[ubuntu/mantic-security] linux-aws 6.5.0-1022.22 (Accepted)
Andy Whitcroft
apw at canonical.com
Wed Jun 26 18:28:07 UTC 2024
linux-aws (6.5.0-1022.22) mantic; urgency=medium
* mantic/linux-aws: 6.5.0-1022.22 -proposed tracker (LP: #2068167)
[ Ubuntu: 6.5.0-42.42 ]
* mantic/linux: 6.5.0-42.42 -proposed tracker (LP: #2068188)
* CVE-2024-26925
- netfilter: nf_tables: release batch on table validation from abort path
- netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
* CVE-2024-26924
- netfilter: nft_set_pipapo: do not free live element
* CVE-2024-26809
- netfilter: nft_set_pipapo: release elements in clone only from destroy path
* Mantic update: upstream stable patchset 2024-04-02 (LP: #2059991) //
CVE-2024-26809
- netfilter: nft_set_pipapo: store index in scratch maps
- netfilter: nft_set_pipapo: add helper to release pcpu scratch area
- netfilter: nft_set_pipapo: remove scratch_aligned pointer
* CVE-2024-26643
- netfilter: nf_tables: mark set as dead when unbinding anonymous set with
timeout
[ Ubuntu: 6.5.0-41.41 ]
* mantic/linux: 6.5.0-41.41 -proposed tracker (LP: #2065893)
* CVE-2024-21823
- VFIO: Add the SPR_DSA and SPR_IAX devices to the denylist
- dmaengine: idxd: add a new security check to deal with a hardware erratum
- dmaengine: idxd: add a write() method for applications to submit work
Date: 2024-06-13 16:11:11.033201+00:00
Changed-By: Philip Cox <philip.cox at canonical.com>
Signed-By: Andy Whitcroft <apw at canonical.com>
https://launchpad.net/ubuntu/+source/linux-aws/6.5.0-1022.22
-------------- next part --------------
Sorry, changesfile not available.
More information about the mantic-changes
mailing list