Ubuntu

“linux-ec2” 2.6.31-307.21 source package in Ubuntu

Changelog

linux-ec2 (2.6.31-307.21) karmic-security; urgency=low

  [ John Johansen ]

  * Rebased to 2.6.31-22.67

  [ Ubuntu: 2.6.31-22.67 ]

  * Local privilege escalation vulnerability in RDS sockets
    - CVE-2010-3904
  * v4l: disable dangerous buggy compat function
    - CVE-2010-2963
  * mm: Do not assume ENOMEM when looking at a split stack vma
    -  LP: #646114
  * mm: Use helper to find real vma with stack guard page
    -  LP: #646114
  * Fix race in tty_fasync() properly
    - CVE-2009-4895
  * ext4: Make sure the MOVE_EXT ioctl can't overwrite append-only files
    - CVE-2010-2066
  * xfs: prevent swapext from operating on write-only files
    - CVE-2010-2226
  * cifs: Fix a kernel BUG with remote OS/2 server (try #3)
    - CVE-2010-2248
  * ethtool: Fix potential user buffer overflow for ETHTOOL_{G, S}RXFH
    - CVE-2010-2478
  * l2tp: Fix oops in pppol2tp_xmit
    - CVE-2010-2495
  * nfsd4: bug in read_buf
    - CVE-2010-2521
  * CIFS: Fix a malicious redirect problem in the DNS lookup code
    - CVE-2010-2524
  * GFS2: rename causes kernel Oops
    - CVE-2010-2798
  * net sched: fix some kernel memory leaks
    - CVE-2010-2942
  * jfs: don't allow os2 xattr namespace overlap with others
    - CVE-2010-2946
  * irda: Correctly clean up self->ias_obj on irda_bind() failure.
    - CVE-2010-2954
  * wireless extensions: fix kernel heap content leak
    - CVE-2010-2955
  * ext4: consolidate in_range() definitions
    - CVE-2010-3015
  * aio: check for multiplication overflow in do_io_submit
    - CVE-2010-3067
  * xfs: prevent reading uninitialized stack memory
    - CVE-2010-3078
  * ALSA: seq/oss - Fix double-free at error path of snd_seq_oss_open()
    - CVE-2010-3080
  * niu: Fix kernel buffer overflow for ETHTOOL_GRXCLSRLALL
    - CVE-2010-3084
  * rose: Fix signedness issues wrt. digi count.
    - CVE-2010-3310
  * sctp: Do not reset the packet during sctp_packet_config().
    - CVE-2010-3432
  * Fix pktcdvd ioctl dev_minor range check
    - CVE-2010-3437
  * ALSA: prevent heap corruption in snd_ctl_new()
    - CVE-2010-3442
  * net sched: fix kernel leak in act_police
    - CVE-2010-3477
  * Fix out-of-bounds reading in sctp_asoc_get_hmac()
    - CVE-2010-3705
  * ocfs2: Don't walk off the end of fast symlinks.
    - CVE-2010-NNN2

linux-ec2 (2.6.31-307.20) karmic-proposed; urgency=low

  [ Stefan Bader ]

  * Rebased to 2.6.31-22.66

  [ Ubuntu: 2.6.31-22.66 ]

  * SAUCE: (no-up) Modularize vesafb -- fix initialization
    - LP: #611471
  * SAUCE: sched: update load count only once per cpu in 10 tick update
    window
    - LP: #513848
  * (pre-stable) x86-32, resume: do a global tlb flush in S4 resume
    - LP: #531309
  * PCI: Ensure we re-enable devices on resume
    - LP: #566149

  [ Ubuntu: 2.6.31-22.65 ]

  * x86-64, compat: Test %rax for the syscall number, not %eax
    - CVE-2010-3301
  * x86-64, compat: Retruncate rax after ia32 syscall entry tracing
    - CVE-2010-3301
  * compat: Make compat_alloc_user_space() incorporate the access_ok()
    - CVE-2010-3081
 -- John Johansen <email address hidden>   Sun, 17 Oct 2010 17:39:55 -0700

Upload details

Uploaded by:
John Johansen on 2010-10-18
Sponsored by:
Kees Cook
Uploaded to:
Karmic
Original maintainer:
Ubuntu Kernel Team
Component:
main
Architectures:
all i386 amd64
Section:
devel
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Karmic: [FULLYBUILT] amd64 [FULLYBUILT] i386

Downloads

File Size MD5 Checksum
linux-ec2_2.6.31.orig.tar.gz 74.7 MiB 16c0355d3612806ef87addf7c9f8c9f9
linux-ec2_2.6.31-307.21.diff.gz 8.9 MiB 1f489361f6806eca15d52686fca1563e
linux-ec2_2.6.31-307.21.dsc 3.3 KiB 1a1875470d51311def6aeaaffe950259

Available diffs

Binary packages built by this source

linux-ec2-doc: No summary available for linux-ec2-doc in ubuntu karmic.

No description available for linux-ec2-doc in ubuntu karmic.

linux-ec2-source-2.6.31: No summary available for linux-ec2-source-2.6.31 in ubuntu karmic.

No description available for linux-ec2-source-2.6.31 in ubuntu karmic.

linux-headers-2.6.31-307: No summary available for linux-headers-2.6.31-307 in ubuntu karmic.

No description available for linux-headers-2.6.31-307 in ubuntu karmic.

linux-headers-2.6.31-307-ec2: No summary available for linux-headers-2.6.31-307-ec2 in ubuntu karmic.

No description available for linux-headers-2.6.31-307-ec2 in ubuntu karmic.

linux-image-2.6.31-307-ec2: No summary available for linux-image-2.6.31-307-ec2 in ubuntu karmic.

No description available for linux-image-2.6.31-307-ec2 in ubuntu karmic.