: translate host order to network order when setting a hmacid
        - ALSA: usb-audio: add packet size quirk for the Medeli DD305
        - ALSA: usb-audio: prevent CH345 multiport output SysEx corruption
        - ALSA: usb-audio: work around CH345 input SysEx corruption
        - usb: musb: core: fix order of arguments to ulpi write callback
        - ASoC: wm8962: correct addresses for HPF_C_0/1
        - net: fix __netdev_update_features return on ndo_set_features failure
        - FS-Cache: Add missing initialization of ret in cachefiles_write_page()
        - mac80211: mesh: fix call_rcu() usage
        - macvlan: fix leak in macvlan_handle_frame
        - xhci: Add XHCI_INTEL_HOST quirk
        - xhci: Workaround to get Intel xHCI reset working more reliably
        - usblp: do not set TASK_INTERRUPTIBLE before lock
        - mac: validate mac_partition is within sector
        - ip6mr: call del_timer_sync() in ip6mr_free_table()
        - net: ip6mr: fix static mfc/dev leaks on table destruction
        - can: sja1000: clear interrupts on start
        - USB: cp210x: Remove CP2110 ID from compatibility list
        - USB: cdc-acm - Add IGNORE_DEVICE quirk
        - USB: cdc_acm: Ignore Infineon Flash Loader utility
        - fix sysvfs symlinks
        - vfs: Make sendfile(2) killable even better
        - vfs: Avoid softlockups with sendfile(2)
        - broadcom: fix PHY_ID_BCM5481 entry in the id table
        - ring-buffer: Update read stamp with first real commit on page
        - ext4: Fix handling of extended tv_sec
        - jbd2: Fix unreclaimed pages after truncate in data=journal mode
        - nfs: if we have no valid attrs, then don't declare the attribute cache
          valid
        - AHCI: Fix softreset failed issue of Port Multiplier
        - sata_sil: disable trim
        - wan/x25: Fix use-after-free in x25_asy_open_tty()
        - USB: whci-hcd: add check for dma mapping error
        - usb: Use the USB_SS_MULT() macro to decode burst multiplier for log message
        - dm btree: fix leak of bufio-backed block in btree_split_sibling error path
        - ipv4: igmp: Allow removing groups from a removed interface
        - locking: Add WARN_ON_ONCE lock assertion
        - sched/core: Remove false-positive warning from wake_up_process()
        - sched/core: Clear the root_domain cpumasks in init_rootdomain()
        - usb: xhci: fix config fail of FS hub behind a HS hub with MTT
        - ALSA: rme96: Fix unexpected volume reset after rate changes
        - 9p: ->evict_inode() should kick out ->i_data, not ->i_mapping
        - ipmi: move timer init to before irq is setup
        - dm btree: fix bufio buffer leaks in dm_btree_del() error path
        - vgaarb: fix signal handling in vga_get()
        - mm, vmstat: allow WQ concurrency to discover memory reclaim doesn't make
          any progress
        - mm: hugetlb: call huge_pte_alloc() only if ptep is null
        - snmp: Remove duplicate OUTMCAST stat increment
        - tcp: initialize tp->copied_seq in case of cross SYN connection
        - net, scm: fix PaX detected msg_controllen overflow in scm_detach_fds
        - net: ipmr: fix static mfc/dev leaks on table destruction
        - ipv6: distinguish frag queues by device for multicast and link-local
          packets
        - dccp: remove unnecessary codes in ipv6.c
        - ipv6: add complete rcu protection around np->opt
        - ipv6: sctp: implement sctp_v6_destroy_sock()
        - atl1c: Improve driver not to do order 4 GFP_ATOMIC allocation
        - sctp: update the netstamp_needed counter when copying sockets
        - ipv6: sctp: clone options to avoid use after free
        - af_unix: Revert 'lock_interruptible' in stream receive code
        - af_unix: fix a fatal race with bit fields
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.76
        - sctp: start t5 timer only when peer rwnd is 0 and local state is
          SHUTDOWN_PENDING
        - ipv6: sctp: fix lockdep splat in sctp_v6_get_dst()
        - video: fbdev: fsl: Fix kernel crash when diu_ops is not implemented
        - crypto: skcipher - Copy iv from desc even for 0-len walks
        - rfkill: copy the name into the rfkill struct
        - ses: Fix problems with simple enclosures
        - ses: fix additional element traversal bug
        - tty: Fix GPF in flush_to_ldisc()
        - ALSA: tlv: compute TLV_*_ITEM lengths automatically
        - ALSA: tlv: add DECLARE_TLV_DB_RANGE()
        - ALSA: usb-audio: Add a more accurate volume quirk for AudioQuest DragonFly
        - sh_eth: fix TX buffer byte-swapping
        - mISDN: fix a loop count
        - ser_gigaset: fix deallocation of platform device structure
        - spi: fix parent-device reference leak
        - [s390*] dis: Fix handling of format specifiers
        - USB: ipaq.c: fix a timeout loop
        - USB: fix invalid memory access in hub_activate()
        - ipv6/addrlabel: fix ip6addrlbl_get()
        - ocfs2: fix BUG when calculate new backup super
        - mm/memory_hotplug.c: check for missing sections in test_pages_in_a_zone()
        - [mips*] Fix restart of indirect syscalls
        - net/core: revert "net: fix __netdev_update_features return.." and add
          comment
        - genirq: Prevent chip buslock deadlock
        - net: possible use after free in dst_release
        - [x86] kvm: only channel 0 of the i8254 is linked to the HPET
        - vmstat: allocate vmstat_wq before it is used
        - cdrom: Random writing support for BD-RE media
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.77
        - gspca: ov534/topro: prevent a division by 0
        - media: dvb-core: Don't force CAN_INVERSION_AUTO in oneshot mode
        - rc: allow rc modules to be loaded if rc-main is not a module
        - SCSI: initio: remove duplicate module device table
        - [x86] KVM: expose MSR_TSC_AUX to userspace
        - [x86] KVM: correctly print #AC in traces
        - ath9k_htc: check for underflow in ath9k_htc_rx_msg()
        - mtd: nand: fix ONFI parameter page layout
        - drm/radeon: call hpd_irq_event on resume
        - xhci: refuse loading if nousb is used
        - rtlwifi: fix memory leak for USB device
        - wlcore: SPI - fix spi transfer_list
        - wlcore/wl12xx: spi: fix oops on firmware load
        - EDAC: Robustify workqueues destruction
        - powerpc: Make value-returning atomics fully ordered
        - powerpc: Make {cmp}xchg* and their atomic_ versions fully ordered
        - asix: silence log message from oversize packet
        - futex: Drop refcount if requeue_pi() acquired the rtmutex
        - ALSA: fm801: propagate TUNER_ONLY bit when autodetected
        - drm/radeon: clean up fujitsu quirks
        - udf: limit the maximum number of indirect extents in a row
        - USB: cp210x: add ID for ELV Marble Sound Board 1
        - posix-clock: Fix return code on the poll method's error path
        - [x86] LDT: Print the real LDT base address
        - rtlwifi: rtl8192de: Fix incorrect module parameter descriptions
        - rtlwifi: rtl8192se: Fix module parameter initialization
        - rtlwifi: rtl8192ce: Fix handling of module parameters
        - rtlwifi: rtl8192cu: Add missing parameter setup
        - NFS: Fix attribute cache revalidation
        - Input: i8042 - add Fujitsu Lifebook U745 to the nomux list
        - [x86] xen: don't reset vcpu_info on a cancelled suspend
        - udf: Prevent buffer overrun with multi-byte characters
        - udf: Check output buffer length when converting name to CS0
        - power: test_power: correctly handle empty writes
        - locks: fix unlock when fcntl_setlk races with a close
        - dm snapshot: fix hung bios when copy error occurs
        - ipv6: tcp: add rcu locking in tcp_v6_send_synack()
        - [x86] mm: Add barriers and document switch_mm()-vs-flush synchronization
        - [x86] boot: Double BOOT_HEAP_SIZE to 64KB
        - [x86] reboot/quirks: Add iMac10,1 to pci_reboot_dmi_table[]
        - ALSA: seq: Fix missing NULL check at remove_events ioctl
        - ALSA: seq: Fix race at timer setup and close
        - [hppa] Fix __ARCH_SI_PREAMBLE_SIZE
        - [x86] mm: Improve switch_mm() barrier comments
        - ALSA: timer: Fix double unlink of active_list
        - ALSA: timer: Fix race among timer ioctls
        - [sparc64] fix incorrect sign extension in sys_sparc64_personality
        - cifs: Ratelimit kernel log messages
        - cifs: fix race between call_async() and reconnect()
        - cifs_dbg() outputs an uninitialized buffer in cifs_readdir()
        - dma-debug: switch check from _text to _stext
        - ocfs2/dlm: ignore cleaning the migration mle that is inuse
        - ALSA: timer: Harden slave timer list handling
        - memcg: only free spare array when readers are done
        - printk: help pr_debug and pr_devel to optimize out arguments
        - crypto: af_alg - Fix socket double-free when accept fails
        - ALSA: hrtimer: Fix stall by hrtimer_cancel()
        - ALSA: pcm: Fix snd_pcm_hw_params struct copy in compat mode
        - ALSA: seq: Fix snd_seq_call_port_info_ioctl in compat mode
        - ALSA: control: Avoid kernel warnings from tlv ioctl with numid 0
        - IB/qib: fix mcast detach when qp not attached
        - IB/mlx4: Initialize hop_limit when creating address handle
        - ocfs2: NFS hangs in __ocfs2_cluster_lock due to race with
          ocfs2_unblock_lock
        - crypto: algif_skcipher - Require setkey before accept(2)
        - crypto: af_alg - Disallow bind/setkey/... after accept(2)
        - crypto: af_alg - Add nokey compatibility path
        - crypto: algif_skcipher - Add nokey compatibility path
        - crypto: hash - Add crypto_ahash_has_setkey
        - crypto: algif_hash - Require setkey before accept(2)
        - crypto: skcipher - Add crypto_skcipher_has_setkey
        - crypto: algif_skcipher - Add key check exception for cipher_null
        - crypto: af_alg - Allow af_af_alg_release_parent to be called on nokey path
        - crypto: algif_hash - Remove custom release parent function
        - crypto: algif_skcipher - Remove custom release parent function
        - crypto: af_alg - Forbid bind(2) when nokey child sockets are present
        - crypto: algif_hash - Fix race condition in hash_check_key
        - crypto: algif_skcipher - Fix race condition in skcipher_check_key
        - crypto: algif_skcipher - Load TX SG list after waiting
        - sctp: Prevent soft lockup when sctp_accept() is called during a timeout
          event
        - usbvision-video: fix memory leak of alt_max_pkt_size
        - usbvision: fix leak of usb_dev on failure paths in usbvision_probe()
        - usbvision fix overflow of interfaces array
        - usbvision: fix crash on detecting device with invalid configuration
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.78
        - [x86] KVM: vmx: fix MPX detection
        - hrtimer: Handle remaining time proper for TIME_LOW_RES
        - timerfd: Handle relative timers with CONFIG_TIME_LOW_RES proper
        - posix-timers: Handle relative timers with CONFIG_TIME_LOW_RES proper
        - itimers: Handle relative timers with CONFIG_TIME_LOW_RES proper
        - usb: cdc-acm: send zero packet for intel 7260 modem
        - cdc-acm:exclude Samsung phone 04e8:685d
        - af_unix: fix struct pid memory leak
        - pptp: fix illegal memory access caused by multiple bind()s
        - sctp: allow setting SCTP_SACK_IMMEDIATELY by the application
        - USB: cp210x: add ID for IAI USB to RS485 adaptor
        - USB: visor: fix null-deref at probe
        - USB: serial: visor: fix crash on detecting device without write_urbs
        - USB: serial: option: Adding support for Telit LE922
        - ALSA: seq: Fix incorrect sanity check at snd_seq_oss_synth_cleanup()
        - ALSA: seq: Degrade the error message for too many opens
        - USB: serial: ftdi_sio: add support for Yaesu SCU-18 cable
        - PCI/AER: Flush workqueue on device remove to avoid use-after-free
        - libata: disable forced PORTS_IMPL for >= AHCI 1.3
        - virtio_pci: fix use after free on release
        - rfkill: fix rfkill_fop_read wait_event usage
        - SCSI: fix crashes in sd and sr runtime PM
        - tty: Fix unsafe ldisc reference via ioctl(TIOCGETD)
        - crypto: shash - Fix has_key setting
        - ALSA: dummy: Disable switching timer backend via sysfs
        - [x86] drm/vmwgfx: respect 'nomodeset'
        - [x86] mm/pat: Avoid truncation when converting cpa->numpages to address
        - crypto: algif_hash - wait for crypto_ahash_init() to complete
        - [x86] intel_scu_ipcutil: underflow in scu_reg_access()
        - ALSA: seq: Fix race at closing in virmidi driver
        - ALSA: rawmidi: Remove kernel WARNING for NULL user-space buffer check
        - ALSA: pcm: Fix potential deadlock in OSS emulation
        - ALSA: seq: Fix yet another races among ALSA timer accesses
        - ALSA: timer: Fix link corruption due to double start or stop
        - libata: fix sff host state machine locking while polling
        - ALSA: rawmidi: Make snd_rawmidi_transmit() race-free
        - ALSA: rawmidi: Fix race at copying & updating the position
        - ALSA: seq: Fix lockdep warnings due to double mutex locks
        - Revert "xhci: don't finish a TD if we get a short-transfer event mid TD"
        - [x86] usb: xhci: apply XHCI_PME_STUCK_QUIRK to Intel Broxton-M platforms
        - xhci: Fix list corruption in urb dequeue at host removal
        - tda1004x: only update the frontend properties if locked
        - ALSA: timer: Fix leftover link at closing
        - saa7134-alsa: Only frees registered sound cards
        - scsi_dh_rdac: always retry MODE SELECT on command lock violation
        - mm, vmstat: fix wrong WQ sleep when memory reclaim doesn't make any
          progress
        - ocfs2/dlm: clear refmap bit of recovery lock while doing local
          recovery cleanup
        - crypto: user - lock crypto_alg_list on alg dump
        - klist: fix starting point removed bug in klist iterators
        - ALSA: dummy: Implement timer backend switching more safely
        - ALSA: timer: Fix wrong instance passed to slave callbacks
        - [arm*] 8517/1: ICST: avoid arithmetic overflow in icst_hz()
        - sctp: translate network order to host order when users get a hmacid
        - ALSA: timer: Fix race between stop and interrupt
        - ALSA: timer: Fix race at concurrent reads
        - [x86] ahci: Intel DNV device IDs SATA
        - [arm*] 8519/1: ICST: try other dividends than 1
        - btrfs: properly set the termination value of ctx->pos in readdir
        - ALSA: usb-audio: avoid freeing umidi object twice
        - unix: properly account for FDs passed over unix sockets
        - unix: correctly track in-flight fds in sending process user_struct
        - pipe: limit the per-user amount of pages allocated in pipes
        - iw_cxgb3: Fix incorrectly returning error on success
        - pipe: Fix buffer offset after partially failed read
        - sched: fix __sched_setscheduler() vs load balancing race
    
      [ Ben Hutchings ]
      * net: Ignore ABI changes due to "ipv6: add complete rcu protection around
        np->opt", which don't appear to affect out-of-tree modules
      * [rt] Update to 3.2.77-rt111:
        - rtmutex: Handle non enqueued waiters gracefully
        - rtmutex: Use chainwalking control enum
        - dump stack: don't disable preemption during trace
        - net: Make synchronize_rcu_expedited() conditional on
        - sched: Introduce the trace_sched_waking tracepoint
        - rtmutex: Have slowfn of rt_mutex_timed_fastlock() use
      * Revert "crypto: algif_skcipher - Do not dereference ctx without socket lock"
        (regression in 3.2.78)
      * crypto: {blk,giv}cipher: Set has_setkey (avoids regressing cryptsetup;
        see #815480)
      * [rt] Fix trace function type mismatch introduced in 3.2.77-rt111
    
     -- Ben Hutchings <email address hidden>  Mon, 07 Mar 2016 02:33:29 +0000
  • linux (3.2.73-2) wheezy; urgency=medium
    
      * splice: sendfile() at once fails for big files (Closes: #785189)
      * drm, agp: Update to 3.4.110:
        - drm/radeon: take the mode_config mutex when dealing with hpds (v2)
        - [x86] agp/intel: Fix typo in needs_ilk_vtd_wa()
        - [x86] Revert "drm/i915: Don't skip request retirement if the active list
          is empty" (regression in 3.4.109) (Closes: #805880)
        - Revert "drm/radeon: Use drm_calloc_ab for CS relocs"
          (regression in 3.4.109)
        - drm/radeon: partially revert "fix VM_CONTEXT*_PAGE_TABLE_END_ADDR
          handling" (regression in 3.4.109)
    
     -- Ben Hutchings <email address hidden>  Mon, 23 Nov 2015 23:45:54 +0000
  • linux (3.2.68-1+deb7u3) wheezy-security; urgency=medium
    
      * udp: fix behavior of wrong checksums (CVE-2015-5364, CVE-2015-5366)
      * sctp: fix ASCONF list handling (CVE-2015-3212)
      * [x86] bpf_jit: fix compilation of large bpf programs (CVE-2015-4700)
      * sg_start_req(): make sure that there's not too many elements in iovec
        (CVE-2015-5707)
      * md: use kzalloc() when bitmap is disabled (CVE-2015-5697)
    
     -- Ben Hutchings <email address hidden>  Tue, 04 Aug 2015 02:41:28 +0100
  • linux (3.2.68-1+deb7u2) wheezy-security; urgency=high
    
      * pipe: iovec: Fix memory corruption when retrying atomic copy as non-atomic
        (CVE-2015-1805)
      * udf: Remove repeated loads blocksize
      * udf: Check length of extended attributes and allocation descriptors
        (CVE-2015-4167)
      * ipv4: Missing sk_nulls_node_init() in ping_unhash(). (CVE-2015-3636)
    
     -- Ben Hutchings <email address hidden>  Mon, 15 Jun 2015 09:52:46 +0100
  • linux (3.2.65-1) wheezy; urgency=medium
    
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.64
        - percpu: fix pcpu_alloc_pages() failure path
        - percpu: perform tlb flush after pcpu_map_pages() failure
        - cgroup: reject cgroup names with '\n'
        - [s390*] KVM: Fix user triggerable bug in dead code
        - regmap: Fix handling of volatile registers for format_write() chips
        - Revert "iwlwifi: dvm: don't enable CTS to self" (regression in 3.2.62)
        - aio: add missing smp_rmb() in read_events_ring
        - block: Fix dev_t minor allocation lifetime
        - uwb: init beacon cache entry before registering uwb device
        - perf: Fix a race condition in perf_remove_from_context()
        - libceph: gracefully handle large reply messages from the mon
        - libceph: add process_one_ticket() helper
        - libceph: do not hard code max auth ticket len
        - usb: hub: take hub->hdev reference when processing from eventlist
        - futex: Unlock hb->lock in futex_wait_requeue_pi() error path
        - alarmtimer: Return relative times in timer_gettime
        - alarmtimer: Do not signal SIGEV_NONE timers
        - alarmtimer: Lock k_itimer during timer callback
        - vfs: don't bugger nd->seq on set_root_rcu() from follow_dotdot_rcu()
        - vfs: Fold follow_mount_rcu() into follow_dotdot_rcu()
        - vfs: be careful with nd->inode in path_init() and follow_dotdot_rcu()
        - iscsi-target: Fix memory corruption in iscsit_logout_post_handler_diffcid
        - NFSv4: Fix another bug in the close/open_downgrade code
        - libiscsi: fix potential buffer overrun in __iscsi_conn_send_pdu
        - nl80211: clear skb cb before passing to netlink
        - ALSA: pcm: fix fifo_size frame calculation
        - Fix nasty 32-bit overflow bug in buffer i/o code.
        - sched: Fix unreleased llc_shared_mask bit during CPU hotplug
        - [armhf] 8165/1: alignment: don't break misaligned NEON load/store
        - nilfs2: fix data loss with mmap()
        - ocfs2/dlm: do not get resource spinlock if lockres is new
          (regression in 3.2)
        - shmem: fix nlink for rename overwrite directory
        - mm: migrate: Close race between migration completion and mprotect
        - perf: fix perf bug in fork()
        - [mips*] Fix forgotten preempt_enable() when CPU has inclusive pcaches
        - ipv4: move route garbage collector to work queue
        - ipv4: avoid parallel route cache gc executions
        - ipv4: disable bh while doing route gc
        - ipv6: reallocate addrconf router for ipv6 address when lo device up
          (regression in 3.2.50)
        - [x86] kvm,vmx: Preserve CR4 across VM entry
        - ipvs: avoid netns exit crash on ip_vs_conn_drop_conntrack
        - ring-buffer: Fix infinite spin in reading buffer (regression in 3.2.63)
        - genhd: fix leftover might_sleep() in blk_free_devt()
        - [x86] KVM: Fix far-jump to non-canonical check
          (regression in 3.2.63-2+deb7u1)
        - l2tp: fix race while getting PMTU on PPP pseudo-wire
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.65
        - [x86] kvm: fix stale mmio cache bug
        - UBIFS: fix a race condition
        - [s390*] KVM: unintended fallthrough for external call
        - ext4: check EA value offset when loading
        - v4l2-common: fix overflow in v4l_bound_align_image()
        - Revert "lzo: properly check for overruns"
        - lzo: check for length overrun in variable length encoding.
        - NFSv4: fix open/lock state recovery error handling
        - NFSv4.1: Fix an NFSv4.1 state renewal regression
        - target: Fix queue full status NULL pointer for SCF_TRANSPORT_TASK_SENSE
        - vfs: fix data corruption when blocksize < pagesize for mmaped data
        - dm bufio: update last_accessed when relinking a buffer
        - ext4: don't orphan or truncate the boot loader inode
        - ext4: add ext4_iget_normal() which is to be used for dir tree lookups
        - ecryptfs: avoid to access NULL pointer when write metadata in xattr
        - fs: make cont_expand_zero interruptible
        - fix misuses of f_count() in ppp and netlink
        - block: fix alignment_offset math that assumes io_min is a power-of-2
        - fanotify: enable close-on-exec on events' fd when requested in
          fanotify_init()
        - selinux: fix inode security list corruption
        - random: add and use memzero_explicit() for clearing data
        - dm raid: ensure superblock's size matches device's logical block size
        - scsi: Fix error handling in SCSI_IOCTL_SEND_COMMAND
        - usb: serial: ftdi_sio: add "bricked" FTDI device PID
        - nfsd4: fix crash on unknown operation number
        - [x86] kvm: don't kill guest on unknown exit reason
        - posix-timers: Fix stack info leak in timer_create()
        - futex: Fix a race condition between REQUEUE_PI and task death
        - ALSA: pcm: Zero-clear reserved fields of PCM status ioctl in compat mode
        - zap_pte_range: update addr when forcing flush after TLB batching faiure
        - mm, thp: fix collapsing of hugepages on madvise
        - lib/bitmap.c: fix undefined shift in __bitmap_shift_{left|right}()
        - ext4: fix overflow when updating superblock backups after resize
        - ext4: bail out from make_indexed_dir() on first error
        - tracing/syscalls: Fix perf syscall tracing when syscall_nr == -1
        - tracing/syscalls: Ignore numbers outside NR_syscalls' range
        - mac80211: fix use-after-free in defragmentation
        - xhci: no switching back on non-ULT Haswell (regression in 3.2.53)
        - audit: keep inode pinned
        - libceph: do not crash on large auth tickets
        - firewire: cdev: prevent kernel stack leaking into ioctl arguments
        - iio: Fix IIO_EVENT_CODE_EXTRACT_DIR bit mask
        - [x86] Require exact match for 'noxsave' command line option
        - [amd64] mm: Mark data/bss/brk to nx
        - [amd64] mm: Set NX across entire PMD at boot
        - SUNRPC: Fix locking around callback channel reply receive
        - bnx2fc: do not add shared skbs to the fcoe_rx_list
        - Revert "xhci: clear root port wake on bits if controller isn't wake-up
          capable" (regression in 3.2.62)
        - [amd64] ALSA: hda - Limit 40bit DMA for AMD HDMI controllers
        - mei: add mei_quirk_probe function
        - tcp: be more strict before accepting ECN negociation
        - hpsa: fix a race in cmd_free/scsi_done
        - mm: Remove false WARN_ON from pagecache_isize_extended()
    
      [ Ben Hutchings ]
      * [rt] Update to 3.2.64-rt94:
        - sched: Do not clear PF_NO_SETAFFINITY flag in select_fallback_rq()
        - workqueue: Prevent deadlock/stall on RT
        - hrtimer:fix the miss of hrtimer_peek_ahead_timers in nort code
        - lockdep: Fix backport of "Correctly annotate hardirq context in
          irq_exit()"
      * drm, agp: Update to 3.4.105:
        - drm/i915: Remove bogus __init annotation from DMI callbacks
        - drm/vmwgfx: Fix a potential infinite spin waiting for fifo idle
        - drm/radeon: add connector quirk for fujitsu board
       * [x86] KVM: Don't report guest userspace emulation error to userspace
         (CVE-2014-7842)
       * [x86] kvm: Clear paravirt_enabled on KVM guests for espfix32's benefit
         (CVE-2014-8134)
       * isofs: Fix infinite looping over CE entries (CVE-2014-9420)
    
     -- Ben Hutchings <email address hidden>  Mon, 29 Dec 2014 02:50:43 +0100
  • linux (3.2.63-2) wheezy; urgency=medium
    
    
      * [s390*] Ignore ABI change in lowcore structure (fixes FTBFS)
    
     -- Ben Hutchings <email address hidden>  Mon, 29 Sep 2014 22:35:33 +0100
  • linux (3.2.57-3) wheezy; urgency=medium
    
    
      * rtl8192ce: Fix null dereference in watchdog (Closes: #745137)
    
     -- Ben Hutchings <email address hidden>  Tue, 22 Apr 2014 20:48:59 +0100
  • linux (3.2.54-2) wheezy; urgency=high
    
    
      * [arm] Ignore ABI change in omap_dsp_get_mempool_base (fixes FTBFS)
    
     -- dann frazier <email address hidden>  Sat, 01 Feb 2014 13:08:46 +0000
  • linux (3.2.54-1) wheezy; urgency=high
    
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.54
        - NFSv4: Fix a use-after-free situation in _nfs4_proc_getlk()
        - USB: mos7840: fix tiocmget error handling
        - ALSA: 6fire: Fix probe of multiple cards
        - can: c_can: Fix RX message handling, handle lost message before EOB
        - dm mpath: fix race condition between multipath_dtr and pg_init_done
        - ext4: avoid bh leak in retry path of ext4_expand_extra_isize_ea()
        - KVM: IOMMU: hva align mapping page size
        - crypto: s390 - Fix aes-cbc IV corruption
        - audit: printk USER_AVC messages when audit isn't enabled
        - audit: fix info leak in AUDIT_GET requests
        - audit: use nlmsg_len() to get message payload length
        - PM / hibernate: Avoid overflow in hibernate_preallocate_memory()
        - blk-core: Fix memory corruption if blkcg_init_queue fails
        - block: fix a probe argument to blk_register_region
        - SUNRPC: Fix a data corruption issue when retransmitting RPC calls
        - mwifiex: correct packet length for packets from SDIO interface
        - vsprintf: check real user/group id for %pK
        - ipc, msg: fix message length check for negative values
        - hwmon: (lm90) Fix max6696 alarm handling
        - rtlwifi: rtl8192cu: Fix more pointer arithmetic errors
        - setfacl removes part of ACL when setting POSIX ACLs to Samba
        - nfsd: make sure to balance get/put_write_access
        - nfsd4: fix xdr decoding of large non-write compounds (regression
          in 3.2.49)
        - NFSv4 wait on recovery for async session errors
        - powerpc/signals: Mark VSX not saved with small contexts
        - iscsi-target: fix extract_param to handle buffer length corner case
        - iscsi-target: chap auth shouldn't match username with trailing garbage
        - configfs: fix race between dentry put and lookup
        - [powerpc] signals: Improved mark VSX not saved with small contexts fix
        - mac80211: don't attempt to reorder multicast frames
        - Staging: zram: Fix access of NULL pointer
        - Staging: zram: Fix memory leak by refcount mismatch
        - irq: Enable all irqs unconditionally in irq_resume
        - tracing: Allow events to have NULL strings
        - [armhf/omap] Staging: tidspbridge: disable driver
        - cpuset: Fix memory allocator deadlock
        - crypto: authenc - Find proper IV address in ablkcipher callback
        - crypto: scatterwalk - Set the chain pointer indication bit
        - [s390] crypto: s390 - Fix aes-xts parameter corruption
        - crypto: ccm - Fix handling of zero plaintext when computing mac
        - net: update consumers of MSG_MORE to recognize MSG_SENDPAGE_NOTLAST
          (fixes regression in 3.2.17)
        - hpsa: do not discard scsi status on aborted commands
        - hpsa: return 0 from driver probe function on success, not 1
        - [arm] 7912/1: check stack pointer in get_wchan
        - [arm] 7913/1: fix framepointer check in unwind_frame
        - ALSA: memalloc.h - fix wrong truncation of dma_addr_t
        - dm snapshot: avoid snapshot space leak on crash
        - dm table: fail dm_table_create on dm_round_up overflow
        - hwmon: (w83l786ng) Fix fan speed control mode setting and reporting
        - hwmon: (w83l768ng) Fix fan speed control range
        - futex: fix handling of read-only-mapped hugepages
        - KVM: Improve create VCPU parameter (CVE-2013-4587)
        - [x86] KVM: Fix potential divide by 0 in lapic (CVE-2013-6367)
        - net: Fix "ip rule delete table 256" (Closes: #724783)
        - 6lowpan: Uncompression of traffic class field was incorrect
        - ipv4: fix possible seqlock deadlock
        - inet: prevent leakage of uninitialized memory to user in recv syscalls
        - net: rework recvmsg handler msg_name and msg_namelen logic
        - net: add BUG_ON if kernel advertises msg_namelen >
          sizeof(struct sockaddr_storage)
        - inet: fix addr_len/msg->msg_namelen assignment in recv_error and rxpmtu
          functions
        - ipv6: fix leaking uninitialized port number of offender sockaddr
        - net: core: Always propagate flag changes to interfaces
        - packet: fix use after free race in send path when dev is released
        - inet: fix possible seqlock deadlocks
        - ipv6: fix possible seqlock deadlock in ip6_finish_output2
        - ftrace: Check module functions being traced on reload
        - ftrace: Fix function graph with loading of modules
        - mmc: block: fix a bug of error handling in MMC driver
    
      [ Ben Hutchings ]
      * SCSI: virtio_scsi: fix memory leak on full queue condition
        (Closes: #730138)
      * drm, agp: Update to 3.4.76:
        - drm/radeon: fix asic gfx values for scrapper asics
        - drm/edid: add quirk for BPC in Samsung NP700G7A-S01PL notebook
        - drm/radeon: fixup bad vram size on SI
    
      [ dann frazier ]
      * ath9k_htc: properly set MAC address and BSSID mask (CVE-2013-4579)
      * KVM: x86: Convert vapic synchronization to _cached functions (CVE-2013-6368)
      * x86, fpu, amd: Clear exceptions in AMD FXSAVE workaround (CVE-2014-1438)
      * hamradio/yam: fix info leak in ioctl (CVE-2014-1446)
    
     -- dann frazier <email address hidden>  Wed, 29 Jan 2014 13:42:01 -0700
  • linux (3.2.51-1) wheezy; urgency=low
    
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.47
        - xfs: kill suid/sgid through the truncate path.
        - ALSA: usb-audio: fix possible hang and overflow in
          parse_uac2_sample_rate_range()
        - ALSA: usb-audio: avoid integer overflow in create_fixed_stream_quirk()
        - xen-netfront: reduce gso_max_size to account for max TCP header
        - jfs: fix a couple races
        - USB: revert periodic scheduling bugfix (fixes regression in 3.2.39)
        - USB: keyspan: fix bogus array index
        - Bluetooth: Fix missing length checks for L2CAP signalling PDUs
        - swap: avoid read_swap_cache_async() race to deadlock while waiting on
          discard I/O completion
        - mm: migration: add migrate_entry_wait_huge()
        - USB: spcp8x5: fix device initialisation at open
        - USB: pl2303: fix device initialisation at open
        - md/raid1: consider WRITE as successful only if at least one non-Faulty
          and non-rebuilding drive completed it.
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.48
        - ARM: 7755/1: handle user space mapped pages in flush_kernel_dcache_page
        - ARM: 7772/1: Fix missing flush_kernel_dcache_page() for noMMU
        - [x86] Modify UEFI anti-bricking code
        - tcp: fix tcp_md5_hash_skb_data()
        - ipv6: fix possible crashes in ip6_cork_release()
        - r8169: fix 8168evl frame padding.
        - ip_tunnel: fix kernel panic with icmp_dest_unreach
        - net: Block MSG_CMSG_COMPAT in send(m)msg and recv(m)msg
        - net: force a reload of first item in hlist_nulls_for_each_entry_rcu
        - net: sctp: fix NULL pointer dereference in socket destruction
        - l2tp: Fix PPP header erasure and memory leak
        - ncpfs: fix rmdir returns Device or resource busy (regression in 3.1)
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.49
        - zram: avoid invalid memory access in zram_exit()
        - zram: use zram->lock to protect zram_free_page() in swap free notify path
        - zram: avoid access beyond the zram device
        - zram: protect sysfs handler from invalid memory access
        - Bluetooth: Fix crash in l2cap_build_cmd() with small MTU
        - xhci: check for failed dma pool allocation
        - drivers: hv: switch to use mb() instead of smp_mb()
        - media: dmxdev: remove dvb_ringbuffer_flush() on writer side
        - hw_breakpoint: Use cpu_possible_mask in {reserve,release}_bp_slot()
        - iommu/amd: Only unmap large pages from the first pte
        - futex: Take hugepages into account when generating futex_key
        - perf: Disable monitoring on setuid processes for regular users
        - cgroup: fix RCU accesses to task->cgroups
        - dlci: acquire rtnl_lock before calling __dev_get_by_name()
        - dlci: validate the net device in dlci_del()
        - genirq: Fix can_request_irq() for IRQs without an action
          (Closes: #709647)
        - writeback: Fix periodic writeback after fs mount
        - UBIFS: fix a horrid bug - data race between readdir and llseek
        - powerpc/smp: Section mismatch from smp_release_cpus to __initdata
          spinning_secondaries
        - ext3,ext4: don't mess with dir_file->f_pos in htree_dirblock_to_tree()
        - jbd2: fix theoretical race in jbd2__journal_restart
        - drivers/dma/pl330.c: fix locking in pl330_free_chan_resources()
        - ocfs2: xattr: fix inlined xattr reflink
        - crypto: sanitize argument for format string
        - hpfs: better test for errors
        - iscsi-target: Fix tfc_tpg_nacl_auth_cit configfs length overflow
        - perf: Clone child context from parent context pmu
        - perf: Remove WARN_ON_ONCE() check in __perf_event_enable() for valid
          scenario
        - perf: Fix perf_lock_task_context() vs RCU
        - perf: Fix perf mmap bugs
        - perf: Fix mmap() accounting hole
        - ext4: fix overflow when counting used blocks on 32-bit architectures
        - ext4: fix data offset overflow in ext4_xattr_fiemap() on 32-bit archs
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.50
        - macvtap: fix recovery from gup errors
        - neighbour: fix a race in neigh_destroy()
        - net: Swap ver and type in pppoe_hdr
        - ipv6,mcast: always hold idev->lock before mca_lock
        - macvtap: correctly linearize skb when zerocopy is used
        - 9p: fix off by one causing access violations and memory corruption
        - atl1e: fix dma mapping warnings
        - atl1e: unmap partially mapped skb on dma error and free skb
        - vlan: fix a race in egress prio management
        - [sparc] tsb must be flushed before tlb
        - virtio_net: fix race in RX VQ processing
        - bnx2fc: Fix incorrect memset in bnx2fc_parse_fcp_rsp
        - xen/blkback: Check for insane amounts of request on the ring (v6).
        - lockd: protect nlm_blocked access in nlmsvc_retry_blocked
        - ext4: don't allow ext4_free_blocks() to fail due to ENOMEM
        - ACPI / memhotplug: Fix a stale pointer in error path
        - ALSA: Fix unlocked snd_pcm_stop() calls in various drivers
        - Btrfs: fix lock leak when resuming snapshot deletion
        - Btrfs: re-add root to dead root list if we stop dropping it
        - ALSA: usb-audio: 6fire: return correct XRUN indication
        - [x86] isci: Fix a race condition in the SSP task management path
        - sd: fix crash when UA received on DIF enabled device
        - nfsd: nfsd_open: when dentry_open returns an error do not propagate as
          struct file
        - staging: comedi: fix a race between do_cmd_ioctl() and read/write
        - usb: host: xhci: Enable XHCI_SPURIOUS_SUCCESS for all controllers with
          xhci 1.0
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.51
        - sctp: fully initialize sctp_outq in sctp_outq_init
        - ipv6: take rtnl_lock and mark mrt6 table as freed on namespace cleanup
        - net_sched: Fix stack info leak in cbq_dump_wrr().
        - af_key: more info leaks in pfkey messages
        - net_sched: info leak in atm_tc_dump_class()
        - ALSA: ak4xx-adda: info leak in ak4xxx_capture_source_info()
        - NFSv4.1: integer overflow in decode_cb_sequence_args()
        - jfs: fix readdir cookie incompatibility with NFSv4 (Closes: #714974)
        - mac80211: fix duplicate retransmission detection
        - [arm] 7791/1: a.out: remove partial a.out support
        - [x86] fpu: correct the asm constraints for fxsave, unbreak mxcsr.daz
        - USB: mos7840: fix race in register handling
        - serial/mxs-auart: fix race condition in interrupt handler
        - serial/mxs-auart: increase time to wait for transmitter to become idle
        - ixgbe: Fix Tx Hang issue with lldpad on 82598EB
        - virtio: console: fix race with port unplug and open/close
        - virtio: console: fix race in port_fops_open() and port unplug
        - virtio: console: clean up port data immediately at time of unplug
        - ACPI / battery: Fix parsing _BIX return value (Closes: #721468)
        - cifs: extend the buffer length enought for sprintf() using
        - iwlwifi: dvm: fix calling ieee80211_chswitch_done() with NULL
        - ALSA: 6fire: fix DMA issues with URB transfer_buffer usage
        - cifs: don't instantiate new dentries in readdir for inodes that need
          to be revalidated immediately (fixes regression in 3.2.46)
        - hwmon: (adt7470) Fix incorrect return code check
        - zd1201: do not use stack as URB transfer_buffer
        - Hostap: copying wrong data prism2_ioctl_giwaplist()
        - ALSA: 6fire: make buffers DMA-able (pcm)
        - ALSA: 6fire: make buffers DMA-able (midi)
        - jbd2: Fix use after free after error in jbd2_journal_dirty_metadata()
        - [arm] 7809/1: perf: fix event validation for software group leaders
        - [arm] perf: Fix armpmu_map_hw_event()
        - fs/proc/task_mmu.c: fix buffer overflow in add_page_map()
        - USB: mos7720: fix broken control requests
        - USB: keyspan: fix null-deref at disconnect and release
        - block: Add bio_for_each_segment_all()
        - sg: Fix user memory corruption when SG_IO is interrupted by a signal
        - of: fdt: fix memory initialization for expanded DT
        - nilfs2: remove double bio_put() in nilfs_end_bio_write() for
          BIO_EOPNOTSUPP error
        - nilfs2: fix issue with counting number of bio requests for
          BIO_EOPNOTSUPP error detection
        - ath9k_htc: Restore skb headroom when returning skb to mac80211
        - [powerpc] Don't Oops when accessing /proc/powerpc/lparcfg without
          hypervisor
        - [powerpc] Work around gcc miscompilation of __pa() on 64-bit
        - SUNRPC: Fix memory corruption issue on 32-bit highmem systems
        - drivers/base/memory.c: fix show_mem_removable() to handle missing sections
        - [x86] get_unmapped_area: Access mmap_legacy_base through mm_struct member
        - [s390] KVM: move kvm_guest_enter,exit closer to sie
    
      [ Ben Hutchings ]
      * cassini: Make missing firmware non-fatal (Closes: #714128)
      * drm, agp: Update to 3.4.61:
        - drm/radeon: fix card_posted check for newer asics
        - radeon: Fix system hang issue when using KMS with older cards
        - drm/radeon: don't allow audio on DCE6
        - drm: fix a use-after-free when GPU acceleration disabled
        - drm/i915/sdvo: Use &intel_sdvo->ddc instead of intel_sdvo->i2c for DDC.
        - drm/i915: no lvds quirk for hp t5740
        - drm/gma500: Increase max resolution for mode setting
        - drm/gma500/psb: Unpin framebuffer on crtc disable
        - drm/gma500/cdv: Unpin framebuffer on crtc disable
        - drm/i915: prefer VBT modes for SVDO-LVDS over EDID
        - drm/radeon: fix endian issues with DP handling (v3)
        - drm/radeon: fix combios tables on older cards
        - drm/radeon: improve dac adjust heuristics for legacy pdac
        - drm/radeon/atom: initialize more atom interpretor elements to 0
        - drm/i915: quirk no PCH_PWM_ENABLE for Dell XPS13 backlight
        - drm/i915/lvds: ditch ->prepare special case
        - drm/i915: Invalidate TLBs for the rings after a reset
        - drm/vmwgfx: Split GMR2_REMAP commands if they are to large
        - drm/i915: ivb: fix edp voltage swing reg val
      * m25p80: Add support for Micron N25Q128 including 3V variant
        (Closes: #714092)
      * [x86] Revert "drm/i915: GFX_MODE Flush TLB Invalidate Mode must be '1'
        for scanline waits" (possibly fixes: #703715, #704987 and others)
      * ata: Disable SATA_INIC162X - this driver corrupts data and is not
        expected to be fixed (Closes: #714295)
      * Update debconf template translations:
        - Update Brazilian Portugese (Fernando Ike de Oliveira) (Closes: #719725)
        - Update Japanese ('victory') (Closes: #719939)
      * [x86] efivars: Enable the improved check for free space; this should
        avoid either risk of bricking Samsung systems or refusing to set the
        boot configuration on Asus systems
      * mvsas: Recognise device/subsystem 9485/9485 as 88SE9485
      * ipv6: remove max_addresses check from ipv6_create_tempaddr (CVE-2013-0343)
      * Revert "zram: use zram->lock to protect zram_free_page() in swap free
        notify path" (regression in 3.2.49)
      * HID: validate HID report id size (CVE-2013-2888)
      * HID: pantherlord: validate output report details (CVE-2013-2892)
      * HID: ntrig: validate feature report details (CVE-2013-2896)
      * HID: picolcd_core: validate output report details (CVE-2013-2899)
      * HID: check for NULL field when setting values
      * [rt] Update to 3.2.51-rt72:
        - sched/workqueue: Only wake up idle workers if not blocked on sleeping
          spin lock
        - x86/mce: fix mce timer interval
        - genirq: Set irq thread to RT priority on creation
        - list_bl.h: make list head locking RT safe
        - list_bl.h: fix it for for !SMP && !DEBUG_SPINLOCK
        - timers: prepare for full preemption improve
        - kernel/cpu: fix cpu down problem if kthread's cpu is going down
        - kernel/hotplug: restore original cpu mask oncpu/down
        - drm/i915: drop trace_i915_gem_ring_dispatch on rt
        - rt,ntp: Move call to schedule_delayed_work() to helper thread
        - hwlat-detector: Update hwlat_detector to add outer loop detection
        - hwlat-detect/trace: Export trace_clock_local for hwlat-detector
        - hwlat-detector: Use trace_clock_local if available
        - hwlat-detector: Use thread instead of stop machine
        - genirq: do not invoke the affinity callback via a workqueue
      * linux-doc: Include aufs documentation
      * aufs: Apply bug fixes from 3.2.x branch:
        - Update Sourceforge URLs in documentation
        - Fix build with CONFIG_AUFS_DEBUG=y
        - Make sure the target branch is upper before copy-up
        - Fix error handling in au_reopen_nondir()
        - Track pseudo-links with hlist, addressing poor performance and
          WARNING during package installation
        - Add necessary memory barriers around i_nlink updates
        - Fix unbalanced au_unpin() in au_file_refresh_by_inode()
        - Do not copy-up the S_AUTOMOUNT inode flag
      * kernel-doc: bugfix - multi-line macros (fixes build failure in 3.2.51)
    
      [ Aurelien Jarno ]
      * [s390] Revert "s390: Use direct ktime path for s390 clockevent device"
        to fix kernel hard hang after a few hours (Closes: #719993).
    
     -- Ben Hutchings <email address hidden>  Wed, 18 Sep 2013 14:22:20 +0100
  • linux (3.2.46-1) wheezy; urgency=low
    
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.42
        - TTY: do not reset master's packet mode
        - l2tp: Restore socket refcount when sendmsg succeeds
        - tun: add a missing nf_reset() in tun_net_xmit()
        - netlabel: correctly list all the static label mappings
        - sctp: Use correct sideffect command in duplicate cookie handling
        - rtlwifi: rtl8192cu: Fix problem that prevents reassociation
          (Closes: #661860)
        - inet: limit length of fragment queue hash table bucket lists
        - sfc: Properly sync RX DMA buffer when it is not the last in the page
        - sfc: Fix efx_rx_buf_offset() in the presence of swiotlb
        - sfc: Only use TX push if a single descriptor is to be written
        - ext4: fix the wrong number of the allocated blocks in ext4_split_extent()
        - jbd2: fix use after free in jbd2_journal_dirty_metadata()
        - ext4: convert number of blocks to clusters properly
        - ext4: use atomic64_t for the per-flexbg free_clusters count
        - cifs: delay super block destruction until all cifsFileInfo objects are
          gone
        - USB: xhci: correctly enable interrupts (possibly fix for #703470)
        - [amd64] Fix the failure case in copy_user_handle_tail()
        - dm thin: fix discard corruption
        - USB: serial: fix interface refcounting
        - vfs,proc: guarantee unique inodes in /proc
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.43
        - [armhf/mx5] ASoC: imx-ssi: Fix occasional AC97 reset failure
        - rtlwifi: usb: add missing freeing of skbuff
        - xen-blkback: fix dispatch_rw_block_io() error path
        - net/irda: add missing error path release_sock call
        - sysfs: fix race between readdir and lseek
        - sysfs: handle failure path correctly for readdir()
        - NFSv4.1: Fix a race in pNFS layoutcommit
        - usb: xhci: Fix TRB transfer length macro used for Event TRB.
        - nfsd4: reject "negative" acl lengths
        - Nest rename_lock inside vfsmount_lock
        - [x86] iommu/amd: Make sure dma_ops are set for hotplug devices
        - b43: A fix for DMA transmission sequence errors
        - reiserfs: Fix warning and inode leak when deleting inode with xattrs
        - virtio: console: add locking around c_ovq operations
        - mm: prevent mmap_cache race in find_vma()
        - ixgbe: fix registration order of driver and DCA nofitication
        - key: Fix resource leak
        - udf: Fix bitmap overflow on large filesystems with small block size
        - NFS: nfs_getaclargs.acl_len is a size_t
        - loop: prevent bdev freeing while device in use
        - sky2: Threshold for Pause Packet is set wrong
        - 8021q: fix a potential use-after-free
        - unix: fix a race condition in unix_release()
        - atl1e: drop pci-msi support because of packet corruption
          (possibly fixes: #577747)
        - ipv6: don't accept multicast traffic with scope 0
        - ipv6: don't accept node local multicast traffic from the wire
        - pch_gbe: fix ip_summed checksum reporting on rx
        - HID: microsoft: do not use compound literal (fixes FTBFS on m68k)
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.44
        - USB: serial: fix use-after-free in TIOCMIWAIT
        - hrtimer: Don't reinitialize a cpu_base lock on CPU_UP
        - crypto: gcm - fix assumption that assoc has one segment
        - sched_clock: Prevent 64bit inatomicity on 32bit systems
        - can: gw: use kmem_cache_free() instead of kfree()
        - spinlocks and preemption points need to be at least compiler barriers
        - [x86] mm, paravirt: Fix vmalloc_fault oops during lazy MMU updates
        - Btrfs: make sure nbytes are right after log replay
        - kobject: fix kset_find_obj() race with concurrent last kobject_put()
        - vfs: Revert spurious fix to spinning prevention in prune_icache_sb
        - ath9k_htc: accept 1.x firmware newer than 1.3
        - [armel] Fix kexec by setting outer_cache.inv_all for Feroceon
        - hugetlbfs: add swap entry check in follow_hugetlb_page()
        - writeback: fix dirtied pages accounting on redirty
        - Btrfs: fix race between mmap writes and compression
        - mtd: Disable mtdchar mmap on MMU systems
        - fbcon: fix locking harder (Closes: #704933)
        - hfsplus: fix potential overflow in hfsplus_file_truncate()
        - sched: Convert BUG_ON()s in try_to_wake_up_local() to WARN_ON_ONCE()s
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.45
        - [ia64] Wrong asm register contraints in the futex implementation
          (Closes: #702641)
        - [ia64] Wrong asm register contraints in the kvm implementation
          (Closes: #702639)
        - [ia64] Fix initialization of CMCI/CMCP interrupts
        - sysfs: fix use after free in case of concurrent read/write and readdir
        - nfsd: don't run get_file if nfs4_preprocess_stateid_op return error
        - ext4/jbd2: don't wait (forever) for stale tid caused by wraparound
        - jbd2: fix race between jbd2_journal_remove_checkpoint and
          ->j_commit_callback
        - hrtimer: Fix ktime_add_ns() overflow on 32bit architectures
        - nfsd4: don't close read-write opens too soon
        - wireless: regulatory: fix channel disabling race condition
        - iwlwifi: dvm: don't send zeroed LQ cmd
        - powerpc/spufs: Initialise inode->i_ino in spufs_new_inode()
          (possibly fixes: #707175)
        - clockevents: Set dummy handler on CPU_DEAD shutdown (Closes: #700333)
        - powerpc: Add isync to copy_and_flush
        - fs/fscache/stats.c: fix memory leak
        - md: bad block list should default to disabled. (fixes regression in 3.1)
        - inotify: invalid mask should return a error number but not set it
          (fixes regression in 3.2.40)
        - fs/dcache.c: add cond_resched() to shrink_dcache_parent()
        - perf: Fix error return code
        - [x86] perf: Fix offcore_rsp valid mask for SNB/IVB (CVE-2013-2146)
        - vm: Introduce and use vm_iomap_memory() helper function
        - atl1e: limit gso segment size to prevent generation of wrong ip length
          fields (Closes: #565404)
        - netfilter: don't reset nf_trace in nf_reset()
        - rtnetlink: Call nlmsg_parse() with correct header length
        - tcp: incoming connections might use wrong route under synflood
        - esp4: fix error return code in esp_output()
        - net: sctp: sctp_auth_key_put: use kzfree instead of kfree
        - netrom: fix info leak via msg_name in nr_recvmsg()
        - netrom: fix invalid use of sizeof in nr_recvmsg()
        - net: drop dst before queueing fragments
        - [sparc] sparc64: Fix race in TLB batch processing.
        - r8169: fix 8168evl frame padding.
        - ixgbe: add missing rtnl_lock in PM resume path
        - kernel/audit_tree.c: tree will leak memory when failure occurs in
          audit_trim_trees()
        - r8169: fix vlan tag read ordering.
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.46
        - nfsd4: don't allow owner override on 4.1 CLAIM_FH opens
        - ext4: limit group search loop for non-extent files
        - iscsi-target: Fix processing of OOO commands
        - cifs: only set ops for inodes in I_NEW state
        - KVM: VMX: fix halt emulation while emulating invalid guest sate
        - [armel/kirkwood] Enable PCIe port 1 on QNAP TS-11x/TS-21x
        - drivers/char/ipmi: memcpy, need additional 2 bytes to avoid memory
          overflow
        - ipmi: ipmi_devintf: compat_ioctl method fails to take ipmi_mutex
        - btrfs: don't stop searching after encountering the wrong item
        - TTY: Fix tty miss restart after we turn off flow-control
          (Closes: #465823)
        - SUNRPC: Prevent an rpc_task wakeup race
        - fat: fix possible overflow for fat_clusters
        - mm: mmu_notifier: re-fix freed page still mapped in secondary MMU
        - mm compaction: fix of improper cache flush in migration code
        - mm/THP: use pmd_populate() to update the pmd with pgtable_t pointer
        - nilfs2: fix issue of nilfs_set_page_dirty() for page at EOF boundary
        - random: fix accounting race condition with lockless irq entropy_count
          update
        - mm/pagewalk.c: walk_page_range should avoid VM_PFNMAP areas
        - ipvs: ip_vs_sip_fill_param() BUG: bad check of return value
        - x86,efi: Check max_size only if it is non-zero.
        - x86,efi: Implement efi_no_storage_paranoia parameter
        - tcp: force a dst refcount when prequeue packet
        - packet: tpacket_v3: do not trigger bug() on wrong header status
        - macvlan: fix passthru mode race between dev removal and rx path
        - ipv6: do not clear pinet6 field
    
      [ Ben Hutchings ]
      * Input: MT: add tracking and frame synchronisation to core
      * Input: add support for Cypress PS/2 Trackpads (Closes: #703607),
        thanks to Apollon Oikonomopoulos
      * drm, agp: Update to 3.4.47:
        - drm/i915: restrict kernel address leak in debugfs
        - KMS: fix EDID detailed timing vsync parsing
        - KMS: fix EDID detailed timing frame rate
        - drm/radeon: add support for Richland APUs
        - drm/radeon/benchmark: make sure bo blit copy exists before using it
        - drm/i915: Don't clobber crtc->fb when queue_flip fails
        - drm/i915: Use the correct size of the GTT for placing the per-process
          entries
        - udl: handle EDID failure properly.
        - drm/i915: Add no-lvds quirk for Fujitsu Esprimo Q900
        - drm/i915: Fall back to bit banging mode for DVO transmitter detection
        - drm/radeon: don't use get_engine_clock() on APUs
        - drm/radeon/dce6: add missing display reg for tiling setup
        - drm/radeon: properly lock disp in mc_stop/resume for evergreen+
        - drm/radeon: disable the crtcs in mc_stop (evergreen+) (v2)
        - drm/radeon/evergreen+: don't enable HPD interrupts on eDP/LVDS
        - drm/radeon: fix endian bugs in atom_allocate_fb_scratch()
        - drm/radeon: fix possible segfault when parsing pm tables
        - drm/radeon: add new richland pci ids
        - drm/radeon: fix handling of v6 power tables
        - drm/radeon: Fix VRAM size calculation for VRAM >= 4GB
        - drm/radeon: check incoming cliprects pointer
        - drm/mm: fix dump table BUG
      * [rt] Update to 3.2.45-rt66:
        - rcutiny: Fix typo of using swake_up() instead of swait_wake()
        - tcp: force a dst refcount when prequeue packet
        - x86/mce: Defer mce wakeups to threads for PREEMPT_RT
        - swap: Use unique local lock name for swap_lock
        - sched: Add is_idle_task() to handle invalidated uses of idle_cpu()
      * debugfs: Document change of default mode
      * iwlwifi: Do not request firmware API version 6 for IWL6005/6205
        (Closes: #705655)
      * bug script: Remove broken sound functions (Closes: #705619)
      * [i386/486] udeb: Add lxfb to fb-modules (Closes: #705780)
      * [i386] cpufreq / Longhaul: Disable driver by default (Closes: #707047)
      * iscsi-target: fix heap buffer overflow on error (CVE-2013-2850)
      * ath9k: Disable PowerSave by default (Closes: #695968)
      * dlm: Do not allocate a fd for peeloff (Closes: #706010)
      * nfsd4: Fix performance problem with RELEASE_LOCKOWNER (Closes: #699361)
        - hash lockowners to simplify RELEASE_LOCKOWNER
        - maintain one seqid stream per (lockowner, file)
      * ipw2100,ipw2200: Fix order of device registration (Closes: #656813)
      * udf: Fix handling of i_blocks (Closes: #704269)
      * kbuild: Fix missing '\n' for NEW symbols in yes "" | make oldconfig
        >conf.new (Closes: #636029)
      * [i386] udeb: Add viafb to fb-modules (Closes: #705788)
        - [i386] udeb: Move i2c-algo-bit to i2c-modules and make fb-modules
          depend on it
        - viafb: Autoload on OLPC XO 1.5 only
      * cifs: fix potential buffer overrun when composing a new options string
    
      [ Jonathan Nieder ]
      * ext3,ext4,nfsd: dir_index: Return 64-bit readdir cookies for NFSv3 and 4
        (Closes: #685407)
    
     -- Ben Hutchings <email address hidden>  Sat, 08 Jun 2013 22:36:14 +0100
  • linux (3.2.41-2+deb7u2) wheezy-security; urgency=high
    
    
      * s390/kvm: Ignore ABI changes, it should not be used OOT
    
     -- dann frazier <email address hidden>  Wed, 15 May 2013 12:07:33 -0600
  • linux (3.2.41-2) unstable; urgency=low
    
    
      * [ia64] udeb: Remove efi-modules package; make kernel-image provide
        efi-modules (fixes FTBFS)
      * linux-headers: Fix file installation on architectures without
        Kbuild.platforms (Closes: #703800)
      * [x86] drm/i915: bounds check execbuffer relocation count (CVE-2013-0913)
      * [x86] drm: Enable DRM_GMA500 as module, replacing DRM_PSB (Closes: #703506)
        - Enable DRM_GMA600, DRM_GMA3600, DRM_MEDFIELD
      * [x86] KVM: x86: fix for buffer overflow in handling of MSR_KVM_SYSTEM_TIME
        (CVE-2013-1796)
      * [x86] KVM: x86: Convert MSR_KVM_SYSTEM_TIME to use gfn_to_hva_cache
        functions (CVE-2013-1797)
      * KVM: Fix bounds checking in ioapic indirect register reads (CVE-2013-1798)
    
     -- Ben Hutchings <email address hidden>  Mon, 25 Mar 2013 15:17:44 +0000
  • linux (3.2.39-2) unstable; urgency=high
    
    
      * [s390,s390x] virtio: Ignore ABI changes in 3.2.39 (fixes FTBFS)
      * [sparc] drm: Ignore ABI changes in 3.2.39 (fixes FTBFS)
      * [sparc] drm: Change from built-in to module
      * [rt] Update to 3.2.39-rt59:
        - acpi/rt: Convert acpi_gbl_hardware lock back to a raw_spinlock_t
        - printk: Fix rq->lock vs logbuf_lock unlock lock inversion
        - wait-simple: Simple waitqueue implementation
        - rcutiny: Use simple waitqueue
      * [x86] efi: Fix ABI change for introduction of efi_enabled() function
        in 3.2.38 (Closes: #701690)
      * [armel/versatile] i2c: Re-enable I2C_PCA_PLATFORM as module, erroneously
        disabled in 3.2.39-1 (fixes FTBFS)
      * [x86,powerpc/powerpc64] random: Change HW_RANDOM from module to built-in,
        to work around virtio-rng bug (Closes: #701784)
    
     -- Ben Hutchings <email address hidden>  Wed, 27 Feb 2013 03:48:30 +0000
  • linux (3.2.35-2) unstable; urgency=low
    
    
      * [ia64] Make IPV6 built-in (fixes FTBFS)
      * [rt] Update to 3.2.35-rt52
      * audit: Increase maximum number of names logged per syscall to 30
        (Closes: #631799)
      * asix: Add support for Lenovo 10/100 USB dongle (Closes: #696248)
      * udeb: Add ums-eneub6250, ums-realtek (Closes: #694348) to
        usb-storage-modules
    
     -- Ben Hutchings <email address hidden>  Wed, 19 Dec 2012 03:41:35 +0000
  • linux (3.2.32-1) unstable; urgency=low
    
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.31
        - target: Fix ->data_length re-assignment bug with SCSI overflow
        - hpsa: fix handling of protocol error
        - cifs: fix return value in cifsConvertToUTF16
        - asix: Support DLink DUB-E100 H/W Ver C1 (Closes: #687567)
        - dj: memory scribble in logi_dj
        - dm: handle requests beyond end of device instead of using BUG_ON
        - md/raid10: fix "enough" function for detecting if array is failed.
        - libata: Prevent interface errors with Seagate FreeAgent GoFlex
        - vfs: dcache: fix deadlock in tree traversal
        - Revert "drm/radeon: rework pll selection (v3)" (regression in 3.2.30)
        - HID: hidraw: don't deallocate memory when it is in use
        - xfrm: Workaround incompatibility of ESN and async crypto
        - xfrm_user: fix various information leaks
        - xfrm_user: ensure user supplied esn replay window is valid
        - net: guard tcp_set_keepalive() to tcp sockets
        - ipv4: raw: fix icmp_filter()
        - ipv6: raw: fix icmpv6_filter()
        - ipv6: mip6: fix mip6_mh_filter()
        - netrom: copy_datagram_iovec can fail
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.32
        - mtd: nand: Use the mirror BBT descriptor when reading its version
        - TTY: ttyprintk, don't touch behind tty->write_buf
        - n_gsm: fix various serious bugs
        - hpsa: Use LUN reset instead of target reset
        - staging: comedi: don't dereference user memory for INSN_INTTRIG
        - ext4: fix potential deadlock in ext4_nonda_switch()
        - staging: comedi: fix memory leak for saved channel list
        - scsi_remove_target: fix softlockup regression on hot remove
          (Closes: #690990)
        - usb: host: xhci: Fix Null pointer dereferencing with 71c731a for
          non-x86 systems (regression in 3.2.30)
        - ext4: online defrag is not supported for journaled files
        - staging: comedi: s626: don't dereference insn->data
        - serial: pl011: handle corruption at high clock speeds
        - ext4: always set i_op in ext4_mknod()
        - ext4: fix fdatasync() for files with only i_size changes
        - [x86] drm/i915: use adjusted_mode instead of mode for checking the
          6bpc force flag (regression in 3.2.29)
        - staging: comedi: jr3_pci: fix iomem dereference
        - JFFS2: don't fail on bitflips in OOB
        - mtd: nandsim: bugfix: fail if overridesize is too big
        - pnfsblock: fix partial page buffer wirte
        - target/file: Re-enable optional fd_buffered_io=1 operation
        - iscsit: remove incorrect unlock in iscsit_build_sendtargets_resp
        - rapidio/rionet: fix multicast packet transmit logic
        - ALSA: aloop - add locking to timer access
        - [armhf/omap] counter: add locking to read_persistent_clock
        - mm: fix invalidate_complete_page2() lock ordering
        - mm: thp: fix pmd_present for split_huge_page and PROT_NONE with THP
        - mm: hugetlb: fix pgoff computation when unmapping page from vma
        - hugetlb: do not use vma_hugecache_offset() for vma_prio_tree_foreach
        - [x86] firewire: cdev: fix user memory corruption (i386 userland on
          amd64 kernel)
        - udf: fix retun value on error path in udf_load_logicalvol
        - eCryptfs: Unlink lower inode when ecryptfs_create() fails
        - eCryptfs: Initialize empty lower files when opening them
        - eCryptfs: Revert to a writethrough cache model
        - eCryptfs: Write out all dirty pages just before releasing the lower file
        - eCryptfs: Call lower ->flush() from ecryptfs_flush()
        - mempolicy: remove mempolicy sharing
        - mempolicy: fix a race in shared_policy_replace()
        - mempolicy: fix refcount leak in mpol_set_shared_policy()
        - mempolicy: fix a memory corruption by refcount imbalance in
          alloc_pages_vma()
        - hpsa: dial down lockup detection during firmware flash
        - netfilter: nf_ct_ipv4: packets with wrong ihl are invalid
        - netfilter: nf_nat_sip: fix incorrect handling of EBUSY for RTCP
          expectation
        - netfilter: nf_ct_expect: fix possible access to uninitialized timer
        - ipvs: fix oops on NAT reply in br_nf context
    
      [ Ben Hutchings ]
      * codel: refine one condition to avoid a nul rec_inv_sqrt
      * [mips,mipsel] Ignore NFS/SunRPC ABI changes in 3.2.30 (fixes FTBFS)
      * tg3: Fix TSO CAP for 5704 devs w / ASF enabled
      * SUNRPC: Set alloc_slot for backchannel tcp ops (regression in 3.2.30)
      * iwlwifi: Do not request unreleased firmware for IWL6000 (Closes: #689416)
      * aufs: Update to aufs3.2-20120827:
        - Fix statfs() values when different block sizes are in use
      * udeb: Add hid-logitech-dj to input-modules (Closes: #661379)
      * connector: Make CONNECTOR built-in; enable PROC_EVENTS (Closes: #588200)
      * e1000e: Change wthresh to 1 to avoid possible Tx stalls
      * [x86] efi: Build EFI stub with EFI-appropriate options
      * [rt] Update to 3.2.32-rt48:
        - random: Make add_interrupt_randomness() work on rt
        - softirq: Init softirq local lock after per cpu section is set up
        - mm: slab: Fix potential deadlock
        - mm: page_alloc: Use local_lock_on() instead of plain spinlock
        - rt: rwsem/rwlock: lockdep annotations
        - sched: Better debug output for might sleep
        - stomp_machine: Use mutex_trylock when called from inactive cpu
      * [x86] storvsc: Account for in-transit packets in the RESET path
      * fs: handle failed audit_log_start properly
      * fs: prevent use after free in auditing when symlink following was denied
      * kernel/sys.c: fix stack memory content leak via UNAME26 (CVE-2012-0957)
      * ALSA: hda: Fix oops caused by "Fix internal mic for Lenovo Ideapad U300s"
        in 3.2.32
    
     -- Ben Hutchings <email address hidden>  Mon, 22 Oct 2012 06:25:37 +0100
  • linux (3.2.23-1) unstable; urgency=low
    
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.22
        - nilfs2: ensure proper cache clearing for gc-inodes
        - ath9k_hw: avoid possible infinite loop in ar9003_get_pll_sqsum_dvc
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.23
        - splice: fix racy pipe->buffers uses
        - NFC: Prevent multiple buffer overflows in NCI (CVE-2012-3364)
        - NFC: Return from rawsock_release when sk is NULL
        - md/raid5: Do not add data_offset before call to is_badblock
        - md/raid5: In ops_run_io, inc nr_pending before calling
          md_wait_for_blocked_rdev
        - md/raid10: fix failure when trying to repair a read error.
        - udf: Improve sanity checking of filesystem metadata (CVE-2012-3400)
          + udf: Avoid run away loop when partition table length is corrupted
          + udf: Fortify loading of sparing table
        - l2tp: fix a race in l2tp_ip_sendmsg()
        - netpoll: fix netpoll_send_udp() bugs
        - Btrfs: run delayed directory updates during log replay
        - ocfs2: clear unaligned io flag when dio fails
        - aio: make kiocb->private NUll in init_sync_kiocb()
        - mm: Hold a file reference in madvise_remove
    
      [ Ben Hutchings ]
      * linux-libc-dev: Fix redundant 'GNU glibc' in description (Closes: #631228)
      * README.source: Correct name of main patch series file
      * [sh] Fix up store queue code for subsys_interface changes (Closes: #680025)
      * scsi: Silence unnecessary warnings about ioctl to partition
        (Closes: #656899)
      * Update Czech debconf template translations (Michal Simunek)
        (Closes: #679674)
      * linux-image: Remove versioned relations where stable version is new enough
      * udf: Improve table length check to avoid possible overflow
      * CIFS: Respect negotiated MaxMpxCount (deferred from 3.2.14)
      * epoll: clear the tfile_check_list on -ELOOP (CVE-2012-3375)
      * nouveau: Update to support Fermi (NVC0+) acceleration (Closes: #679566)
        - Refactor sub-channel use
        - Bump version to 1.0.0
      * e100: ucode is optional in some cases
      * [x86] drm/i915: prefer wide & slow to fast & narrow in DP configs
        (Closes: #658662)
      * cipso: don't follow a NULL pointer when setsockopt() is called
      * [x86] hwmon: Enable SENSORS_SCH5636 as module (Closes: #680934)
      * atl1c: fix issue of transmit queue 0 timed out
      * raid5: delayed stripe fix (Closes: #680366)
      * fs: Remove easily user-triggerable BUG from generic_setlease
      * tcp: drop SYN+FIN messages
      * fifo: Do not restart open() if it already found a partner (Closes: #678852)
      * [rt] linux-source: Include -rt version suffix
      * [rt] Update to 3.2.23-rt37:
        - Latency histogramms: Cope with backwards running local trace clock
        - Latency histograms: Adjust timer, if already elapsed when programmed
        - Disable RT_GROUP_SCHED in PREEMPT_RT_FULL
        - Latency histograms: Detect another yet overlooked sharedprio condition
        - slab: Prevent local lock deadlock
        - fs, jbd: pull your plug when waiting for space
        - perf: Make swevent hrtimer run in irq instead of softirq
        - cpu/rt: Rework cpu down for PREEMPT_RT
        - cpu/rt: Fix cpu_hotplug variable initialization
        - workqueue: Revert workqueue: Fix PF_THREAD_BOUND abuse
        - workqueue: Revert workqueue: Fix cpuhotplug trainwreck
    
      [ Arnaud Patard ]
      * [mipsel] add r8169 to d-i udeb.
    
     -- Ben Hutchings <email address hidden>  Sun, 22 Jul 2012 23:25:47 +0100
  • linux (3.2.21-3) unstable; urgency=low
    
    
      * driver core: remove __must_check from device_create_file
        (fixes FTBFS on sparc)
      * i2400m: Disable I2400M_SDIO; hardware did not reach production
      * apparmor: remove advertising the support of network rules from
        compat iface (Closes: #676515)
      * xen/netfront: teardown the device before unregistering it (Closes: #675190)
      * linux-{doc,manual,source,support}: Mark as capable of satisfying
        relations from foreign packages (Multi-Arch: foreign) (Closes: #679202)
    
     -- Ben Hutchings <email address hidden>  Thu, 28 Jun 2012 04:58:18 +0100
  • linux (3.2.20-1) unstable; urgency=low
    
    
      * The "Confused? You Won't Be" release
    
      * New upstream stable update:
        http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.20
       - cifs: fix oops while traversing open file list (try #4)
       - mm/fork: fix overflow in vma length when copying mmap on clone
       - mm: fix faulty initialization in vmalloc_init()
       - x86, amd, xen: Avoid NULL pointer paravirt references
       - ext4: force ro mount if ext4_setup_super() fails
       - ext4: disallow hard-linked directory in ext4_lookup
       - ext4: add missing save_error_info() to ext4_error()
       - ALSA: usb-audio: fix rate_list memory leak
       - Bluetooth: btusb: typo in Broadcom SoftSailing id (Closes: #674565)
       - ipv4: Do not use dead fib_info entries.
       - ipv4: fix the rcu race between free_fib_info and ip_route_output_slow
       - l2tp: fix oops in L2TP IP sockets for connect() AF_UNSPEC case
       - btree: fix tree corruption in btree_get_prev()
       - asix: allow full size 8021Q frames to be received (Closes: #676545)
       - ext4: don't trash state flags in EXT4_IOC_SETFLAGS
       - ext4: fix the free blocks calculation for ext3 file systems w/ uninit_bg
    
      [ Ben Hutchings ]
      * Rename source package to 'linux' (Closes: #636010)
      * Convert source package format to 3.0 (quilt)
        - Convert patch system to quilt, except for the 'orig' patch series
        - Use xz compression for upstream and Debian tarballs
        - README.source: Update description of patch system to match current
          usage
        - linux-patch-debian: Remove; it is no longer necessary for GPL
          compliance and does not work with our current patch management
      * linux-image: Change package name for bugs to 'src:linux' (Closes: #644198)
      * DFSG: video: Remove nvidiafb and rivafb, which include apparently
        obfuscated code (Closes: #383481, #609615).  The nouveau driver supports
        all the same hardware, aside from RIVA 128 (NV3).
      * udeb: Add udf-modules containing UDF filesystem module (Closes: #613972)
      * [mipsel/loongson2f] linux-image: Recommend libc6-loongson2f
        (Closes: #629410)
      * Build-Depend on kmod or module-init-tools, not just the latter
      * test-patches: Recognise the rt featureset automatically
      * udeb: Build-Depend on kernel-wedge >= 2.84; this allows us to list
        modules as required even if they are built-in in some configurations
      * filter: Allow to create sk-unattached filters
      * proc: Backport hidepid mount option from Linux 3.4 (Closes: #669028)
      * NFSv4: Reduce the footprint of the idmapper (Closes: #657078)
      * [i386] thp: avoid atomic64_read in pmd_read_atomic for 32bit PAE
        (Closes: #676360)
      * linux-source: Add single patch for each featureset
      * [x86] Enable CRASH_DUMP, PROC_VMCORE (Closes: #623177)
      * media/dvb: Enable DVB_DDBRIDGE as module (Closes: #676952)
      * net: sock: validate data_len before allocating skb in
        sock_alloc_send_pskb() (CVE-2012-2136)
      * macvtap: zerocopy: fix offset calculation when building skb
      * macvtap: zerocopy: fix truesize underestimation
      * macvtap: zerocopy: put page when fail to get all requested user pages
      * macvtap: zerocopy: set SKBTX_DEV_ZEROCOPY only when skb is built
        successfully
      * macvtap: zerocopy: validate vectors before building skb (CVE-2012-2119)
      * KVM: Fix buffer overflow in kvm_set_irq() (CVE-2012-2137)
    
      [ Bastian Blank ]
      * [s390/s390x,s390x/s390x] Build debugging symbols.
    
     -- Ben Hutchings <email address hidden>  Mon, 11 Jun 2012 02:46:34 +0100