[ubuntu/jaunty-security] linux (delayed), linux 2.6.28-19.61 (Accepted)

Ubuntu Installer archive at ubuntu.com
Thu Jun 3 01:07:01 BST 2010


linux (2.6.28-19.61) jaunty-security; urgency=low

  [ Leann Ogasawara ]

  * kvm: restrict writing of segment selectors to segment registers
    - CVE-2010-0419

  [ Upstream Kernel Changes ]

  * USB: usbfs: properly clean up the as structure on error paths
    - CVE-2010-1083
  * Bluetooth: Fix potential bad memory access with sysfs files
    - CVE-2010-1084
  * ALSA: hda-intel: Avoid divide by zero crash
    - CVE-2010-1085
  * dvb-core: Fix DoS bug in ULE decapsulation code that can be triggered
    by an invalid Payload Pointer
    - CVE-2010-1086
  * GFS2: Skip check for mandatory locks when unlocking
    - CVE-2010-0727
  * tipc: Fix oops on send prior to entering networked mode (v3)
    - CVE-2010-1187
  * idr: fix a critical misallocation bug, take#2
    - LP: #485556
  * tty: release_one_tty() forgets to put pids
    - CVE-2010-1162
  * fix LOOKUP_FOLLOW on automount "symlinks"
    - CVE-2010-1088
  * NFS: Fix an Oops when truncating a file
    - CVE-2010-1087
  * r8169: Fix receive buffer length when MTU is between 1515 and 1536
    - CVE-2009-4537
  * r8169: offical fix for CVE-2009-4537 (overlength frame DMAs)
    - CVE-2009-4537
  * KVM: introduce kvm_read_guest_virt, kvm_write_guest_virt
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: remove the vmap usage
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: Use kvm_{read,write}_guest_virt() to read and write segment
    descriptors
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: x86 emulator: Check CPL level during privilege instruction
    emulation
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: x86 emulator: Add Virtual-8086 mode of emulation
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: x86 emulator: fix memory access during x86 emulation
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: x86 emulator: Check IOPL level during io instruction emulation
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: VMX: Use macros instead of hex value on cr0 initialization
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: SVM: Reset cr0 properly on vcpu reset
    - CVE-2010-0298
    - CVE-2010-0306
  * KVM: x86: disable paravirt mmu reporting
    - CVE-2010-0298
    - CVE-2010-0306

Date: Tue, 25 May 2010 14:21:52 +0200
Changed-By: Stefan Bader <stefan.bader at canonical.com>
Maintainer: Ubuntu Kernel Team <kernel-team at lists.ubuntu.com>
https://launchpad.net/ubuntu/jaunty/+source/linux/2.6.28-19.61
-------------- next part --------------
Format: 1.8
Date: Tue, 25 May 2010 14:21:52 +0200
Source: linux
Binary: linux-source-2.6.28 linux-doc-2.6.28 linux-headers-2.6.28-19 linux-libc-dev linux-image-2.6.28-19-generic linux-headers-2.6.28-19-generic linux-image-debug-2.6.28-19-generic linux-image-2.6.28-19-imx51 linux-headers-2.6.28-19-imx51 linux-image-debug-2.6.28-19-imx51 linux-image-2.6.28-19-iop32x linux-headers-2.6.28-19-iop32x linux-image-debug-2.6.28-19-iop32x linux-image-2.6.28-19-ixp4xx linux-headers-2.6.28-19-ixp4xx linux-image-debug-2.6.28-19-ixp4xx linux-image-2.6.28-19-lpia linux-headers-2.6.28-19-lpia linux-image-debug-2.6.28-19-lpia linux-image-2.6.28-19-server linux-headers-2.6.28-19-server linux-image-debug-2.6.28-19-server linux-image-2.6.28-19-versatile linux-headers-2.6.28-19-versatile linux-image-debug-2.6.28-19-versatile linux-image-2.6.28-19-virtual kernel-image-2.6.28-19-generic-di nic-modules-2.6.28-19-generic-di nic-shared-modules-2.6.28-19-generic-di serial-modules-2.6.28-19-generic-di ppp-modules-2.6.28-19-generic-di firewire-core-modules-2.6.28-19-generic-di scsi-modules-2.6.28-19-generic-di plip-modules-2.6.28-19-generic-di floppy-modules-2.6.28-19-generic-di fat-modules-2.6.28-19-generic-di nfs-modules-2.6.28-19-generic-di md-modules-2.6.28-19-generic-di usb-modules-2.6.28-19-generic-di pcmcia-storage-modules-2.6.28-19-generic-di fb-modules-2.6.28-19-generic-di input-modules-2.6.28-19-generic-di mouse-modules-2.6.28-19-generic-di irda-modules-2.6.28-19-generic-di parport-modules-2.6.28-19-generic-di nic-pcmcia-modules-2.6.28-19-generic-di pcmcia-modules-2.6.28-19-generic-di nic-usb-modules-2.6.28-19-generic-di sata-modules-2.6.28-19-generic-di crypto-modules-2.6.28-19-generic-di fs-core-modules-2.6.28-19-generic-di fs-secondary-modules-2.6.28-19-generic-di pata-modules-2.6.28-19-generic-di storage-core-modules-2.6.28-19-generic-di block-modules-2.6.28-19-generic-di message-modules-2.6.28-19-generic-di virtio-modules-2.6.28-19-generic-di
Architecture: source
Version: 2.6.28-19.61
Distribution: jaunty-security
Urgency: low
Maintainer: Ubuntu Kernel Team <kernel-team at lists.ubuntu.com>
Changed-By: Stefan Bader <stefan.bader at canonical.com>
Description: 
 block-modules-2.6.28-19-generic-di - Block storage devices (udeb)
 crypto-modules-2.6.28-19-generic-di - crypto modules (udeb)
 fat-modules-2.6.28-19-generic-di - FAT filesystem support (udeb)
 fb-modules-2.6.28-19-generic-di - Framebuffer modules (udeb)
 firewire-core-modules-2.6.28-19-generic-di - Firewire (IEEE-1394) Support (udeb)
 floppy-modules-2.6.28-19-generic-di - Floppy driver support (udeb)
 fs-core-modules-2.6.28-19-generic-di - Base filesystem modules (udeb)
 fs-secondary-modules-2.6.28-19-generic-di - Extra filesystem modules (udeb)
 input-modules-2.6.28-19-generic-di - Support for various input methods (udeb)
 irda-modules-2.6.28-19-generic-di - Support for Infrared protocols (udeb)
 kernel-image-2.6.28-19-generic-di - Linux kernel binary image for the Debian installer (udeb)
 linux-doc-2.6.28 - Linux kernel specific documentation for version 2.6.28
 linux-headers-2.6.28-19 - Header files related to Linux kernel version 2.6.28
 linux-headers-2.6.28-19-generic - Linux kernel headers for version 2.6.28 on x86/x86_64
 linux-headers-2.6.28-19-imx51 - Linux kernel headers for version 2.6.28 on I.MX51-based systems
 linux-headers-2.6.28-19-iop32x - Linux kernel headers for version 2.6.28 on IOP32x-based systems
 linux-headers-2.6.28-19-ixp4xx - Linux kernel headers for version 2.6.28 on IXP4xx-based systems
 linux-headers-2.6.28-19-lpia - Linux kernel headers for version 2.6.28 on Intel Atom processors
 linux-headers-2.6.28-19-server - Linux kernel headers for version 2.6.28 on x86/x86_64
 linux-headers-2.6.28-19-versatile - Linux kernel headers for version 2.6.28 on Versatile-based system
 linux-image-2.6.28-19-generic - Linux kernel image for version 2.6.28 on x86/x86_64
 linux-image-2.6.28-19-imx51 - Linux kernel image for version 2.6.28 on I.MX51-based systems
 linux-image-2.6.28-19-iop32x - Linux kernel image for version 2.6.28 on IOP32x-based systems
 linux-image-2.6.28-19-ixp4xx - Linux kernel image for version 2.6.28 on IXP4xx-based systems
 linux-image-2.6.28-19-lpia - Linux kernel image for version 2.6.28 on Intel Atom processors
 linux-image-2.6.28-19-server - Linux kernel image for version 2.6.28 on x86/x86_64
 linux-image-2.6.28-19-versatile - Linux kernel image for version 2.6.28 on Versatile-based systems
 linux-image-2.6.28-19-virtual - Linux kernel image for version 2.6.28 on x86/x86_64
 linux-image-debug-2.6.28-19-generic - Linux kernel debug image for version 2.6.28 on x86/x86_64
 linux-image-debug-2.6.28-19-imx51 - Linux kernel debug image for version 2.6.28 on I.MX51-based syste
 linux-image-debug-2.6.28-19-iop32x - Linux kernel debug image for version 2.6.28 on IOP32x-based syste
 linux-image-debug-2.6.28-19-ixp4xx - Linux kernel debug image for version 2.6.28 on IXP4xx-based syste
 linux-image-debug-2.6.28-19-lpia - Linux kernel debug image for version 2.6.28 on Intel Atom process
 linux-image-debug-2.6.28-19-server - Linux kernel debug image for version 2.6.28 on x86/x86_64
 linux-image-debug-2.6.28-19-versatile - Linux kernel debug image for version 2.6.28 on Versatile-based sy
 linux-libc-dev - Linux Kernel Headers for development
 linux-source-2.6.28 - Linux kernel source for version 2.6.28 with Ubuntu patches
 md-modules-2.6.28-19-generic-di - Multi-device support (raid, device-mapper, lvm) (udeb)
 message-modules-2.6.28-19-generic-di - Fusion and i2o storage modules (udeb)
 mouse-modules-2.6.28-19-generic-di - Mouse support (udeb)
 nfs-modules-2.6.28-19-generic-di - NFS filesystem drivers (udeb)
 nic-modules-2.6.28-19-generic-di - Network interface support (udeb)
 nic-pcmcia-modules-2.6.28-19-generic-di - PCMCIA network interface support (udeb)
 nic-shared-modules-2.6.28-19-generic-di - Shared NIC drivers (udeb)
 nic-usb-modules-2.6.28-19-generic-di - USB network interface support (udeb)
 parport-modules-2.6.28-19-generic-di - Parallel port support (udeb)
 pata-modules-2.6.28-19-generic-di - PATA support modules (udeb)
 pcmcia-modules-2.6.28-19-generic-di - PCMCIA Modules (udeb)
 pcmcia-storage-modules-2.6.28-19-generic-di - PCMCIA storage support (udeb)
 plip-modules-2.6.28-19-generic-di - PLIP (parallel port) networking support (udeb)
 ppp-modules-2.6.28-19-generic-di - PPP (serial port) networking support (udeb)
 sata-modules-2.6.28-19-generic-di - SATA storage support (udeb)
 scsi-modules-2.6.28-19-generic-di - SCSI storage support (udeb)
 serial-modules-2.6.28-19-generic-di - Serial port support (udeb)
 storage-core-modules-2.6.28-19-generic-di - Core storage support (udeb)
 usb-modules-2.6.28-19-generic-di - Core USB support (udeb)
 virtio-modules-2.6.28-19-generic-di - VirtIO Modules (udeb)
Launchpad-Bugs-Fixed: 485556
Changes: 
 linux (2.6.28-19.61) jaunty-security; urgency=low
 .
   [ Leann Ogasawara ]
 .
   * kvm: restrict writing of segment selectors to segment registers
     - CVE-2010-0419
 .
   [ Upstream Kernel Changes ]
 .
   * USB: usbfs: properly clean up the as structure on error paths
     - CVE-2010-1083
   * Bluetooth: Fix potential bad memory access with sysfs files
     - CVE-2010-1084
   * ALSA: hda-intel: Avoid divide by zero crash
     - CVE-2010-1085
   * dvb-core: Fix DoS bug in ULE decapsulation code that can be triggered
     by an invalid Payload Pointer
     - CVE-2010-1086
   * GFS2: Skip check for mandatory locks when unlocking
     - CVE-2010-0727
   * tipc: Fix oops on send prior to entering networked mode (v3)
     - CVE-2010-1187
   * idr: fix a critical misallocation bug, take#2
     - LP: #485556
   * tty: release_one_tty() forgets to put pids
     - CVE-2010-1162
   * fix LOOKUP_FOLLOW on automount "symlinks"
     - CVE-2010-1088
   * NFS: Fix an Oops when truncating a file
     - CVE-2010-1087
   * r8169: Fix receive buffer length when MTU is between 1515 and 1536
     - CVE-2009-4537
   * r8169: offical fix for CVE-2009-4537 (overlength frame DMAs)
     - CVE-2009-4537
   * KVM: introduce kvm_read_guest_virt, kvm_write_guest_virt
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: remove the vmap usage
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: Use kvm_{read,write}_guest_virt() to read and write segment
     descriptors
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: x86 emulator: Check CPL level during privilege instruction
     emulation
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: x86 emulator: Add Virtual-8086 mode of emulation
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: x86 emulator: fix memory access during x86 emulation
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: x86 emulator: Check IOPL level during io instruction emulation
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: VMX: Use macros instead of hex value on cr0 initialization
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: SVM: Reset cr0 properly on vcpu reset
     - CVE-2010-0298
     - CVE-2010-0306
   * KVM: x86: disable paravirt mmu reporting
     - CVE-2010-0298
     - CVE-2010-0306
Checksums-Sha1: 
 2729d6095b2030efd54db3a696d61ca8add7182d 3175 linux_2.6.28-19.61.dsc
 7fb1604f15d4d357f5012d476a1177d703d4d7db 7408064 linux_2.6.28-19.61.diff.gz
Checksums-Sha256: 
 2a780d39efca5cd81ace09e5a865cc3afdd54552288301dff170b6cf14750ca9 3175 linux_2.6.28-19.61.dsc
 b7a742ff13fc0cef36a4977e0ffa86bcc7b7e86b98da4155187f0bc502c54bc2 7408064 linux_2.6.28-19.61.diff.gz
Files: 
 c72ff80106672ba9fe2b235ed9a26224 3175 devel optional linux_2.6.28-19.61.dsc
 bf077530cc28fc2c8ca7f9ebc05eed66 7408064 devel optional linux_2.6.28-19.61.diff.gz


More information about the Jaunty-changes mailing list