[ubuntu/bionic-updates] linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64.tar.gz - (Accepted)

Marcelo Henrique Cerri marcelo.cerri at canonical.com
Tue Nov 12 22:43:17 UTC 2019


linux-oracle-5.0 (5.0.0-1007.12~18.04.1) bionic; urgency=medium

  [ Ubuntu: 5.0.0-1007.12 ]

  * CVE-2019-11135
    - [Config] oracle: Disable TSX by default when possible
  * [REGRESSION]  md/raid0: cannot assemble multi-zone RAID0 with default_layout
    setting (LP: #1849682)
    - SAUCE: Fix revert "md/raid0: avoid RAID0 data corruption due to layout
      confusion."
  * refcount underflow and type confusion in shiftfs (LP: #1850867) // CVE-2019-15793
    - SAUCE: shiftfs: Correct id translation for lower fs operations
    - SAUCE: shiftfs: prevent type confusion
    - SAUCE: shiftfs: Fix refcount underflow in btrfs ioctl handling
  * CVE-2018-12207
    - kvm: Convert kvm_lock to a mutex
    - kvm: x86: Do not release the page inside mmu_set_spte()
    - KVM: x86: make FNAME(fetch) and __direct_map more similar
    - KVM: x86: remove now unneeded hugepage gfn adjustment
    - KVM: x86: change kvm_mmu_page_get_gfn BUG_ON to WARN_ON
    - KVM: x86: add tracepoints around __direct_map and FNAME(fetch)
    - kvm: x86, powerpc: do not allow clearing largepages debugfs entry
    - SAUCE: KVM: vmx, svm: always run with EFER.NXE=1 when shadow paging is
      active
    - SAUCE: x86: Add ITLB_MULTIHIT bug infrastructure
    - SAUCE: kvm: mmu: ITLB_MULTIHIT mitigation
    - SAUCE: kvm: Add helper function for creating VM worker threads
    - SAUCE: kvm: x86: mmu: Recovery of shattered NX large pages
    - SAUCE: cpu/speculation: Uninline and export CPU mitigations helpers
    - SAUCE: kvm: x86: mmu: Apply global mitigations knob to ITLB_MULTIHIT
  * CVE-2019-11135
    - KVM: x86: use Intel speculation bugs and features as derived in generic x86
      code
    - x86/msr: Add the IA32_TSX_CTRL MSR
    - x86/cpu: Add a helper function x86_read_arch_cap_msr()
    - x86/cpu: Add a "tsx=" cmdline option with TSX disabled by default
    - x86/speculation/taa: Add mitigation for TSX Async Abort
    - x86/speculation/taa: Add sysfs reporting for TSX Async Abort
    - kvm/x86: Export MDS_NO=0 to guests when TSX is enabled
    - x86/tsx: Add "auto" option to the tsx= cmdline parameter
    - x86/speculation/taa: Add documentation for TSX Async Abort
    - x86/tsx: Add config options to set tsx=on|off|auto
    - SAUCE: x86/speculation/taa: Call tsx_init()
    - [Config] Disable TSX by default when possible
  * CVE-2019-0154
    - SAUCE: drm/i915: Lower RM timeout to avoid DSI hard hangs
    - SAUCE: drm/i915/gen8+: Add RC6 CTX corruption WA
  * CVE-2019-0155
    - SAUCE: drm/i915: Rename gen7 cmdparser tables
    - SAUCE: drm/i915: Disable Secure Batches for gen6+
    - SAUCE: drm/i915: Remove Master tables from cmdparser
    - SAUCE: drm/i915: Add support for mandatory cmdparsing
    - SAUCE: drm/i915: Support ro ppgtt mapped cmdparser shadow buffers
    - SAUCE: drm/i915: Allow parsing of unsized batches
    - SAUCE: drm/i915: Add gen9 BCS cmdparsing
    - SAUCE: drm/i915/cmdparser: Use explicit goto for error paths
    - SAUCE: drm/i915/cmdparser: Add support for backward jumps
    - SAUCE: drm/i915/cmdparser: Ignore Length operands during command matching
  * disco/linux: <version to be filled> -proposed tracker (LP: #1850574)
  * [REGRESSION]  md/raid0: cannot assemble multi-zone RAID0 with default_layout
    setting (LP: #1849682)
    - Revert "md/raid0: avoid RAID0 data corruption due to layout confusion."

Date: Mon, 11 Nov 2019 12:10:35 -0300
Changed-By: Marcelo Henrique Cerri <marcelo.cerri at canonical.com>
Maintainer: Launchpad Build Daemon <buildd at lcy01-amd64-024.buildd>

-------------- next part --------------
Format: 1.8
Date: Mon, 11 Nov 2019 12:10:35 -0300
Source: linux-oracle-5.0
Binary: linux-oracle-5.0-headers-5.0.0-1007 linux-oracle-5.0-tools-5.0.0-1007 linux-image-unsigned-5.0.0-1007-oracle linux-modules-5.0.0-1007-oracle linux-modules-extra-5.0.0-1007-oracle linux-headers-5.0.0-1007-oracle linux-image-unsigned-5.0.0-1007-oracle-dbgsym linux-tools-5.0.0-1007-oracle linux-cloud-tools-5.0.0-1007-oracle linux-buildinfo-5.0.0-1007-oracle
Architecture: amd64 all amd64_translations
Version: 5.0.0-1007.12~18.04.1
Distribution: bionic
Urgency: medium
Maintainer: Launchpad Build Daemon <buildd at lcy01-amd64-024.buildd>
Changed-By: Marcelo Henrique Cerri <marcelo.cerri at canonical.com>
Description:
 linux-buildinfo-5.0.0-1007-oracle - Linux kernel buildinfo for version 5.0.0 on 64 bit x86 SMP
 linux-cloud-tools-5.0.0-1007-oracle - Oracle Linux kernel version specific cloud tools for version 5.0.
 linux-headers-5.0.0-1007-oracle - Oracle Linux kernel headers for version 5.0.0 on 64 bit x86 SMP
 linux-image-unsigned-5.0.0-1007-oracle - Oracle Linux kernel image for version 5.0.0 on 64 bit x86 SMP
 linux-image-unsigned-5.0.0-1007-oracle-dbgsym - Oracle Linux kernel debug image for version 5.0.0 on 64 bit x86 S
 linux-modules-5.0.0-1007-oracle - Oracle Linux kernel extra modules for version 5.0.0 on 64 bit x86
 linux-modules-extra-5.0.0-1007-oracle - Oracle Linux kernel extra modules for version 5.0.0 on 64 bit x86
 linux-oracle-5.0-headers-5.0.0-1007 - Header files related to Oracle Linux kernel version 5.0.0
 linux-oracle-5.0-tools-5.0.0-1007 - Oracle Linux kernel version specific tools for version 5.0.0-1007
 linux-tools-5.0.0-1007-oracle - Oracle Linux kernel version specific tools for version 5.0.0-1007
Launchpad-Bugs-Fixed: 1849682 1850574 1850867
Changes:
 linux-oracle-5.0 (5.0.0-1007.12~18.04.1) bionic; urgency=medium
 .
   [ Ubuntu: 5.0.0-1007.12 ]
 .
   * CVE-2019-11135
     - [Config] oracle: Disable TSX by default when possible
   * [REGRESSION]  md/raid0: cannot assemble multi-zone RAID0 with default_layout
     setting (LP: #1849682)
     - SAUCE: Fix revert "md/raid0: avoid RAID0 data corruption due to layout
       confusion."
   * refcount underflow and type confusion in shiftfs (LP: #1850867) // CVE-2019-15793
     - SAUCE: shiftfs: Correct id translation for lower fs operations
     - SAUCE: shiftfs: prevent type confusion
     - SAUCE: shiftfs: Fix refcount underflow in btrfs ioctl handling
   * CVE-2018-12207
     - kvm: Convert kvm_lock to a mutex
     - kvm: x86: Do not release the page inside mmu_set_spte()
     - KVM: x86: make FNAME(fetch) and __direct_map more similar
     - KVM: x86: remove now unneeded hugepage gfn adjustment
     - KVM: x86: change kvm_mmu_page_get_gfn BUG_ON to WARN_ON
     - KVM: x86: add tracepoints around __direct_map and FNAME(fetch)
     - kvm: x86, powerpc: do not allow clearing largepages debugfs entry
     - SAUCE: KVM: vmx, svm: always run with EFER.NXE=1 when shadow paging is
       active
     - SAUCE: x86: Add ITLB_MULTIHIT bug infrastructure
     - SAUCE: kvm: mmu: ITLB_MULTIHIT mitigation
     - SAUCE: kvm: Add helper function for creating VM worker threads
     - SAUCE: kvm: x86: mmu: Recovery of shattered NX large pages
     - SAUCE: cpu/speculation: Uninline and export CPU mitigations helpers
     - SAUCE: kvm: x86: mmu: Apply global mitigations knob to ITLB_MULTIHIT
   * CVE-2019-11135
     - KVM: x86: use Intel speculation bugs and features as derived in generic x86
       code
     - x86/msr: Add the IA32_TSX_CTRL MSR
     - x86/cpu: Add a helper function x86_read_arch_cap_msr()
     - x86/cpu: Add a "tsx=" cmdline option with TSX disabled by default
     - x86/speculation/taa: Add mitigation for TSX Async Abort
     - x86/speculation/taa: Add sysfs reporting for TSX Async Abort
     - kvm/x86: Export MDS_NO=0 to guests when TSX is enabled
     - x86/tsx: Add "auto" option to the tsx= cmdline parameter
     - x86/speculation/taa: Add documentation for TSX Async Abort
     - x86/tsx: Add config options to set tsx=on|off|auto
     - SAUCE: x86/speculation/taa: Call tsx_init()
     - [Config] Disable TSX by default when possible
   * CVE-2019-0154
     - SAUCE: drm/i915: Lower RM timeout to avoid DSI hard hangs
     - SAUCE: drm/i915/gen8+: Add RC6 CTX corruption WA
   * CVE-2019-0155
     - SAUCE: drm/i915: Rename gen7 cmdparser tables
     - SAUCE: drm/i915: Disable Secure Batches for gen6+
     - SAUCE: drm/i915: Remove Master tables from cmdparser
     - SAUCE: drm/i915: Add support for mandatory cmdparsing
     - SAUCE: drm/i915: Support ro ppgtt mapped cmdparser shadow buffers
     - SAUCE: drm/i915: Allow parsing of unsized batches
     - SAUCE: drm/i915: Add gen9 BCS cmdparsing
     - SAUCE: drm/i915/cmdparser: Use explicit goto for error paths
     - SAUCE: drm/i915/cmdparser: Add support for backward jumps
     - SAUCE: drm/i915/cmdparser: Ignore Length operands during command matching
   * disco/linux: <version to be filled> -proposed tracker (LP: #1850574)
   * [REGRESSION]  md/raid0: cannot assemble multi-zone RAID0 with default_layout
     setting (LP: #1849682)
     - Revert "md/raid0: avoid RAID0 data corruption due to layout confusion."
Checksums-Sha1:
 4625a1124cb9933e9124775738d2187b1d6043ae 242936 linux-buildinfo-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 9ccd3703745d4090e4a9266f42f9b791bc75e7e5 1099672 linux-headers-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 a4cd1b582f95c2382c372b276e9f338f81b1cc93 824349616 linux-image-unsigned-5.0.0-1007-oracle-dbgsym_5.0.0-1007.12~18.04.1_amd64.ddeb
 c5c9424926614b874906e6b72f20c956a64ff93b 9087308 linux-image-unsigned-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 f3651655aea85126c0b4009c77c540e5384e1dac 13463280 linux-modules-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 8bf9c197ddfc3b7f1f5cb45dc40c6acfb8b87764 32245184 linux-modules-extra-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 8bad2a5b7a9694bbbbf22edaddbc96db57738ca9 10691492 linux-oracle-5.0-headers-5.0.0-1007_5.0.0-1007.12~18.04.1_all.deb
 342640c3b62128f4e35899ab8ce0a345fc0fef16 5020700 linux-oracle-5.0-tools-5.0.0-1007_5.0.0-1007.12~18.04.1_amd64.deb
 3882b2b4a5a024be54032eda1750700ea674843c 16083 linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64.buildinfo
 2ff6435e55e04f0eb42a24845047d7af83f7915a 9070204 linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64.tar.gz
 8ecbc8e79a7304896d64d1f1dabafca3a353d506 24519 linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64_translations.tar.gz
 f85333beaa9bbb6ff0a1acd026bef7f8d7985e22 1984 linux-tools-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
Checksums-Sha256:
 a26a3e5b544a7fc7ab5659b80d3ebef3b144b80abb0f74bfbbf11c32615722d7 242936 linux-buildinfo-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 eaeacc2f13e23e3ff36cd79197f41093a073c72678a3fe6583db0d250d63ec1b 1099672 linux-headers-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 1d33e4bc5ed34c819ccd4a7c06b7cf3a4492caccbaa0f2647734cf41e832889f 824349616 linux-image-unsigned-5.0.0-1007-oracle-dbgsym_5.0.0-1007.12~18.04.1_amd64.ddeb
 d06d9d7bccedf3861c4329fdd8ae50a8328bb27933eabfe75d46576487074311 9087308 linux-image-unsigned-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 db6b4410fc172f5d9c77dbb2ff0209ad1c459f78a48bb463bd420760b7ed19e9 13463280 linux-modules-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 ee3faaea0148df355414c573d766ba3bb8c1409536620ad6e5a7232808e02ad8 32245184 linux-modules-extra-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 2124fd219dcd6e3f097a5f54e5a6471c4b267ac578207e90d4c9813b40118a9e 10691492 linux-oracle-5.0-headers-5.0.0-1007_5.0.0-1007.12~18.04.1_all.deb
 131e32b91bac2d0883c842ad531eb51cbb1078d9be090693f30357f1f2c65878 5020700 linux-oracle-5.0-tools-5.0.0-1007_5.0.0-1007.12~18.04.1_amd64.deb
 a9b13c132a996631e5bacd1c76f005b59f8a37420b420a6abc67ec9a043d5e86 16083 linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64.buildinfo
 ba872d478dbc291cd947ecef4bf9d89994246c23af9963e648f6c1249ea61078 9070204 linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64.tar.gz
 5ecad807aab7757c566768026bfc201dd697b9e505f7e7dea3ada3db287c1dea 24519 linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64_translations.tar.gz
 e91203200db0237aa1daa01359850174573c19611ed587de1979dd189bf44ca0 1984 linux-tools-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
Files:
 bec575c971f49d8d3facdbf56941c3f4 242936 kernel optional linux-buildinfo-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 211eef26908e5f29ff7ec110f990d7f7 1099672 devel optional linux-headers-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 616ab5750c41687d19085a1a194a6e3c 824349616 devel optional linux-image-unsigned-5.0.0-1007-oracle-dbgsym_5.0.0-1007.12~18.04.1_amd64.ddeb
 a62b984bfae4074f81fdd262383b6a42 9087308 kernel optional linux-image-unsigned-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 b54396ba003303312f33bc56c29734a3 13463280 kernel optional linux-modules-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 d73c94786a091354d2fd799b70c98460 32245184 kernel optional linux-modules-extra-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb
 446990cbbbf65971e7e78b4aa7c8e235 10691492 devel optional linux-oracle-5.0-headers-5.0.0-1007_5.0.0-1007.12~18.04.1_all.deb
 21c50ca975eb35631b0a0437251314a0 5020700 devel optional linux-oracle-5.0-tools-5.0.0-1007_5.0.0-1007.12~18.04.1_amd64.deb
 00c6cd6fdf49e1dd5494d23782b46c87 16083 devel optional linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64.buildinfo
 07006e353ba5e45e55d275982f727c56 9070204 raw-signing - linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64.tar.gz
 80daeb7bcfed4fd9e5260b60508ffee9 24519 raw-translations - linux-oracle-5.0_5.0.0-1007.12~18.04.1_amd64_translations.tar.gz
 206d0ba30623c5cda14edc6d843b4680 1984 devel optional linux-tools-5.0.0-1007-oracle_5.0.0-1007.12~18.04.1_amd64.deb


More information about the Bionic-changes mailing list