APPLIED: [Focal][pull] apparmor - bug fixes

Seth Forshee seth.forshee at canonical.com
Thu Apr 9 21:11:10 UTC 2020


On Wed, Apr 08, 2020 at 09:38:15AM -0700, John Johansen wrote:
> The following pull request(s) are cherry-picks of fixes in the 5.5, 5.6 and apparmor-next kernels dropped on top of the focal kernels
> 
> Two alternate pull requests are included below.
> 
> * base - the base set of bug fixes
> 
> * with memory patch - everything in base + a patch series (and its fixes) that reduces apparmor's memory use on high cpu count machines (apparmor is currently allocating 2*PAGESIZE buffers per vcpu) . It also makes apparmor behave better in real time/low latency kernel situations (much shorter rcu critical sections). All of the patches involved in the memory patch series are in the upstream kernel.
> 
> 
> the with memory patch series is a nice to have but is certainly not required, and at this point the base patch set is the safer set to pull in.

Being this close to release, I've opted to play it safe and apply the
base set. I've applied those to focal/master-next, and the SAUCE patches
to unstable/master. Thanks!



More information about the kernel-team mailing list