OVMSA-2015-0109

OVMSA-2015-0109 - kernel-uek security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2015-08-03

Description


[3.8.13-98]
- KVM: x86: SYSENTER emulation is broken (Nadav Amit) [Orabug: 21502729] {CVE-2015-0239} {CVE-2015-0239}
- fs: take i_mutex during prepare_binprm for set[ug]id executables (Jann Horn) [Orabug: 21502159] {CVE-2015-3339}

[3.8.13-97]
- add ql2400, ql2500 firmware versions to prerequisites (Dan Duval) [Orabug: 21474929]
- correct QLogic firmware dependencies in the spec file (Dan Duval) [Orabug: 21474929]

[3.8.13-96]
- xen-blkfront: don't add indirect page to list when !feature_persistent (Bob Liu) [Orabug: 21459266]

[3.8.13-95]
- add firmware dependencies to spec files (Dan Duval) [Orabug: 21417522]

[3.8.13-94]
- ipv6: Don't reduce hop limit for an interface (D.S. Ljungmark) [Orabug: 21444784] {CVE-2015-2922}
- ipv4: Missing sk_nulls_node_init() in ping_unhash(). (David S. Miller) [Orabug: 21444685] {CVE-2015-3636}

[3.8.13-93]
- config: sync up config files to make build clean (Guangyu Sun) [Orabug: 21425838]
- acpi: fix typo in drivers/acpi/osl.c (Guangyu Sun) [Orabug: 21418329]

[3.8.13-92]
- Revert 'i40e: Add support for getlink, setlink ndo ops' (Brian Maly) [Orabug: 21314906]
- x86: Do not try to sync identity map for non-mapped pages (Dave Hansen) [Orabug: 21326516]

[3.8.13-91]
- rds: re-entry of rds_ib_xmit/rds_iw_xmit (Wengang Wang) [Orabug: 21324074]
- drm/mgag200: Reject non-character-cell-aligned mode widths (Adam Jackson) [Orabug: 20868823]
- drm/mgag200: fix typo causing bw limits to be ignored on some chips (Dave Airlie) [Orabug: 20868823]
- drm/mgag200: remove unused driver_private access (David Herrmann) [Orabug: 20868823]
- drm/mgag200: Invalidate page tables when pinning a BO (Egbert Eich) [Orabug: 20868823]
- drm/mgag200: Fix LUT programming for 16bpp (Egbert Eich) [Orabug: 20868823]
- drm/mgag200: Fix framebuffer pitch calculation (Takashi Iwai) [Orabug: 20868823]
- drm/mgag200: Add sysfs support for connectors (Egbert Eich) [Orabug: 20868823]
- drm/mgag200: Add an crtc_disable callback to the crtc helper funcs (Egbert Eich) [Orabug: 20868823]
- drm/mgag200: Fix logic in mgag200_bo_pin() (v2) (Egbert Eich) [Orabug: 20868823]
- drm/mgag200: inline reservations (Maarten Lankhorst) [Orabug: 20868823]
- drm/mgag200: do not attempt to acquire a reservation while in an interrupt handler (Maarten Lankhorst) [Orabug: 20868823]
- drm/mgag200: Added resolution and bandwidth limits for various G200e products. (Julia Lemire) [Orabug: 20868823]
- drm/mgag200: Reject modes that are too big for VRAM (Christopher Harvey) [Orabug: 20868823]
- drm/mgag200: Don't do full cleanup if mgag200_device_init fails (Christopher Harvey) [Orabug: 20868823]
- drm/mgag200: Hardware cursor support (Christopher Harvey) [Orabug: 20868823]
- drm/mgag200: Add missing write to index before accessing data register (Christopher Harvey) [Orabug: 20868823]
- drm/mgag200: Fix framebuffer base address programming (Christopher Harvey) [Orabug: 20868823]
- drm/mgag200: Convert counter delays to jiffies (Christopher Harvey) [Orabug: 20868823]
- drm/mgag200: Fix writes into MGA1064_PIX_CLK_CTL register (Christopher Harvey) [Orabug: 20868823]
- drm/mgag200: Don't change unrelated registers during modeset (Christopher Harvey) [Orabug: 20868823]
- Revert 'lpfc: Fix for lun discovery issue with 8Gig adapter.' (Guru Anbalagane) [Orabug: 21304962]

[3.8.13-90]
- x86/asm/entry/64: Remove a bogus 'ret_from_fork' optimization (Andy Lutomirski) [Orabug: 21308309] {CVE-2015-2830}
- Update patched for lpfc from 10.6.61.0 to 10.6.61.1 for UEK R3 U6 release. (Dick Kennedy)
- lpfc: Change buffer pool empty message to miscellaneous category (Dick Kennedy)
- lpfc: Fix incorrect log message reported for empty FCF record. (Dick Kennedy)
- lpfc: Fix rport leak. (Dick Kennedy)
- lpfc: Correct loss of RSCNs during array takeaway/giveback testing. (Dick Kennedy)
- lpfc: Fix crash in vport_delete. (Dick Kennedy)
- lpfc: Fix to remove IRQF_SHARED flag for MSI/MSI-X vectors. (Dick Kennedy)
- lpfc: Fix discovery issue when changing from Pt2Pt to Fabric. (Dick Kennedy)
- lpfc: Correct reporting of vport state on fdisc command failure. (Dick Kennedy)
- lpfc: Add support for RDP ELS command. (Dick Kennedy)
- lpfc: Fix ABORTs WQ selection in terminate_rport_io (Dick Kennedy)
- lpfc: Correct reference counting of rport (Dick Kennedy)
- lpfc: Add support for ELS LCB. (Dick Kennedy)
- lpfc: Correct loss of target discovery after cable swap. (Dick Kennedy)
- dtrace: sigaltstack is no longer a stub syscall (Kris Van Hees) [Orabug: 21304183]
- hpsa: add in new offline mode (Don Brace) [Orabug: 21289871]
- hpsa: add in new controllers (Don Brace) [Orabug: 21289871]
- hpsa: hpsa decode sense data for io and tmf (Don Brace) [Orabug: 21289871]
- hpsa: enable bus mastering during init (Don Brace) [Orabug: 21289871]
- hpsa: enhance kdump (Don Brace) [Orabug: 21289871]
- hpsa: enhance error checking. (Don Brace) [Orabug: 21289871]
- hpsa: enhance driver output (Don Brace) [Orabug: 21289871]
- hpsa: update pci device table (Don Brace) [Orabug: 21289871]
- vmw_pvscsi: Fix pvscsi_abort() function. (Arvind Kumar) [Orabug: 21266080]
- qla2xxx: Update driver version to 8.07.00.18.39.0-k. (Sawan Chandak) [Orabug: 21241070]
- qla2xxx: Restore physical port WWPN only, when port down detected for FA-WWPN port. (Sawan Chandak) [Orabug: 21241070]
- qla2xxx: Fix virtual port configuration, when switch port is disabled/enabled. (Sawan Chandak) [Orabug: 21241070]
- qla2xxx: Prevent multiple firmware dump collection for ISP27XX. (Himanshu Madhani) [Orabug: 21241070]
- qla2xxx: Disable Interrupt handshake for ISP27XX. (Himanshu Madhani) [Orabug: 21241070]
- qla2xxx: Add debugging info for MBX timeout. (Himanshu Madhani) [Orabug: 21241070]
- qla2xxx: Add serdes read/write support for ISP27XX (Andrew Vasquez) [Orabug: 21241070]
- qla2xxx: Add udev notification to save fw dump for ISP27XX (Himanshu Madhani) [Orabug: 21241070]
- qla2xxx: Add message for sucessful FW dump collected for ISP27XX. (Himanshu Madhani) [Orabug: 21241070]
- qla2xxx: Add support to load firmware from file for ISP 26XX/27XX. (Sawan Chandak) [Orabug: 21241070]
- qla2xxx: Fix beacon blink for ISP27XX. (Nigel Kirkland) [Orabug: 21241070]
- qla2xxx: Increase the wait time for firmware to be ready for P3P. (Chad Dupuis) [Orabug: 21241070]
- qla2xxx: Fix printks in ql_log message (Yannick Guerrini) [Orabug: 21241070]
- qla2xxx: Fix printk in qla25xx_setup_mode (Yannick Guerrini) [Orabug: 21241070]
- bnx2i: update to 2.11.2.0 (Vaughan Cao) [Orabug: 21241055]
- bnx2fc: update to 2.9.3 (Vaughan Cao) [Orabug: 21241055]
- bnx2x: update to 1.712.33 (Vaughan Cao) [Orabug: 21241055]
- cnic: update to 2.5.20h (Vaughan Cao) [Orabug: 21241055]
- bnx2: update to 2.2.5o (Vaughan Cao) [Orabug: 21241055]
- md: use SRCU to improve performance (Mikulas Patocka) [Orabug: 18231164]
- kvm: raise KVM_SOFT_MAX_VCPUS to support more vcpus (Dan Duval) [Orabug: 21144488]
- vsock: Make transport the proto owner (Andy King) [Orabug: 21266075]
- VSOCK: Move af_vsock.h and vsock_addr.h to include/net (Asias He) [Orabug: 21266075]

[3.8.13-89]
- drivers: xen-blkfront: only talk_to_blkback() when in XenbusStateInitialising (Bob Liu)
- xen/block: add multi-page ring support (Bob Liu)
- driver: xen-blkfront: move talk_to_blkback to a more suitable place (Bob Liu)
- drivers: xen-blkback: delay pending_req allocation to connect_ring (Bob Liu)
- xen/grant: introduce func gnttab_unmap_refs_sync() (Bob Liu)
- xen/blkback: safely unmap purge persistent grants (Bob Liu)
- xenbus_client: Extend interface to support multi-page ring (Wei Liu)
- be2net: update the driver version to 10.6.0.2 (Sathya Perla) [Orabug: 21275400]
- be2net: update copyright year to 2015 (Vasundhara Volam) [Orabug: 21275400]
- be2net: use be_virtfn() instead of !be_physfn() (Kalesh AP) [Orabug: 21275400]
- be2net: simplify UFI compatibility checking (Vasundhara Volam) [Orabug: 21275400]
- be2net: post full RXQ on interface enable (Suresh Reddy) [Orabug: 21275400]
- be2net: check for INSUFFICIENT_VLANS error (Kalesh AP) [Orabug: 21275400]
- be2net: receive pkts with L3, L4 errors on VFs (Somnath Kotur) [Orabug: 21275400]
- be2net: log link status (Ivan Vecera) [Orabug: 21275400]
- be2net: Fix a bug in Rx buffer posting (Ajit Khaparde) [Orabug: 21275400]
- be2net: bump up the driver version to 10.6.0.1 (Sathya Perla) [Orabug: 21275400]
- be2net: use PCI MMIO read instead of config read for errors (Suresh Reddy) [Orabug: 21275400]
- be2net: restrict MODIFY_EQ_DELAY cmd to a max of 8 EQs (Suresh Reddy) [Orabug: 21275400]
- be2net: Prevent VFs from enabling VLAN promiscuous mode (Vasundhara Volam) [Orabug: 21275400]
- ethernet: codespell comment spelling fixes (Joe Perches) [Orabug: 21275400]
- be2net: avoid creating the non-RSS default RXQ if FW allows to (Vasundhara Volam) [Orabug: 21275400]
- be2net: use a wrapper to schedule and cancel error detection task (Sathya Perla) [Orabug: 21275400]
- be2net: shorten AMAP_GET/SET_BITS() macro calls (Sathya Perla) [Orabug: 21275400]
- be2net: MODULE_DEVICE_TABLE: fix some callsites (Andrew Morton) [Orabug: 21275400]
- be2net: avoid unncessary swapping of fields in eth_tx_wrb (Sathya Perla) [Orabug: 21275400]
- be2net: process port misconfig async event (Vasundhara Volam) [Orabug: 21275400]
- be2net: refactor be_set_rx_mode() and be_vid_config() for readability (Sathya Perla) [Orabug: 21275400]
- be2net: remove duplicate code in be_cmd_rx_filter() (Sathya Perla) [Orabug: 21275400]
- be2net: use offset based FW flashing for Skyhawk chip (Vasundhara Volam) [Orabug: 21275400]
- be2net: avoid flashing SH-B0 UFI image on SH-P2 chip (Vasundhara Volam) [Orabug: 21275400]
- be2net: refactor code that checks flash file compatibility (Vasundhara Volam) [Orabug: 21275400]
- be2net: replace (1 << x) with BIT(x) (Vasundhara Volam) [Orabug: 21275400]
- be2net: move un-exported routines from be.h to respective src files (Sathya Perla) [Orabug: 21275400]
- bridge: add flags argument to ndo_bridge_setlink and ndo_bridge_dellink (Roopa Prabhu) [Orabug: 21275400]
- be2net: move definitions related to FW cmdsfrom be_hw.h to be_cmds.h (Vasundhara Volam) [Orabug: 21275400]
- be2net: issue function reset cmd in resume path (Kalesh AP) [Orabug: 21275400]
- be2net: add a log message for POST timeout in Lancer (Kalesh AP) [Orabug: 21275400]
- be2net: fix failure case in setting flow control (Kalesh AP) [Orabug: 21275400]
- be2net: move interface create code to a separate routine (Kalesh AP) [Orabug: 21275400]
- VMCI: Guard against overflow in queue pair allocation (Jorgen Hansen) [Orabug: 21266077]
- VMCI: Check userland-provided datagram size (Andy King) [Orabug: 21266077]
- VMCI: Fix two UVA mapping bugs (Jorgen Hansen) [Orabug: 21266077]
- VMCI: integer overflow in vmci_datagram_dispatch() (Dan Carpenter) [Orabug: 21266077]
- VMCI: fix error handling path when registering guest driver (Dmitry Torokhov) [Orabug: 21266077]
- VMCI: Add support for virtual IOMMU (Andy King) [Orabug: 21266077]
- VMCI: Remove non-blocking/pinned queuepair support (Andy King) [Orabug: 21266077]

[3.8.13-88]
- Oracle Linux Kernel Module Signing Key (Alexey Petrenko) [Orabug: 21249387]
- extrakeys.pub is not needed for the build (Alexey Petrenko) [Orabug: 21249387]
- Fix kabi break due to find_special_page was introduced (Bob Liu) [Orabug: 21250018]
- xen/gntdev: provide find_special_page VMA operation (David Vrabel) [Orabug: 21250018]
- xen/gntdev: mark userspace PTEs as special on x86 PV guests (David Vrabel) [Orabug: 21250018]
- xen-blkback: safely unmap grants in case they are still in use (Jennifer Herbert) [Orabug: 21250018]
- xen/gntdev: safely unmap grants in case they are still in use (Jennifer Herbert) [Orabug: 21250018]
- xen/gntdev: convert priv->lock to a mutex (David Vrabel) [Orabug: 21250018]
- xen/grant-table: add a mechanism to safely unmap pages that are in use (Jennifer Herbert) [Orabug: 21250018]
- xen-netback: use foreign page information from the pages themselves (Jennifer Herbert) [Orabug: 21250018]
- xen: mark grant mapped pages as foreign (Jennifer Herbert) [Orabug: 21250018]
- xen/grant-table: add helpers for allocating pages (David Vrabel) [Orabug: 21250018]
- x86/xen: require ballooned pages for grant maps (Jennifer Herbert) [Orabug: 21250018]
- xen: remove scratch frames for ballooned pages and m2p override (David Vrabel) [Orabug: 21250018]
- xen/grant-table: pre-populate kernel unmap ops for xen_gnttab_unmap_refs() (David Vrabel) [Orabug: 21250018]
- mm: add 'foreign' alias for the 'pinned' page flag (Jennifer Herbert) [Orabug: 21250018]
- mm: provide a find_special_page vma operation (David Vrabel) [Orabug: 21250018]
- NFS hangs in __ocfs2_cluster_lock due to race with ocfs2_unblock_lock (Tariq Saeed) [Orabug: 20933419]
- swiotlb: don't assume PA 0 is invalid (Jan Beulich) [Orabug: 21249144]

[3.8.13-87]
- qla4xxx: Update driver version to v5.04.00.07.06.02-uek3 (Nilesh Javali) [Orabug: 21241091]
- qla4xxx: check the return value of dma_alloc_coherent() (Maurizio Lombardi) [Orabug: 21241091]
- scsi: qla4xxx: ql4_mbx.c: Cleaning up missing null-terminate in conjunction with strncpy (Rickard Strandqvist) [Orabug: 21241091]
- scsi: qla4xxx: ql4_os.c: Cleaning up missing null-terminate in conjunction with strncpy (Rickard Strandqvist) [Orabug: 21241091]
- qla4xxx: fix get_host_stats error propagation (Mike Christie) [Orabug: 21241091]
- scsi_ibft: Fix finding Broadcom specific ibft sign (Vikas Chaudhary) [Orabug: 21241091]
- dtrace: convert from sdt_instr_t to asm_instr_t (Kris Van Hees) [Orabug: 21267945]
- dtrace: percpu: move from __get_cpu_var() to this_cpu_ptr() (Kris Van Hees) [Orabug: 21265599]
- dtrace: do not vmalloc/vfree from probe context (Kris Van Hees) [Orabug: 21267934]
- dtrace: restructuring for multi-arch support (Kris Van Hees) [Orabug: 21267922]
- kallsyms: fix /proc/kallmodsyms to not be misled by const variables (Nick Alcock) [Orabug: 21257170]
- storvsc: force discovery of LUNs that may have been removed. (K. Y. Srinivasan) [Orabug: 20768211]
- storvsc: in responce to a scan event, scan the host (K. Y. Srinivasan) [Orabug: 20768211]
- builds: configs: Enable mgs driver for OL7 (Santosh Shilimkar) [Orabug: 20505584]
- aacraid: driver version change (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: AIF raw device remove support (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: performance improvement changes (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: IOCTL fix (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: IOP RESET command handling changes (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: 240 simple volume support (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: vpd page code 0x83 support (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: MSI-x support (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: 4KB sector support (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: IOCTL pass-through command fix (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: AIF support for SES device add/remove (Mahesh Rajashekhara) [Orabug: 21208741]
- scsi: use 64-bit LUNs (Hannes Reinecke) [Orabug: 21208741]
- remove deprecated IRQF_DISABLED from SCSI (Michael Opdenacker) [Orabug: 21208741]
- aacraid: kdump fix (Mahesh Rajashekhara) [Orabug: 21208741]
- drivers: avoid parsing names as kthread_run() format strings (Kees Cook) [Orabug: 21208741]
- aacraid: Fix for arrays are going offline in the system. System hangs (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: Dual firmware image support (Mahesh Rajashekhara) [Orabug: 21208741]
- aacraid: suppress two GCC warnings (Paul Bolle) [Orabug: 21208741]
- aacraid: 1024 max outstanding command support for Series 7 and above (Mahesh Rajashekhara) [Orabug: 21208741]

[3.8.13-86]
- kallsyms: fix /proc/kallmodsyms to not be misled by external symbols (Nick Alcock) [Orabug: 21245508]
- wait: change waitfd() to use wait4(), not waitid(); reduce invasiveness (Nick Alcock) [Orabug: 21245391]
- ixgbevf: upgrade to version 2.16.1 (Brian Maly) [Orabug: 21104474]
- ipv6: don't call addrconf_dst_alloc again when enable lo (Gao feng) [Orabug: 21088702]
- efi/xen: Pass missing argument to EFI runtime Xen hypercall (Daniel Kiper) [Orabug: 21247143]

[3.8.13-85]
- fanotify: fix notification of groups with inode & mount marks (Jan Kara) [Orabug: 21168905]
- NVMe: Fix VPD B0 max sectors translation (Keith Busch) [Orabug: 21117187]
- NVMe: Add translation for block limits (Keith Busch) [Orabug: 21117187]
- nvme: Fix PRP list calculation for non-4k system page size (Murali Iyer) [Orabug: 21117187]
- NVMe: Fix potential corruption on sync commands (Keith Busch) [Orabug: 21117187]
- NVMe: Fix potential corruption during shutdown (Keith Busch) [Orabug: 21117187]
- NVMe: Initialize device list head before starting (Keith Busch) [Orabug: 21117187]
- NVMe: Asynchronous controller probe (Keith Busch) [Orabug: 21117187]
- NVMe: Register management handle under nvme class (Keith Busch) [Orabug: 21117187]
- NVMe: Update SCSI Inquiry VPD 83h translation (Keith Busch) [Orabug: 21117187]
- NVMe: Update data structures for NVMe 1.2 (Matthew Wilcox) [Orabug: 21117187]
- NVMe: Update namespace and controller identify structures to the 1.1a spec (Dimitri John Ledkov) [Orabug: 21117187]
- NVMe: Update module version (Keith Busch) [Orabug: 21117187]
- fnic: Override the limitation on number of scsi timeouts (Narsimhulu Musini) [Orabug: 21084835]
- fnic: IOMMU Fault occurs when IO and abort IO is out of order (Anil Chintalapati (achintal)) [Orabug: 21084835]
- Fnic: Fnic Driver crashed with NULL pointer reference (Hiral Shah) [Orabug: 21084835]
- Fnic: For Standalone C series, 'sending VLAN request' message seen even if the link is down (Hiral Shah) [Orabug: 21084835]
- Fnic: Improper resue of exchange Ids (Hiral Shah) [Orabug: 21084835]
- Fnic: Memcopy only mimumum of data or trace buffer (Hiral Shah) [Orabug: 21084835]
- Fnic: Not probing all the vNICS via fnic_probe on boot (Hiral Shah) [Orabug: 21084835]
- fnic: assign FIP_ALL_FCF_MACS to fcoe_all_fcfs (Hiral Shah) [Orabug: 21084835]
- uek-rpm: ol6: update build environment to 6.6 (Guangyu Sun)

[3.8.13-84]
- x86_64, vdso: Fix the vdso address randomization algorithm (Andy Lutomirski) [Orabug: 21226722] {CVE-2014-9585}

[3.8.13-83]
- snic: fix format string overflow (Brian Maly) [Orabug: 21091759]
- scsi: add snic driver to makefile (Brian Maly) [Orabug: 21091759]
- snic: enable snic in kernel configs (Brian Maly) [Orabug: 21091759]
- snic: minor checkpatch fixes (Narsimhulu Musini) [Orabug: 21091759]
- snic: Add Makefile, patch Kconfig, MAINTAINERS (Narsimhulu Musini) [Orabug: 21091759]
- snic: Add event tracing to capture IO events. (Narsimhulu Musini) [Orabug: 21091759]
- snic: Add sysfs entries to list stats and trace data (Narsimhulu Musini) [Orabug: 21091759]
- snic: Add low level queuing interfaces (Narsimhulu Musini) [Orabug: 21091759]
- snic: add SCSI handling, AEN, and fwreset handling (Narsimhulu Musini) [Orabug: 21091759]
- snic: Add snic target discovery (Narsimhulu Musini) [Orabug: 21091759]
- snic: Add meta request, handling of meta requests. (Narsimhulu Musini) [Orabug: 21091759]
- snic: Add interrupt, resource firmware interfaces (Narsimhulu Musini) [Orabug: 21091759]
- snic: snic module infrastructure (Narsimhulu Musini) [Orabug: 21091759]
- xen/mmu: Move the setting of pvops.write_cr3 to later phase in bootup. (Konrad Rzeszutek Wilk) [Orabug: 21197204]
- x86-64, xen, mmu: Provide an early version of write_cr3. (Konrad Rzeszutek Wilk) [Orabug: 21197204]
- uek-rpm: build: Use SHA512 instead of SHA256 for module signing (Natalya Naumova) [Orabug: 20687425]
- config: ol6: make CONFIG_SERIAL_8250_NR_UARTS 64 (Guangyu Sun) [Orabug: 21141039]
- config: enable CONFIG_INTEL_TXT (Guangyu Sun) [Orabug: 21176777]
- export host-only net/core and net/ipv4 parameters to a container as read-only (Thomas Tanaka) [Orabug: 21151210]
- Revert 'i40e: Add FW check to disable DCB and wrap autoneg workaround with FW check' (Brian Maly) [Orabug: 21103806]
- xen-netfront: print correct number of queues (David Vrabel) [Orabug: 21150627]
- xen-netfront: release per-queue Tx and Rx resource when disconnecting (David Vrabel) [Orabug: 21150627]
- xen-netfront: fix locking in connect error path (David Vrabel) [Orabug: 21150627]
- xen-netfront: call netif_carrier_off() only once when disconnecting (David Vrabel) [Orabug: 21150627]
- xen-netfront: don't nest queue locks in xennet_connect() (David Vrabel) [Orabug: 21150627]
- xen-net{back, front}: Document multi-queue feature in netif.h (Andrew J. Bennieston) [Orabug: 21150627]
- xen-netfront: recreate queues correctly when reconnecting (David Vrabel) [Orabug: 21150627]
- xen-netfront: fix oops when disconnected from backend (David Vrabel) [Orabug: 21150627]
- xen-netfront: initialise queue name in xennet_init_queue (Wei Liu) [Orabug: 21150627]
- xen-netfront: Add support for multiple queues (Andrew J. Bennieston) [Orabug: 21150627]
- xen-netfront: Factor queue-specific data into queue struct. (Andrew J. Bennieston) [Orabug: 21150627]
- xen-netback: bookkeep number of active queues in our own module (Wei Liu) [Orabug: 21150627]
- net: xen-netback: include linux/vmalloc.h again (Arnd Bergmann) [Orabug: 21150627]
- xen-netback: Add support for multiple queues (Andrew J. Bennieston) [Orabug: 21150627]
- xen-netback: Factor queue-specific data into queue struct (Wei Liu) [Orabug: 21150627]
- xen-netback: Move grant_copy_op array back into struct xenvif. (Andrew J. Bennieston) [Orabug: 21150627]
- ixgbe: Look up MAC address in Open Firmware or IDPROM (Martin K Petersen) [Orabug: 20983421]
- ixgbe: update to ver 4.0.3 (Ethan Zhao) [Orabug: 20983421]

[3.8.13-82]
- config: enable some secure boot features for ol7 (Guangyu Sun) [Orabug: 18961720]
- efi: Disable secure boot if shim is in insecure mode (Josh Boyer) [Orabug: 18961720]
- hibernate: Disable in a signed modules environment (Josh Boyer) [Orabug: 18961720]
- efi: Add EFI_SECURE_BOOT bit (Josh Boyer) [Orabug: 18961720]
- Add option to automatically set securelevel when in Secure Boot mode (Matthew Garrett) [Orabug: 18961720]
- asus-wmi: Restrict debugfs interface when securelevel is set (Matthew Garrett) [Orabug: 18961720]
- x86: Restrict MSR access when securelevel is set (Matthew Garrett) [Orabug: 18961720]
- uswsusp: Disable when securelevel is set (Matthew Garrett) [Orabug: 18961720]
- kexec: Disable at runtime if securelevel has been set. (Matthew Garrett) [Orabug: 18961720]
- acpi: Ignore acpi_rsdp kernel parameter when securelevel is set (Matthew Garrett) [Orabug: 18961720]
- acpi: Limit access to custom_method if securelevel is set (Matthew Garrett) [Orabug: 18961720]
- Restrict /dev/mem and /dev/kmem when securelevel is set. (Matthew Garrett) [Orabug: 18961720]
- x86: Lock down IO port access when securelevel is enabled (Matthew Garrett) [Orabug: 18961720]
- PCI: Lock down BAR access when securelevel is enabled (Matthew Garrett) [Orabug: 18961720]
- Enforce module signatures when securelevel is greater than 0 (Matthew Garrett) [Orabug: 18961720]
- Add BSD-style securelevel support (Matthew Garrett) [Orabug: 18961720]
- MODSIGN: Support not importing certs from db (Josh Boyer) [Orabug: 18961720]
- MODSIGN: Import certificates from UEFI Secure Boot (Josh Boyer) [Orabug: 18961720]
- MODSIGN: Add module certificate blacklist keyring (Josh Boyer) [Orabug: 18961720]
- Add an EFI signature blob parser and key loader. (Dave Howells) [Orabug: 18961720]
- Add EFI signature data types (Dave Howells) [Orabug: 18961720]
- efi: fix error handling in add_sysfs_runtime_map_entry() (Dan Carpenter) [Orabug: 18961720]
- PEFILE: Relax the check on the length of the PKCS#7 cert (David Howells) [Orabug: 18961720]
- kexec: purgatory: add clean-up for purgatory directory (Michael Welling) [Orabug: 18961720]
- x86/purgatory: use approprate -m64/-32 build flag for arch/x86/purgatory (Vivek Goyal) [Orabug: 18961720]
- kexec: remove CONFIG_KEXEC dependency on crypto (Vivek Goyal) [Orabug: 18961720]
- kexec: create a new config option CONFIG_KEXEC_FILE for new syscall (Vivek Goyal) [Orabug: 18961720]
- resource: fix the case of null pointer access (Vivek Goyal) [Orabug: 18961720]
- kexec: verify the signature of signed PE bzImage (Vivek Goyal) [Orabug: 18961720]
- kexec: support kexec/kdump on EFI systems (Vivek Goyal) [Orabug: 18961720]
- kexec: support for kexec on panic using new system call (Vivek Goyal) [Orabug: 18961720]
- kexec-bzImage64: support for loading bzImage using 64bit entry (Vivek Goyal) [Orabug: 18961720]
- kexec: load and relocate purgatory at kernel load time (Vivek Goyal) [Orabug: 18961720]
- purgatory: core purgatory functionality (Vivek Goyal) [Orabug: 18961720]
- purgatory/sha256: provide implementation of sha256 in purgaotory context (Vivek Goyal) [Orabug: 18961720]
- kexec: implementation of new syscall kexec_file_load (Vivek Goyal) [Orabug: 18961720]
- kexec: new syscall kexec_file_load() declaration (Vivek Goyal) [Orabug: 18961720]
- kexec: make kexec_segment user buffer pointer a union (Vivek Goyal) [Orabug: 18961720]
- resource: provide new functions to walk through resources (Vivek Goyal) [Orabug: 18961720]
- kexec: use common function for kimage_normal_alloc() and kimage_crash_alloc() (Vivek Goyal) [Orabug: 18961720]
- kexec: move segment verification code in a separate function (Vivek Goyal) [Orabug: 18961720]
- kexec: rename unusebale_pages to unusable_pages (Vivek Goyal) [Orabug: 18961720]
- kernel: build bin2c based on config option CONFIG_BUILD_BIN2C (Vivek Goyal) [Orabug: 18961720]
- bin2c: move bin2c in scripts/basic (Vivek Goyal) [Orabug: 18961720]
- kexec: remove unnecessary return (Xishi Qiu) [Orabug: 18961720]
- keys: remove duplicated loads of ksplice certificate (Guangyu Sun) [Orabug: 21034277]
- X.509: Support parse long form of length octets in Authority Key Identifier (Chun-Yi Lee) [Orabug: 18961720]
- KEYS: Pre-clear struct key on allocation (David Howells) [Orabug: 18961720]
- KEYS: Fix searching of nested keyrings (David Howells) [Orabug: 18961720]
- KEYS: Fix multiple key add into associative array (David Howells) [Orabug: 18961720]
- KEYS: Fix the keyring hash function (David Howells) [Orabug: 18961720]
- PKCS#7: Fix the parser cleanup to drain parsed out X.509 certs (David Howells) [Orabug: 18961720]
- PKCS#7: Provide a single place to do signed info block freeing (David Howells) [Orabug: 18961720]
- PKCS#7: Add a missing static (David Howells) [Orabug: 18961720]
- X.509: Need to export x509_request_asymmetric_key() (David Howells) [Orabug: 18961720]
- PKCS#7: X.509 certificate issuer and subject are mandatory fields in the ASN.1 (David Howells) [Orabug: 18961720]
- PKCS#7: Use x509_request_asymmetric_key() (David Howells) [Orabug: 18961720]
- X.509: x509_request_asymmetric_keys() doesn't need string length arguments (David Howells) [Orabug: 18961720]
- PKCS#7: fix sparse non static symbol warning (Wei Yongjun) [Orabug: 18961720]
- PKCS#7: Missing inclusion of linux/err.h (David Howells) [Orabug: 18961720]
- ima: define '.ima' as a builtin 'trusted' keyring (Mimi Zohar) [Orabug: 18961720]
- KEYS: validate certificate trust only with builtin keys (Dmitry Kasatkin) [Orabug: 18961720]
- KEYS: validate certificate trust only with selected key (Dmitry Kasatkin) [Orabug: 18961720]
- KEYS: verify a certificate is signed by a 'trusted' key (Mimi Zohar) [Orabug: 18961720]
- KEYS: make partial key id matching as a dedicated function (Dmitry Kasatkin) [Orabug: 18961720]
- KEYS: Reinstate EPERM for a key type name beginning with a '.' (David Howells) [Orabug: 18961720]
- KEYS: special dot prefixed keyring name bug fix (Mimi Zohar) [Orabug: 18961720]
- pefile: Validate PKCS#7 trust chain (David Howells) [Orabug: 18961720]
- pefile: Digest the PE binary and compare to the PKCS#7 data (David Howells) [Orabug: 18961720]
- pefile: Handle pesign using the wrong OID (Vivek Goyal) [Orabug: 18961720]
- pefile: Parse the 'Microsoft individual code signing' data blob (David Howells) [Orabug: 18961720]
- pefile: Parse the presumed PKCS#7 content of the certificate blob (David Howells) [Orabug: 18961720]
- pefile: Strip the wrapper off of the cert data block (David Howells) [Orabug: 18961720]
- pefile: Parse a PE binary to find a key and a signature contained therein (David Howells) [Orabug: 18961720]
- Provide PE binary definitions (David Howells) [Orabug: 18961720]
- KEYS: X.509: Fix a spelling mistake (David Howells) [Orabug: 18961720]
- PKCS#7: Provide a key type for testing PKCS#7 (David Howells) [Orabug: 18961720]
- PKCS#7: Find intersection between PKCS#7 message and known, trusted keys (David Howells) [Orabug: 18961720]
- PKCS#7: Verify internal certificate chain (David Howells) [Orabug: 18961720]
- PKCS#7: Find the right key in the PKCS#7 key list and verify the signature (David Howells) [Orabug: 18961720]
- PKCS#7: Digest the data in a signed-data message (David Howells) [Orabug: 18961720]
- PKCS#7: Implement a parser [RFC 2315] (David Howells) [Orabug: 18961720]
- X.509: Export certificate parse and free functions (David Howells) [Orabug: 18961720]
- X.509: Add bits needed for PKCS#7 (David Howells) [Orabug: 18961720]
- x86/efi: Support initrd loaded above 4G (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Do not include boot.h in string.c (Vivek Goyal) [Orabug: 18961720]
- x86, boot: Move memcmp() into string.h and string.c (Vivek Goyal) [Orabug: 18961720]
- x86, boot: Create a separate string.h file to provide standard string functions (Vivek Goyal) [Orabug: 18961720]
- kexec: add sysctl to disable kexec_load (Kees Cook) [Orabug: 18961720]
- x86: Add xloadflags bit for EFI runtime support on kexec (Dave Young) [Orabug: 18961720]
- x86/efi: Pass necessary EFI data for kexec via setup_data (Dave Young) [Orabug: 18961720]
- efi: Export EFI runtime memory mapping to sysfs (Dave Young) [Orabug: 18961720]
- efi: Export more EFI table variables to sysfs (Dave Young) [Orabug: 18961720]
- x86/efi: Cleanup efi_enter_virtual_mode() function (Dave Young) [Orabug: 18961720]
- x86/efi: Fix off-by-one bug in EFI Boot Services reservation (Dave Young) [Orabug: 18961720]
- x86/efi: Add a wrapper function efi_map_region_fixed() (Dave Young) [Orabug: 18961720]
- keys: change asymmetric keys to use common hash definitions (Dmitry Kasatkin) [Orabug: 18961720]
- crypto: provide single place for hash algo information (Dmitry Kasatkin) [Orabug: 18961720]
- KEYS: fix error return code in big_key_instantiate() (Wei Yongjun) [Orabug: 18961720]
- KEYS: Fix keyring quota misaccounting on key replacement and unlink (David Howells) [Orabug: 18961720]
- KEYS: Fix a race between negating a key and reading the error set (David Howells) [Orabug: 18961720]
- KEYS: Make BIG_KEYS boolean (Josh Boyer) [Orabug: 18961720]
- X.509: remove possible code fragility: enumeration values not handled (Antonio Alecrim Jr) [Orabug: 18961720]
- X.509: add module description and license (Konstantin Khlebnikov) [Orabug: 18961720]
- MPILIB: add module description and license (Konstantin Khlebnikov) [Orabug: 18961720]
- KEYS: initialize root uid and session keyrings early (Mimi Zohar) [Orabug: 18961720]
- KEYS: verify a certificate is signed by a 'trusted' key (Mimi Zohar) [Orabug: 18961720]
- KEYS: Make the system 'trusted' keyring viewable by userspace (Mimi Zohar) [Orabug: 18961720]
- KEYS: Set the asymmetric-key type default search method (David Howells) [Orabug: 18961720]
- KEYS: Add a 'trusted' flag and a 'trusted only' flag (David Howells) [Orabug: 18961720]
- KEYS: Separate the kernel signature checking keyring from module signing (David Howells) [Orabug: 18961720]
- KEYS: Have make canonicalise the paths of the X.509 certs better to deduplicate (David Howells) [Orabug: 18961720]
- KEYS: Load *.x509 files into kernel keyring (David Howells) [Orabug: 18961720]
- X.509: Remove certificate date checks (David Howells) [Orabug: 18961720]
- X.509: Handle certificates that lack an authorityKeyIdentifier field (David Howells) [Orabug: 18961720]
- X.509: Check the algorithm IDs obtained from parsing an X.509 certificate (David Howells) [Orabug: 18961720]
- X.509: Embed public_key_signature struct and create filler function (David Howells) [Orabug: 18961720]
- X.509: struct x509_certificate needs struct tm declaring (David Howells) [Orabug: 18961720]
- KEYS: Store public key algo ID in public_key_signature struct (David Howells) [Orabug: 18961720]
- KEYS: Split public_key_verify_signature() and make available (David Howells) [Orabug: 18961720]
- KEYS: Store public key algo ID in public_key struct (David Howells) [Orabug: 18961720]
- KEYS: Move the algorithm pointer array from x509 to public_key.c (David Howells) [Orabug: 18961720]
- KEYS: Rename public key parameter name arrays (David Howells) [Orabug: 18961720]
- KEYS: Add per-user_namespace registers for persistent per-UID kerberos caches (Guangyu Sun) [Orabug: 18961720]
- KEYS: Implement a big key type that can save to tmpfs (David Howells) [Orabug: 18961720]
- KEYS: Expand the capacity of a keyring (David Howells) [Orabug: 18961720]
- Add a generic associative array implementation. (David Howells) [Orabug: 18961720]
- KEYS: Drop the permissions argument from __keyring_search_one() (David Howells) [Orabug: 18961720]
- KEYS: Define a __key_get() wrapper to use rather than atomic_inc() (David Howells) [Orabug: 18961720]
- KEYS: Search for auth-key by name rather than target key ID (David Howells) [Orabug: 18961720]
- KEYS: Introduce a search context structure (David Howells) [Orabug: 18961720]
- KEYS: Consolidate the concept of an 'index key' for key access (David Howells) [Orabug: 18961720]
- KEYS: key_is_dead() should take a const key pointer argument (David Howells) [Orabug: 18961720]
- KEYS: Use bool in make_key_ref() and is_key_possessed() (David Howells) [Orabug: 18961720]
- KEYS: Skip key state checks when checking for possession (David Howells) [Orabug: 18961720]
- userns: Avoid recursion in put_user_ns (Eric W. Biederman) [Orabug: 18961720]
- x86/efi: Check krealloc return value (Borislav Petkov) [Orabug: 18961720]
- x86/efi: Runtime services virtual mapping (Borislav Petkov) [Orabug: 18961720]
- x86/mm/cpa: Map in an arbitrary pgd (Borislav Petkov) [Orabug: 18961720]
- x86/mm/pageattr: Add last levels of error path (Borislav Petkov) [Orabug: 18961720]
- x86/mm/pageattr: Add a PUD error unwinding path (Borislav Petkov) [Orabug: 18961720]
- x86/mm/pageattr: Add a PTE pagetable populating function (Borislav Petkov) [Orabug: 18961720]
- x86/mm/pageattr: Add a PMD pagetable populating function (Borislav Petkov) [Orabug: 18961720]
- x86/mm/pageattr: Add a PUD pagetable populating function (Borislav Petkov) [Orabug: 18961720]
- x86/mm/pageattr: Add a PGD pagetable populating function (Borislav Petkov) [Orabug: 18961720]
- x86/mm/pageattr: Lookup address in an arbitrary PGD (Borislav Petkov) [Orabug: 18961720]
- x86/efi: Simplify EFI_DEBUG (Borislav Petkov) [Orabug: 18961720]
- efi: Generalize handle_ramdisks() and rename to handle_cmdline_files(). (Roy Franz) [Orabug: 18961720]
- efi: Rename memory allocation/free functions (Roy Franz) [Orabug: 18961720]
- efi: Add system table pointer argument to shared functions. (Roy Franz) [Orabug: 18961720]
- efi: Move common EFI stub code from x86 arch code to common location (Roy Franz) [Orabug: 18961720]
- efivars: Mark local function as static (Bojan Prtvar) [Orabug: 18961720]
- pstore: Introduce new argument 'compressed' in the read callback (Aruna Balakrishnaiah) [Orabug: 18961720]
- pstore: Add new argument 'compressed' in pstore write callback (Aruna Balakrishnaiah) [Orabug: 18961720]
- efi-pstore: Read and write to the 'compressed' flag of pstore (Aruna Balakrishnaiah) [Orabug: 18961720]
- x86: Don't clear olpc_ofw_header when sentinel is detected (Daniel Drake) [Orabug: 18961720]
- efivars: check for EFI_RUNTIME_SERVICES (Matt Fleming) [Orabug: 18961720]
- pstore: Pass header size in the pstore write callback (Aruna Balakrishnaiah) [Orabug: 18961720]
- efivars: If pstore_register fails, free unneeded pstore buffer (Lenny Szubowicz) [Orabug: 18961720]
- efi, pstore: Cocci spatch 'memdup.spatch' (Thomas Meyer) [Orabug: 18961720]
- efivar: fix oops in efivar_update_sysfs_entries() caused by memory reuse (Seiji Aguchi) [Orabug: 18961720]
- efi: remove 'kfree(NULL)' (Dan Carpenter) [Orabug: 18961720]
- efi: locking fix in efivar_entry_set_safe() (Dan Carpenter) [Orabug: 18961720]
- efi, pstore: Read data from variable store before memcpy() (Matt Fleming) [Orabug: 18961720]
- efi, pstore: Remove entry from list when erasing (Matt Fleming) [Orabug: 18961720]
- efi, pstore: Initialise 'entry' before iterating (Matt Fleming) [Orabug: 18961720]
- efi: split efisubsystem from efivars (Tom Gundersen) [Orabug: 18961720]
- efivarfs: Move to fs/efivarfs (Matt Fleming) [Orabug: 18961720]
- efivars: Move pstore code into the new EFI directory (Matt Fleming) [Orabug: 18961720]
- efivars: efivar_entry API (Matt Fleming) [Orabug: 18961720]
- efivars: Keep a private global pointer to efivars (Matt Fleming) [Orabug: 18961720]
- efi: move utf16 string functions to efi.h (Matt Fleming) [Orabug: 18961720]
- efivars: Handle duplicate names from get_next_variable() (Matt Fleming) [Orabug: 18961720]
- x86, doc: Be explicit about what the x86 struct boot_params requires (Peter Jones) [Orabug: 18961720]
- x86: Don't clear efi_info even if the sentinel hits (Josh Boyer) [Orabug: 18961720]
- export kernel_write(), convert open-coded instances (Al Viro) [Orabug: 18961720]
- efi_pstore: Introducing workqueue updating sysfs (Seiji Aguchi) [Orabug: 18961720]
- x86/mm: Fix boot crash with DEBUG_PAGE_ALLOC=y and more than 512G RAM (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Make sure to find a 2M free block for the first mapped area (Yinghai Lu) [Orabug: 18961720]
- x86: Fix adjust_range_size_mask calling position (Yinghai Lu) [Orabug: 18961720]
- x86, kdump: Change crashkernel_high/low= to crashkernel=,high/low (Yinghai Lu) [Orabug: 18961720]
- x86, kdump: Retore crashkernel= to allocate under 896M (Yinghai Lu) [Orabug: 18961720]
- x86, kdump: Set crashkernel_low automatically (Yinghai Lu) [Orabug: 18961720]
- x86: Don't panic if can not alloc buffer for swiotlb (Yinghai Lu) [Orabug: 18961720]
- mm: Add alloc_bootmem_low_pages_nopanic() (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit, mm: hibernate use generic mapping_init (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit, mm: Mark data/bss/brk to nx (Yinghai Lu) [Orabug: 18961720]
- x86: Merge early kernel reserve for 32bit and 64bit (Yinghai Lu) [Orabug: 18961720]
- x86: Add Crash kernel low reservation (Yinghai Lu) [Orabug: 18961720]
- x86, kdump: Remove crashkernel range find limit for 64bit (Yinghai Lu) [Orabug: 18961720]
- memblock: Add memblock_mem_size() (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Not need to check setup_header version for setup_data (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Update comments about entries for 64bit image (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Support loading bzImage, boot_params and ramdisk above 4G (Yinghai Lu) [Orabug: 18961720]
- x86, kexec, 64bit: Only set ident mapping for ram. (Yinghai Lu) [Orabug: 18961720]
- x86, kexec: Replace ident_mapping_init and init_level4_page (Yinghai Lu) [Orabug: 18961720]
- x86, kexec: Set ident mapping for kernel that is above max_pfn (Yinghai Lu) [Orabug: 18961720]
- x86, kexec: Remove 1024G limitation for kexec buffer on 64bit (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Move lldt/ltr out of 64bit code section (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Move verify_cpu.S and no_longmode down (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Pass cmd_line_ptr with unsigned long instead (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Move checking of cmd_line_ptr out of common path (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Add get_cmd_line_ptr() (Yinghai Lu) [Orabug: 18961720]
- x86, boot: Sanitize boot_params if not zeroed on creation (H. Peter Anvin) [Orabug: 18961720]
- x86: Add get_ramdisk_image/size() (Yinghai Lu) [Orabug: 18961720]
- x86: Merge early_reserve_initrd for 32bit and 64bit (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit: Don't set max_pfn_mapped wrong value early on native path (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit: #PF handler set page to cover only 2M per #PF (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit: Use a #PF handler to materialize early mappings on demand (H. Peter Anvin) [Orabug: 18961720]
- x86, realmode: Separate real_mode reserve and setup (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit, realmode: Use init_level4_pgt to set trampoline_pgd directly (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit: Copy struct boot_params early (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit, mm: Add generic kernel/ident mapping helper (Yinghai Lu) [Orabug: 18961720]
- x86, realmode: Set real_mode permissions early (Yinghai Lu) [Orabug: 18961720]
- x86, 64bit, mm: Make pgd next calculation consistent with pud/pmd (Yinghai Lu) [Orabug: 18961720]
- x86: Factor out e820_add_kernel_range() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Fix page table early allocation offset checking (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Let 'memmap=' take more entries one time (Yinghai Lu) [Orabug: 18961720]
- mm: Kill NO_BOOTMEM version free_all_bootmem_node() (Yinghai Lu) [Orabug: 18961720]
- sparc, mm: Remove calling of free_all_bootmem_node() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: kill numa_64.h (Yinghai Lu) [Orabug: 18961720]
- x86, mm: kill numa_free_all_bootmem() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Use clamp_t() in init_range_memory_mapping (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Move after_bootmem to mm_internel.h (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Unifying after_bootmem for 32bit and 64bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: use limit_pfn for end pfn (Yinghai Lu) [Orabug: 18961720]
- x86, mm: use pfn instead of pos in split_mem_range (Yinghai Lu) [Orabug: 18961720]
- x86, mm: use PFN_DOWN in split_mem_range() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: use round_up/down in split_mem_range() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Add check before clear pte above max_low_pfn on 32bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Move function declaration into mm_internal.h (Yinghai Lu) [Orabug: 18961720]
- x86, mm: change low/hignmem_pfn_init to static on 32bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Move init_gbpages() out of setup.c (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Move back pgt_buf_* to mm/init.c (Yinghai Lu) [Orabug: 18961720]
- x86, mm: only call early_ioremap_page_table_range_init() once (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Add pointer about Xen mmu requirement for alloc_low_pages (Stefano Stabellini) [Orabug: 18961720]
- x86, mm: Add alloc_low_pages(num) (Yinghai Lu) [Orabug: 18961720]
- x86, mm, Xen: Remove mapping_pagetable_reserve() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Move min_pfn_mapped back to mm/init.c (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Merge alloc_low_page between 64bit and 32bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Remove parameter in alloc_low_page for 64bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Remove early_memremap workaround for page table accessing on 64bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: setup page table in top-down (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Break down init_all_memory_mapping (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Don't clear page table if range is ram (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Use big page size for small memory range (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Align start address to correct big page size (Yinghai Lu) [Orabug: 18961720]
- x86, mm: relocate initrd under all mem for 64bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Only direct map addresses that are marked as E820_RAM (Jacob Shin) [Orabug: 18961720]
- x86, mm: use pfn_range_is_mapped() with reserve_initrd (Yinghai Lu) [Orabug: 18961720]
- x86, mm: use pfn_range_is_mapped() with gart (Yinghai Lu) [Orabug: 18961720]
- x86, mm: use pfn_range_is_mapped() with CPA (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Fixup code testing if a pfn is direct mapped (Jacob Shin) [Orabug: 18961720]
- x86, mm: if kernel .text .data .bss are not marked as E820_RAM, complain and fix (Jacob Shin) [Orabug: 18961720]
- x86, mm: Set memblock initial limit to 1M (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Separate out calculate_table_space_size() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Find early page table buffer together (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Change find_early_table_space() paramters (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Revert back good_end setting for 64bit (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Move init_memory_mapping calling out of setup.c (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Move down find_early_table_space() (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Split out split_mem_range from init_memory_mapping (Yinghai Lu) [Orabug: 18961720]
- x86, mm: Add global page_size_mask and probe one time only (Yinghai Lu) [Orabug: 18961720]

[3.8.13-81]
- i40e: Bump version to 1.3.2 (Catherine Sullivan) [Orabug: 20639907]
- i40e: Use new 40G speeds (Brian Maly) [Orabug: 20639907]
- i40e: handle possible memory allocation failure (Jesse Brandeburg) [Orabug: 20639907]
- i40e/i40evf: Save WR_CSR_PROT field from DEV/FUNC capabilities (Kevin Scott) [Orabug: 20639907]
- i40e: enable user dump of internal hardware state (Jesse Brandeburg) [Orabug: 20639907]
- i40e: print FCoE capability reported by the device function (Vasu Dev) [Orabug: 20639907]
- i40e: For VF reset (VFR and VFLR) add some more delay (Anjali Singhai Jain) [Orabug: 20639907]
- i40e: move VF notification routines up (Mitch Williams) [Orabug: 20639907]
- i40e: notify VFs of link state (Mitch Williams) [Orabug: 20639907]
- i40evf: remove aq_pending (Mitch Williams) [Orabug: 20639907]
- i40e: Add support to program FDir SB rules for VF from PF through ethtool (Anjali Singhai Jain) [Orabug: 20639907]
- i40evf: fix bad indentation (Mitch Williams) [Orabug: 20639907]
- i40e: stop VF rings (Mitch Williams) [Orabug: 20639907]
- i40e: Bump to version 1.3.1 (Catherine Sullivan) [Orabug: 20639907]
- i40evf: Refactor VF RSS code (Anjali Singhai Jain) [Orabug: 20639907]
- i40evf: protect VLAN filter list (Mitch Williams) [Orabug: 20639907]
- i40e: Communicate VSI id in place of VSI index to the VFs (Anjali Singhai Jain) [Orabug: 20639907]
- i40e: stop flow director on shutdown (Mitch Williams) [Orabug: 20639907]
- 40e/i40evf: Set Ethernet protocol correctly when Tx VLAN offloads are disabled (Brian Maly) [Orabug: 20639907]
- i40e: fix invalid void return in FCoE code (Jesse Brandeburg) [Orabug: 20639907]
- i40e: Change some memcpys to struct assignments (Jesse Brandeburg) [Orabug: 20639907]
- i40e: Print some more info to help figure out the cause of HMC error (Anjali Singhai Jain) [Orabug: 20639907]
- i40e: validate VSI param from VFs (Mitch Williams) [Orabug: 20639907]
- i40evf: Fix Outer UDP RX checksum code (Anjali Singhai Jain) [Orabug: 20639907]
- Update of TLB shootdown code for UV3. (Cliff Wickman) [Orabug: 20578414]
- x86: UV BAU: Avoid NULL pointer reference in ptc_seq_show (James Custer) [Orabug: 20578414]
- x86: UV BAU: Increase maximum CPUs per socket/hub (James Custer) [Orabug: 20578414]
- x86/UV: Set n_lshift based on GAM_GR_CONFIG MMR for UV3 (Dimitri Sivanich) [Orabug: 20578414]
- x86/UV: Fix NULL pointer dereference in uv_flush_tlb_others() if the 'nobau' boot option is used (cpw) [Orabug: 20578414]
- x86: Update UV3 hub revision ID (Russ Anderson) [Orabug: 20578414]
- x86, uv, uv3: Trim MMR register definitions after code changes for SGI UV3 (Mike Travis) [Orabug: 20578414]
- x86, uv, uv3: Check current gru hub support for SGI UV3 (Mike Travis) [Orabug: 20578414]
- x86, uv, uv3: Update Time Support for SGI UV3 (Mike Travis) [Orabug: 20578414]
- x86, uv, uv3: Update x2apic Support for SGI UV3 (Mike Travis) [Orabug: 20578414]
- x86, uv, uv3: Update Hub Info for SGI UV3 (Mike Travis) [Orabug: 20578414]
- x86, uv, uv3: Update ACPI Check to include SGI UV3 (Mike Travis) [Orabug: 20578414]
- x86, uv, uv3: Update MMR register definitions for SGI Ultraviolet System 3 (UV3) (Mike Travis) [Orabug: 20578414]
- xen/efi: Fix mismatch reference errors during build. (Marcos Matsunaga) [Orabug: 20951518]
- PCI: Restore detection of read-only BARs (Myron Stowe) [Orabug: 21037617]
- PCI: Add informational printk for invalid BARs (Myron Stowe) [Orabug: 21037617]
- PCI: Handle read-only BARs on AMD CS553x devices (Myron Stowe) [Orabug: 21037617]

[3.8.13-80]
- dtrace: use strnlen_user() to get the length of env vars and cmdline args (Kris Van Hees) [Orabug: 20468084]
- scsi: storvsc: Set the tablesize based on the information given by the host (K. Y. Srinivasan) [Orabug: 21027987]
- Drivers: hv: vmbus: Support a vmbus API for efficiently sending page arrays (K. Y. Srinivasan) [Orabug: 21027987]
- scsi: storvsc: Don't assume that the scatterlist is not chained (K. Y. Srinivasan) [Orabug: 21027987]
- scsi: storvsc: Fix a bug in copy_from_bounce_buffer() (K. Y. Srinivasan) [Orabug: 21027987]
- scsi: storvsc: Retrieve information about the capability of the target (K. Y. Srinivasan) [Orabug: 21027987]
- scsi: storvsc: Always send on the selected outgoing channel (K. Y. Srinivasan) [Orabug: 21027987]
- scsi: storvsc: Size the queue depth based on the ringbuffer size (K. Y. Srinivasan) [Orabug: 21027987]
- scsi: storvsc: Increase the ring buffer size (K. Y. Srinivasan) [Orabug: 21027987]
- hpsa: correct compiler warnings introduced by hpsa-add-local-workqueue patch (Don Brace) [Orabug: 20910674]
- hpsa: Use local workqueues instead of system workqueues (Don Brace) [Orabug: 20910674]
- hpsa: add in P840ar controller model name (Don Brace) [Orabug: 20910674]
- hpsa: add in gen9 controller model names (Don Brace) [Orabug: 20910674]
- hpsa: detect and report failures changing controller transport modes (Robert Elliott) [Orabug: 20910674]
- hpsa: shorten the wait for the CISS doorbell mode change ack (Robert Elliott) [Orabug: 20910674]
- hpsa: refactor duplicated scan completion code into a new routine (Webb Scales) [Orabug: 20910674]
- hpsa: move SG descriptor set-up out of hpsa_scatter_gather() (Webb Scales) [Orabug: 20910674]
- hpsa: do not use function pointers in fast path command submission (Stephen Cameron) [Orabug: 20910674]
- hpsa: print CDBs instead of kernel virtual addresses for uncommon errors (Stephen Cameron) [Orabug: 20910674]
- hpsa: do not use a void pointer for scsi_cmd field of struct CommandList (Stephen Cameron) [Orabug: 20910674]
- hpsa: return failed from device reset/abort handlers (Don Brace) [Orabug: 20910674]
- hpsa: check for ctlr lockup after command allocation in main io path (Stephen Cameron) [Orabug: 20910674]
- hpsa: guard against overflowing raid map array (Stephen Cameron) [Orabug: 20910674]
- hpsa: do not ack controller events on controllers that do not support it (Stephen Cameron) [Orabug: 20910674]
- hpsa: remove incorrect BUG_ONs checking for raid offload enable (Stephen Cameron) [Orabug: 20910674]
- hpsa: do not check for msi(x) in interrupt_pending (Stephen Cameron) [Orabug: 20910674]
- hpsa: slightly optimize SA5_performant_completed (Don Brace) [Orabug: 20910674]
- hpsa: count passthru cmds with atomics, not a spin locked int (Don Brace) [Orabug: 20910674]
- hpsa: optimize cmd_alloc function by remembering last allocation (Robert Elliott) [Orabug: 20910674]
- hpsa: fix race between abort handler and main i/o path (Webb Scales) [Orabug: 20910674]
- hpsa: honor queue depth of physical devices (Don Brace) [Orabug: 20910674]
- hpsa: use workqueue to resubmit failed ioaccel commands (Don Brace) [Orabug: 20910674]
- hpsa: factor out hpsa_ciss_submit function (Stephen Cameron) [Orabug: 20910674]
- hpsa: do not request device rescan on every ioaccel path error (Stephen Cameron) [Orabug: 20910674]
- hpsa: do not queue commands internally in driver (Don Brace) [Orabug: 20910674]
- hpsa: get rid of cmd_special_alloc and cmd_special_free (Stephen Cameron) [Orabug: 20910674]
- hpsa: reserve some commands for use by driver (Stephen Cameron) [Orabug: 20910674]
- hpsa: avoid unneccesary calls to resource freeing functions (Robert Elliott) [Orabug: 20910674]
- hpsa: fix memory leak in hpsa_alloc_cmd_pool (Robert Elliott) [Orabug: 20910674]
- hpsa: report allocation failures while allocating SG chain blocks (Robert Elliott) [Orabug: 20910674]
- hpsa: pass error from pci_set_consistent_dma_mask from hpsa_message (Robert Elliott) [Orabug: 20910674]
- hpsa: rename hpsa_request_irq to hpsa_request_irqs (Robert Elliott) [Orabug: 20910674]
- hpsa: report failure to ioremap config table (Robert Elliott) [Orabug: 20910674]
- hpsa: trivial message and comment clean ups (Stephen Cameron) [Orabug: 20910674]
- hpsa: refactor hpsa_find_board_params() to encapsulate legacy test (Webb Scales) [Orabug: 20910674]
- hpsa: downgrade the Waiting for no-op print to dev_info (Robert Elliott) [Orabug: 20910674]
- hpsa: propagate return value from board ID lookup (Robert Elliott) [Orabug: 20910674]
- hpsa: propagate hard_reset failures in reset_devices mode (Robert Elliott) [Orabug: 20910674]
- hpsa: remove 0x from queue depth print which is in decimal (Robert Elliott) [Orabug: 20910674]
- hpsa: notice all request_irq errors (Robert Elliott) [Orabug: 20910674]
- hpsa: Fix -Wunused-but-set-variable warning (Fabian Frederick) [Orabug: 20910674]
- hpsa: rename free_irqs to hpsa_free_irqs (Robert Elliott) [Orabug: 20910674]
- hpsa: adjust RAID-1, RAID-1ADM, and RAID-6 names (Robert Elliott) [Orabug: 20910674]
- hpsa: change how SA controllers are reset (Don Brace) [Orabug: 20910674]
- hpsa: turn off interrupts when kdump starts (Tomas Henzl) [Orabug: 20910674]
- hpsa: fix memory leak in kdump hard reset (Tomas Henzl) [Orabug: 20910674]
- hpsa: correct endian sparse warnings (Don Brace) [Orabug: 20910674]

[3.8.13-79]
- Revert 'Implement support for wire-only DIF devices' (Vaughan Cao) [Orabug: 20952398]
- xen-netfront: use correct linear area after linearizing an skb (David Vrabel) [Orabug: 20903396]
- x86, sched: Add new topology for multi-NUMA-node CPUs (Dave Hansen) [Orabug: 20825479]
- sched: Rework sched_domain topology definition (Vincent Guittot) [Orabug: 20825479]
- x86 thermal: Disable power limit notification interrupt by default (Fenghua Yu) [Orabug: 20808816]
- x86 thermal: Delete power-limit-notification console messages (Fenghua Yu) [Orabug: 20808816]
- vfs: allow umount to handle mountpoints without revalidating them (Jeff Layton) [Orabug: 20425402]
- ptp: dynamic allocation of PHC char devices (Jiri Benc) [Orabug: 20305451]
- sched: Prevent divide by zero when cpu power calculation is 0 (Todd Vierling) [Orabug: 17936428]


Related CVEs


CVE-2014-8989

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 3.3 (x86_64) kernel-uek-3.8.13-98.el6uek.src.rpm0057e19738bb52f566fe70a1d7bb3639OVMSA-2021-0016
kernel-uek-3.8.13-98.el6uek.x86_64.rpm68d11416f23b0f12b82e0ab70848e681OVMSA-2021-0016
kernel-uek-firmware-3.8.13-98.el6uek.noarch.rpm76614264791a5c73c459faaffe113efcOVMSA-2021-0016



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete