← Back to team overview

kernel-packages team mailing list archive

[Bug 1256988] Re: netns: crash during namespace destroy

 

This bug was fixed in the package linux - 3.5.0-46.70

---------------
linux (3.5.0-46.70) quantal; urgency=low

  [ Brad Figg ]

  * UBUNTU: Disable abi and module checking due to broken modules being
    disabled and we have bumped the abi.

linux (3.5.0-46.69) quantal; urgency=low

  [Steve Conklin]

  * Release Tracking Bug
    - LP: #1266857

  [ Sergey Popovich ]

  * SAUCE: (no-up) netfilter: xt_hashlimit: fix proc entry leak in netns
    destroy path
    - LP: #1256988

  [ Tim Gardner ]

  * [Config] Enable CONFIG_VT6656
    - LP: #162671

  [ Upstream Kernel Changes ]

  * Revert "ima: policy for RAMFS"
    - LP: #1265562
  * netfilter: xt_recent: fix namespace destroy path
    - LP: #1256988
  * netfilter: xt_hashlimit: fix namespace destroy path
    - LP: #1256988
  * ACPICA: Interpreter: Fix Store() when implicit conversion is not
    possible.
    - LP: #1265562
  * ACPICA: DeRefOf operator: Update to fully resolve FieldUnit and
    BufferField refs.
    - LP: #1265562
  * ACPICA: Return error if DerefOf resolves to a null package element.
    - LP: #1265562
  * ACPICA: Fix for a Store->ArgX when ArgX contains a reference to a
    field.
    - LP: #1265562
  * aacraid: prevent invalid pointer dereference
    - LP: #1265562
  * libertas: potential oops in debugfs
    - LP: #1265562
  * ARM: sa11x0/assabet: ensure CS2 is configured appropriately
    - LP: #1265562
  * dm: allocate buffer for messages with small number of arguments using
    GFP_NOIO
    - LP: #1265562
  * ext4: avoid bh leak in retry path of ext4_expand_extra_isize_ea()
    - LP: #1265562
  * drm/radeon/si: fix define for MC_SEQ_TRAIN_WAKEUP_CNTL
    - LP: #1265562
  * drm/ttm: Handle in-memory region copies
    - LP: #1265562
  * drm/ttm: Fix ttm_bo_move_memcpy
    - LP: #1265562
  * drm/ttm: Fix memory type compatibility check
    - LP: #1265562
  * PM / hibernate: Avoid overflow in hibernate_preallocate_memory()
    - LP: #1265562
  * mtd: nand: hack ONFI for non-power-of-2 dimensions
    - LP: #1265562
  * mtd: map: fixed bug in 64-bit systems
    - LP: #1265562
  * mtd: m25p80: fix allocation size
    - LP: #1265562
  * block: fix race between request completion and timeout handling
    - LP: #1265562
  * blk-core: Fix memory corruption if blkcg_init_queue fails
    - LP: #1265562
  * loop: fix crash if blk_alloc_queue fails
    - LP: #1265562
  * block: fix a probe argument to blk_register_region
    - LP: #1265562
  * block: properly stack underlying max_segment_size to DM device
    - LP: #1265562
  * xen/blkback: fix reference counting
    - LP: #1265562
  * loop: fix crash when using unassigned loop device
    - LP: #1265562
  * SUNRPC: Fix a data corruption issue when retransmitting RPC calls
    - LP: #1265562
  * mtd: gpmi: fix kernel BUG due to racing DMA operations
    - LP: #1265562
  * ALSA: msnd: Avoid duplicated driver name
    - LP: #1265562
  * x86/microcode/amd: Tone down printk(), don't treat a missing firmware
    file as an error
    - LP: #1265562
  * SUNRPC: Avoid deep recursion in rpc_release_client
    - LP: #1265562
  * ALSA: hda - Don't clear the power state at snd_hda_codec_reset()
    - LP: #1265562
  * ASoC: blackfin: Fix missing break
    - LP: #1265562
  * drm/nouveau: when bailing out of a pushbuf ioctl, do not remove
    previous fence
    - LP: #1265562
  * ASoC: fsl: imx-pcm-fiq: omit fiq counter to avoid harm in unbalanced
    situations
    - LP: #1265562
  * ALSA: pcsp: Fix the order of input device unregistration
    - LP: #1265562
  * ASoC: wm8962: Turn on regcache_cache_only before disabling regulator
    - LP: #1265562
  * ARM: integrator_cp: Set LCD{0,1} enable lines when turning on CLCD
    - LP: #1265562
  * hwmon: (lm90) Fix max6696 alarm handling
    - LP: #1265562
  * ASoC: cs42l52: Correct MIC CTL mask
    - LP: #1265562
  * ARM: OMAP2+: omap_device: maintain sane runtime pm status around
    suspend/resume
    - LP: #1265562
  * setfacl removes part of ACL when setting POSIX ACLs to Samba
    - LP: #1265562
  * IB/ipath: Convert ipath_user_sdma_pin_pages() to use
    get_user_pages_fast()
    - LP: #1265562
  * rtlwifi: rtl8192se: Fix wrong assignment
    - LP: #1265562
  * rtlwifi: Fix endian error in extracting packet type
    - LP: #1265562
  * rtlwifi: rtl8192se: Fix incorrect signal strength for unassociated AP
    - LP: #1265562
  * rtlwifi: rtl8192cu: Fix incorrect signal strength for unassociated AP
    - LP: #1265562
  * rtlwifi: rtl8192de: Fix incorrect signal strength for unassociated AP
    - LP: #1265562
  * mwifiex: correct packet length for packets from SDIO interface
    - LP: #1265562
  * prism54: set netdev type to "wlan"
    - LP: #1265562
  * selinux: correct locking in selinux_netlbl_socket_connect)
    - LP: #1265562
  * audit: printk USER_AVC messages when audit isn't enabled
    - LP: #1265562
  * audit: fix info leak in AUDIT_GET requests
    - LP: #1265562
  * audit: use nlmsg_len() to get message payload length
    - LP: #1265562
  * target: Fix delayed Task Aborted Status (TAS) handling bug
    - LP: #1265562
  * md: fix calculation of stacking limits on level change.
    - LP: #1265562
  * drm/i915: flush cursors harder
    - LP: #1265562
  * rtlwifi: rtl8192cu: Fix more pointer arithmetic errors
    - LP: #1265562
  * radeon: workaround pinning failure on low ram gpu
    - LP: #1265562
  * drm/radeon: add semaphore trace point
    - LP: #1265562
  * nfsd: split up nfsd_setattr
    - LP: #1265562
  * nfsd: make sure to balance get/put_write_access
    - LP: #1265562
  * nfsd4: fix xdr decoding of large non-write compounds
    - LP: #1265562
  * avr32: setup crt for early panic()
    - LP: #1265562
  * avr32: fix out-of-range jump in large kernels
    - LP: #1265562
  * PCI: Remove duplicate pci_disable_device() from pcie_portdrv_remove()
    - LP: #1265562
  * powerpc/pseries: Duplicate dtl entries sometimes sent to userspace
    - LP: #1265562
  * powerpc/signals: Mark VSX not saved with small contexts
    - LP: #1265562
  * iscsi-target: fix extract_param to handle buffer length corner case
    - LP: #1265562
  * iscsi-target: chap auth shouldn't match username with trailing garbage
    - LP: #1265562
  * configfs: fix race between dentry put and lookup
    - LP: #1265562
  * KVM: perform an invalid memslot step for gpa base change
    - LP: #1265562
  * KVM: Fix iommu map/unmap to handle memory slot moves
    - LP: #1265562
  * ARM: i.MX6q: fix the wrong parent of can_root clock
    - LP: #1265562
  * crypto: s390 - Fix aes-cbc IV corruption
    - LP: #1265562
  * iio:accel:kxsd9 fix missing mutex unlock
    - LP: #1265562
  * ahci: add Marvell 9230 to the AHCI PCI device list
    - LP: #1265562
  * powerpc/signals: Improved mark VSX not saved with small contexts fix
    - LP: #1265562
  * staging: zsmalloc: Ensure handle is never 0 on success
    - LP: #1265562
  * ALSA: hda/realtek - Add support of ALC231 codec
    - LP: #1265562
  * ALSA: hda/realtek - Set pcbeep amp for ALC668
    - LP: #1265562
  * tracing: Allow events to have NULL strings
    - LP: #1265562
  * Staging: tidspbridge: disable driver
    - LP: #1265562
  * cpuset: Fix memory allocator deadlock
    - LP: #1265562
  * staging: vt6656: [BUG] Fix for TX USB resets from vendors driver.
    - LP: #1265562
  * exec/ptrace: fix get_dumpable() incorrect tests
    - LP: #1265562
    - CVE-2013-2929
  * SUNRPC: don't map EKEYEXPIRED to EACCES in call_refreshresult
    - LP: #1265562
  * ftrace: Fix function graph with loading of modules
    - LP: #1265562
  * Input: i8042 - add PNP modaliases
    - LP: #1265562
  * misc: atmel_pwm: add deferred-probing support
    - LP: #1265562
  * Linux 3.5.7.27
    - LP: #1265562
 -- Brad Figg <brad.figg@xxxxxxxxxxxxx>   Wed, 08 Jan 2014 09:51:35 -0800

** Changed in: linux (Ubuntu Quantal)
       Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux in Ubuntu.
https://bugs.launchpad.net/bugs/1256988

Title:
  netns: crash during namespace destroy

Status in “linux” package in Ubuntu:
  Fix Released
Status in “linux” source package in Precise:
  Fix Released
Status in “linux” source package in Quantal:
  Fix Released
Status in “linux” source package in Raring:
  Fix Released

Bug description:
  [Impact]
  * When restoring an iptable in a network namespace, if the network namespace is deleted the kernel crashes.

  [Test Case]
  $ sudo -s
  # ip netns add foobar
  # ip netns exec foobar iptables -A OUTPUT -m recent --rcheck --rsource
  # ip netns del foobar

  [Regression Potential]
  * The following patches fix the issue:
  665e205c1
  32263dd1b

  In addition this patch is required to fix a potential regression introduced by the original fix:
  https://git.kernel.org/cgit/linux/kernel/git/pablo/nf.git/commit/?id=b4ef4ce09308955d1aa54a289c0162607b3aa16c

  Two are upstream linux patches, the last it still in the netfilter
  upstream tree.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1256988/+subscriptions


References