-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 16 Jan 2012 15:10:25 -0700 Source: user-mode-linux Binary: user-mode-linux Architecture: i386 Version: 2.6.32-1um-4+41 Distribution: squeeze Urgency: high Maintainer: i386 Build Daemon (murphy) Changed-By: dann frazier Description: user-mode-linux - User-mode Linux (kernel) Closes: 586494 633526 637234 637308 638172 641661 645308 647624 650160 650652 651255 651367 652857 653398 655049 Changes: user-mode-linux (2.6.32-1um-4+41) stable; urgency=high . * Rebuild against linux-source-2.6.32 (2.6.32-41): * Add longterm releases 2.6.32.47 and 2.6.32.48, including: - atm: br2684: Fix oops due to skb->dev being NULL - md/linear: avoid corrupting structure while waiting for rcu_free to complete. - xen/smp: Warn user why they keel over - nosmp or noapic and what to use instead. (Closes: #637308) - md: Fix handling for devices from 2TB to 4TB in 0.90 metadata. - net/9p: fix client code to fail more gracefully on protocol error - fs/9p: Fid is not valid after a failed clunk. - TPM: Call tpm_transmit with correct size (CVE-2011-1161) - TPM: Zero buffer after copying to userspace (CVE-2011-1162) - libiscsi_tcp: fix LLD data allocation - cfg80211: Fix validation of AKM suites - USB: pid_ns: ensure pid is not freed during kill_pid_info_as_uid - kobj_uevent: Ignore if some listeners cannot handle message (Closes: #641661) - nfsd4: ignore WANT bits in open downgrade - [s390] KVM: check cpu_id prior to using it - cfq: merge cooperating cfq_queues - [x86] KVM: Reset tsc_timestamp on TSC writes (fixes guest performance regression introduced in 2.6.32-35) - ext4: fix BUG_ON() in ext4_ext_insert_extent() - ext2,ext3,ext4: don't inherit APPEND_FL or IMMUTABLE_FL for new inodes For the complete list of changes, see: http://www.kernel.org/pub/linux/kernel/v2.6/longterm/ChangeLog-2.6.32.47 http://www.kernel.org/pub/linux/kernel/v2.6/longterm/ChangeLog-2.6.32.48 and the bug report which this closes: #647624. * tg3: Fix I/O failures after chip reset (Closes: #645308; regression in 2.6.32-36) * Add longterm release 2.6.32.49, including: - SCSI: st: fix race in st_scsi_execute_end - NFS/sunrpc: don't use a credential with extra groups. - netlink: validate NLA_MSECS length - hfs: add sanity check for file name length (CVE-2011-4330) - md/raid5: abort any pending parity operations when array fails. - mm: avoid null pointer access in vm_struct via /proc/vmallocinfo - ipv6: udp: fix the wrong headroom check (CVE-2011-4326) - USB: Fix Corruption issue in USB ftdi driver ftdi_sio.c For the complete list of changes, see: http://www.kernel.org/pub/linux/kernel/v2.6/longterm/ChangeLog-2.6.32.49 and the bug report which this closes: #650160. * ipv6: Allow inet6_dump_addr() to handle more than 64 addresses (Closes: #651255) * Add longterm release 2.6.32.50, including: - PCI hotplug: shpchp: don't blindly claim non-AMD 0x7450 device IDs (see #638863) - sched, x86: Avoid unnecessary overflow in sched_clock - [x86] mpparse: Account for bus types other than ISA and PCI (Closes: #586494) For the complete list of changes, see: http://www.kernel.org/pub/linux/kernel/v2.6/longterm/ChangeLog-2.6.32.50 and the bug report which this closes: #651367. * [vserver] Update patch to 2.6.32.48-vs2.3.0.36.29.8 - nfs: Fix client uid/gid caching (Closes: #633526) * [x86] Add isci driver from Linux 3.1 (Closes: #652857) - libsas: fix definition of wideport, include local sas address - [x86] Introduce pci_map_biosrom() * Add longterm release 2.6.32.51, including: - percpu: fix chunk range calculation - xfrm: Fix key lengths for rfc3686(ctr(aes)) (Closes: #650652) - jbd/jbd2: validate sb->s_first in journal_get_superblock() (CVE-2011-4132) - Make taskstats require root access (CVE-2011-2494) - hfs: fix hfs_find_init() sb->ext_tree NULL ptr oops (CVE-2011-2203) - oprofile, x86: Fix nmi-unsafe callgraph support - ext4: avoid hangs in ext4_da_should_update_i_disksize() * xen: backport upstream (xen.git#xen/stable-2.6.32.y) fixes to event handling: - multiple fixes to PIRQ event channel handling (Closes: #638172) - setup IRQ before binding VIRQ to it. - correctly setup event channel mask for secondary CPUs on restore. - use locked set/clear bit when manipulating event channel masks. - ensure event channels are handled in a fair/round-robin order preventing lower numbered event channels from starving higher. * xen: blkback: don't fail empty barrier requests (Closes: #637234) * ipv6: make fragment identifications less predictable (CVE-2011-2699) - fix NULL dereference in udp6_ufo_fragment (see #643817) * Add longterm release 2.6.32.52: - Revert "clockevents: Set noop handler in clockevents_exchange_device()", included in stable update 2.6.32.50 (Closes: #653398) * Add longterm release 2.6.32.53, including: - cfq-iosched: fix cfq_cic_link() race confition For the complete list of changes, see: http://www.kernel.org/pub/linux/kernel/v2.6/longterm/ChangeLog-2.6.32.53 and the bug report which this closes: #655049. Checksums-Sha1: dce08b4f4009f3489e7c474b69d82c2b57c6e2c3 6519250 user-mode-linux_2.6.32-1um-4+41_i386.deb Checksums-Sha256: 015110bed060f32adbf26c338ff418f25eee4bb0090887892c03e08fc8e7e84c 6519250 user-mode-linux_2.6.32-1um-4+41_i386.deb Files: d5b0b4a4f93fa0e1f0969f2bfd2da90c 6519250 kernel extra user-mode-linux_2.6.32-1um-4+41_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAEBCAAGBQJPFeRvAAoJEDNF0n2wdNbJKfMP/jJXWSlp2L//STE52414cMa6 b3XmIb+pKH8Y2EQXfXZWDL1f7rvAhS9REepMvsa7W8XclI51py0O82YMA8eGIAyz gFz+8xdXJGZeJ8Ijvn/vyQN79817YtXaA0IzGc1YIldS27zlpStGTeZnhouSOQA6 Fn+6K+9QGSpI7gXb8rcMqyH/H/556g5Vtq+6ttgVIpaI/j8bud/fMR6s6/so7Fl5 5ZuYrvPlL646+rAGyLXBl/joXaYGY9I8gUKC66bZ1/WSk3aIbfUyHEy4woAfu+2p qqd6Kxqxocrp8nqjKCH/UIkBez0uaI9YDi8mKQ4z34VK+CNIO1cYGAILoUawgvfe D4Obf+FvTuq1XIKijtditkRDcouUeVKVlZMPhAWDf5LveVYnJj7atnubL12dbEfR p84A8dSPKEtlqiI9gjS6ChLfXII/LOBdDnkct0EU7Cf68B4DL9PZlcU2Cg1lisG0 u8Nbf0pKujOL4d86prDOHH5Syyq0wM1RFQjKPy+r+VpYiilX5dyMVRSAx5K5jdJq V4ucrcrIzh5k28hI5hdED2jNt4TgPbj8406PTAIvdCg78OJnrRr6m/CHZtRY1Zoj SMLqx8+rwyDK8TcgX9kjXbdsb81i4x4apmoJEhefmB9AimQtOD+K9Oav46wUUb1Z OPkq3zfnR6+vUJrK+owI =aDc1 -----END PGP SIGNATURE-----