← Back to team overview

kernel-packages team mailing list archive

[Bug 1520184] Re: CVE-2015-8104

 

This bug was fixed in the package linux-lts-utopic -
3.16.0-56.75~14.04.1

---------------
linux-lts-utopic (3.16.0-56.75~14.04.1) trusty; urgency=low

  [ Luis Henriques ]

  * Release Tracking Bug
    - LP: #1521942

  [ Andy Whitcroft ]

  * [Packaging] control -- make element ordering deterministic
    - LP: #1516686
  * [Packaging] control -- prepare for new kernel-wedge semantics
    - LP: #1516686
  * [Debian] rebuild should only trigger for non-linux packages
    - LP: #1498862, #1516686
  * [Tests] gcc-multilib does not exist on ppc64el
    - LP: #1515541

  [ Brad Figg ]

  * SAUCE: DEP8 test to run our regression tests
    - LP: #1515541

  [ Upstream Kernel Changes ]

  * Revert "ARM64: unwind: Fix PC calculation"
    - LP: #1520282
  * Revert "md: allow a partially recovered device to be hot-added to an
    array."
    - LP: #1520282
  * xhci: Workaround to get Intel xHCI reset working more reliably
  * regmap: debugfs: Ensure we don't underflow when printing access masks
    - LP: #1520282
  * regmap: debugfs: Don't bother actually printing when calculating max
    length
    - LP: #1520282
  * x86/xen: Support kexec/kdump in HVM guests by doing a soft reset
    - LP: #1520282
  * s390/boot/decompression: disable floating point in decompressor
    - LP: #1520282
  * svcrdma: handle rdma read with a non-zero initial page offset
    - LP: #1520282
  * dm: fix AB-BA deadlock in __dm_destroy()
    - LP: #1520282
  * [SMB3] Do not fall back to SMBWriteX in set_file_size error cases
    - LP: #1520282
  * clk: ti: fix dual-registration of uart4_ick
    - LP: #1520282
  * ASoC: dwc: correct irq clear method
    - LP: #1520282
  * dm raid: fix round up of default region size
    - LP: #1520282
  * ALSA: hda: Add dock support for ThinkPad T550
    - LP: #1520282
  * ALSA: hda - Apply SPDIF pin ctl to MacBookPro 12,1
    - LP: #1520282
  * USB: Add reset-resume quirk for two Plantronics usb headphones.
    - LP: #1520282
  * usb: Add device quirk for Logitech PTZ cameras
    - LP: #1520282
  * staging: speakup: fix speakup-r regression
    - LP: #1520282
  * ALSA: synth: Fix conflicting OSS device registration on AWE32
    - LP: #1520282
  * arm64: readahead: fault retry breaks mmap file read random detection
    - LP: #1520282
  * sched/core: Fix TASK_DEAD race in finish_task_switch()
    - LP: #1520282
  * dm cache: fix NULL pointer when switching from cleaner policy
    - LP: #1520282
  * 3w-9xxx: don't unmap bounce buffered commands
    - LP: #1520282
  * workqueue: make sure delayed work run in local cpu
    - LP: #1520282
  * drm/radeon: add pm sysfs files late
    - LP: #1520282
  * crypto: sparc - initialize blkcipher.ivsize
    - LP: #1520282
  * drm/nouveau/fbcon: take runpm reference when userspace has an open fd
    - LP: #1520282
  * crypto: ahash - ensure statesize is non-zero
    - LP: #1520282
  * dm thin: fix missing pool reference count decrement in pool_ctr error
    path
    - LP: #1520282
  * btrfs: check unsupported filters in balance arguments
    - LP: #1520282
  * btrfs: fix use after free iterating extrefs
    - LP: #1520282
  * i2c: rcar: enable RuntimePM before registering to the core
    - LP: #1520282
  * i2c: s3c2410: enable RuntimePM before registering to the core
    - LP: #1520282
  * i2c: designware-platdrv: enable RuntimePM before registering to the
    core
    - LP: #1520282
  * i2c: designware: Do not use parameters from ACPI on Dell Inspiron 7348
    - LP: #1520282
  * btrfs: fix possible leak in btrfs_ioctl_balance()
    - LP: #1520282
  * drm: Reject DRI1 hw lock ioctl functions for kms drivers
    - LP: #1520282
  * usb: xhci: Add support for URB_ZERO_PACKET to bulk/sg transfers
    - LP: #1520282
  * rbd: fix double free on rbd_dev->header_name
    - LP: #1520282
  * ath9k: declare required extra tx headroom
    - LP: #1520282
  * iio: accel: sca3000: memory corruption in sca3000_read_first_n_hw_rb()
    - LP: #1520282
  * iwlwifi: dvm: fix D3 firmware PN programming
    - LP: #1520282
  * iwlwifi: mvm: fix D3 firmware PN programming
    - LP: #1520282
  * iwlwifi: fix firmware filename for 3160
    - LP: #1520282
  * iwlwifi: pci: add a few more PCI subvendor IDs for the 7265 series
    - LP: #1520282
  * ARM: orion: Fix DSA platform device after mvmdio conversion
    - LP: #1520282
  * xen-blkfront: check for null drvdata in blkback_changed
    (XenbusStateClosing)
    - LP: #1520282
  * iio: mxs-lradc: Fix temperature offset
    - LP: #1520282
  * ALSA: hda - Fix inverted internal mic on Lenovo G50-80
    - LP: #1504778, #1520282
  * drm/i915: Deny wrapping an userptr into a framebuffer
    - LP: #1520282
  * x86/efi: Fix multiple GOP device support
    - LP: #1520282
  * ASoC: Add info callback for SX_TLV controls
    - LP: #1520282
  * xhci: don't finish a TD if we get a short transfer event mid TD
    - LP: #1520282
  * xhci: handle no ping response error properly
    - LP: #1520282
  * xhci: Add spurious wakeup quirk for LynxPoint-LP controllers
    - LP: #1520282
  * ASoC: wm8904: Correct number of EQ registers
    - LP: #1520282
  * drm/nouveau/gem: return only valid domain when there's only one
    - LP: #1520282
  * powerpc/rtas: Validate rtas.entry before calling enter_rtas()
    - LP: #1520282
  * mm: make sendfile(2) killable
    - LP: #1520282
  * rbd: don't leak parent_spec in rbd_dev_probe_parent()
    - LP: #1520282
  * rbd: prevent kernel stack blow up on rbd map
    - LP: #1520282
  * dm btree remove: fix a bug when rebalancing nodes after removal
    - LP: #1520282
  * dm btree: fix leak of bufio-backed block in btree_split_beneath error
    path
    - LP: #1520282
  * IB/cm: Fix rb-tree duplicate free and use-after-free
    - LP: #1520282
  * iwlwifi: mvm: init card correctly on ctkill exit check
    - LP: #1520282
  * module: Fix locking in symbol_put_addr()
    - LP: #1520282
  * crypto: api - Only abort operations on fatal signal
    - LP: #1520282
  * md/raid1: submit_bio_wait() returns 0 on success
    - LP: #1520282
  * md/raid10: submit_bio_wait() returns 0 on success
    - LP: #1520282
  * iommu/amd: Don't clear DTE flags when modifying it
    - LP: #1520282
  * i2c: mv64xxx: really allow I2C offloading
    - LP: #1520282
  * drm/radeon: don't try to recreate sysfs entries on resume
    - LP: #1520282
  * mvsas: Fix NULL pointer dereference in mvs_slot_task_free
    - LP: #1520282
  * drm/radeon: Restore LCD backlight level on resume (>= R5xx)
    - LP: #1520282
  * drm/radeon: move bl encoder assignment into bl init
    - LP: #1520282
  * drm/radeon: fix dpms when driver backlight control is disabled
    - LP: #1520282
  * rbd: require stable pages if message data CRCs are enabled
    - LP: #1520282
  * md/raid5: fix locking in handle_stripe_clean_event()
    - LP: #1520282
  * ipv6: Fix IPsec pre-encap fragmentation check
    - LP: #1520282
  * ppp: fix pppoe_dev deletion condition in pppoe_release()
    - LP: #1520282
  * ipv6: gre: support SIT encapsulation
    - LP: #1520282
  * net/mlx4: Copy/set only sizeof struct mlx4_eqe bytes
    - LP: #1520282
  * serial: 8250_pci: Add support for 16 port Exar boards
    - LP: #1520282
  * serial: 8250_pci: Add support for 12 port Exar boards
    - LP: #1520282
  * serial: 8250_pci: Correct uartclk for xr17v35x expansion chips
    - LP: #1520282
  * isdn_ppp: Add checks for allocation failure in isdn_ppp_open()
    - LP: #1520282
  * ppp, slip: Validate VJ compression slot parameters completely
    - LP: #1520282
  * staging/dgnc: fix info leak in ioctl
    - LP: #1520282
  * power: bq24190_charger: suppress build warning
    - LP: #1520282
  * sfc: Fix memcpy() with const destination compiler warning.
    - LP: #1520282
  * sched/preempt: Rename PREEMPT_CHECK_OFFSET to PREEMPT_DISABLE_OFFSET
    - LP: #1520282
  * sched/preempt: Fix cond_resched_lock() and cond_resched_softirq()
    - LP: #1520282
  * Linux 3.16.7-ckt20
    - LP: #1520282
  * KVM: svm: unconditionally intercept #DB
    - LP: #1520184
    - CVE-2015-8104

 -- Luis Henriques <luis.henriques@xxxxxxxxxxxxx>  Wed, 02 Dec 2015
10:17:21 +0000

** Changed in: linux (Ubuntu Trusty)
       Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux-armadaxp in Ubuntu.
https://bugs.launchpad.net/bugs/1520184

Title:
  CVE-2015-8104

Status in linux package in Ubuntu:
  Fix Committed
Status in linux-armadaxp package in Ubuntu:
  Invalid
Status in linux-ec2 package in Ubuntu:
  Invalid
Status in linux-flo package in Ubuntu:
  Invalid
Status in linux-fsl-imx51 package in Ubuntu:
  Invalid
Status in linux-goldfish package in Ubuntu:
  New
Status in linux-lts-backport-maverick package in Ubuntu:
  New
Status in linux-lts-backport-natty package in Ubuntu:
  New
Status in linux-lts-quantal package in Ubuntu:
  Invalid
Status in linux-lts-raring package in Ubuntu:
  Invalid
Status in linux-lts-saucy package in Ubuntu:
  Invalid
Status in linux-lts-trusty package in Ubuntu:
  Invalid
Status in linux-lts-utopic package in Ubuntu:
  Invalid
Status in linux-lts-vivid package in Ubuntu:
  Invalid
Status in linux-lts-wily package in Ubuntu:
  Invalid
Status in linux-mako package in Ubuntu:
  Invalid
Status in linux-manta package in Ubuntu:
  Invalid
Status in linux-mvl-dove package in Ubuntu:
  Invalid
Status in linux-raspi2 package in Ubuntu:
  Invalid
Status in linux-ti-omap4 package in Ubuntu:
  Invalid
Status in linux source package in Precise:
  Fix Released
Status in linux-armadaxp source package in Precise:
  Fix Released
Status in linux-ec2 source package in Precise:
  Invalid
Status in linux-flo source package in Precise:
  Invalid
Status in linux-fsl-imx51 source package in Precise:
  Invalid
Status in linux-goldfish source package in Precise:
  Invalid
Status in linux-lts-backport-maverick source package in Precise:
  New
Status in linux-lts-backport-natty source package in Precise:
  New
Status in linux-lts-quantal source package in Precise:
  Invalid
Status in linux-lts-raring source package in Precise:
  Invalid
Status in linux-lts-saucy source package in Precise:
  Invalid
Status in linux-lts-trusty source package in Precise:
  Fix Released
Status in linux-lts-utopic source package in Precise:
  Invalid
Status in linux-lts-vivid source package in Precise:
  Invalid
Status in linux-lts-wily source package in Precise:
  Invalid
Status in linux-mako source package in Precise:
  Invalid
Status in linux-manta source package in Precise:
  Invalid
Status in linux-mvl-dove source package in Precise:
  Invalid
Status in linux-raspi2 source package in Precise:
  Invalid
Status in linux-ti-omap4 source package in Precise:
  Invalid
Status in linux source package in Trusty:
  Fix Released
Status in linux-armadaxp source package in Trusty:
  Invalid
Status in linux-ec2 source package in Trusty:
  Invalid
Status in linux-flo source package in Trusty:
  Invalid
Status in linux-fsl-imx51 source package in Trusty:
  Invalid
Status in linux-goldfish source package in Trusty:
  Invalid
Status in linux-lts-backport-maverick source package in Trusty:
  New
Status in linux-lts-backport-natty source package in Trusty:
  New
Status in linux-lts-quantal source package in Trusty:
  Invalid
Status in linux-lts-raring source package in Trusty:
  Invalid
Status in linux-lts-saucy source package in Trusty:
  Invalid
Status in linux-lts-trusty source package in Trusty:
  Invalid
Status in linux-lts-utopic source package in Trusty:
  Fix Released
Status in linux-lts-vivid source package in Trusty:
  Fix Committed
Status in linux-lts-wily source package in Trusty:
  Fix Committed
Status in linux-mako source package in Trusty:
  Invalid
Status in linux-manta source package in Trusty:
  Invalid
Status in linux-mvl-dove source package in Trusty:
  Invalid
Status in linux-raspi2 source package in Trusty:
  Invalid
Status in linux-ti-omap4 source package in Trusty:
  Invalid
Status in linux source package in Vivid:
  Fix Committed
Status in linux-armadaxp source package in Vivid:
  Invalid
Status in linux-ec2 source package in Vivid:
  Invalid
Status in linux-flo source package in Vivid:
  Invalid
Status in linux-fsl-imx51 source package in Vivid:
  Invalid
Status in linux-goldfish source package in Vivid:
  New
Status in linux-lts-backport-maverick source package in Vivid:
  New
Status in linux-lts-backport-natty source package in Vivid:
  New
Status in linux-lts-quantal source package in Vivid:
  Invalid
Status in linux-lts-raring source package in Vivid:
  Invalid
Status in linux-lts-saucy source package in Vivid:
  Invalid
Status in linux-lts-trusty source package in Vivid:
  Invalid
Status in linux-lts-utopic source package in Vivid:
  Invalid
Status in linux-lts-vivid source package in Vivid:
  Invalid
Status in linux-lts-wily source package in Vivid:
  Invalid
Status in linux-mako source package in Vivid:
  Invalid
Status in linux-manta source package in Vivid:
  Invalid
Status in linux-mvl-dove source package in Vivid:
  Invalid
Status in linux-raspi2 source package in Vivid:
  Invalid
Status in linux-ti-omap4 source package in Vivid:
  Invalid
Status in linux source package in Wily:
  Fix Committed
Status in linux-armadaxp source package in Wily:
  Invalid
Status in linux-ec2 source package in Wily:
  Invalid
Status in linux-flo source package in Wily:
  Invalid
Status in linux-fsl-imx51 source package in Wily:
  Invalid
Status in linux-goldfish source package in Wily:
  New
Status in linux-lts-backport-maverick source package in Wily:
  New
Status in linux-lts-backport-natty source package in Wily:
  New
Status in linux-lts-quantal source package in Wily:
  Invalid
Status in linux-lts-raring source package in Wily:
  Invalid
Status in linux-lts-saucy source package in Wily:
  Invalid
Status in linux-lts-trusty source package in Wily:
  Invalid
Status in linux-lts-utopic source package in Wily:
  Invalid
Status in linux-lts-vivid source package in Wily:
  Invalid
Status in linux-lts-wily source package in Wily:
  Invalid
Status in linux-mako source package in Wily:
  Invalid
Status in linux-manta source package in Wily:
  Invalid
Status in linux-mvl-dove source package in Wily:
  Invalid
Status in linux-raspi2 source package in Wily:
  Invalid
Status in linux-ti-omap4 source package in Wily:
  Invalid
Status in linux source package in Xenial:
  Fix Committed
Status in linux-armadaxp source package in Xenial:
  Invalid
Status in linux-ec2 source package in Xenial:
  Invalid
Status in linux-flo source package in Xenial:
  Invalid
Status in linux-fsl-imx51 source package in Xenial:
  Invalid
Status in linux-goldfish source package in Xenial:
  New
Status in linux-lts-backport-maverick source package in Xenial:
  New
Status in linux-lts-backport-natty source package in Xenial:
  New
Status in linux-lts-quantal source package in Xenial:
  Invalid
Status in linux-lts-raring source package in Xenial:
  Invalid
Status in linux-lts-saucy source package in Xenial:
  Invalid
Status in linux-lts-trusty source package in Xenial:
  Invalid
Status in linux-lts-utopic source package in Xenial:
  Invalid
Status in linux-lts-vivid source package in Xenial:
  Invalid
Status in linux-lts-wily source package in Xenial:
  Invalid
Status in linux-mako source package in Xenial:
  Invalid
Status in linux-manta source package in Xenial:
  Invalid
Status in linux-mvl-dove source package in Xenial:
  Invalid
Status in linux-raspi2 source package in Xenial:
  Invalid
Status in linux-ti-omap4 source package in Xenial:
  Invalid

Bug description:
  The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x
  through 4.6.x, allows guest OS users to cause a denial of service
  (host OS panic or hang) by triggering many #DB (aka Debug) exceptions,
  related to svm.c.

  Break-Fix: - cbdb967af3d54993f5814f1cee0ed311a055377d

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1520184/+subscriptions


References