[ubuntu/bionic-security] linux-kvm 4.15.0-1109.112 (Accepted)

Andy Whitcroft apw at canonical.com
Tue Mar 8 21:39:41 UTC 2022


linux-kvm (4.15.0-1109.112) bionic; urgency=medium

  * Disable unprivileged BPF by default (LP: #1961338)
    - [Config] kvm: Enable CONFIG_BPF_UNPRIV_DEFAULT_OFF

  * Packaging resync (LP: #1786013)
    - [Packaging] resync getabis

  [ Ubuntu: 4.15.0-171.180 ]

  * CVE-2022-0001
    - cpu/SMT: create and export cpu_smt_possible()
    - x86/speculation: Merge one test in spectre_v2_user_select_mitigation()
    - x86,bugs: Unconditionally allow spectre_v2=retpoline,amd
    - SAUCE: x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE
    - SAUCE: x86/speculation: Add eIBRS + Retpoline options
    - SAUCE: Documentation/hw-vuln: Update spectre doc
  * Disable unprivileged BPF by default (LP: #1961338)
    - bpf: Add kconfig knob for disabling unpriv bpf by default
    - [Config] set CONFIG_BPF_UNPRIV_DEFAULT_OFF=y

Date: 2022-03-03 08:56:10.163750+00:00
Changed-By: Andrea Righi <andrea.righi at canonical.com>
Signed-By: Andy Whitcroft <apw at canonical.com>
https://launchpad.net/ubuntu/+source/linux-kvm/4.15.0-1109.112
-------------- next part --------------
Sorry, changesfile not available.


More information about the Bionic-changes mailing list