Change log for linux-lts-backport-maverick package in Ubuntu

120 of 20 results
Obsolete in lucid-security
Obsolete in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-32.68~lucid1) lucid-proposed; urgency=low

  [ Luis Henriques ]

  * Release Tracking Bug
    - LP: #967068

  [ Andy Whitcroft ]

  * [Config] restore build-% shortcut

  [ Upstream Kernel Changes ]

  * bsg: fix sysfs link remove warning
    - LP: #946928
  * regset: Prevent null pointer reference on readonly regsets
    - LP: #949905
    - CVE-2012-1097
  * regset: Return -EFAULT, not -EIO, on host-side memory fault
    - LP: #949905
    - CVE-2012-1097
  * mm: memcg: Correct unregistring of events attached to the same eventfd
    - LP: #952828
    - CVE-2012-1146
  * KVM: Remove ability to assign a device without iommu support
    - LP: #897812
    - CVE-2011-4347
  * KVM: x86: extend "struct x86_emulate_ops" with "get_cpuid"
    - LP: #917842
    - CVE-2012-0045
  * KVM: x86: fix missing checks in syscall emulation
    - LP: #917842
    - CVE-2012-0045
  * eCryptfs: Clear ECRYPTFS_NEW_FILE flag during truncate
    - LP: #745836
 -- Luis Henriques <email address hidden>   Wed, 28 Mar 2012 16:24:53 +0100
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-32.67~lucid1) lucid-proposed; urgency=low

  [Luis Henriques]

  * Release Tracking Bug
    - LP: #947898

  [ Upstream Kernel Changes ]

  * KVM: Device assignment permission checks
    - LP: #897812
    - CVE-2011-4347

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-32.66~lucid1) lucid-proposed; urgency=low

  [Brad Figg]

  * Release Tracking Bug
    - LP: #931795

  [ Upstream Kernel Changes ]

  * net: ip_expire() must revalidate route
    - LP: #922051
    - CVE-2011-1927
  * bridge: Fix mglist corruption that leads to memory corruption
    - LP: #917813
    - CVE-2011-0716
  * AppArmor: fix oops in apparmor_setprocattr
    - LP: #789409
    - CVE-2011-3619

Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-32.65~lucid1) lucid-proposed; urgency=low

  [Brad Figg]

  * Release Tracking Bug
    - LP: #921475

  [ Upstream Kernel Changes ]

  * fuse: check size of FUSE_NOTIFY_INVAL_ENTRY message, CVE-2011-3353
    - LP: #905058
    - CVE-2011-3353
  * KVM: x86: Prevent starting PIT timers in the absence of irqchip support
    - LP: #911303
    - CVE-2011-4622
  * sched, x86: Avoid unnecessary overflow in sched_clock
    - LP: #805341
  * use cache type functions for arch_get_unmapped_area
    - LP: #861296
  * topdown mmap support
    - LP: #861296
  * xfs: validate acl count
    - LP: #917706
    - CVE-2012-0038
  * xfs: fix acl count validation in xfs_acl_from_disk()
    - LP: #917706
    - CVE-2012-0038
  * drm: integer overflow in drm_mode_dirtyfb_ioctl()
    - LP: #917838
    - CVE-2012-0044
  * x86/PCI: amd: factor out MMCONFIG discovery
    - LP: #647043
  * PNP: work around Dell 1536/1546 BIOS MMCONFIG bug that breaks USB
    - LP: #647043

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-32.64~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #911248

  [ Seth Forshee ]

  * SAUCE: dell-wmi: Demote unknown WMI event message to pr_debug
    - LP: #581312

  [ Upstream Kernel Changes ]

  * Revert "Revert "xen: set max_pfn_mapped to the last pfn mapped""
    - LP: #898139
  * Revert "core: Fix memory leak/corruption on VLAN GRO_DROP,
    CVE-2011-1576"
    - LP: #844361
  * kbuild: Disable -Wunused-but-set-variable for gcc 4.6.0
    - LP: #898139
  * kbuild: Fix passing -Wno-* options to gcc 4.4+
    - LP: #898139
  * maintainer
    - LP: #898139
  * Remove the old V4L1 v4lgrab.c file
    - LP: #898139
  * i8k: Tell gcc that *regs gets clobbered
    - LP: #898139
  * Fix gcc 4.5.1 miscompiling drivers/char/i8k.c (again)
    - LP: #898139
  * USB: serial/usb_wwan, fix tty NULL dereference
    - LP: #898139
  * ipv6: add special mode accept_ra=2 to accept RA while configured as
    router
    - LP: #898139
  * set memory ranges in N_NORMAL_MEMORY when onlined
    - LP: #898139
  * FLEXCOP-PCI: fix __xlate_proc_name-warning for flexcop-pci
    - LP: #898139
  * m68k/mm: Set all online nodes in N_NORMAL_MEMORY
    - LP: #898139
  * nfs: don't lose MS_SYNCHRONOUS on remount of noac mount
    - LP: #898139
  * NFSv4.1: Ensure state manager thread dies on last umount
    - LP: #898139
  * Input: xen-kbdfront - fix mouse getting stuck after save/restore
    - LP: #898139
  * pmcraid: reject negative request size
    - LP: #898139
  * mmc: sdhci-pci: Fix error case in sdhci_pci_probe_slot()
    - LP: #898139
  * mmc: sdhci: Check mrq->cmd in sdhci_tasklet_finish
    - LP: #898139
  * mmc: sdhci: Check mrq != NULL in sdhci_tasklet_finish
    - LP: #898139
  * USB: fix regression in usbip by setting has_tt flag
    - LP: #898139
  * ARM: 6891/1: prevent heap corruption in OABI semtimedop
    - LP: #898139
  * Open with O_CREAT flag set fails to open existing files on non writable
    directories
    - LP: #898139
  * Input: elantech - discard the first 2 positions on some firmwares
    - LP: #898139
  * Staging: rtl8192su: Clean up in case of an error in module
    initialisation
    - LP: #898139
  * Staging: rtl8192su: Fix procfs code for interfaces not named wlan0
    - LP: #898139
  * USB: teach "devices" file about Wireless and SuperSpeed USB
    - LP: #898139
  * SUNRPC: fix NFS client over TCP hangs due to packet loss (Bug 16494)
    - LP: #898139
  * nfs: fix compilation warning
    - LP: #898139
  * Increase OSF partition limit from 8 to 18
    - LP: #898139
  * hwmon: (applesmc) Add MacBookAir3,1(3,2) support
    - LP: #898139
  * ALSA: emux: Add trivial compat ioctl handler
    - LP: #898139
  * ALSA: hda - MacBookPro 5,3 line-in support
    - LP: #898139
  * ALSA: hda - Add model=mbp55 entry for MacBookPro 7,1
    - LP: #898139
  * ALSA: hda - MacBookAir3,1(3,2) alsa support
    - LP: #898139
  * Bluetooth: Add support Bluetooth controller of MacbookPro 6,2
    - LP: #898139
  * Bluetooth: Add support Bluetooth controller of MacbookPro 7,1
    - LP: #898139
  * Bluetooth: Add MacBookAir3,1(2) support
    - LP: #898139
  * btrfs: Require CAP_SYS_ADMIN for filesystem rebalance
    - LP: #898139
  * backlight: MacBookAir3,1(3,2) mbp-nvidia-bl support
    - LP: #898139
  * bonding: Ensure that we unshare skbs prior to calling pskb_may_pull
    - LP: #898139
  * HID: add MacBookAir 3,1 and 3,2 support
    - LP: #898139
  * ipv6: Silence privacy extensions initialization
    - LP: #898139
  * MIPS: DMA: Fix computation of DMA flags from device's
    coherent_dma_mask.
    - LP: #898139
  * niu: Fix kernel buffer overflow for ETHTOOL_GRXCLSRLALL
    - LP: #898139
  * Phonet: device notifier only runs on initial namespace
    - LP: #898139
  * powerpc/boot/dts: Install dts from the right directory
    - LP: #898139
  * rt2500usb: fallback to SW encryption for TKIP+AES
    - LP: #898139
  * libata: set queue DMA alignment to sector size for ATAPI too
    - LP: #898139
  * usb: musb: core: set has_tt flag
    - LP: #898139
  * cifs: check for bytes_remaining going to zero in CIFS_SessSetup
    - LP: #898139
  * CIFS: Fix memory over bound bug in cifs_parse_mount_options
    - LP: #898139
  * ehea: fix wrongly reported speed and port
    - LP: #898139
  * NET: slip, fix ldisc->open retval
    - LP: #898139
  * ne-h8300: Fix regression caused during net_device_ops conversion
    - LP: #898139
  * hydra: Fix regression caused during net_device_ops conversion
    - LP: #898139
  * libertas: fix cmdpendingq locking
    - LP: #898139
  * zorro8390: Fix regression caused during net_device_ops conversion
    - LP: #898139
  * x86, AMD: Fix ARAT feature setting again
    - LP: #898139
  * clocksource: Install completely before selecting
    - LP: #898139
  * tick: Clear broadcast active bit when switching to oneshot
    - LP: #898139
  * x86, apic: Fix spurious error interrupts triggering on all non-boot APs
    - LP: #898139
  * x86, mce, AMD: Fix leaving freed data in a list
    - LP: #898139
  * megaraid_sas: Sanity check user supplied length before passing it to
    dma_alloc_coherent()
    - LP: #898139
  * vmxnet3: Fix inconsistent LRO state after initialization
    - LP: #898139
  * netxen: Remove references to unified firmware file
    - LP: #898139
  * ftrace: Only update the function code on write to filter files
    - LP: #898139
  * kmemleak: Do not return a pointer to an object that kmemleak did not
    get
    - LP: #898139
  * CPU hotplug, re-create sysfs directory and symlinks
    - LP: #898139
  * Fix memory leak in cpufreq_stat
    - LP: #898139
  * powerpc/kexec: Fix memory corruption from unallocated slaves
    - LP: #898139
  * powerpc/oprofile: Handle events that raise an exception without
    overflowing
    - LP: #898139
  * mtd: mtdconcat: fix NAND OOB write
    - LP: #898139
  * x86, 64-bit: Fix copy_[to/from]_user() checks for the userspace address
    limit
    - LP: #898139
  * ext3: Fix fs corruption when make_indexed_dir() fails
    - LP: #898139
  * jbd: Fix forever sleeping process in do_get_write_access()
    - LP: #898139
  * jbd: fix fsync() tid wraparound bug
    - LP: #898139
  * ext4: release page cache in ext4_mb_load_buddy error path
    - LP: #898139
  * Fix Ultrastor asm snippet
    - LP: #898139
  * x86, amd: Do not enable ARAT feature on AMD processors below family
    0x12
    - LP: #898139
  * x86, amd: Use _safe() msr access for GartTlbWlk disable code
    - LP: #898139
  * rcu: Fix unpaired rcu_irq_enter() from locking selftests
    - LP: #898139
  * staging: usbip: fix wrong endian conversion
    - LP: #898139
  * Fix for buffer overflow in ldm_frag_add not sufficient
    - LP: #898139
  * seqlock: Don't smp_rmb in seqlock reader spin loop
    - LP: #898139
  * ALSA: HDA: Use one dmic only for Dell Studio 1558
    - LP: #731706, #898139
  * ASoC: Ensure output PGA is enabled for line outputs in wm_hubs
    - LP: #898139
  * ASoC: Add some missing volume update bit sets for wm_hubs devices
    - LP: #898139
  * mm/page_alloc.c: prevent unending loop in __alloc_pages_slowpath()
    - LP: #898139
  * loop: limit 'max_part' module param to DISK_MAX_PARTS
    - LP: #898139
  * loop: handle on-demand devices correctly
    - LP: #898139
  * USB: CP210x Add 4 Device IDs for AC-Services Devices
    - LP: #898139
  * USB: moto_modem: Add USB identifier for the Motorola VE240.
    - LP: #898139
  * USB: serial: ftdi_sio: adding support for TavIR STK500
    - LP: #898139
  * USB: gamin_gps: Fix for data transfer problems in native mode
    - LP: #898139
  * usb/gadget: at91sam9g20 fix end point max packet size
    - LP: #898139
  * usb: gadget: rndis: don't test against req->length
    - LP: #898139
  * OHCI: work around for nVidia shutdown problem
    - LP: #898139
  * OHCI: fix regression caused by nVidia shutdown workaround
    - LP: #898139
  * p54usb: add zoom 4410 usbid
    - LP: #898139
  * eCryptfs: Allow 2 scatterlist entries for encrypted filenames
    - LP: #898139
  * UBIFS: fix a rare memory leak in ro to rw remounting path
    - LP: #898139
  * i8k: Avoid lahf in 64-bit code
    - LP: #898139
  * cpuidle: menu: fixed wrapping timers at 4.294 seconds
    - LP: #898139
  * dm table: reject devices without request fns
    - LP: #898139
  * atm: expose ATM device index in sysfs
    - LP: #898139
  * brd: limit 'max_part' module param to DISK_MAX_PARTS
    - LP: #898139
  * brd: handle on-demand devices correctly
    - LP: #898139
  * SUNRPC: Deal with the lack of a SYN_SENT sk->sk_state_change
    callback...
    - LP: #898139
  * PCI: Add quirk for setting valid class for TI816X Endpoint
    - LP: #898139
  * xen mmu: fix a race window causing leave_mm BUG()
    - LP: #898139
  * UBIFS: fix shrinker object count reports
    - LP: #898139
  * UBIFS: fix memory leak on error path
    - LP: #898139
  * nbd: limit module parameters to a sane value
    - LP: #898139
  * mm: fix ENOSPC returned by handle_mm_fault()
    - LP: #898139
  * PCI: Set PCIE maxpayload for card during hotplug insertion
    - LP: #898139
  * lockdep: Fix lock_is_held() on recursion
    - LP: #898139
  * drm/i915: Add a no lvds quirk for the Asus EeeBox PC EB1007
    - LP: #898139
  * drm/radeon/kms: fix for radeon on systems >4GB without hardware iommu
    - LP: #898139
  * fat: Fix corrupt inode flags when remove ATTR_SYS flag
    - LP: #898139
  * xen: off by one errors in multicalls.c
    - LP: #898139
  * x86/amd-iommu: Fix 3 possible endless loops
    - LP: #898139
  * USB: cdc-acm: Adding second ACM channel support for Nokia E7 and C7
    - LP: #898139
  * USB: core: Tolerate protocol stall during hub and port status read
    - LP: #898139
  * USB: serial: add another 4N-GALAXY.DE PID to ftdi_sio driver
    - LP: #898139
  * ALSA: hda: Fix quirk for Dell Inspiron 910
    - LP: #792712, #898139
  * oprofile, dcookies: Fix possible circular locking dependency
    - LP: #898139
  * CPUFREQ: Remove cpufreq_stats sysfs entries on module unload.
    - LP: #898139
  * md: check ->hot_remove_disk when removing disk
    - LP: #898139
  * md/raid5: fix raid5_set_bi_hw_segments
    - LP: #898139
  * exec: delay address limit change until point of no return
    - LP: #898139
  * netfilter: IPv6: initialize TOS field in REJECT target module
    - LP: #898139
  * netfilter: IPv6: fix DSCP mangle code
    - LP: #898139
  * time: Compensate for rounding on odd-frequency clocksources
    - LP: #898139
  * migrate: don't account swapcache as shmem
    - LP: #898139
  * xen: partially revert "xen: set max_pfn_mapped to the last pfn mapped"
    - LP: #898139
  * clocksource: Make watchdog robust vs. interruption
    - LP: #898139
  * xhci: Reject double add of active endpoints.
    - LP: #898139
  * PM: Free memory bitmaps if opening /dev/snapshot fails
    - LP: #898139
  * ath5k: fix memory leak when fewer than N_PD_CURVES are in use
    - LP: #898139
  * mm: fix negative commitlimit when gigantic hugepages are allocated
    - LP: #898139
  * uvcvideo: Remove buffers from the queues when freeing
    - LP: #898139
  * watchdog: mtx1-wdt: request gpio before using it
    - LP: #898139
  * debugobjects: Fix boot crash when kmemleak and debugobjects enabled
    - LP: #898139
  * cfq-iosched: fix locking around ioc->ioc_data assignment
    - LP: #898139
  * cfq-iosched: fix a rcu warning
    - LP: #898139
  * i2c-taos-evm: Fix log messages
    - LP: #898139
  * md: avoid endless recovery loop when waiting for fail device to
    complete.
    - LP: #898139
  * SUNRPC: Ensure the RPC client only quits on fatal signals
    - LP: #898139
  * 6pack,mkiss: fix lock inconsistency
    - LP: #898139
  * USB: don't let errors prevent system sleep
    - LP: #898139
  * USB: don't let the hub driver prevent system sleep
    - LP: #898139
  * uml: fix CONFIG_STATIC_LINK=y build failure with newer glibc
    - LP: #898139
  * PM / Hibernate: Fix free_unnecessary_pages()
    - LP: #898139
  * bug.h: Add WARN_RATELIMIT
    - LP: #898139
  * net: filter: Use WARN_RATELIMIT
    - LP: #898139
  * af_packet: prevent information leak
    - LP: #898139
  * net/ipv4: Check for mistakenly passed in non-IPv4 address
    - LP: #898139
  * ipv6/udp: Use the correct variable to determine non-blocking condition
    - LP: #898139
  * udp/recvmsg: Clear MSG_TRUNC flag when starting over for a new packet
    - LP: #898139
  * mm: prevent concurrent unmap_mapping_range() on the same inode
    - LP: #898139
  * alpha: fix several security issues
    - LP: #898139
  * x86: Make Dell Latitude E5420 use reboot=pci
    - LP: #898139
  * x86: Make Dell Latitude E6420 use reboot=pci
    - LP: #898139
  * mm/futex: fix futex writes on archs with SW tracking of
    - LP: #898139
  * mm/backing-dev.c: reset bdi min_ratio in bdi_unregister()
    - LP: #898139
  * xtensa: prevent arbitrary read in ptrace
    - LP: #898139
  * ipc/sem.c: fix race with concurrent semtimedop() timeouts
    - LP: #898139
  * jme: Fix unmap error (Causing system freeze)
    - LP: #898139
  * mmc: Add PCI fixup quirks for Ricoh 1180:e823 reader
    - LP: #898139
  * mmc: Added quirks for Ricoh 1180:e823 lower base clock
    - LP: #898139
  * Drop -Werror in perf
    - LP: #898139
  * kexec, x86: Fix incorrect jump back address if not
    - LP: #898139
  * USB: serial: add IDs for WinChipHead USB->RS232 adapter
    - LP: #898139
  * davinci: DM365 EVM: fix video input mux bits
    - LP: #898139
  * powerpc/pseries/hvconsole: Fix dropped console output
    - LP: #898139
  * hvc_console: Improve tty/console put_chars handling
    - LP: #898139
  * powerpc/kdump: Fix timeout in crash_kexec_wait_realmode
    - LP: #898139
  * hwmon: (max1111) Fix race condition causing NULL pointer
    - LP: #898139
  * hwmon: (asus_atk0110) Fix memory leak
    - LP: #898139
  * USB: OHCI: fix another regression for NVIDIA controllers
    - LP: #898139
  * firewire: cdev: prevent race between first get_info ioctl
    - LP: #898139
  * firewire: cdev: return -ENOTTY for unimplemented ioctls, not
    - LP: #898139
  * svcrpc: fix list-corrupting race on nfsd shutdown
    - LP: #898139
  * x86: Look for IA32_ENERGY_PERF_BIAS support
    - LP: #898139
  * x86, intel, power: Initialize MSR_IA32_ENERGY_PERF_BIAS
    - LP: #898139
  * SUNRPC: Fix use of static variable in rpcb_getport_async
    - LP: #898139
  * ARM: pxa/cm-x300: fix V3020 RTC functionality
    - LP: #898139
  * firewire: ohci: do not bind to Pinnacle cards, avert panic
    - LP: #898139
  * mm/nommu.c: fix remap_pfn_range()
    - LP: #898139
  * EHCI: only power off port if over-current is active
    - LP: #898139
  * mac80211: Restart STA timers only on associated state
    - LP: #898139
  * SUNRPC: Fix a race between work-queue and rpc_killall_tasks
    - LP: #898139
  * bttv: fix s_tuner for radio
    - LP: #898139
  * pvrusb2: fix g/s_tuner support
    - LP: #898139
  * v4l2-ioctl.c: prefill tuner type for g_frequency and
    - LP: #898139
  * mac80211: fix TKIP replay vulnerability
    - LP: #898139
  * ASoC: ak4642: fixup snd_soc_update_bits mask for PW_MGMT2
    - LP: #898139
  * tracing: Fix bug when reading system filters on module
    - LP: #898139
  * tracing: Have "enable" file use refcounts like the "filter"
    - LP: #898139
  * ARM: pxa: fix PGSR register address calculation
    - LP: #898139
  * iommu/amd: Don't use MSI address range for DMA addresses
    - LP: #898139
  * staging: r8192e_pci: Handle duplicate PCI ID 0x10ec:0x8192
    - LP: #898139
  * Staging: hv: netvsc: Fix a bug in accounting transmit slots
    - LP: #898139
  * ARM: 6989/1: perf: do not start the PMU when no events are
    - LP: #898139
  * ASoC: Ensure we delay long enough for WM8994 FLL to lock
    - LP: #898139
  * SERIAL: SC26xx: Fix link error.
    - LP: #898139
  * x86, mtrr: lock stop machine during MTRR rendezvous sequence
    - LP: #898139
  * ipv6: add special mode forwarding=2 to send RS while
    - LP: #898139
  * IGMP snooping: set mrouters_only flag for IPv4 traffic
    - LP: #898139
  * IGMP snooping: set mrouters_only flag for IPv6 traffic
    - LP: #898139
  * release 2.6.35.14
    - LP: #898139
  * (pre-stable) x86, intel, power: Correct the MSR_IA32_ENERGY_PERF_BIAS
    message
    - LP: #898139
  * (pre-stable) mm: Fix fixup_user_fault() for MMU=n
    - LP: #898139
  * (pre-stable) USB: serial: pl2303: rm duplicate id
    - LP: #898139
  * TPM: Zero buffer after copying to userspace, CVE-2011-1162
    - LP: #899463
    - CVE-2011-1162
  * hfs: fix hfs_find_init() sb->ext_tree NULL ptr oops, CVE-2011-2203
    - LP: #899466
    - CVE-2011-2203
  * net: ipv4: relax AF_INET check in bind()
    - LP: #900396
  * KEYS: Fix a NULL pointer deref in the user-defined key type,
    CVE-2011-4110
    - LP: #894369
    - CVE-2011-4110
  * gro: reset vlan_tci on reuse
    - LP: #844361
    - CVE-2011-1576

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-31.63~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #897744

  [ Upstream Kernel Changes ]

  * crypto: ghash - Avoid null pointer dereference if no key is set
    - LP: #887299
    - CVE-2011-4081
  * xfs: Fix possible memory corruption in xfs_readlink, CVE-2011-4077
    - LP: #887298
    - CVE-2011-4077
  * jbd/jbd2: validate sb->s_first in journal_get_superblock()
    - LP: #893148
    - CVE-2011-4132
  * hfs: add sanity check for file name length, CVE-2011-4330
    - LP: #894374
    - CVE-2011-4330
  * ipv6: udp: fix the wrong headroom check
    - LP: #894373
    - CVE-2011-4326

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-31.62~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #888571

  [ Upstream Kernel Changes ]

  * ipv6: restore correct ECN handling on TCP xmit
    - LP: #872179
  * nl80211: fix overflow in ssid_len - CVE-2011-2517
    - LP: #869245
    - CVE-2011-2517
  * vm: fix vm_pgoff wrap in stack expansion - CVE-2011-2496
    - LP: #869243
    - CVE-2011-2496
  * vm: fix vm_pgoff wrap in upward expansion - CVE-2011-2496
    - LP: #869243
    - CVE-2011-2496
  * ksm: fix NULL pointer dereference in scan_get_next_rmap_item() -
    CVE-2011-2183
    - LP: #869227
    - CVE-2011-2183
  * NLM: Don't hang forever on NLM unlock requests - CVE-2011-2491
    - LP: #869237
    - CVE-2011-2491
  * cifs: clean up cifs_find_smb_ses (try #2), CVE-2011-1585
    - LP: #869208
    - CVE-2011-1585
  * cifs: fix NULL pointer dereference in cifs_find_smb_ses, CVE-2011-1585
    - LP: #869208
    - CVE-2011-1585
  * cifs: check for NULL session password, CVE-2011-1585
    - LP: #869208
    - CVE-2011-1585

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-30.61~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #872660

  [ Stefan Bader ]

  * [Config] Include all filesystem modules for virtual
    - LP: #761809

  [ Upstream Kernel Changes ]

  * crypto: Move md5_transform to lib/md5.c, CVE-2011-3188
    - LP: #834129
    - CVE-2011-3188
  * net: Compute protocol sequence numbers and fragment IDs using MD5,
    CVE-2011-3188
    - LP: #834129
    - CVE-2011-3188
  * ext4: Fix max file size and logical block counting of extent format
    file, CVE-2011-2695
    - LP: #819574
    - CVE-2011-2695
  * cifs: add fallback in is_path_accessible for old servers, CVE-2011-3363
    - LP: #866034
    - CVE-2011-3363
  * Make TASKSTATS require root access, CVE-2011-2494
    - LP: #866021
    - CVE-2011-2494
  * proc: restrict access to /proc/PID/io, CVE-2011-2495
    - LP: #866025
    - CVE-2011-2495
  * proc: fix a race in do_io_accounting(), CVE-2011-2495
    - LP: #866025
    - CVE-2011-2495
  * inotify: fix double free/corruption of stuct user
    - LP: #869203
    - CVE-2011-1479
  * staging: comedi: fix infoleak to userspace, CVE-2011-2909
    - LP: #869261
    - CVE-2011-2909
  * perf tools: do not look at ./config for configuration, CVE-2011-2905
    - LP: #869259
    - CVE-2011-2905

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-30.60~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #854430

  [ Stefan Bader ]

  * [Config] Force perf to use libiberty for demangling
    - LP: #783660

  [ Tim Gardner ]

  * [Config] Simplify binary-udebs dependencies
  * [Config] kernel preparation cannot be parallelized
  * [Config] Linearize module/abi checks
  * [Config] Linearize and simplify tree preparation rules
  * [Config] Build kernel image in parallel with modules
  * [Config] Set concurrency for kmake invocations
  * [Config] Improve install-arch-headers speed
  * [Config] Fix binary-perarch dependencies
  * [Config] Removed stamp-flavours target
  * [Config] Serialize binary indep targets
  * [Config] Use build stamp directly
  * [Config] Restore prepare-% target
  * [Config] Fix binary-% build target

  [ Upstream Kernel Changes ]

  * Add mount option to check uid of device being mounted = expect uid,
    CVE-2011-1833
    - LP: #732628
    - CVE-2011-1833
  * ipv6: make fragment identifications less predictable, CVE-2011-2699
    - LP: #827685
    - CVE-2011-2699
  * perf: Fix software event overflow, CVE-2011-2918
    - LP: #834121
    - CVE-2011-2918
  * cifs: fix possible memory corruption in CIFSFindNext, CVE-2011-3191
    - LP: #834135
    - CVE-2011-3191
  * befs: Validate length of long symbolic links, CVE-2011-2928
    - LP: #834124
    - CVE-2011-2928
  * gro: Only reset frag0 when skb can be pulled, CVE-2011-2723
    - LP: #844371
    - CVE-2011-2723
  * Validate size of EFI GUID partition entries, CVE-2011-1776
    - LP: #844365
    - CVE-2011-1776
  * inet_diag: fix inet_diag_bc_audit(), CVE-2011-2213
    - LP: #838421
    - CVE-2011-2213
  * si4713-i2c: avoid potential buffer overflow on si4713, CVE-2011-2700
    - LP: #844370
    - CVE-2011-2700
  * Bluetooth: Prevent buffer overflow in l2cap config request,
    CVE-2011-2497
    - LP: #838423
    - CVE-2011-2497
  * core: Fix memory leak/corruption on VLAN GRO_DROP, CVE-2011-1576
    - LP: #844361
    - CVE-2011-1576

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-30.59~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #838043

  [ Upstream Kernel Changes ]

  * Revert "drm/nv50-nvc0: work around an evo channel hang that some people
    see"
  * Revert "eCryptfs: Handle failed metadata read in lookup"

Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-30.58~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #829658

  [ Upstream Kernel Changes ]

  * proc: fix oops on invalid /proc/<pid>/maps access, CVE-2011-1020
    - LP: #813026
    - CVE-2011-1020

Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-30.57~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #824904

  [ Tim Gardner ]

  * SAUCE: rtl8192se: Force a build for a 2.6/3.0 kernel
    - LP: #805494
  * [Config] Add enic/fnic to udebs
    - LP: #801610

  [ Upstream Kernel Changes ]

  * taskstats: don't allow duplicate entries in listener mode,
    CVE-2011-2484
    - LP: #806390
    - CVE-2011-2484
  * dccp: handle invalid feature options length, CVE-2011-1770
    - LP: #806375
    - CVE-2011-1770
  * eCryptfs: Handle failed metadata read in lookup
    - LP: #509180
  * pagemap: close races with suid execve, CVE-2011-1020
    - LP: #813026
    - CVE-2011-1020
  * report errors in /proc/*/*map* sanely, CVE-2011-1020
    - LP: #813026
    - CVE-2011-1020
  * close race in /proc/*/environ, CVE-2011-1020
    - LP: #813026
    - CVE-2011-1020
  * auxv: require the target to be tracable (or yourself), CVE-2011-1020
    - LP: #813026
    - CVE-2011-1020
  * deal with races in /proc/*/{syscall, stack, personality}, CVE-2011-1020
    - LP: #813026
    - CVE-2011-1020
  * rose: Add length checks to CALL_REQUEST parsing, CVE-2011-1493
    - LP: #816550
    - CVE-2011-1493
  * Bluetooth: l2cap and rfcomm: fix 1 byte infoleak to userspace.
    - LP: #819569
    - CVE-2011-2492
  * drm/nv50-nvc0: work around an evo channel hang that some people see
    - LP: #583760

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-30.56~lucid1) lucid-proposed; urgency=low

  [Herton R. Krzesinski]

  * Release Tracking Bug
    - LP: #811215

  [ Herton Ronaldo Krzesinski ]

  * Revert "SAUCE: mmc: Enable MMC card reader for RICOH [1180:e823]"

  [ Upstream Kernel Changes ]

  * Revert "x86: Flush TLB if PGD entry is changed in i386 PAE mode"
    - LP: #805209

Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-30.55~lucid1) lucid-proposed; urgency=low

  [Andy Whitcroft]

  * Release Tracking Bug
    - LP: #806579

  [ Jeremy Kerr ]

  * SAUCE: cx23885: Fix argument to videobuf_dma_unmap
    - LP: #800527

  [ Manoj Iyer ]

  * SAUCE: mmc: Enable MMC card reader for RICOH [1180:e823]
    - LP: #790754

  [ Upstream Kernel Changes ]

  * agp: fix OOM and buffer overflow
    - LP: #791918
    - CVE-2011-1746
  * tty: icount changeover for other main devices, CVE-2010-4076,
    CVE-2010-4077
    - LP: #720189
    - CVE-2010-4077
  * fs/partitions/efi.c: corrupted GUID partition tables can cause kernel
    oops
    - LP: #795418
    - CVE-2011-1577
  * Fix corrupted OSF partition table parsing
    - LP: #796606
    - CVE-2011-1163
  * can: Add missing socket check in can/bcm release.
    - LP: #796502
    - CVE-2011-1598
  * nfs4: Ensure that ACL pages sent over NFS were not allocated from the
    slab (v3) CVE-2011-1090
    - LP: #800775
    - CVE-2011-1090
 -- Steve Conklin <email address hidden>   Fri, 24 Jun 2011 13:15:28 -0500
Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-30.54~lucid1) lucid-proposed; urgency=low

  [ Herton Ronaldo Krzesinski ]

  * Release Tracking Bug
    - LP: #792542

  [ Upstream Kernel Changes ]

  * Revert "xhci: Fix full speed bInterval encoding."
  * Revert "USB: xhci - also free streams when resetting devices"
  * Revert "USB: xhci - fix math in xhci_get_endpoint_interval()"
  * Revert "USB: xhci - fix unsafe macro definitions"

Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-28.50~lucid1) lucid-proposed; urgency=low

  [ Brad Figg ]

  * Release Tracking Bug
    - LP: #737728

  [ Corentin Chary ]

  * SAUCE: (drop after 2.6.38) eeepc-wmi: reorder keymap
    - LP: #689393
  * SAUCE: (drop after 2.6.38) eeepc-wmi: add wlan key found on 1015P
    - LP: #689393

  [ Keng-Yu Lin ]

  * SAUCE: eeepc-wmi: set the touchpad toggle key code to F22
    - LP: #689393

  [ Tim Gardner ]

  * [Config] CONFIG_BOOT_PRINTK_DELAY=y
    - LP: #733191

  [ Upstream Kernel Changes ]

  * Revert "drm/radeon/bo: add some fallback placements for VRAM only
    objects."
    - LP: #652934
  * eeepc-wmi: add additional hotkeys
    - LP: #689393
  * xen: don't bother to stop other cpus on shutdown/reboot
    - LP: #727814
  * Yama: use thread group leader when creating match
    - LP: #729839
  * mmc: sdhci-pci: add ricoh e822 pci id with device specific quirks
    - LP: #730820

Superseded in lucid-security
Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-25.44~lucid1) lucid; urgency=low

  [ Tim Gardner ]

  * Tracking bug
    - LP:# 707577

  [ Upstream Kernel Changes ]

  * Revert "drm/radeon/kms: properly compute group_size on 6xx/7xx"
    - LP: #703553

Superseded in lucid-updates
Deleted in lucid-proposed (Reason: moved to -updates)
linux-lts-backport-maverick (2.6.35-23.41~lucid1) lucid-proposed; urgency=low

  [ Tim Gardner ]

  * SRU tracking bug
    - LP: #684448

  [ Leann Ogasawara ]

  * SAUCE: AF_ECONET prevent kernel stack overflow
    - CVE-2010-3848
  * SAUCE: AF_ECONET SIOCSIFADDR ioctl does not check privileges
    - CVE-2010-3850
  * SAUCE: AF_ECONET saddr->cookie prevent NULL pointer dereference
    - CVE-2010-3849
 -- Leann Ogasawara <email address hidden>   Fri, 19 Nov 2010 15:23:52 -0800
Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-22.35~lucid1) lucid-proposed; urgency=low

  [ Upstream Kernel Changes ]

  * v4l: disable dangerous buggy compat function
    - CVE-2010-2963
  * Local privilege escalation vulnerability in RDS sockets
    - CVE-2010-3904
 -- Steve Conklin <email address hidden>   Thu, 14 Oct 2010 13:33:49 -0500
Superseded in lucid-updates
Deleted in natty-release (Reason: accidentally copied from lucid-proposed)
Deleted in lucid-proposed (Reason: moved to -updates)
Superseded in lucid-proposed
linux-lts-backport-maverick (2.6.35-22.34~lucid1) lucid-proposed; urgency=low

  [ Tim Gardner ]

  * First upload according to https://wiki.ubuntu.com/KernelTeam/Specs/KernelMaverickNewKernelOnLTS

  [ John Johansen ]

  * SAUCE: Return correct error code for mediated network connections
    - LP: #647071

  [ Upstream Kernel Changes ]

  * irda: Correctly clean up self->ias_obj on irda_bind() failure.
    - CVE-2010-2954
  * wireless extensions: fix kernel heap content leak
    - CVE-2010-2955
  * KEYS: Fix RCU no-lock warning in keyctl_session_to_parent()
    - CVE-2010-2960
  * KEYS: Fix bug in keyctl_session_to_parent() if parent has no session
    keyring
    - CVE-2010-2960
  * ALSA: seq/oss - Fix double-free at error path of snd_seq_oss_open()
    - CVE-2010-3080
  * intel_idle: PCI quirk to prevent Lenovo Ideapad s10-3 boot hang
    - LP: #634702
  * drm/i915: Rephrase pwrite bounds checking to avoid any potential
    overflow
    - CVE-2010-2962
  * drm/i915: Skip pread/pwrite if size to copy is 0.
    - CVE-2010-2962
  * drm/i915: Sanity check pread/pwrite
    - CVE-2010-2962
  * Fix pktcdvd ioctl dev_minor range check
    - CVE-2010-3437
  * Fix out-of-bounds reading in sctp_asoc_get_hmac()
    - CVE-2010-3705
  * ocfs2: Don't walk off the end of fast symlinks.
    - CVE-2010-NNN2
 -- Leann Ogasawara <email address hidden>   Mon, 20 Sep 2010 08:36:53 -0700
120 of 20 results