Format: 1.8 Date: Mon, 15 Jan 2018 16:48:58 +0100 Source: linux-euclid Binary: linux-euclid-headers-4.4.0-9023 linux-euclid-tools-4.4.0-9023 linux-image-4.4.0-9023-euclid linux-image-extra-4.4.0-9023-euclid linux-headers-4.4.0-9023-euclid linux-image-4.4.0-9023-euclid-dbgsym linux-tools-4.4.0-9023-euclid Architecture: source Version: 4.4.0-9023.24 Distribution: xenial Urgency: low Maintainer: Ubuntu Kernel Team Changed-By: Kleber Sacilotto de Souza Description: linux-euclid-headers-4.4.0-9023 - Header files related to Linux kernel version 4.4.0 linux-euclid-tools-4.4.0-9023 - Linux kernel version specific tools for version 4.4.0-9023 linux-headers-4.4.0-9023-euclid - Linux kernel headers for version 4.4.0 on 64 bit x86 SMP linux-image-4.4.0-9023-euclid - Linux kernel image for version 4.4.0 on 64 bit x86 SMP linux-image-4.4.0-9023-euclid-dbgsym - Linux kernel debug image for version 4.4.0 on 64 bit x86 SMP linux-image-extra-4.4.0-9023-euclid - Linux kernel extra modules for version 4.4.0 on 64 bit x86 SMP linux-tools-4.4.0-9023-euclid - Linux kernel version specific tools for version 4.4.0-9023 Launchpad-Bugs-Fixed: 1743367 1743383 Changes: linux-euclid (4.4.0-9023.24) xenial; urgency=low . * linux-euclid: 4.4.0-9023.24 -proposed tracker (LP: #1743367) . * Do not duplicate changelog entries assigned to more than one bug or CVE (LP: #1743383) - [Packaging] git-ubuntu-log -- handle multiple bugs/cves better . * CVE-2017-5715 // CVE-2017-5753 - x86/microcode/AMD: Add support for fam17h microcode loading - bpf: add bpf_patch_insn_single helper - bpf: prepare bpf_int_jit_compile/bpf_prog_select_runtime apis - bpf: add generic constant blinding for use in jits - locking/barriers: introduce new memory barrier gmb() - bpf: prevent speculative execution in eBPF interpreter - x86, bpf, jit: prevent speculative execution when JIT is enabled - uvcvideo: prevent speculative execution - carl9170: prevent speculative execution - qla2xxx: prevent speculative execution - Thermal/int340x: prevent speculative execution - userns: prevent speculative execution - ipv6: prevent speculative execution - fs: prevent speculative execution - net: mpls: prevent speculative execution - udf: prevent speculative execution - x86/feature: Enable the x86 feature to control Speculation - x86/feature: Report presence of IBPB and IBRS control - x86/enter: MACROS to set/clear IBRS and set IBPB - x86/enter: Use IBRS on syscall and interrupts - x86/idle: Disable IBRS entering idle and enable it on wakeup - x86/idle: Disable IBRS when offlining cpu and re-enable on wakeup - x86/mm: Set IBPB upon context switch - x86/mm: Only set IBPB when the new thread cannot ptrace current thread - x86/entry: Stuff RSB for entry to kernel for non-SMEP platform - x86/kvm: add MSR_IA32_SPEC_CTRL and MSR_IA32_PRED_CMD to kvm - x86/kvm: Set IBPB when switching VM - x86/kvm: Toggle IBRS on VM entry and exit - x86/kvm: Pad RSB on VM transition - x86/spec_ctrl: Add sysctl knobs to enable/disable SPEC_CTRL feature - x86/spec_ctrl: Add lock to serialize changes to ibrs and ibpb control - x86/syscall: Clear unused extra registers on syscall entrance - x86/syscall: Clear unused extra registers on 32-bit compatible syscall entrance - x86/entry: Use retpoline for syscall's indirect calls - x86/cpu/amd, kvm: Satisfy guest kernel reads of IC_CFG MSR - x86/cpu/AMD: Add speculative control support for AMD - x86/microcode: Extend post microcode reload to support IBPB feature - KVM: SVM: Do not intercept new speculative control MSRs - x86/svm: Set IBRS value on VM entry and exit - x86/svm: Set IBPB when running a different VCPU - KVM: x86: Add speculative control CPUID support for guests - x86/svm: Add code to clobber the RSB on VM exit - x86/svm: Add code to clear registers on VM exit - x86/cpu/AMD: Make the LFENCE instruction serialized - x86/cpu/AMD: Remove now unused definition of MFENCE_RDTSC feature - SAUCE: x86/kvm: Fix stuff_RSB() for 32-bit - SAUCE: x86/microcode: Extend post microcode reload to support IBPB feature -- repair missmerge - Revert "x86/svm: Add code to clear registers on VM exit" - kvm: vmx: Scrub hardware GPRs at VM-exit . * CVE-2017-5754 - x86/tlb: Drop the _GPL from the cpu_tlbstate export - Map the vsyscall page with _PAGE_USER Checksums-Sha1: 59327ac3d422a19e666d9d75f3e30b1069664fa4 3113 linux-euclid_4.4.0-9023.24.dsc 276caaa56ded737fb845d026e144aefeb0b44764 16074791 linux-euclid_4.4.0-9023.24.diff.gz Checksums-Sha256: 7f9bd2fbbacba823ee14a6fec089ba374efdf5ae3879c52d405f68f78fbe5e04 3113 linux-euclid_4.4.0-9023.24.dsc 826861972d42fa9197e754f7b1f6ba555e78a69a376606a9fd1001e9420cff9d 16074791 linux-euclid_4.4.0-9023.24.diff.gz Files: d8c81e0ee780080f9d4a3a94b02bf5cc 3113 devel optional linux-euclid_4.4.0-9023.24.dsc 1cf385ba86981784e6a650fdf7f689ec 16074791 devel optional linux-euclid_4.4.0-9023.24.diff.gz