I intend to upload linux to unstable on Friday or Saturday.
The pending changes include upstream stable updates with a large number
of fixes, and:
* [powerpc*] vdso: Make vdso32 installation conditional in vdso_install
(Closes: #785065)
* [armhf,arm64] Revert "net: stmmac: Send TSO packets always from Queue 0"
* [armel/marvell] Disable HW_RANDOM as no HWRNG drivers are usable here
* udeb: Add all HWRNG drivers to kernel-image (see #923675)
* lockdown: Refer to Debian wiki until manual page exists
* [powerpc,ppc64,ppc64el] linux-image: Recommend grub-ieee1275
* [i386] Add grub-efi-ia32 as an alternate recommended bootloader
* linux-source: Recommend bison and flex, always needed to build the kernel
* [armel/marvell,sh4] linux-image: Recommend apparmor, like all other configs
* udeb: Drop unused ntfs-modules packages
* ntfs: Disable NTFS_FS due to lack of upstream security support
(CVE-2018-12929, CVE-2018-12930, CVE-2018-12931)
* [x86] platform: Enable INTEL_ATOMISP2_PM as module
* [armhf] Enable SND_SOC_SPDIF for Cubietruck (Closes: #884562)
* libbpf-dev: generate pkg-config file for libbpf by backporting
libbpf-generate-pkg-config.patch from bpf-next.
* Don't longer recommend irqbalance. (closes: #926967)
* xen/pciback: Don't disable PCI_COMMAND on PCI device reset.
(CVE-2015-8553)
* [x86] Disable R3964 due to lack of security support
* [mips] Fix indirect syscall tracing & seccomp filtering for big endian
MIPS64 kernels with 32-bit userland.
* [rt] Update to 4.19.37-rt19
These changes only affect non-release architectures:
* [riscv64] linux-image-dbg: Include vdso debug symbols
* [ia64]
linux-image: Recommend grub-efi-ia64 instead of (removed)
elilo
*
[sparc64] linux-image: Recommend grub-ieee1275 instead of (removed)
silo
* [sparc64] linux-image: Install uncompressed kernel image
*
[mips*r6] Re-enable CONFIG_JUMP_LABEL, which has been fixed in
upstream.
There will be an ABI bump.
Ben.
--
Ben Hutchings
It is easier to write an incorrect program
than to understand a correct one.
Attachment:
signature.asc
Description: This is a digitally signed message part