UbuntuUpdates.org

Package "linux-aws"

This package belongs to a PPA: Canonical Kernel Team

Name: linux-aws

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Header files related to Linux kernel version 4.4.0
  • Header files related to Linux kernel version 4.4.0
  • Header files related to Linux kernel version 4.4.0
  • Header files related to Linux kernel version 4.4.0

Latest version: 4.4.0-1093.104
Release: xenial (16.04)
Level: base
Repository: main

Links

Save this URL for the latest version of "linux-aws": https://www.ubuntuupdates.org/linux-aws



Other versions of "linux-aws" in Xenial

Repository Area Version
security universe 4.4.0-1012.21
security main 4.4.0-1092.103
updates universe 4.4.0-1012.21
updates main 4.4.0-1092.103

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 4.4.0-1093.104 2019-09-13 09:07:35 UTC

 linux-aws (4.4.0-1093.104) xenial; urgency=medium
 .
   * xenial/linux-aws: 4.4.0-1093.104 -proposed tracker (LP: #1842597)
 .
   * AWS: per-device block I/O timeout support (LP: #1841461)
     - block: add io timeout to sysfs
     - block: don't show io_timeout if driver has no timeout handler
 .
   [ Ubuntu: 4.4.0-163.191 ]
 .
   * xenial/linux: 4.4.0-162.191 -proposed tracker (LP: #1843583)
   * Xenial update: 4.4.187 upstream stable release (LP: #1840081)
     - perf tests: Add valid callback for parse-events test
     - SAUCE: Fix perf test 6: Fix missing kvm module load for s390
 .
   [ Ubuntu: 4.4.0-162.190 ]
 .
   * xenial/linux: 4.4.0-162.190 -proposed tracker (LP: #1842608)
   * CVE-2018-20976
     - xfs: clear sb->s_fs_info on mount failure
   * Xenial update: 4.4.189 upstream stable release (LP: #1840335)
     - arm64: cpufeature: Fix CTR_EL0 field definitions
     - arm64: cpufeature: Fix feature comparison for CTR_EL0.{CWG,ERG}
     - netfilter: nfnetlink_acct: validate NFACCT_QUOTA parameter
     - HID: Add quirk for HP X1200 PIXART OEM mouse
     - tcp: be more careful in tcp_fragment()
     - atm: iphase: Fix Spectre v1 vulnerability
     - net: bridge: delete local fdb on device init failure
     - net: fix ifindex collision during namespace removal
     - tipc: compat: allow tipc commands without arguments
     - net: sched: Fix a possible null-pointer dereference in dequeue_func()
     - net/mlx5: Use reversed order when unregister devices
     - bnx2x: Disable multi-cos feature.
     - compat_ioctl: pppoe: fix PPPOEIOCSFWD handling
     - spi: bcm2835: Fix 3-wire mode if DMA is enabled
     - x86: cpufeatures: Sort feature word 7
     - x86/entry/64: Fix context tracking state warning when load_gs_index fails
     - Linux 4.4.189
   * CVE-2019-0136
     - mac80211: handle deauthentication/disassociation from TDLS peer
   * skb_warn_bad_offload kernel splat due to CHECKSUM target not compatible with
     GSO skbs (LP: #1840619)
     - netfilter: xt_checksum: ignore gso skbs
   * CVE-2018-20961
     - usb: gadget: f_midi: fail if set_alt fails to allocate requests
     - USB: gadget: f_midi: fixing a possible double-free in f_midi
   * CVE-2019-11487
     - pipe: add pipe_buf_get() helper
     - mm: add 'try_get_page()' helper function
     - fs: prevent page refcount overflow in pipe_buf_get
     - mm: make page ref count overflow check tighter and more explicit
     - mm, gup: ensure real head page is ref-counted when using hugepages
     - mm: prevent get_user_pages() from overflowing page refcount
   * Xenial update: 4.4.188 upstream stable release (LP: #1840289)
     - ARM: riscpc: fix DMA
     - ARM: dts: rockchip: Mark that the rk3288 timer might stop in suspend
     - kernel/module.c: Only return -EEXIST for modules that have finished loading
     - MIPS: lantiq: Fix bitfield masking
     - dmaengine: rcar-dmac: Reject zero-length slave DMA requests
     - fs/adfs: super: fix use-after-free bug
     - btrfs: fix minimum number of chunk errors for DUP
     - ceph: fix improper use of smp_mb__before_atomic()
     - scsi: zfcp: fix GCC compiler warning emitted with -Wmaybe-uninitialized
     - ACPI: fix false-positive -Wuninitialized warning
     - be2net: Signal that the device cannot transmit during reconfiguration
     - x86/apic: Silence -Wtype-limits compiler warnings
     - x86: math-emu: Hide clang warnings for 16-bit overflow
     - mm/cma.c: fail if fixed declaration can't be honored
     - coda: add error handling for fget
     - coda: fix build using bare-metal toolchain
     - uapi linux/coda_psdev.h: move upc_req definition from uapi to kernel side
       headers
     - ipc/mqueue.c: only perform resource calculation if user valid
     - x86/kvm: Don't call kvm_spurious_fault() from .fixup
     - selinux: fix memory leak in policydb_init()
     - s390/dasd: fix endless loop after read unit address configuration
     - xen/swiotlb: fix condition for calling xen_destroy_contiguous_region()
     - Linux 4.4.188
   * Xenial update: 4.4.187 upstream stable release (LP: #1840081)
     - MIPS: ath79: fix ar933x uart parity mode
     - MIPS: fix build on non-linux hosts
     - dmaengine: imx-sdma: fix use-after-free on probe error path
     - ath10k: Do not send probe response template for mesh
     - ath9k: Check for errors when reading SREV register
     - ath6kl: add some bounds checking
     - ath: DFS JP domain W56 fixed pulse type 3 RADAR detection
     - batman-adv: fix for leaked TVLV handler.
     - media: dvb: usb: fix use after free in dvb_usb_device_exit
     - crypto: talitos - fix skcipher failure due to wrong output IV
     - media: marvell-ccic: fix DMA s/g desc number calculation
     - media: vpss: fix a potential NULL pointer dereference
     - net: stmmac: dwmac1000: Clear unused address entries
     - signal/pid_namespace: Fix reboot_pid_ns to use send_sig not force_sig
     - af_key: fix leaks in key_pol_get_resp and dump_sp.
     - xfrm: Fix xfrm sel prefix length validation
     - media: staging: media: davinci_vpfe: - Fix for memory leak if decoder
       initialization fails.
     - net: phy: Check against net_device being NULL
     - tua6100: Avoid build warnings.
     - locking/lockdep: Fix merging of hlocks with non-zero references
     - media: wl128x: Fix some error handling in fm_v4l2_init_video_device()
     - cpupower : frequency-set -r option misses the last cpu in related cpu list
     - net: fec: Do not use netdev messages too early
     - net: axienet: Fix race condition causing TX hang
     - s390/qdio: handle PENDING state for QEBSM devices
     - perf test 6: Fix missing kvm module load for s390
     - gpio: omap: fix lack of irqstatus_raw0 for OMAP4
     - gpio: omap: ensure irq is enabled before wakeup
     - regmap: fix bulk writes on paged registers
     - bpf: silence warning messages in core
     - rcu: Force inlining of rcu_read_lock()
     - xfrm: fix sa selector validation
     - perf evsel: Make perf_evse

Source diff to previous version
CVE-2016-10905 An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rinde
CVE-2019-11487 The Linux kernel before 5.1-rc5 allows page->_refcount reference count overflow, with resultant use-after-free issues, if about 140 GiB of RAM exists
CVE-2018-20961 In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of drivers/usb/gadget/function/f_midi.c in the f_midi d
CVE-2019-0136 Insufficient access control in the Intel(R) PROSet/Wireless WiFi Software driver before version 21.10 may allow an unauthenticated user to potentiall
CVE-2018-20976 An issue was discovered in fs/xfs/xfs_super.c in the Linux kernel before 4.18. A use after free exists, related to xfs_fs_fill_super failure.
1790595 Line 6 POD HD500 driver fault
1840289 Xenial update: 4.4.188 upstream stable release
1840619 skb_warn_bad_offload kernel splat due to CHECKSUM target not compatible with GSO skbs
1840335 Xenial update: 4.4.189 upstream stable release
1840081 Xenial update: 4.4.187 upstream stable release
1841461 AWS: per-device block I/O timeout support

Version: 4.4.0-1092.103 2019-08-27 13:07:59 UTC

 linux-aws (4.4.0-1092.103) xenial; urgency=medium
 .
   * xenial/linux-aws: 4.4.0-1092.103 -proposed tracker (LP: #1841533)
 .
   [ Ubuntu: 4.4.0-161.189 ]
 .
   * xenial/linux: 4.4.0-161.189 -proposed tracker (LP: #1841544)
   * flock not mediated by 'k' (LP: 1658219)
     - Revert "UBUNTU: SAUCE: apparmor: flock mediation is not being, enforced on
       cache check"
   * Packaging resync (LP: #1786013)
     - [Packaging] resync getabis
 .

Source diff to previous version
1786013 Packaging resync

Version: 4.4.0-1091.102 2019-08-14 14:13:12 UTC

 linux-aws (4.4.0-1091.102) xenial; urgency=medium
 .
   * xenial/linux-aws: 4.4.0-1091.102 -proposed tracker (LP: #1840010)
 .
   * CVE-2019-10638
     - [Config] aws: CONFIG_TEST_HASH=n
 .
   * Add the EFA driver into linux-aws (LP: #1837638)
     - RDMA/efa: Add EFA device definitions
     - RDMA/efa: Add the ABI definitions
     - RDMA/efa: Add the efa.h header file
     - RDMA/efa: Add the efa_com.h file
     - RDMA/efa: Add the com service API definitions
     - RDMA/efa: Implement functions that submit and complete admin commands
     - RDMA/efa: Add common command handlers
     - RDMA/efa: Add EFA verbs implementation
     - RDMA/efa: Add the efa module
     - RDMA/efa: Add driver to Kconfig/Makefile
     - [Config] aws: CONFIG_INFINIBAND_EFA=m
     - RDMA/efa: Remove MAYEXEC flag check from mmap flow
     - RDMA/efa: Fix success return value in case of error
     - RDMA/efa: Handle mmap insertions overflow
     - SAUCE: Add kernel compatibility fixups
     - SAUCE: linux/efa: Be consistent with success flow return value
     - SAUCE: linux/efa: Entropy in admin commands id
     - SAUCE: linux/efa: Fix modify QP udata check backport
 .
   [ Ubuntu: 4.4.0-160.188 ]
 .
   * xenial/linux: 4.4.0-160.188 -proposed tracker (LP: #1840021)
   * Packaging resync (LP: #1786013)
     - [Packaging] update helper scripts
   * EeePC 1005px laptop backlight is off after system boot up (LP: #1837117)
     - platform/x86: asus-wmi: Only Tell EC the OS will handle display hotkeys from
       asus_nb_wmi
   * CVE-2019-10638
     - [Config] CONFIG_TEST_HASH=n
     - siphash: add cryptographically secure PRF
     - inet: switch IP ID generator to siphash
   * Stacked onexec transitions fail when under NO NEW PRIVS restrictions
     (LP: #1839037)
     - SAUCE: apparmor: fix nnp subset check failure, when stacking
   * AppArmor onexec transition causes WARN kernel stack trace (LP: #1838627)
     - SAUCE: apparmor: fix audit failures when performing profile transitions
   * flock not mediated by 'k' (LP: #1658219) // Ubuntu 16.04: read access
     incorrectly implies 'm' rule (LP: #1838090)
     - SAUCE: apparmor: flock mediation is not being, enforced on cache check
   * bcache: bch_allocator_thread(): hung task timeout (LP: #1784665) // Tight
     timeout for bcache removal causes spurious failures (LP: #1796292)
     - SAUCE: bcache: fix deadlock in bcache_allocator
   * bcache: bch_allocator_thread(): hung task timeout (LP: #1784665)
     - bcache: improve bcache_reboot()
     - bcache: add journal statistic
     - bcache: fix high CPU occupancy during journal
     - bcache: fix incorrect sysfs output value of strip size
     - bcache: fix error return value in memory shrink
     - bcache: fix using of loop variable in memory shrink
     - bcache: Fix indentation
     - bcache: Add __printf annotation to __bch_check_keys()
     - bcache: Annotate switch fall-through
     - bcache: Fix kernel-doc warnings
     - bcache: Remove an unused variable
     - bcache: Suppress more warnings about set-but-not-used variables
     - bcache: Reduce the number of sparse complaints about lock imbalances
     - bcache: Move couple of functions to sysfs.c
   * CVE-2019-3900
     - vhost: introduce vhost_vq_avail_empty()
     - vhost_net: tx batching
     - vhost_net: do not stall on zerocopy depletion
     - vhost-net: set packet weight of tx polling to 2 * vq size
     - vhost_net: use packet weight for rx handler, too
     - vhost_net: introduce vhost_exceeds_weight()
     - vhost: introduce vhost_exceeds_weight()
     - vhost_net: fix possible infinite loop
     - vhost: scsi: add weight support
   * Xenial: ZFS deadlock in shrinker path with xattrs (LP: #1839521)
     - SAUCE: (noup) Update zfs to 0.6.5.6-0ubuntu28
   * CVE-2019-13648
     - powerpc/tm: Fix oops on sigreturn on systems without TM
   * CVE-2018-20856
     - block: blk_init_allocated_queue() set q->fq as NULL in the fail case
   * CVE-2019-14283
     - floppy: fix out-of-bounds read in copy_buffer
   * CVE-2019-14284
     - floppy: fix div-by-zero in setup_format_params
   * Xenial update: 4.4.186 upstream stable release (LP: #1838467)
     - Input: elantech - enable middle button support on 2 ThinkPads
     - samples, bpf: fix to change the buffer size for read()
     - mac80211: mesh: fix RCU warning
     - dt-bindings: can: mcp251x: add mcp25625 support
     - can: mcp251x: add support for mcp25625
     - Input: imx_keypad - make sure keyboard can always wake up system
     - ARM: davinci: da850-evm: call regulator_has_full_constraints()
     - ARM: davinci: da8xx: specify dma_coherent_mask for lcdc
     - md: fix for divide error in status_resync
     - bnx2x: Check if transceiver implements DDM before access
     - udf: Fix incorrect final NOT_ALLOCATED (hole) extent length
     - x86/ptrace: Fix possible spectre-v1 in ptrace_get_debugreg()
     - x86/tls: Fix possible spectre-v1 in do_get_thread_area()
     - mwifiex: Abort at too short BSS descriptor element
     - fscrypt: don't set policy for a dead directory
     - mwifiex: Don't abort on small, spec-compliant vendor IEs
     - USB: serial: ftdi_sio: add ID for isodebug v1
     - USB: serial: option: add support for GosunCn ME3630 RNDIS mode
     - usb: gadget: ether: Fix race between gether_disconnect and rx_submit
     - usb: renesas_usbhs: add a workaround for a race condition of workqueue
     - staging: comedi: dt282x: fix a null pointer deref on interrupt
     - staging: comedi: amplc_pci230: fix null pointer deref on interrupt
     - carl9170: fix misuse of device driver API
     - VMCI: Fix integer overflow in VMCI handle arrays
     - MIPS: Remove superfluous check for __linux__
     - e1000e: start network tx queue only when link is up
     - perf/core: Fix perf_sample_regs_user() mm check
     - ARM: omap2: remove incorrect __init annotation
     - be2net: fix link failure after ethtool offline test
     - ppp: mppe: Add softdep to arc4
     - sis900: fix TX completion
   

Source diff to previous version
1837638 Add the EFA driver into linux-aws
1786013 Packaging resync
1837117 EeePC 1005px laptop backlight is off after system boot up
1839037 Stacked onexec transitions fail when under NO NEW PRIVS restrictions
1838627 AppArmor onexec transition causes WARN kernel stack trace
1658219 flock not mediated by 'k'
1838090 Ubuntu 16.04: read access incorrectly implies 'm' rule
1784665 bcache: bch_allocator_thread(): hung task timeout
1796292 Tight timeout for bcache removal causes spurious failures
1839521 Xenial: ZFS deadlock in shrinker path with xattrs
1838467 Xenial update: 4.4.186 upstream stable release
CVE-2019-10638 In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.
CVE-2019-3900 An infinite loop issue was found in the vhost_net kernel module in Linux Kernel up to and including v5.1-rc6, while handling incoming packets in hand
CVE-2019-13648 In the Linux kernel through 5.2.1 on the powerpc platform, when hardware transactional memory is disabled, a local user can cause a denial of service
CVE-2018-20856 An issue was discovered in the Linux kernel before 4.18.7. In block/blk-core.c, there is an __blk_drain_queue() use-after-free because a certain erro
CVE-2019-14283 In the Linux kernel before 5.2.3, set_geometry in drivers/block/floppy.c does not validate the sect and head fields, as demonstrated by an integer ov
CVE-2019-14284 In the Linux kernel before 5.2.3, drivers/block/floppy.c allows a denial of service by setup_format_params division-by-zero. Two consecutive ioctls c

Version: 4.4.0-1089.100 2019-07-31 07:09:08 UTC

 linux-aws (4.4.0-1089.100) xenial; urgency=medium
 .
   * xenial/linux-aws: 4.4.0-1089.100 -proposed tracker (LP: #1837588)
 .
   * CVE-2018-5383
     - [Config] aws: CRYPTO_ECDH=m
 .
   * linux-aws builds modules which are not shipped (LP: #1836706)
     - [Packaging] Start shipping modules-extra
 .
   [ Ubuntu: 4.4.0-158.186 ]
 .
   * xenial/linux: 4.4.0-158.186 -proposed tracker (LP: #1837609)
   * Packaging resync (LP: #1786013)
     - [Packaging] resync git-ubuntu-log
     - [Packaging] update helper scripts
   * ixgbe{vf} - Physical Function gets IRQ when VF checks link state
     (LP: #1836760)
     - ixgbevf: Use cached link state instead of re-reading the value for ethtool
   * CVE-2018-5383
     - crypto: kpp - Key-agreement Protocol Primitives API (KPP)
     - crypto: dh - Add DH software implementation
     - crypto: ecdh - Add ECDH software support
     - crypto: ecdh - make ecdh_shared_secret unique
     - crypto: doc - add KPP documentation
     - crypto: kpp, (ec)dh - fix typos
     - crypto: ecc - remove unused function arguments
     - crypto: ecc - remove unnecessary casts
     - crypto: ecc - rename ecdh_make_pub_key()
     - crypto: ecdh - add privkey generation support
     - crypto: ecc - Fix NULL pointer deref. on no default_rng
     - [Config] CRYPTO_ECDH=m
     - Bluetooth: convert smp and selftest to crypto kpp API
     - crypto: ecdh - add public key verification test
   * Xenial update: 4.4.185 upstream stable release (LP: #1836668)
     - fs/binfmt_flat.c: make load_flat_shared_library() work
     - scsi: vmw_pscsi: Fix use-after-free in pvscsi_queue_lck()
     - tracing: Silence GCC 9 array bounds warning
     - gcc-9: silence 'address-of-packed-member' warning
     - usb: chipidea: udc: workaround for endpoint conflict issue
     - Input: uinput - add compat ioctl number translation for UI_*_FF_UPLOAD
     - apparmor: enforce nullbyte at end of tag string
     - parport: Fix mem leak in parport_register_dev_model
     - parisc: Fix compiler warnings in float emulation code
     - IB/hfi1: Insure freeze_work work_struct is canceled on shutdown
     - MIPS: uprobes: remove set but not used variable 'epc'
     - net: hns: Fix loopback test failed at copper ports
     - sparc: perf: fix updated event period in response to PERF_EVENT_IOC_PERIOD
     - scripts/checkstack.pl: Fix arm64 wrong or unknown architecture
     - scsi: ufs: Check that space was properly alloced in copy_query_response
     - s390/qeth: fix VLAN attribute in bridge_hostnotify udev event
     - hwmon: (pmbus/core) Treat parameters as paged if on multiple pages
     - Btrfs: fix race between readahead and device replace/removal
     - btrfs: start readahead also in seed devices
     - can: flexcan: fix timeout when set small bitrate
     - can: purge socket error queue on sock destruct
     - ARM: imx: cpuidle-imx6sx: Restrict the SW2ISO increase to i.MX6SX
     - Bluetooth: Align minimum encryption key size for LE and BR/EDR connections
     - Bluetooth: Fix regression with minimum encryption key size alignment
     - SMB3: retry on STATUS_INSUFFICIENT_RESOURCES instead of failing write
     - cfg80211: fix memory leak of wiphy device name
     - mac80211: drop robust management frames from unknown TA
     - perf ui helpline: Use strlcpy() as a shorter form of strncpy() + explicit
       set nul
     - perf help: Remove needless use of strncpy()
     - 9p/rdma: do not disconnect on down_interruptible EAGAIN
     - 9p: acl: fix uninitialized iattr access
     - 9p/rdma: remove useless check in cm_event_handler
     - 9p: p9dirent_read: check network-provided name length
     - net/9p: include trans_common.h to fix missing prototype warning.
     - ovl: modify ovl_permission() to do checks on two inodes
     - x86/speculation: Allow guests to use SSBD even if host does not
     - cpu/speculation: Warn on unsupported mitigations= parameter
     - sctp: change to hold sk after auth shkey is created successfully
     - tipc: change to use register_pernet_device
     - tipc: check msg->req data len in tipc_nl_compat_bearer_disable
     - team: Always enable vlan tx offload
     - ipv4: Use return value of inet_iif() for __raw_v4_lookup in the while loop
     - bonding: Always enable vlan tx offload
     - net: check before dereferencing netdev_ops during busy poll
     - Bluetooth: Fix faulty expression for minimum encryption key size check
     - um: Compile with modern headers
     - ASoC : cs4265 : readable register too low
     - spi: bitbang: Fix NULL pointer dereference in spi_unregister_master
     - ASoC: max98090: remove 24-bit format support if RJ is 0
     - usb: gadget: fusb300_udc: Fix memory leak of fusb300->ep[i]
     - usb: gadget: udc: lpc32xx: allocate descriptor with GFP_ATOMIC
     - scsi: hpsa: correct ioaccel2 chaining
     - ARC: Assume multiplier is always present
     - ARC: fix build warning in elf.h
     - MIPS: math-emu: do not use bools for arithmetic
     - mfd: omap-usb-tll: Fix register offsets
     - swiotlb: Make linux/swiotlb.h standalone includible
     - bug.h: work around GCC PR82365 in BUG()
     - MIPS: Workaround GCC __builtin_unreachable reordering bug
     - ptrace: Fix ->ptracer_cred handling for PTRACE_TRACEME
     - crypto: user - prevent operating on larval algorithms
     - ALSA: seq: fix incorrect order of dest_client/dest_ports arguments
     - ALSA: firewire-lib/fireworks: fix miss detection of received MIDI messages
     - ALSA: usb-audio: fix sign unintended sign extension on left shifts
     - lib/mpi: Fix karactx leak in mpi_powm
     - btrfs: Ensure replaced device doesn't have pending chunk allocation
     - tty: rocket: fix incorrect forward declaration of 'rp_init()'
     - ARC: handle gcc generated __builtin_trap for older compiler
     - arm64, vdso: Define vdso_{start,end} as array
     - KVM: x86: degrade WARN to pr_warn_ratelimited
     - dmaengine: imx-sdma: remove BD_INTR for channel0
     - Linux 4.4.185
   * Xenial upda

Source diff to previous version
1836706 linux-aws builds modules which are not shipped
1786013 Packaging resync
1836760 ixgbe{vf} - Physical Function gets IRQ when VF checks link state
1836668 Xenial update: 4.4.185 upstream stable release
1836667 Xenial update: 4.4.184 upstream stable release
1836666 Xenial update: 4.4.183 upstream stable release
1832082 bnx2x driver causes 100% CPU load
1836665 Xenial update: 4.4.182 upstream stable release
1836585 Xenial kernel 4.4.0-155.182 fails to build perf with libnuma
1837235 systemd 229-4ubuntu21.22 ADT test failure with linux 4.4.0-156.183 (storage)
1836801 BCM43602 802.11ac Wireless regression - PCI ID 14e4:43ba
1794232 Geneve tunnels don't work when ipv6 is disabled
1828084 Kernel modules generated incorrectly when system is localized to a non-English language
1833935 Handle overflow in proc_get_long of sysctl
1832661 Xenial update: 4.4.181 upstream stable release
1834315 Revert x86/vdso linker changes from #1830890 as this causes glibc 2.29-0ubuntu3 FTBFS on eoan
1824864 CONFIG_LOG_BUF_SHIFT set to 14 is too low on arm64
1833410 idle-page oopses when accessing page frames that are out of range
1833319 Performance degradation when copying from LVM snapshot backed by NVMe disk
1833698 Bluetooth regressions with Xenial kernel 4.4.0-152.179
1824687 4.4.0-145-generic Kernel Panic ip6_expire_frag_queue
1826416 [Xenial] Customer can not SSH to Linux VM due to \
1830176 Xenial update: 4.4.180 upstream stable release
CVE-2018-5383 Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android version
CVE-2019-12614 An issue was discovered in dlpar_parse_cc_property in arch/powerpc/platforms/pseries/dlpar.c in the Linux kernel through 5.1.6. There is an unchecked
CVE-2019-10126 A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function in drivers/net/wireless/marvell/mwifiex/ie.
CVE-2019-3846 A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malic
CVE-2019-2054 In the seccomp implementation prior to kernel version 4.8, there is a possible seccomp bypass due to seccomp policies that allow the use of ptrace. T
CVE-2018-12126 MSBDS Microarchitectural Store Buffer Data Sampling
CVE-2018-12127 MLPDS Microarchitectural Load Port Data Sampling
CVE-2018-12130 MFBDS Microarchitectural Fill Buffer Data Sampling
CVE-2019-11833 fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local user
CVE-2019-11091 MDSUM Microarchitectural Data Sampling Uncacheable Memory

Version: 4.4.0-1088.99 2019-07-04 17:09:07 UTC

 linux-aws (4.4.0-1088.99) xenial; urgency=medium
 .
   * linux-aws: 4.4.0-1088.99 -proposed tracker (LP: #1834908)
 .
   * hibernation support for linux-aws (LP: #1831940)
     - UBUNTU SAUCE [aws]: block: xen-blkfront: consider new dom0 features on
       restore
     - UBUNTU SAUCE [aws]: ACPICA: Enable sleep button on ACPI legacy wake
     - UBUNTU SAUCE [aws]: xen: restore pirqs on resume from hibernation.
     - UBUNTU SAUCE [aws]: xen: Only restore the ACPI SCI interrupt in
       xen_restore_pirqs.
     - radix-tree: delete radix_tree_locate_item()
     - mm: rid swapoff of quadratic complexity
     - sched/wait: Fix abort_exclusive_wait(), it should pass TASK_NORMAL to
       wake_up()
     - sched/wait: Avoid abort_exclusive_wait() in ___wait_event()
     - sched/wait: Avoid abort_exclusive_wait() in __wait_on_bit_lock()
     - sched/wait: Introduce init_wait_entry()
     - sched/wait: Standardize wait_bit_queue naming
     - sched/wait: Introduce wait_var_event()
     - mm: swapoff: shmem_unuse() stop eviction without igrab()
     - UBUNTU SAUCE [aws]: mm: aggressive swapoff
     - UBUNTU SAUCE [aws]: PM / hibernate: make sure pm_async is always disabled
     - NVMe: Allow request merges
     - PM / hibernate: Do not free preallocated safe pages during image restore
     - PM / hibernate: Recycle safe pages after image restoration
     - PM / hibernate: Simplify mark_unsafe_pages()
     - [Config] aws: disable CONFIG_TRANSPARENT_HUGEPAGE_ALWAYS
     - UBUNTU SAUCE [aws] PM / hibernate: set image_size to total RAM size by
       default
     - UBUNTU SAUCE [aws] PM / hibernate: reduce memory pressure during image
       writing
     - UBUNTU SAUCE [aws] mm, page_alloc: disable fair zone allocation policy on
       hibernate

1831940 hibernation support for linux-aws



About   -   Send Feedback to @ubuntu_updates