Accepted linux 3.2.63-2+deb7u1~bpo60+1 (all source) into squeeze-backports->backports-policy, squeeze-backports

Date: Sun, 02 Nov 2014 01:08:06 +0000
Source: linux
Binary: linux-source-3.2 linux-doc-3.2 linux-manual-3.2 linux-support-3.2.0-0.bpo.4 linux-libc-dev linux-headers-3.2.0-0.bpo.4-all linux-headers-3.2.0-0.bpo.4-all-alpha linux-headers-3.2.0-0.bpo.4-common linux-image-3.2.0-0.bpo.4-alpha-generic linux-headers-3.2.0-0.bpo.4-alpha-generic linux-image-3.2.0-0.bpo.4-alpha-smp linux-headers-3.2.0-0.bpo.4-alpha-smp linux-image-3.2.0-0.bpo.4-alpha-legacy linux-headers-3.2.0-0.bpo.4-alpha-legacy linux-headers-3.2.0-0.bpo.4-all-amd64 linux-image-3.2.0-0.bpo.4-amd64 linux-headers-3.2.0-0.bpo.4-amd64 linux-image-3.2.0-0.bpo.4-amd64-dbg xen-linux-system-3.2.0-0.bpo.4-amd64 linux-headers-3.2.0-0.bpo.4-common-rt linux-image-3.2.0-0.bpo.4-rt-amd64 linux-headers-3.2.0-0.bpo.4-rt-amd64 linux-image-3.2.0-0.bpo.4-rt-amd64-dbg linux-headers-3.2.0-0.bpo.4-all-armel linux-image-3.2.0-0.bpo.4-iop32x linux-headers-3.2.0-0.bpo.4-iop32x linux-image-3.2.0-0.bpo.4-ixp4xx linux-headers-3.2.0-0.bpo.4-ixp4xx linux-image-3.2.0-0.bpo.4-kirkwood
 linux-headers-3.2.0-0.bpo.4-kirkwood linux-image-3.2.0-0.bpo.4-mv78xx0 linux-headers-3.2.0-0.bpo.4-mv78xx0 linux-image-3.2.0-0.bpo.4-orion5x linux-headers-3.2.0-0.bpo.4-orion5x linux-image-3.2.0-0.bpo.4-versatile linux-headers-3.2.0-0.bpo.4-versatile linux-headers-3.2.0-0.bpo.4-all-armhf linux-image-3.2.0-0.bpo.4-mx5 linux-headers-3.2.0-0.bpo.4-mx5 linux-image-3.2.0-0.bpo.4-omap linux-headers-3.2.0-0.bpo.4-omap linux-image-3.2.0-0.bpo.4-vexpress linux-headers-3.2.0-0.bpo.4-vexpress linux-headers-3.2.0-0.bpo.4-all-hppa linux-image-3.2.0-0.bpo.4-parisc linux-headers-3.2.0-0.bpo.4-parisc linux-image-3.2.0-0.bpo.4-parisc-smp linux-headers-3.2.0-0.bpo.4-parisc-smp linux-image-3.2.0-0.bpo.4-parisc64 linux-headers-3.2.0-0.bpo.4-parisc64 linux-image-3.2.0-0.bpo.4-parisc64-smp linux-headers-3.2.0-0.bpo.4-parisc64-smp linux-headers-3.2.0-0.bpo.4-all-i386 linux-image-3.2.0-0.bpo.4-486 linux-headers-3.2.0-0.bpo.4-486 linux-image-3.2.0-0.bpo.4-686-pae
 linux-headers-3.2.0-0.bpo.4-686-pae linux-image-3.2.0-0.bpo.4-686-pae-dbg xen-linux-system-3.2.0-0.bpo.4-686-pae linux-image-3.2.0-0.bpo.4-rt-686-pae linux-headers-3.2.0-0.bpo.4-rt-686-pae linux-image-3.2.0-0.bpo.4-rt-686-pae-dbg linux-headers-3.2.0-0.bpo.4-all-ia64 linux-image-3.2.0-0.bpo.4-itanium linux-headers-3.2.0-0.bpo.4-itanium linux-image-3.2.0-0.bpo.4-mckinley linux-headers-3.2.0-0.bpo.4-mckinley linux-headers-3.2.0-0.bpo.4-all-m68k linux-image-3.2.0-0.bpo.4-amiga linux-headers-3.2.0-0.bpo.4-amiga linux-image-3.2.0-0.bpo.4-atari linux-headers-3.2.0-0.bpo.4-atari linux-image-3.2.0-0.bpo.4-bvme6000 linux-headers-3.2.0-0.bpo.4-bvme6000 linux-image-3.2.0-0.bpo.4-mac linux-headers-3.2.0-0.bpo.4-mac linux-image-3.2.0-0.bpo.4-mvme147 linux-headers-3.2.0-0.bpo.4-mvme147 linux-image-3.2.0-0.bpo.4-mvme16x linux-headers-3.2.0-0.bpo.4-mvme16x linux-headers-3.2.0-0.bpo.4-all-mips linux-image-3.2.0-0.bpo.4-r4k-ip22 linux-headers-3.2.0-0.bpo.4-r4k-ip22
 linux-image-3.2.0-0.bpo.4-r5k-ip32 linux-headers-3.2.0-0.bpo.4-r5k-ip32 linux-image-3.2.0-0.bpo.4-sb1-bcm91250a linux-headers-3.2.0-0.bpo.4-sb1-bcm91250a linux-image-3.2.0-0.bpo.4-sb1a-bcm91480b linux-headers-3.2.0-0.bpo.4-sb1a-bcm91480b linux-image-3.2.0-0.bpo.4-4kc-malta linux-headers-3.2.0-0.bpo.4-4kc-malta linux-image-3.2.0-0.bpo.4-5kc-malta linux-headers-3.2.0-0.bpo.4-5kc-malta linux-image-3.2.0-0.bpo.4-octeon linux-headers-3.2.0-0.bpo.4-octeon linux-headers-3.2.0-0.bpo.4-all-mipsel linux-image-3.2.0-0.bpo.4-r5k-cobalt linux-headers-3.2.0-0.bpo.4-r5k-cobalt linux-image-3.2.0-0.bpo.4-loongson-2f linux-headers-3.2.0-0.bpo.4-loongson-2f linux-headers-3.2.0-0.bpo.4-all-powerpc linux-image-3.2.0-0.bpo.4-powerpc linux-headers-3.2.0-0.bpo.4-powerpc linux-image-3.2.0-0.bpo.4-powerpc-smp linux-headers-3.2.0-0.bpo.4-powerpc-smp linux-image-3.2.0-0.bpo.4-powerpc64 linux-headers-3.2.0-0.bpo.4-powerpc64 linux-headers-3.2.0-0.bpo.4-all-ppc64
 linux-headers-3.2.0-0.bpo.4-all-s390 linux-image-3.2.0-0.bpo.4-s390x linux-headers-3.2.0-0.bpo.4-s390x linux-image-3.2.0-0.bpo.4-s390x-dbg linux-image-3.2.0-0.bpo.4-s390x-tape linux-headers-3.2.0-0.bpo.4-all-s390x linux-headers-3.2.0-0.bpo.4-all-sh4 linux-image-3.2.0-0.bpo.4-sh7751r linux-headers-3.2.0-0.bpo.4-sh7751r linux-image-3.2.0-0.bpo.4-sh7785lcr linux-headers-3.2.0-0.bpo.4-sh7785lcr linux-headers-3.2.0-0.bpo.4-all-sparc linux-image-3.2.0-0.bpo.4-sparc64 linux-headers-3.2.0-0.bpo.4-sparc64 linux-image-3.2.0-0.bpo.4-sparc64-smp linux-headers-3.2.0-0.bpo.4-sparc64-smp
Architecture: all source
Version: 3.2.63-2+deb7u1~bpo60+1
Distribution: squeeze-backports
Urgency: high
Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org>
Changed-By: Ben Hutchings <ben@decadent.org.uk>
Closes: 633128 721346 726150 754420 756249 766195
 linux (3.2.63-2+deb7u1~bpo60+1) squeeze-backports; urgency=medium
   * Rebuild for squeeze:
     - Use gcc-4.4 for all architectures
     - Disable building of udebs
     - Change ABI number to 0.bpo.4
     - Monkey-patch Python collections module to add OrderedDict if necessary
     - [armel] Disable CRYPTO_FIPS, VGA_ARB, FTRACE on iop32x and ixp4xx to
       reduce kernel size (as suggested by Arnaud Patard)
     - Use QUILT_PATCH_OPTS instead of missing quilt patch --fuzz option
     - Make build target depend on build-arch only, so we don't redundantly
       build documentation on each architecture
 linux (3.2.63-2+deb7u1) wheezy-security; urgency=high
   * drivers/net,ipv6: Fix virtio/IPv6 regression in 3.2.63:
     - ipv6: reuse ip6_frag_id from ip6_ufo_append_data (Closes: #766195)
     - drivers/net: Disable UFO through virtio
     - drivers/net,ipv6: Select IPv6 fragment idents for virtio UFO packets
   * [x86] KVM: Check non-canonical addresses upon WRMSR (CVE-2014-3610)
   * [x86] KVM: Improve thread safety in pit (CVE-2014-3611)
   * [x86] KVM: nEPT: Nested INVEPT (CVE-2014-3645)
   * [x86] kvm: vmx: handle invvpid vm exit gracefully (CVE-2014-3646)
   * [x86] KVM: emulator: Use opcode::execute for CALL
   * [x86] KVM: Fix wrong masking on relative jump/call
   * [x86] KVM: Emulator fixes for eip canonical checks on near branches
   * [x86] KVM: use new CS.RPL as CPL during task switch
   * [x86] KVM: Handle errors when RIP is set during far jumps (CVE-2014-3647)
   * net: sctp: fix skb_over_panic when receiving malformed ASCONF chunks
   * net: sctp: fix panic on duplicate ASCONF chunks (CVE-2014-3687)
   * net: sctp: fix remote memory pressure from excessive queueing
   * [x86] kvm,vmx: Preserve CR4 across VM entry (CVE-2014-3690)
 linux (3.2.63-2) wheezy; urgency=medium
   * [s390*] Ignore ABI change in lowcore structure (fixes FTBFS)
 linux (3.2.63-1) wheezy; urgency=medium
   * New upstream stable update:
     - mm: highmem: don't treat PKMAP_ADDR(LAST_PKMAP) as a highmem address
     - UBIFS: fix an mmap and fsync race condition
     - HID: core: fix validation of report id 0
     - IB/srp: Fix a sporadic crash triggered by cable pulling
     - reiserfs: drop vmtruncate
     - reiserfs: call truncate_setsize under tailpack mutex
     - [arm] 8051/1: put_user: fix possible data corruption in put_user
     - ext4: fix zeroing of page during writeback
     - ext4: fix wrong assert in ext4_mb_normalize_request()
     - USB: sierra: fix remote wakeup
     - USB: option: fix runtime PM handling
     - USB: usb_wwan: fix race between write and resume
     - USB: usb_wwan: fix write and suspend race
     - USB: usb_wwan: fix urb leak at shutdown
     - USB: cdc-acm: Fix various bugs in power management
     - USB: io_ti: fix firmware download on big-endian machines (part 2)
     - md: always set MD_RECOVERY_INTR when aborting a reshape or other
     - [s390] lowcore: reserve 96 bytes for IRB in lowcore
     - rtmutex: Fix deadlock detector for real
     - xhci: delete endpoints from bandwidth list before freeing whole device
     - IB/umad: Fix error handling
     - RDMA/cxgb4: Fix four byte info leak in c4iw_create_cq()
     - nfsd: getattr for FATTR4_WORD0_FILES_AVAIL needs the statfs buffer
     - UBIFS: Remove incorrect assertion in shrink_tnc()
     - nfsd4: use recall_lock for delegation hashing
     - iscsi-target: Reject mutual authentication with reflected CHAP_C
     - ptrace: fix fork event messages across pid namespaces
     - idr: fix overflow bug during maximum ID calculation at maximum height
     - Input: synaptics - fix resolution for manually provided min/max
       (regression in 3.2.57)
     - nfsd4: fix FREE_STATEID lockowner leak (regression in 3.2.60)
     - Btrfs: fix double free in find_lock_delalloc_range
     - mm: rmap: fix use-after-free in __put_anon_vma
     - rtmutex: Handle deadlock detection smarter
     - rtmutex: Detect changes in the pi lock chain
     - rtmutex: Plug slow unlock race
     - Bluetooth: Fix check for connection encryption
     - Bluetooth: Fix SSP acceptor just-works confirmation without MITM
     - tracing: Fix syscall_*regfunc() vs copy_process() race
     - lib/lzo: Update LZO compression to current upstream version
     - lzo: properly check for overruns (CVE-2014-4608)
     - hugetlb: fix copy_hugetlb_page_range() to handle migration/hwpoisoned
     - mm: fix crashes from mbind() merging vmas
     - [mips] MSC: Prevent out-of-bounds writes to MIPS SC ioremap'd region
     - SCSI: Stop accepting SCSI requests before removing a device
     - SCSI: fix our current target reap infrastructure
     - SCSI: dual scan thread bug fix
     - perf: Fix race in removing an event
     - netlink: rate-limit leftover bytes warning and print process name
     - net: tunnels - enable module autoloading
     - net: fix inet_getid() and ipv6_select_ident() bugs
     - target: Explicitly clear ramdisk_mcp backend pages
     - iommu/vt-d: Fix missing IOTLB flush in intel_iommu_unmap()
     - ibmvscsi: Add memory barriers for send / receive
     - cpuset,mempolicy: fix sleeping function called from invalid context
     - nfsd: fix rare symlink decoding bug
     - md: flush writes before starting a recovery.
     - drm/vmwgfx: Fix incorrect write to read-only register v2:
       (regression in 3.2.58)
     - ACPI / EC: Avoid race condition related to advance_transaction()
     - ACPI / EC: Fix race condition in ec_transaction_completed()
     - hwmon: (adm1031) Fix writes to limit registers
     - alarmtimer: Fix bug where relative alarm timers were treated as absolute
     - dm io: fix a race condition in the wake up code for sync_io
     - sched: Fix possible divide by zero in avg_atom() calculation
     - locking/mutex: Disable optimistic spinning on some architectures
     - hwmon: (adt7470) Fix writes to temperature limit registers
     - usb: Check if port status is equal to RxDetect (regression in 3.2.38)
     - tcp: fix tcp_match_skb_to_sack() for unaligned SACK at end of an skb
     - igmp: fix the problem when mc leave group
     - appletalk: Fix socket referencing in skb
     - net: sctp: fix information leaks in ulpevent layer
     - dns_resolver: assure that dns_query() result is null-terminated
     - dns_resolver: Null-terminate the right string
     - rtnetlink: fix userspace API breakage for iproute2 < v3.9.0
       (regression in 3.2.45)
     - netfilter: ipt_ULOG: fix info leaks
     - xfs: fix allocbt cursor leak in xfs_alloc_ag_vextent_near
     - xfs: really fix the cursor leak in xfs_alloc_ag_vextent_near
     - shmem: fix faulting into a hole, not taking i_mutex (CVE-2014-4171)
     - shmem: fix splicing from a hole while it's punched (CVE-2014-4171)
     - [x86] x86-32, espfix: Remove filter for espfix32 due to race
     - sym53c8xx_2: Set DID_REQUEUE return code when aborting squeue
     - mm: hugetlb: fix copy_hugetlb_page_range() (regression in 3.2.61)
     - [arm*] 7668/1: fix memset-related crashes caused by recent GCC (4.7.2)
     - [arm*] 7670/1: fix the memset fix
     - ceph: fix overflow check in build_snap_context()
     - libata: support the ata host which implements a queue depth less than 32
       (regression in 3.2.59)
     - libata: introduce ata_host->n_tags to avoid oops on SAS controllers
     - [x86] x86_32, entry: Store badsys error code in %eax
       (regression in 3.2.60-1)
     - [x86] KVM: Inter-privilege level ret emulation is not implemeneted
     - block: don't assume last put of shared tags is for the host
     - debugfs: Fix corrupted loop in debugfs_remove_recursive
     - mtd/ftl: fix the double free of the buffers allocated in build_maps()
     - [x86] don't exclude low BIOS area when allocating address space for
       non-PCI cards (regression in 2.6.37)
     - scsi: handle flush errors properly
     - hwmon: (smsc47m192) Fix temperature limit and vrm write operations
     - staging: vt6655: Fix Warning on boot handle_irq_event_percpu.
     - [mips,powerpc] bfa: Fix undefined bit shift on big-endian architectures
       with 32-bit DMA address
     - Drivers: scsi: storvsc: Implement a eh_timed_out handler
     - iommu/vt-d: Exclude devices using RMRRs from IOMMU API domains
     - net: sendmsg: fix NULL pointer dereference
     - hwmon: (ads1015) Fix off-by-one for valid channel index checking
     - [mips*] tlbex: Fix a missing statement for HUGETLB
     - [mips*] Prevent user from setting FCSR cause bits
     - md/raid1,raid10: always abort recover on write error.
     - ext4: fix ext4_discard_allocated_blocks() if we can't allocate the pa
     - hwmon: (lm85) Fix various errors on attribute writes
     - hwmon: (amc6821) Fix possible race condition bug
     - crypto: af_alg - properly label AF_ALG socket
     - mnt: Change the default remount atime from relatime to the existing value
     - netlabel: fix a problem when setting bits below the previously lowest bit
     - ALSA: virtuoso: Xonar DSX support (Closes: #721346)
     - hwmon: (ads1015) Fix out-of-bounds array access
     - [s390*] locking: Reenable optimistic spinning
     - ring-buffer: Always reset iterator to reader page
     - reiserfs: Fix use after free in journal teardown
     - [powerpc*] mm: Use read barrier when creating real_pte
     - Btrfs: fix csum tree corruption, duplicate and outdated checksums
     - CIFS: Fix wrong directory attributes after rename
     - md/raid6: avoid data corruption during recovery of double-degraded RAID6
     - iommu/amd: Fix cleanup_domain for mass device removal
     - pata_scc: propagate return value of scc_wait_after_reset
     - kvm: iommu: fix the third parameter of kvm_iommu_put_pages
     - [mips*/octeon] make get_system_type() thread-safe
     - xhci: rework cycle bit checking for new dequeue pointers
       (regression in 3.2.59)
     - isofs: Fix unbounded recursion when processing relocated directories
       (CVE-2014-5471, CVE-2014-5472)
     - HID: logitech: perform bounds checking on device_id early enough
     - USB: whiteheat: Added bounds checking for bulk command response
       (CVE-2014-3183, CVE-2014-3184, CVE-2014-3185)
     - HID: logitech-dj: prevent false errors to be shown
     - ACPI / EC: Add support to disallow QR_EC to be issued when SCI_EVT isn't
       set (regression in 3.2.62)
     - HID: magicmouse: sanity check report size in raw_event() callback
     - HID: picolcd: sanity check report size in raw_event() callback
     - [armhf] 8128/1: abort: don't clear the exclusive monitors
     - [armhf] 8129/1: errata: work around Cortex-A15 erratum 830321 using dummy
     - USB: serial: fix potential stack buffer overflow
     - USB: serial: fix potential heap buffer overflow
     - [mips*] Fix accessing to per-cpu data when flushing the cache
     - inetpeer: get rid of ip_id_count
     - ip: make IP identifiers less predictable
     - tcp: Fix integer-overflows in TCP veno
     - tcp: Fix integer-overflow in TCP vegas
     - net: sctp: inherit auth_capable on INIT collisions (CVE-2014-5077)
     - iovec: make sure the caller actually wants anything in
     - sctp: fix possible seqlock seadlock in sctp_packet_transmit()
     - [sparc] Fix argument sign extension for compat_sys_futex().
     - [sparc] Handle 32-bit tasks properly in compute_effective_address().
     - [sparc] Fix top-level fault handling bugs.
     - [sparc] Don't bark so loudly about 32-bit tasks generating 64-bit fault
     - [sparc] Fix huge TSB mapping on pre-UltraSPARC-III cpus.
     - [sparc] Add membar to Niagara2 memcpy code.
     - [sparc] Do not insert non-valid PTEs into the TSB hash table.
     - [sparc] arch/sparc/math-emu/math_32.c: drop stray break operator
     - [amd64] Revert "x86-64, modify_ldt: Make support for 16-bit segments a
       runtime option"
     - [amd64] x86-64, espfix: Don't leak bits 31:16 of %esp returning to 16-bit
     - [amd64] x86_64/entry/xen: Do not invoke espfix64 on Xen
     - [amd64] x86/espfix/xen: Fix allocation of pages for paravirt page tables
   [ Ben Hutchings ]
   * drm, agp: Update to 3.4.103:
     - drm/radeon: only apply hdmi bpc pll flags when encoder mode is hdmi
     - drm/radeon: fix typo in radeon_connector_is_dp12_capable()
     - drm/radeon/atom: fix dithering on certain panels
     - drm/vmwgfx: Fix incorrect write to read-only register v2:
     - drm/radeon: stop poisoning the GART TLB
   * nfsd: Fix ACL null pointer deref (thanks to Sergio Gelato)
     (Closes: #754420)
   * ext4: fix BUG_ON in mb_free_blocks() (regression in 3.2.63)
   * udf: Avoid infinite loop when processing indirect ICBs (CVE-2014-6410)
   * libceph: do not hard code max auth ticket len (CVE-2014-6416,
     CVE-2014-6417, CVE-2014-6418)
   * sp5100_tco: Reject SB8x0 chips (Closes: #726150)
   * udeb: Add pata_rdc to pata-modules (Closes: #633128)
   [ Cyril Brulebois ]
   * udeb: Add virtio_scsi to virtio-modules (Closes: #756249).
