openSUSE Updates
Threads by month
- ----- 2025 -----
- January
- ----- 2024 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2023 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2022 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2021 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2020 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2019 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2018 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2017 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2016 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2015 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2014 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2013 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2012 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2011 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2010 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
August 2019
- 2 participants
- 225 discussions
openSUSE-RU-2019:1926-1: moderate: Recommended update for python-acme
by maintenance@opensuse.org 18 Aug '19
by maintenance@opensuse.org 18 Aug '19
18 Aug '19
openSUSE Recommended Update: Recommended update for python-acme
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1926-1
Rating: moderate
References: #1141928
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update for python-acme, python-certbot and related packages fixes the
following issues:
This update adds support for ACMEv2. The old version ACME will be
deprecated November 1st. (boo#1141928)
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1926=1
Package List:
- openSUSE Leap 15.1 (noarch):
python2-acme-0.36.0-lp151.2.3.1
python2-certbot-0.36.0-lp151.2.3.1
python2-certbot-apache-0.36.0-lp151.2.3.1
python2-certbot-dns-cloudflare-0.36.0-lp151.2.3.1
python2-certbot-dns-cloudxns-0.36.0-lp151.2.3.1
python2-certbot-dns-digitalocean-0.36.0-lp151.2.3.1
python2-certbot-dns-dnsimple-0.36.0-lp151.2.3.1
python2-certbot-dns-dnsmadeeasy-0.36.0-lp151.2.3.1
python2-certbot-dns-google-0.36.0-lp151.2.3.1
python2-certbot-dns-luadns-0.36.0-lp151.2.3.1
python2-certbot-dns-nsone-0.36.0-lp151.2.3.1
python2-certbot-dns-rfc2136-0.36.0-lp151.2.3.1
python2-certbot-dns-route53-0.36.0-lp151.2.3.1
python2-certbot-nginx-0.36.0-lp151.2.3.1
python3-acme-0.36.0-lp151.2.3.1
python3-certbot-0.36.0-lp151.2.3.1
python3-certbot-apache-0.36.0-lp151.2.3.1
python3-certbot-dns-cloudflare-0.36.0-lp151.2.3.1
python3-certbot-dns-cloudxns-0.36.0-lp151.2.3.1
python3-certbot-dns-digitalocean-0.36.0-lp151.2.3.1
python3-certbot-dns-dnsimple-0.36.0-lp151.2.3.1
python3-certbot-dns-dnsmadeeasy-0.36.0-lp151.2.3.1
python3-certbot-dns-google-0.36.0-lp151.2.3.1
python3-certbot-dns-luadns-0.36.0-lp151.2.3.1
python3-certbot-dns-nsone-0.36.0-lp151.2.3.1
python3-certbot-dns-rfc2136-0.36.0-lp151.2.3.1
python3-certbot-dns-route53-0.36.0-lp151.2.3.1
python3-certbot-nginx-0.36.0-lp151.2.3.1
References:
https://bugzilla.suse.com/1141928
1
0
openSUSE-SU-2019:1927-1: moderate: Security update for zypper, libzypp and libsolv
by opensuse-security@opensuse.org 18 Aug '19
by opensuse-security@opensuse.org 18 Aug '19
18 Aug '19
openSUSE Security Update: Security update for zypper, libzypp and libsolv
______________________________________________________________________________
Announcement ID: openSUSE-SU-2019:1927-1
Rating: moderate
References: #1047962 #1049826 #1053177 #1065022 #1099019
#1102261 #1110542 #1111319 #1112911 #1113296
#1114908 #1115341 #1116840 #1118758 #1119373
#1119820 #1119873 #1120263 #1120463 #1120629
#1120630 #1120631 #1121611 #1122062 #1122471
#1123137 #1123681 #1123843 #1123865 #1123967
#1124897 #1125415 #1127026 #1127155 #1127220
#1130161 #1131823 #1135749 #1137977 #663358
#764147 #965786 #978193 #993025
Cross-References: CVE-2018-20532 CVE-2018-20533 CVE-2018-20534
Affected Products:
openSUSE Leap 15.0
______________________________________________________________________________
An update that solves three vulnerabilities and has 41
fixes is now available.
Description:
This update for libzypp and libsolv fixes the following issues:
Security issues fixed:
- CVE-2018-20532: Fixed NULL pointer dereference at ext/testcase.c
(function testcase_read) (bsc#1120629).
- CVE-2018-20533: Fixed NULL pointer dereference at ext/testcase.c
(function testcase_str2dep_complex) in libsolvext.a (bsc#1120630).
- CVE-2018-20534: Fixed illegal address access at src/pool.h (function
pool_whatprovides) in libsolv.a (bsc#1120631).
Fixed bugs and enhancements:
- make cleandeps jobs on patterns work (bnc#1137977)
- Fixed an issue where libsolv failed to build against swig 4.0 by
updating the version to 0.7.5 (bsc#1135749).
- Virtualization host upgrade from SLES-15 to SLES-15-SP1 finished with
wrong product name shown up (bsc#1131823).
- Copy pattern categories from the rpm that defines the pattern
(fate#323785).
- Enhance scanning /sys for modaliases (bsc#1130161).
- Prevent SEGV if the application sets an empty TextLocale (bsc#1127026).
- Handle libgpgme error when gpg key is not completely read and user hits
CTRL + C (bsc#1127220).
- Added a hint when registration codes have expired (bsc#965786).
- Adds a better handling of an error when verifying any repository medium
(bsc#1065022).
- Will now only write type field when probing (bsc#1114908).
- Fixes an issue where zypper has showed the info message 'Installation
aborted by user' while the installation was aborted by wicked
(bsc#978193).
- Suppresses reporting `/memfd:` pseudo files (bsc#1123843).
- Fixes an issue where zypper was not able to install or uninstall
packages when rpm is unavailable (bsc#1122471).
- Fixes an issue where locks were ignored (bsc#1113296).
- Simplify complex locks so zypper can display them (bsc#1112911).
- zypper will now set `SYSTEMD_OFFLINE=1` during chrooted commits
(bsc#1118758).
- no-recommends: Nevertheless consider resolver namespaces (hardware,
language,..supporting packages) (fate#325513).
- Removes world-readable bit from /var/log/zypp (bsc#1099019).
- Does no longer fail service-refresh on a empty repoindex.xml
(bsc#1116840).
- Fixes soname due to libsolv ABI changes (bsc#1115341).
- Add infrastructure to flag specific packages to trigger a reboot needed
hint (fate#326451).
This update for zypper 1.14.27 fixes the following issues:
- bash-completion: add package completion for addlock (bsc#1047962)
- bash-completion: fix incorrect detection of command names (bsc#1049826)
- Offer to change the 'runSearchPackages' config option at the prompt
(bsc#1119373, FATE#325599)
- Prompt: provide a 'yes/no/always/never' prompt.
- Prompt: support "#NUM" as answer to select the NUMth option...
- Augeas: enable writing back changed option values (to ~/.zypper.conf)
- removelocale: fix segfault
- Move needs-restarting command to subpackage (fixes #254)
- Allow empty string as argument (bsc#1125415)
- Provide a way to delete cache for volatile repositories (bsc#1053177)
- Adapt to boost-1.69 requiring explicit casts tribool->bool (fixes #255)
- Show support status in info if not unknown (bsc#764147)
- Fix installing plain rpm files with `zypper in` (bsc#1124897)
- Show only required info in the summary in quiet mode (bsc#993025)
- Stay with legacy behavior and return ZYPPER_EXIT_INF_REBOOT_NEEDED
only for patches. We don't extend this return code to packages, although
they may also carry the 'reboot-needed' attribute. The preferred way to
test whether the system needs to be rebooted is `zypper
needs-rebooting`. (openSUSE/zypper#237)
- Skip repository on error (bsc#1123967)
- New commands for locale management: locales addlocale removelocale
Inspect and manipulate the systems `requested locales`, aka. the
languages software packages should try support by installing
translations, dictionaries and tools, as far as they are available.
- Don't throw, just warn if options are repeated (bsc#1123865)
- Fix detection whether stdout is a tty (happened too late)
- Fix broken --plus-content switch (fixes bsc#1123681)
- Fix broken --replacefiles switch (fixes bsc#1123137)
- Extend zypper source-install (fixes bsc#663358)
- Fix inconsistent results for search (bsc#1119873)
- Show reboot hint in zypper ps and summary (fixes bsc#1120263)
- Improve handling of partially locked packages (bsc#1113296)
- Fix wrong default values in help text (bsc#1121611)
- Fixed broken argument parsing for --reposd-dir (bsc#1122062)
- Fix wrong zypp::indeterminate use (bsc#1120463)
- CLI parser: fix broken initialization enforcing 'select by name'
(bsc#1119820)
- zypper.conf: [commit] autoAgreeWithLicenses {=false} (fixes #220)
- locks: Fix printing of versioned locks (bsc#1112911)
- locks: create and write versioned locks correctly (bsc#1112911)
- patch: --with update may implicitly assume --with-optional (bsc#1102261)
- no-recommends: Nevertheless consider resolver namespaces (hardware,
language,..supporting packages) (FATE#325513)
- Optionally run "zypper search-packages" after "search" (FATE#325599)
- zypper.conf: Add [search]runSearchPackages config variable.
- Don't iterate twice on --no-cd (bsc#1111319)
- zypper-log: Make it Python 3 compatible
- man: mention /etc/zypp/needreboot config file (fate#326451, fixes #140)
- Add `needs-restarting` shell script and manpage (fate#326451)
- Add zypper needs-rebooting command (fate#326451)
- Introduce new zypper command framefork. Migrated commands so far:
addlock addrepo addservice clean cleanlocks modifyrepo modifyservice ps
refresh refresh-services removelock removerepo removeservice renamerepo
repos services
- MediaChangeReport: fix https URLs causing 2 prompts on error
(bsc#1110542)
This update was imported from the SUSE:SLE-15:Update update project.
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1927=1
Package List:
- openSUSE Leap 15.0 (i586 x86_64):
PackageKit-1.1.10-lp150.11.1
PackageKit-backend-zypp-1.1.10-lp150.11.1
PackageKit-backend-zypp-debuginfo-1.1.10-lp150.11.1
PackageKit-debuginfo-1.1.10-lp150.11.1
PackageKit-debugsource-1.1.10-lp150.11.1
PackageKit-devel-1.1.10-lp150.11.1
PackageKit-devel-debuginfo-1.1.10-lp150.11.1
PackageKit-gstreamer-plugin-1.1.10-lp150.11.1
PackageKit-gstreamer-plugin-debuginfo-1.1.10-lp150.11.1
PackageKit-gtk3-module-1.1.10-lp150.11.1
PackageKit-gtk3-module-debuginfo-1.1.10-lp150.11.1
libpackagekit-glib2-18-1.1.10-lp150.11.1
libpackagekit-glib2-18-debuginfo-1.1.10-lp150.11.1
libpackagekit-glib2-devel-1.1.10-lp150.11.1
libyui-ncurses-pkg-debugsource-2.48.5.2-lp150.7.1
libyui-ncurses-pkg-devel-2.48.5.2-lp150.7.1
libyui-ncurses-pkg8-2.48.5.2-lp150.7.1
libyui-ncurses-pkg8-debuginfo-2.48.5.2-lp150.7.1
libyui-qt-pkg-debugsource-2.45.15.2-lp150.7.1
libyui-qt-pkg-devel-2.45.15.2-lp150.7.1
libyui-qt-pkg8-2.45.15.2-lp150.7.1
libyui-qt-pkg8-debuginfo-2.45.15.2-lp150.7.1
typelib-1_0-PackageKitGlib-1_0-1.1.10-lp150.11.1
yast2-pkg-bindings-4.0.13-lp150.2.13.1
yast2-pkg-bindings-debuginfo-4.0.13-lp150.2.13.1
yast2-pkg-bindings-debugsource-4.0.13-lp150.2.13.1
- openSUSE Leap 15.0 (x86_64):
libpackagekit-glib2-18-32bit-1.1.10-lp150.11.1
libpackagekit-glib2-18-32bit-debuginfo-1.1.10-lp150.11.1
libpackagekit-glib2-devel-32bit-1.1.10-lp150.11.1
libsolv-debuginfo-0.7.5-lp150.7.1
libsolv-debugsource-0.7.5-lp150.7.1
libsolv-demo-0.7.5-lp150.7.1
libsolv-demo-debuginfo-0.7.5-lp150.7.1
libsolv-devel-0.7.5-lp150.7.1
libsolv-devel-debuginfo-0.7.5-lp150.7.1
libsolv-tools-0.7.5-lp150.7.1
libsolv-tools-debuginfo-0.7.5-lp150.7.1
libzypp-17.12.0-lp150.2.13.1
libzypp-debuginfo-17.12.0-lp150.2.13.1
libzypp-debugsource-17.12.0-lp150.2.13.1
libzypp-devel-17.12.0-lp150.2.13.1
libzypp-devel-doc-17.12.0-lp150.2.13.1
perl-solv-0.7.5-lp150.7.1
perl-solv-debuginfo-0.7.5-lp150.7.1
python-solv-0.7.5-lp150.7.1
python-solv-debuginfo-0.7.5-lp150.7.1
python3-solv-0.7.5-lp150.7.1
python3-solv-debuginfo-0.7.5-lp150.7.1
ruby-solv-0.7.5-lp150.7.1
ruby-solv-debuginfo-0.7.5-lp150.7.1
zypper-1.14.28-lp150.2.13.1
zypper-debuginfo-1.14.28-lp150.2.13.1
zypper-debugsource-1.14.28-lp150.2.13.1
- openSUSE Leap 15.0 (noarch):
PackageKit-branding-upstream-1.1.10-lp150.11.1
PackageKit-lang-1.1.10-lp150.11.1
zypper-aptitude-1.14.28-lp150.2.13.1
zypper-log-1.14.28-lp150.2.13.1
zypper-needs-restarting-1.14.28-lp150.2.13.1
References:
https://www.suse.com/security/cve/CVE-2018-20532.html
https://www.suse.com/security/cve/CVE-2018-20533.html
https://www.suse.com/security/cve/CVE-2018-20534.html
https://bugzilla.suse.com/1047962
https://bugzilla.suse.com/1049826
https://bugzilla.suse.com/1053177
https://bugzilla.suse.com/1065022
https://bugzilla.suse.com/1099019
https://bugzilla.suse.com/1102261
https://bugzilla.suse.com/1110542
https://bugzilla.suse.com/1111319
https://bugzilla.suse.com/1112911
https://bugzilla.suse.com/1113296
https://bugzilla.suse.com/1114908
https://bugzilla.suse.com/1115341
https://bugzilla.suse.com/1116840
https://bugzilla.suse.com/1118758
https://bugzilla.suse.com/1119373
https://bugzilla.suse.com/1119820
https://bugzilla.suse.com/1119873
https://bugzilla.suse.com/1120263
https://bugzilla.suse.com/1120463
https://bugzilla.suse.com/1120629
https://bugzilla.suse.com/1120630
https://bugzilla.suse.com/1120631
https://bugzilla.suse.com/1121611
https://bugzilla.suse.com/1122062
https://bugzilla.suse.com/1122471
https://bugzilla.suse.com/1123137
https://bugzilla.suse.com/1123681
https://bugzilla.suse.com/1123843
https://bugzilla.suse.com/1123865
https://bugzilla.suse.com/1123967
https://bugzilla.suse.com/1124897
https://bugzilla.suse.com/1125415
https://bugzilla.suse.com/1127026
https://bugzilla.suse.com/1127155
https://bugzilla.suse.com/1127220
https://bugzilla.suse.com/1130161
https://bugzilla.suse.com/1131823
https://bugzilla.suse.com/1135749
https://bugzilla.suse.com/1137977
https://bugzilla.suse.com/663358
https://bugzilla.suse.com/764147
https://bugzilla.suse.com/965786
https://bugzilla.suse.com/978193
https://bugzilla.suse.com/993025
1
0
openSUSE-RU-2019:1936-1: moderate: Recommended update for postfix
by maintenance@opensuse.org 18 Aug '19
by maintenance@opensuse.org 18 Aug '19
18 Aug '19
openSUSE Recommended Update: Recommended update for postfix
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1936-1
Rating: moderate
References: #1104543 #1140521
Affected Products:
openSUSE Leap 15.1
openSUSE Leap 15.0
______________________________________________________________________________
An update that has two recommended fixes can now be
installed.
Description:
This update for postfix fixes the following issues:
- config.postfix does not start tlsmgr in master.cf when using
POSTFIX_SMTP_TLS_CLIENT="must". (bsc#1104543)
- Fixed postfix can not use ldap tables (bsc#1140521)
This update was imported from the SUSE:SLE-15:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1936=1
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1936=1
Package List:
- openSUSE Leap 15.1 (i586 x86_64):
postfix-3.3.1-lp151.2.6.1
postfix-debuginfo-3.3.1-lp151.2.6.1
postfix-debugsource-3.3.1-lp151.2.6.1
postfix-devel-3.3.1-lp151.2.6.1
postfix-lmdb-3.3.1-lp151.2.6.1
postfix-lmdb-debuginfo-3.3.1-lp151.2.6.1
postfix-mysql-3.3.1-lp151.2.6.1
postfix-mysql-debuginfo-3.3.1-lp151.2.6.1
postfix-postgresql-3.3.1-lp151.2.6.1
postfix-postgresql-debuginfo-3.3.1-lp151.2.6.1
- openSUSE Leap 15.1 (noarch):
postfix-doc-3.3.1-lp151.2.6.1
- openSUSE Leap 15.0 (i586 x86_64):
postfix-3.3.1-lp150.12.1
postfix-debuginfo-3.3.1-lp150.12.1
postfix-debugsource-3.3.1-lp150.12.1
postfix-devel-3.3.1-lp150.12.1
postfix-lmdb-3.3.1-lp150.12.1
postfix-lmdb-debuginfo-3.3.1-lp150.12.1
postfix-mysql-3.3.1-lp150.12.1
postfix-mysql-debuginfo-3.3.1-lp150.12.1
postfix-postgresql-3.3.1-lp150.12.1
postfix-postgresql-debuginfo-3.3.1-lp150.12.1
- openSUSE Leap 15.0 (noarch):
postfix-doc-3.3.1-lp150.12.1
References:
https://bugzilla.suse.com/1104543
https://bugzilla.suse.com/1140521
1
0
openSUSE-RU-2019:1932-1: moderate: Recommended update for lxqt-panel
by maintenance@opensuse.org 18 Aug '19
by maintenance@opensuse.org 18 Aug '19
18 Aug '19
openSUSE Recommended Update: Recommended update for lxqt-panel
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1932-1
Rating: moderate
References: #1043608
Affected Products:
openSUSE Backports SLE-15-SP1
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update for lxqt-panel fixes the following issues:
- lxqt-panel has called an invalid volume plugin name (boo#1043608)
This update was imported from the openSUSE:Leap:15.0:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Backports SLE-15-SP1:
zypper in -t patch openSUSE-2019-1932=1
Package List:
- openSUSE Backports SLE-15-SP1 (aarch64 ppc64le x86_64):
lxqt-panel-0.12.0-bp151.4.3.3
lxqt-panel-devel-0.12.0-bp151.4.3.3
References:
https://bugzilla.suse.com/1043608
1
0
openSUSE-RU-2019:1925-1: moderate: Recommended update for habootstrap-formula, python-shaptools, saphanabootstrap-formula
by maintenance@opensuse.org 16 Aug '19
by maintenance@opensuse.org 16 Aug '19
16 Aug '19
openSUSE Recommended Update: Recommended update for habootstrap-formula, python-shaptools, saphanabootstrap-formula
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1925-1
Rating: moderate
References: #1137989 #1142306
Affected Products:
openSUSE Leap 15.1
openSUSE Leap 15.0
SUSE Package Hub for SUSE Linux Enterprise 12
______________________________________________________________________________
An update that has two recommended fixes can now be
installed.
Description:
This update for habootstrap-formula, python-shaptools,
saphanabootstrap-formula fixes the following issues:
python-shaptools was updated to version 0.3.1:
- Add support for Power machines (jsc#SLE-4031, jsc#SLE-4143, boo#1137989)
- Add an option to run the commands in remote nodes to shapcli
- shapcli is provided to expose shaptools api methods as command line tool
- Add support for Power machines
- Add an option to run the commands in remote nodes to shapcli
- shapcli is provided to expose shaptools api methods as command line tool
habootstrap-formula was updated to version 0.2.4:
- Fix issue with file permissions during package installation in
/usr/share/salt-formulas (boo#1142306)
- Make pkg.install more resilient, allowing retries during install
- Change the salt-formula directories permissions to 0750 to avoid
conflicts with the package salt-standalone-formulas-configuration.
- Correct the required package name to
salt-standalone-formulas-configuration
saphanabootstrap-formula was updated to version 0.2.9:
- Fix srHook script usage for cost optimized scenario
- Add scenario type options to the form.yml file (boo#1137989)
- Fix errors in the form.yml file to match with the formula names
- Fix some styling issues
- Add support for Power machines
- Fix issues with SAP HANA deployment template and the exporter
- Fix issue with file permissions during package installation in
/usr/share/salt-formulas (boo#1142306)
- Retry pkg.install multiple times, in case a pkg installtion fails for
having a more resilient installation.
- hanadb_exporter executed as a daemon
- hanadb_exporter installation suggested
- Change the salt-formula directories permissions to 0750 to avoid
conflicts with the package salt-standalone-formulas-configuration.
- Correct the required package name to
salt-standalone-formulas-configuration
- supporting hanadb_exporter logging system
- adding hanadb_exporter deployment
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1925=1
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1925=1
- SUSE Package Hub for SUSE Linux Enterprise 12:
zypper in -t patch openSUSE-2019-1925=1
Package List:
- openSUSE Leap 15.1 (noarch):
habootstrap-formula-0.2.4-lp151.7.1
python2-shaptools-0.3.1-lp151.5.1
python3-shaptools-0.3.1-lp151.5.1
saphanabootstrap-formula-0.2.9-lp151.7.1
- openSUSE Leap 15.0 (noarch):
habootstrap-formula-0.2.4-lp150.6.1
python2-shaptools-0.3.1-lp150.5.1
python3-shaptools-0.3.1-lp150.5.1
saphanabootstrap-formula-0.2.9-lp150.6.1
- SUSE Package Hub for SUSE Linux Enterprise 12 (noarch):
habootstrap-formula-0.2.4-6.1
python-shaptools-0.3.1-5.1
python3-shaptools-0.3.1-5.1
saphanabootstrap-formula-0.2.9-6.1
References:
https://bugzilla.suse.com/1137989
https://bugzilla.suse.com/1142306
1
0
openSUSE-SU-2019:1923-1: important: Security update for the Linux Kernel
by opensuse-security@opensuse.org 16 Aug '19
by opensuse-security@opensuse.org 16 Aug '19
16 Aug '19
openSUSE Security Update: Security update for the Linux Kernel
______________________________________________________________________________
Announcement ID: openSUSE-SU-2019:1923-1
Rating: important
References: #1051510 #1055117 #1071995 #1083647 #1083710
#1085030 #1086103 #1102247 #1103991 #1103992
#1104745 #1106061 #1109837 #1111666 #1112374
#1114279 #1119222 #1123959 #1127034 #1127315
#1127611 #1129770 #1130972 #1131281 #1133021
#1134090 #1134097 #1134390 #1134399 #1135335
#1135642 #1135897 #1136217 #1136342 #1136352
#1136460 #1136461 #1136467 #1136502 #1137458
#1137534 #1137535 #1137584 #1137609 #1137811
#1137827 #1138874 #1139101 #1139358 #1139500
#1139619 #1140133 #1140139 #1140322 #1140426
#1140559 #1140652 #1140676 #1140903 #1140945
#1141312 #1141401 #1141402 #1141450 #1141452
#1141453 #1141454 #1141478 #1141558 #1142023
#1142052 #1142083 #1142112 #1142115 #1142117
#1142118 #1142119 #1142220 #1142221 #1142254
#1142265 #1142350 #1142351 #1142354 #1142359
#1142450 #1142623 #1142635 #1142673 #1142685
#1142701 #1142857 #1142868 #1143003 #1143045
#1143105 #1143185 #1143189 #1143191 #1143209
#1143466 #1143507 #1143738 #1144474 #1144518
Cross-References: CVE-2018-20855 CVE-2019-10207 CVE-2019-1125
CVE-2019-11810 CVE-2019-13631 CVE-2019-13648
CVE-2019-14283 CVE-2019-14284
Affected Products:
openSUSE Leap 15.1
______________________________________________________________________________
An update that solves 8 vulnerabilities and has 97 fixes is
now available.
Description:
The openSUSE Leap 15.1 kernel was updated to receive various security and
bugfixes.
The following security bugs were fixed:
- CVE-2019-1125: Fix Spectre V1 variant memory disclosure by speculation
over the SWAPGS instruction (bsc#1139358).
- CVE-2019-10207: A NULL pointer dereference was possible in the bluetooth
stack, which could lead to crashes. (bnc#1123959 bnc#1142857).
- CVE-2018-20855: In create_qp_common in drivers/infiniband/hw/mlx5/qp.c,
mlx5_ib_create_qp_resp was never initialized, resulting in a leak of
stack memory to userspace (bnc#1143045).
- CVE-2019-14284: drivers/block/floppy.c allowed a denial of service by
setup_format_params division-by-zero. Two consecutive ioctls can trigger
the bug: the first one should set the drive geometry with .sect and
.rate values that make F_SECT_PER_TRACK be zero. Next, the floppy format
operation should be called. It can be triggered by an unprivileged local
user even when a floppy disk has not been inserted. (bnc#1143189).
- CVE-2019-14283: set_geometry in drivers/block/floppy.c did not validate
the sect and head fields, as demonstrated by an integer overflow and
out-of-bounds read. It can be triggered by an unprivileged local user
when a floppy disk has been inserted. (bnc#1143191).
- CVE-2019-11810: A NULL pointer dereference can occur when
megasas_create_frame_pool() fails in megasas_alloc_cmds() in
drivers/scsi/megaraid/megaraid_sas_base.c. This causes a Denial of
Service, related to a use-after-free (bnc#1134399).
- CVE-2019-13648: In the Linux kernel on the powerpc platform, when
hardware transactional memory is disabled, a local user can cause a
denial of service (TM Bad Thing exception and system crash) via a
sigreturn() system call that sends a crafted signal frame. This affects
arch/powerpc/kernel/signal_32.c and arch/powerpc/kernel/signal_64.c
(bnc#1142254 bnc#1142265).
- CVE-2019-13631: In parse_hid_report_descriptor in
drivers/input/tablet/gtco.c in the Linux kernel, a malicious USB device
can send an HID report that triggers an out-of-bounds write during
generation of debugging messages (bnc#1142023).
The following non-security bugs were fixed:
- 9p: acl: fix uninitialized iattr access (bsc#1051510).
- 9p: p9dirent_read: check network-provided name length (bsc#1051510).
- 9p: pass the correct prototype to read_cache_page (bsc#1051510).
- 9p/rdma: do not disconnect on down_interruptible EAGAIN (bsc#1051510).
- 9p/rdma: remove useless check in cm_event_handler (bsc#1051510).
- 9p/virtio: Add cleanup path in p9_virtio_init (bsc#1051510).
- 9p/xen: Add cleanup path in p9_trans_xen_init (bsc#1051510).
- 9p/xen: fix check for xenbus_read error in front_probe (bsc#1051510).
- acpi/arm64: ignore 5.1 FADTs that are reported as 5.0 (bsc#1051510).
- ACPI/IORT: Fix off-by-one check in iort_dev_find_its_id() (bsc#1051510).
- acpi/nfit: Always dump _DSM output payload (bsc#1142351).
- ACPI: PM: Fix regression in acpi_device_set_power() (bsc#1051510).
- Add back sibling paca poiter to paca (bsc#1055117).
- Add support for crct10dif-vpmsum ().
- af_key: fix leaks in key_pol_get_resp and dump_sp (bsc#1051510).
- af_packet: Block execution of tasks waiting for transmit to complete in
AF_PACKET (networking-stable-19_07_02).
- af_unix: remove redundant lockdep class (git-fixes).
- ALSA: compress: Be more restrictive about when a drain is allowed
(bsc#1051510).
- ALSA: compress: Do not allow paritial drain operations on capture
streams (bsc#1051510).
- ALSA: compress: Fix regression on compressed capture streams
(bsc#1051510).
- ALSA: compress: Prevent bypasses of set_params (bsc#1051510).
- ALSA: hda - Add a conexant codec entry to let mute led work
(bsc#1051510).
- ALSA: hda - Do not resume forcibly i915 HDMI/DP codec (bsc#1111666).
- ALSA: hda: Fix 1-minute detection delay when i915 module is not
available (bsc#1111666).
- ALSA: hda - Fix intermittent CORB/RIRB stall on Intel chips
(bsc#1111666).
- ALSA: hda/hdmi - Fix i915 reverse port/pin mapping (bsc#1111666).
- ALSA: hda/hdmi - Remove duplicated define (bsc#1111666).
- ALSA: hda - Optimize resume for codecs without jack detection
(bsc#1111666).
- ALSA: hda/realtek: apply ALC891 headset fixup to one Dell machine
(bsc#1051510).
- ALSA: hda/realtek - Fixed Headphone Mic can't record on Dell platform
(bsc#1051510).
- ALSA: hda/realtek - Headphone Mic can't record after S3 (bsc#1051510).
- ALSA: line6: Fix a typo (bsc#1051510).
- ALSA: line6: Fix wrong altsetting for LINE6_PODHD500_1 (bsc#1051510).
- ALSA: pcm: fix lost wakeup event scenarios in snd_pcm_drain
(bsc#1051510).
- ALSA: seq: Break too long mutex context in the write loop (bsc#1051510).
- ALSA: usb-audio: Add quirk for Focusrite Scarlett Solo (bsc#1051510).
- ALSA: usb-audio: Add quirk for MOTU MicroBook II (bsc#1051510).
- ALSA: usb-audio: Cleanup DSD whitelist (bsc#1051510).
- ALSA: usb-audio: Enable .product_name override for Emagic, Unitor 8
(bsc#1051510).
- ALSA: usb-audio: Fix gpf in snd_usb_pipe_sanity_check (bsc#1051510).
- ALSA: usb-audio: fix Line6 Helix audio format rates (bsc#1111666).
- ALSA: usb-audio: Sanity checks for each pipe and EP types (bsc#1051510).
- arm64: do not override dma_max_pfn (jsc#SLE-6197 bsc#1140559 LTC#173150).
- arm64: kvm: Fix architecturally invalid reset value for FPEXC32_EL2
(bsc#1133021).
- ARM: kvm: Add SMCCC_ARCH_WORKAROUND_1 fast handling (bsc#1133021).
- ARM: kvm: report support for SMCCC_ARCH_WORKAROUND_1 (bsc#1133021).
- ASoC : cs4265 : readable register too low (bsc#1051510).
- ASoC: max98090: remove 24-bit format support if RJ is 0 (bsc#1051510).
- ASoC: soc-pcm: BE dai needs prepare when pause release after resume
(bsc#1051510).
- ath10k: add missing error handling (bsc#1111666).
- ath10k: add peer id check in ath10k_peer_find_by_id (bsc#1111666).
- ath10k: destroy sdio workqueue while remove sdio module (bsc#1111666).
- ath10k: Do not send probe response template for mesh (bsc#1111666).
- ath10k: Fix encoding for protected management frames (bsc#1111666).
- ath10k: fix incorrect multicast/broadcast rate setting (bsc#1111666).
- ath10k: fix PCIE device wake up failed (bsc#1111666).
- ath6kl: add some bounds checking (bsc#1051510).
- ath9k: Check for errors when reading SREV register (bsc#1111666).
- ath9k: correctly handle short radar pulses (bsc#1111666).
- ath: DFS JP domain W56 fixed pulse type 3 RADAR detection (bsc#1111666).
- batman-adv: fix for leaked TVLV handler (bsc#1051510).
- bcache: acquire bch_register_lock later in cached_dev_detach_finish()
(bsc#1140652).
- bcache: acquire bch_register_lock later in cached_dev_detach_finish()
(bsc#1140652).
- bcache: acquire bch_register_lock later in cached_dev_free()
(bsc#1140652).
- bcache: acquire bch_register_lock later in cached_dev_free()
(bsc#1140652).
- bcache: add code comments for journal_read_bucket() (bsc#1140652).
- bcache: add code comments for journal_read_bucket() (bsc#1140652).
- bcache: Add comments for blkdev_put() in registration code path
(bsc#1140652).
- bcache: Add comments for blkdev_put() in registration code path
(bsc#1140652).
- bcache: add comments for closure_fn to be called in closure_queue()
(bsc#1140652).
- bcache: add comments for closure_fn to be called in closure_queue()
(bsc#1140652).
- bcache: add comments for kobj release callback routine (bsc#1140652).
- bcache: add comments for kobj release callback routine (bsc#1140652).
- bcache: add comments for mutex_lock(&b->write_lock) (bsc#1140652).
- bcache: add comments for mutex_lock(&b->write_lock) (bsc#1140652).
- bcache: add error check for calling register_bdev() (bsc#1140652).
- bcache: add error check for calling register_bdev() (bsc#1140652).
- bcache: add failure check to run_cache_set() for journal replay
(bsc#1140652).
- bcache: add failure check to run_cache_set() for journal replay
(bsc#1140652).
- bcache: add io error counting in write_bdev_super_endio() (bsc#1140652).
- bcache: add io error counting in write_bdev_super_endio() (bsc#1140652).
- bcache: add more error message in bch_cached_dev_attach() (bsc#1140652).
- bcache: add more error message in bch_cached_dev_attach() (bsc#1140652).
- bcache: add pendings_cleanup to stop pending bcache device (bsc#1140652).
- bcache: add pendings_cleanup to stop pending bcache device (bsc#1140652).
- bcache: add reclaimed_journal_buckets to struct cache_set (bsc#1140652).
- bcache: add reclaimed_journal_buckets to struct cache_set (bsc#1140652).
- bcache: add return value check to bch_cached_dev_run() (bsc#1140652).
- bcache: add return value check to bch_cached_dev_run() (bsc#1140652).
- bcache: avoid a deadlock in bcache_reboot() (bsc#1140652).
- bcache: avoid a deadlock in bcache_reboot() (bsc#1140652).
- bcache: avoid clang -Wunintialized warning (bsc#1140652).
- bcache: avoid clang -Wunintialized warning (bsc#1140652).
- bcache: avoid flushing btree node in cache_set_flush() if io disabled
(bsc#1140652).
- bcache: avoid flushing btree node in cache_set_flush() if io disabled
(bsc#1140652).
- bcache: avoid potential memleak of list of journal_replay(s) in the
CACHE_SYNC branch of run_cache_set (bsc#1140652).
- bcache: avoid potential memleak of list of journal_replay(s) in the
CACHE_SYNC branch of run_cache_set (bsc#1140652).
- bcache: check CACHE_SET_IO_DISABLE bit in bch_journal() (bsc#1140652).
- bcache: check CACHE_SET_IO_DISABLE bit in bch_journal() (bsc#1140652).
- bcache: check CACHE_SET_IO_DISABLE in allocator code (bsc#1140652).
- bcache: check CACHE_SET_IO_DISABLE in allocator code (bsc#1140652).
- bcache: check c->gc_thread by IS_ERR_OR_NULL in cache_set_flush()
(bsc#1140652).
- bcache: check c->gc_thread by IS_ERR_OR_NULL in cache_set_flush()
(bsc#1140652).
- bcache: Clean up bch_get_congested() (bsc#1140652).
- bcache: Clean up bch_get_congested() (bsc#1140652).
- bcache: destroy dc->writeback_write_wq if failed to create
dc->writeback_thread (bsc#1140652).
- bcache: destroy dc->writeback_write_wq if failed to create
dc->writeback_thread (bsc#1140652).
- bcache: do not assign in if condition in bcache_device_init()
(bsc#1140652).
- bcache: do not set max writeback rate if gc is running (bsc#1140652).
- bcache: do not set max writeback rate if gc is running (bsc#1140652).
- bcache: fix a race between cache register and cacheset unregister
(bsc#1140652).
- bcache: fix a race between cache register and cacheset unregister
(bsc#1140652).
- bcache: fix crashes stopping bcache device before read miss done
(bsc#1140652).
- bcache: fix crashes stopping bcache device before read miss done
(bsc#1140652).
- bcache: fix failure in journal relplay (bsc#1140652).
- bcache: fix failure in journal relplay (bsc#1140652).
- bcache: fix inaccurate result of unused buckets (bsc#1140652).
- bcache: fix inaccurate result of unused buckets (bsc#1140652).
- bcache: fix mistaken sysfs entry for io_error counter (bsc#1140652).
- bcache: fix mistaken sysfs entry for io_error counter (bsc#1140652).
- bcache: fix potential deadlock in cached_def_free() (bsc#1140652).
- bcache: fix potential deadlock in cached_def_free() (bsc#1140652).
- bcache: fix race in btree_flush_write() (bsc#1140652).
- bcache: fix race in btree_flush_write() (bsc#1140652).
- bcache: fix return value error in bch_journal_read() (bsc#1140652).
- bcache: fix return value error in bch_journal_read() (bsc#1140652).
- bcache: fix stack corruption by PRECEDING_KEY() (bsc#1140652).
- bcache: fix stack corruption by PRECEDING_KEY() (bsc#1140652).
- bcache: fix wrong usage use-after-freed on keylist in out_nocoalesce
branch of btree_gc_coalesce (bsc#1140652).
- bcache: fix wrong usage use-after-freed on keylist in out_nocoalesce
branch of btree_gc_coalesce (bsc#1140652).
- bcache: ignore read-ahead request failure on backing device
(bsc#1140652).
- bcache: ignore read-ahead request failure on backing device
(bsc#1140652).
- bcache: improve bcache_reboot() (bsc#1140652).
- bcache: improve bcache_reboot() (bsc#1140652).
- bcache: improve error message in bch_cached_dev_run() (bsc#1140652).
- bcache: improve error message in bch_cached_dev_run() (bsc#1140652).
- bcache: make bset_search_tree() be more understandable (bsc#1140652).
- bcache: make bset_search_tree() be more understandable (bsc#1140652).
- bcache: make is_discard_enabled() static (bsc#1140652).
- bcache: make is_discard_enabled() static (bsc#1140652).
- bcache: more detailed error message to bcache_device_link()
(bsc#1140652).
- bcache: more detailed error message to bcache_device_link()
(bsc#1140652).
- bcache: move definition of 'int ret' out of macro read_bucket()
(bsc#1140652).
- bcache: move definition of 'int ret' out of macro read_bucket()
(bsc#1140652).
- bcache: never set KEY_PTRS of journal key to 0 in journal_reclaim()
(bsc#1140652).
- bcache: never set KEY_PTRS of journal key to 0 in journal_reclaim()
(bsc#1140652).
- bcache: only clear BTREE_NODE_dirty bit when it is set (bsc#1140652).
- bcache: only clear BTREE_NODE_dirty bit when it is set (bsc#1140652).
- bcache: only set BCACHE_DEV_WB_RUNNING when cached device attached
(bsc#1140652).
- bcache: only set BCACHE_DEV_WB_RUNNING when cached device attached
(bsc#1140652).
- bcache: performance improvement for btree_flush_write() (bsc#1140652).
- bcache: performance improvement for btree_flush_write() (bsc#1140652).
- bcache: remove redundant LIST_HEAD(journal) from run_cache_set()
(bsc#1140652).
- bcache: remove redundant LIST_HEAD(journal) from run_cache_set()
(bsc#1140652).
- bcache: remove retry_flush_write from struct cache_set (bsc#1140652).
- bcache: remove retry_flush_write from struct cache_set (bsc#1140652).
- bcache: remove unncessary code in bch_btree_keys_init() (bsc#1140652).
- bcache: remove unncessary code in bch_btree_keys_init() (bsc#1140652).
- bcache: remove unnecessary prefetch() in bset_search_tree()
(bsc#1140652).
- bcache: remove unnecessary prefetch() in bset_search_tree()
(bsc#1140652).
- bcache: remove "XXX:" comment line from run_cache_set() (bsc#1140652).
- bcache: remove "XXX:" comment line from run_cache_set() (bsc#1140652).
- bcache: return error immediately in bch_journal_replay() (bsc#1140652).
- bcache: return error immediately in bch_journal_replay() (bsc#1140652).
- bcache: Revert "bcache: fix high CPU occupancy during journal"
(bsc#1140652).
- bcache: Revert "bcache: fix high CPU occupancy during journal"
(bsc#1140652).
- bcache: Revert "bcache: free heap cache_set->flush_btree in
bch_journal_free" (bsc#1140652).
- bcache: Revert "bcache: free heap cache_set->flush_btree in
bch_journal_free" (bsc#1140652).
- bcache: set largest seq to ja->seq[bucket_index] in
journal_read_bucket() (bsc#1140652).
- bcache: set largest seq to ja->seq[bucket_index] in
journal_read_bucket() (bsc#1140652).
- bcache: shrink btree node cache after bch_btree_check() (bsc#1140652).
- bcache: shrink btree node cache after bch_btree_check() (bsc#1140652).
- bcache: stop writeback kthread and kworker when bch_cached_dev_run()
failed (bsc#1140652).
- bcache: stop writeback kthread and kworker when bch_cached_dev_run()
failed (bsc#1140652).
- bcache: use sysfs_match_string() instead of __sysfs_match_string()
(bsc#1140652).
- bcache: use sysfs_match_string() instead of __sysfs_match_string()
(bsc#1140652).
- be2net: Fix number of Rx queues used for flow hashing
(networking-stable-19_06_18).
- be2net: Signal that the device cannot transmit during reconfiguration
(bsc#1127315).
- be2net: Synchronize be_update_queues with dev_watchdog (bsc#1127315).
- block, bfq: NULL out the bic when it's no longer valid (bsc#1142359).
- Bluetooth: 6lowpan: search for destination address in all peers
(bsc#1051510).
- Bluetooth: Add SMP workaround Microsoft Surface Precision Mouse bug
(bsc#1051510).
- Bluetooth: Check state in l2cap_disconnect_rsp (bsc#1051510).
- Bluetooth: hci_bcsp: Fix memory leak in rx_skb (bsc#1051510).
- Bluetooth: validate BLE connection interval updates (bsc#1051510).
- bnx2fc_fcoe: Use skb_queue_walk_safe() (bsc#1136502 jsc#SLE-4703).
- bnx2x: Prevent load reordering in tx completion processing (bsc#1142868).
- bnxt_en: Cap the returned MSIX vectors to the RDMA driver (bsc#1134090
jsc#SLE-5954).
- bnxt_en: Disable bus master during PCI shutdown and driver unload
(bsc#1104745).
- bnxt_en: Fix aggregation buffer leak under OOM condition
(networking-stable-19_05_31).
- bnxt_en: Fix statistics context reservation logic for RDMA driver
(bsc#1104745).
- bnxt_en: Suppress error messages when querying DSCP DCB capabilities
(bsc#1104745).
- bonding: Always enable vlan tx offload (networking-stable-19_07_02).
- bonding: fix arp_validate toggling in active-backup mode
(networking-stable-19_05_14).
- bonding: Force slave speed check after link state recovery for 802.3ad
(bsc#1137584).
- bpf: btf: fix the brackets of BTF_INT_OFFSET() (bsc#1083647).
- bpf: fix callees pruning callers (bsc#1109837).
- bpf: fix nested bpf tracepoints with per-cpu data (bsc#1083647).
- bpf, x64: fix stack layout of JITed bpf code (bsc#1083647).
- bpf, x64: save 5 bytes in prologue when ebpf insns came from cbpf
(bsc#1083647).
- bridge: Fix error path for kobject_init_and_add()
(networking-stable-19_05_14).
- btrfs: fix race between block group removal and block group allocation
(bsc#1143003).
- btrfs-kill-btrfs_clear_path_blocking.patch: (bsc#1140139).
- btrfs: scrub: add memalloc_nofs protection around init_ipath
(bsc#1086103).
- btrfs: use GFP_KERNEL in init_ipath (bsc#1086103).
- carl9170: fix misuse of device driver API (bsc#1111666).
- ceph: fix iov_iter issues in ceph_direct_read_write() (bsc#1141450).
blacklist.conf: dropped patch from blacklist.
- cgroup: Use css_tryget() instead of css_tryget_online() in
task_get_css() (bsc#1141478).
- clk: qcom: Fix -Wunused-const-variable (bsc#1051510).
- clk: rockchip: Do not yell about bad mmc phases when getting
(bsc#1051510).
- clk: tegra210: fix PLLU and PLLU_OUT1 (bsc#1051510).
- Correct iwlwifi 22000 series ucode file name (bsc#1142673)
- Correct the buggy backport about AER / DPC pcie stuff (bsc#1142623)
- cpufreq: acpi-cpufreq: Report if CPU does not support boost technologies
(bsc#1051510).
- cpufreq: brcmstb-avs-cpufreq: Fix initial command check (bsc#1051510).
- cpufreq: brcmstb-avs-cpufreq: Fix types for voltage/frequency
(bsc#1051510).
- cpufreq: check if policy is inactive early in __cpufreq_get()
(bsc#1051510).
- cpufreq: kirkwood: fix possible object reference leak (bsc#1051510).
- cpufreq/pasemi: fix possible object reference leak (bsc#1051510).
- cpufreq: pmac32: fix possible object reference leak (bsc#1051510).
- cpufreq: ppc_cbe: fix possible object reference leak (bsc#1051510).
- cpufreq: Use struct kobj_attribute instead of struct global_attr
(bsc#1051510).
- crypto: arm64/sha1-ce - correct digest for empty data in finup
(bsc#1051510).
- crypto: arm64/sha2-ce - correct digest for empty data in finup
(bsc#1051510).
- crypto: ccp - Fix 3DES complaint from ccp-crypto module (bsc#1051510).
- crypto: ccp - fix AES CFB error exposed by new test vectors
(bsc#1051510).
- crypto: ccp - Fix SEV_VERSION_GREATER_OR_EQUAL (bsc#1051510).
- crypto: ccp/gcm - use const time tag comparison (bsc#1051510).
- crypto: ccp - memset structure fields to zero before reuse (bsc#1051510).
- crypto: ccp - Validate the the error value used to index error messages
(bsc#1051510).
- crypto: chacha20poly1305 - fix atomic sleep when using async algorithm
(bsc#1051510).
- crypto: crypto4xx - fix a potential double free in ppc4xx_trng_probe
(bsc#1051510).
- crypto: ghash - fix unaligned memory access in ghash_setkey()
(bsc#1051510).
- crypto: talitos - Align SEC1 accesses to 32 bits boundaries
(bsc#1051510).
- crypto: talitos - check data blocksize in ablkcipher (bsc#1051510).
- crypto: talitos - fix CTR alg blocksize (bsc#1051510).
- crypto: talitos - fix max key size for sha384 and sha512 (bsc#1051510).
- crypto: talitos - fix skcipher failure due to wrong output IV
(bsc#1051510).
- crypto: talitos - HMAC SNOOP NO AFEU mode requires SW icv checking
(bsc#1051510).
- crypto: talitos - properly handle split ICV (bsc#1051510).
- crypto: talitos - reduce max key size for SEC1 (bsc#1051510).
- crypto: talitos - rename alternative AEAD algos (bsc#1051510).
- dasd_fba: Display '00000000' for zero page when dumping sense
(bsc#11123080).
- dma-buf: balance refcount inbalance (bsc#1051510).
- dma-buf: Discard old fence_excl on retrying get_fences_rcu for realloc
(bsc#1111666).
- dma-direct: add support for allocation from ZONE_DMA and ZONE_DMA32
(jsc#SLE-6197 bsc#1140559 LTC#173150).
- dma-direct: do not retry allocation for no-op GFP_DMA (jsc#SLE-6197
bsc#1140559 LTC#173150).
- dma-direct: retry allocations using GFP_DMA for small masks
(jsc#SLE-6197 bsc#1140559 LTC#173150).
- dmaengine: hsu: Revert "set HSU_CH_MTSR to memory width" (bsc#1051510).
- dma-mapping: move dma_mark_clean to dma-direct.h (jsc#SLE-6197
bsc#1140559 LTC#173150).
- dma-mapping: move swiotlb arch helpers to a new header (jsc#SLE-6197
bsc#1140559 LTC#173150).
- dma-mapping: take dma_pfn_offset into account in dma_max_pfn
(jsc#SLE-6197 bsc#1140559 LTC#173150).
- Documentation: Add nospectre_v1 parameter (bsc#1051510).
- Documentation/networking: fix default_ttl typo in mpls-sysctl
(bsc#1051510).
- dpaa_eth: fix SG frame cleanup (networking-stable-19_05_14).
- driver core: Fix use-after-free and double free on glue directory
(bsc#1131281).
- drm/amd/display: Always allocate initial connector state state
(bsc#1111666).
- drm/amd/display: Disable ABM before destroy ABM struct (bsc#1111666).
- drm/amd/display: Fill prescale_params->scale for RGB565 (bsc#1111666).
- drm/amd/display: fix compilation error (bsc#1111666).
- drm/amd/display: Make some functions static (bsc#1111666).
- drm/amdgpu/sriov: Need to initialize the HDP_NONSURFACE_BAStE
(bsc#1111666).
- drm/amdkfd: Fix a potential memory leak (bsc#1111666).
- drm/amdkfd: Fix sdma queue map issue (bsc#1111666).
- drm/atmel-hlcdc: revert shift by 8 (bsc#1111666).
- drm/bridge: sii902x: pixel clock unit is 10kHz instead of 1kHz
(bsc#1051510).
- drm/bridge: tc358767: read display_props in get_modes() (bsc#1051510).
- drm/crc-debugfs: User irqsafe spinlock in drm_crtc_add_crc_entry
(bsc#1051510).
- drm/i915/cml: Introduce Comet Lake PCH (jsc#SLE-6681).
- drm/i915/icl: Add WaDisableBankHangMode (bsc#1111666).
- drm/meson: Add support for XBGR8888 & ABGR8888 formats (bsc#1051510).
- drm/msm/a3xx: remove TPL1 regs from snapshot (bsc#1051510).
- drm/msm: Depopulate platform on probe failure (bsc#1051510).
- drm/msm/mdp5: Fix mdp5_cfg_init error return (bsc#1111666).
- drm/nouveau/i2c: Enable i2c pads & busses during preinit (bsc#1051510).
- drm/panel: simple: Fix panel_simple_dsi_probe (bsc#1051510).
- drm: return -EFAULT if copy_to_user() fails (bsc#1111666).
- drm/rockchip: Properly adjust to a true clock in adjusted_mode
(bsc#1051510).
- drm/udl: introduce a macro to convert dev to udl (bsc#1111666).
- drm/udl: move to embedding drm device inside udl device (bsc#1111666).
- drm/udl: Replace drm_dev_unref with drm_dev_put (bsc#1111666).
- drm/vc4: fix fb references in async update (bsc#1141312).
- drm/virtio: Add memory barriers for capset cache (bsc#1051510).
- drm/vmwgfx: Honor the sg list segment size limitation (bsc#1111666).
- e1000e: start network tx queue only when link is up (bsc#1051510).
- eCryptfs: fix a couple type promotion bugs (bsc#1051510).
- EDAC: Fix global-out-of-bounds write when setting edac_mc_poll_msec
(bsc#1114279).
- efi/bgrt: Drop BGRT status field reserved bits check (bsc#1051510).
- Enable intel-speed-select driver and update supported.conf (jsc#SLE-5364)
- ethtool: check the return value of get_regs_len (git-fixes).
- ethtool: fix potential userspace buffer overflow
(networking-stable-19_06_09).
- firmware: ti_sci: Always request response from firmware (bsc#1051510).
- Fix kABI for asus-wmi quirk_entry field addition (bsc#1051510).
- Fix memory leak in sctp_process_init (networking-stable-19_06_09).
- floppy: fix invalid pointer dereference in drive_name (bsc#1111666).
- floppy: fix out-of-bounds read in next_valid_format (bsc#1111666).
- fork, memcg: fix cached_stacks case (bsc#1134097).
- fork, memcg: fix crash in free_thread_stack on memcg charge fail
(bsc#1134097).
- fpga: add intel stratix10 soc fpga manager driver (jsc#SLE-7057).
- fpga: stratix10-soc: fix use-after-free on s10_init() (jsc#SLE-7057).
- fpga: stratix10-soc: fix wrong of_node_put() in init function
(jsc#jsc#SLE-7057).
- gpio: omap: ensure irq is enabled before wakeup (bsc#1051510).
- gpu: ipu-v3: ipu-ic: Fix saturation bit offset in TPMEM (bsc#1111666).
- HID: wacom: correct touch resolution x/y typo (bsc#1051510).
- HID: wacom: generic: Correct pad syncing (bsc#1051510).
- HID: wacom: generic: only switch the mode on devices with LEDs
(bsc#1051510).
- HID: wacom: generic: read HID_DG_CONTACTMAX from any feature report
(bsc#1051510).
- hpet: Fix division by zero in hpet_time_div() (bsc#1051510).
- hv_netvsc-Set-probe-mode-to-sync.patch: (bsc#1142083).
- hwmon: (nct6775) Fix register address and added missed tolerance for
nct6106 (bsc#1051510).
- IB/ipoib: Add child to parent list only if device initialized
(bsc#1103992).
- IB/mlx5: Fixed reporting counters on 2nd port for Dual port RoCE
(bsc#1103991).
- idr: fix overflow case for idr_for_each_entry_ul() (bsc#1109837).
- iio: iio-utils: Fix possible incorrect mask calculation (bsc#1051510).
- Input: alps - do not handle ALPS cs19 trackpoint-only device
(bsc#1051510).
- Input: alps - fix a mismatch between a condition check and its comment
(bsc#1051510).
- Input: elantech - enable middle button support on 2 ThinkPads
(bsc#1051510).
- Input: imx_keypad - make sure keyboard can always wake up system
(bsc#1051510).
- Input: psmouse - fix build error of multiple definition (bsc#1051510).
- Input: synaptics - enable SMBUS on T480 thinkpad trackpad (bsc#1051510).
- Input: synaptics - whitelist Lenovo T580 SMBus intertouch (bsc#1051510).
- Input: tm2-touchkey - acknowledge that setting brightness is a blocking
call (bsc#1129770).
- Input: trackpoint - only expose supported controls for Elan, ALPS and
NXP (bsc#1051510).
- intel_th: msu: Fix single mode with disabled IOMMU (bsc#1051510).
- intel_th: pci: Add Ice Lake NNPI support (bsc#1051510).
- iommu-helper: mark iommu_is_span_boundary as inline (jsc#SLE-6197
bsc#1140559 LTC#173150).
- ipv4: Fix raw socket lookup for local traffic
(networking-stable-19_05_14).
- ipv4/igmp: fix another memory leak in igmpv3_del_delrec()
(networking-stable-19_05_31).
- ipv4/igmp: fix build error if !CONFIG_IP_MULTICAST
(networking-stable-19_05_31).
- ipv4: Use return value of inet_iif() for __raw_v4_lookup in the while
loop (git-fixes).
- ipv6: Consider sk_bound_dev_if when binding a raw socket to an address
(networking-stable-19_05_31).
- ipv6: fix EFAULT on sendto with icmpv6 and hdrincl
(networking-stable-19_06_09).
- ipv6: flowlabel: fl6_sock_lookup() must use atomic_inc_not_zero
(networking-stable-19_06_18).
- ipv6: use READ_ONCE() for inet->hdrincl as in ipv4
(networking-stable-19_06_09).
- iwlwifi: correct one of the PCI struct names (bsc#1111666).
- iwlwifi: do not WARN when calling iwl_get_shared_mem_conf with RF-Kill
(bsc#1111666).
- iwlwifi: fix cfg structs for 22000 with different RF modules
(bsc#1111666).
- iwlwifi: fix devices with PCI Device ID 0x34F0 and 11ac RF modules
(bsc#1111666).
- iwlwifi: Fix double-free problems in iwl_req_fw_callback() (bsc#1111666).
- iwlwifi: fix RF-Kill interrupt while FW load for gen2 devices
(bsc#1111666).
- iwlwifi: mvm: Drop large non sta frames (bsc#1111666).
- iwlwifi: pcie: do not service an interrupt that was masked (bsc#1111666).
- iwlwifi: pcie: fix ALIVE interrupt handling for gen2 devices w/o MSI-X
(bsc#1111666).
- kABI fix for hda_codec.relaxed_resume flag (bsc#1111666).
- kABI: Fix lost iommu-helper symbols on arm64 (jsc#SLE-6197 bsc#1140559
LTC#173150).
- kABI: mask changes made by basic protected virtualization support
(jsc#SLE-6197 bsc#1140559 LTC#173150).
- kABI: mask changes made by swiotlb for protected virtualization
(jsc#SLE-6197 bsc#1140559 LTC#173150).
- kABI: mask changes made by use of DMA memory for adapter interrupts
(jsc#SLE-6197 bsc#1140559 LTC#173150).
- KABI: remove unused hcall definition (bsc#1140322 LTC#176270).
- kbuild: use -flive-patching when CONFIG_LIVEPATCH is enabled
(bsc#1071995).
- kernel: jump label transformation performance (bsc#1137534
bsc#1137535 LTC#178058 LTC#178059).
- kvm: arm64: Fix caching of host MDCR_EL2 value (bsc#1133021).
- kvm: arm/arm64: Close VMID generation race (bsc#1133021).
- kvm: arm/arm64: Convert kvm_host_cpu_state to a static per-cpu
allocation (bsc#1133021).
- kvm: arm/arm64: Drop resource size check for GICV window (bsc#1133021).
- kvm: arm/arm64: Fix lost IRQs from emulated physcial timer when blocked
(bsc#1133021).
- kvm: arm/arm64: Fix VMID alloc race by reverting to lock-less
(bsc#1133021).
- kvm: arm/arm64: Handle CPU_PM_ENTER_FAILED (bsc#1133021).
- kvm: arm/arm64: Reduce verbosity of KVM init log (bsc#1133021).
- kvm: arm/arm64: Set dist->spis to NULL after kfree (bsc#1133021).
- kvm: arm/arm64: Skip updating PMD entry if no change (bsc#1133021).
- kvm: arm/arm64: Skip updating PTE entry if no change (bsc#1133021).
- kvm: arm/arm64: vgic: Add missing irq_lock to vgic_mmio_read_pending
(bsc#1133021).
- kvm: arm/arm64: vgic: Fix kvm_device leak in vgic_its_destroy
(bsc#1133021).
- kvm: arm/arm64: vgic-its: Fix potential overrun in vgic_copy_lpi_list
(bsc#1133021).
- kvm: arm/arm64: vgic-its: Take the srcu lock when parsing the memslots
(bsc#1133021).
- kvm: arm/arm64: vgic-its: Take the srcu lock when writing to guest
memory (bsc#1133021).
- kvm: arm/arm64: vgic-v3: Tighten synchronization for guests using v2 on
v3 (bsc#1133021).
- kvm: Disallow wraparound in kvm_gfn_to_hva_cache_init (bsc#1133021).
- kvm/Eventfd: Avoid crash when assign and deassign specific eventfd in
parallel (bsc#1133021).
- kvm: mmu: Fix overflow on kvm mmu page limit calculation (bsc#1135335).
- kvm: mmu: Fix overlap between public and private memslots (bsc#1133021).
- kvm/mmu: kABI fix for *_mmu_pages changes in struct kvm_arch
(bsc#1135335).
- kvm: polling: add architecture backend to disable polling (bsc#1119222).
- kvm: Reject device ioctls from processes other than the VM's creator
(bsc#1133021).
- kvm: s390: change default halt poll time to 50us (bsc#1119222).
- kvm: s390: enable CONFIG_HAVE_KVM_NO_POLL (bsc#1119222) We need to
enable CONFIG_HAVE_KVM_NO_POLL for bsc#1119222
- kvm: s390: fix typo in parameter description (bsc#1119222).
- kvm: s390: kABI Workaround for 'lowcore' (bsc#1119222).
- kvm: s390: provide kvm_arch_no_poll function (bsc#1119222).
- kvm: svm/avic: Do not send AVIC doorbell to self (bsc#1140133).
- kvm: SVM: Fix detection of AMD Errata 1096 (bsc#1142354).
- lapb: fixed leak of control-blocks (networking-stable-19_06_18).
- libata: do not request sense data on !ZAC ATA devices (bsc#1051510).
- libata: zpodd: Fix small read overflow in zpodd_get_mech_type()
(bsc#1051510).
- lib/bitmap.c: make bitmap_parselist() thread-safe and much faster
(bsc#1143507).
- libceph: add osd_req_op_extent_osd_data_bvecs() (bsc#1141450).
- libceph: assign cookies in linger_submit() (bsc#1135897).
- libceph: check reply num_data_items in setup_request_data()
(bsc#1135897).
- libceph: do not consume a ref on pagelist in
ceph_msg_data_add_pagelist() (bsc#1135897).
- libceph: enable fallback to ceph_msg_new() in ceph_msgpool_get()
(bsc#1135897).
- libceph: handle zero-length data items (bsc#1141450).
- libceph: introduce alloc_watch_request() (bsc#1135897).
- libceph: introduce BVECS data type (bsc#1141450).
- libceph: introduce ceph_pagelist_alloc() (bsc#1135897).
- libceph: preallocate message data items (bsc#1135897).
- libceph, rbd: add error handling for osd_req_op_cls_init() (bsc#1135897).
- libceph, rbd, ceph: move ceph_osdc_alloc_messages() calls (bsc#1135897).
- libceph, rbd: new bio handling code (aka do not clone bios)
(bsc#1141450).
- libceph: use single request data item for cmp/setxattr (bsc#1139101).
- lib: fix stall in __bitmap_parselist() (bsc#1051510).
- libnvdimm/namespace: Fix label tracking error (bsc#1142350).
- libnvdimm/region: Register badblocks before namespaces (bsc#1143209).
- lib/scatterlist: Fix mapping iterator when sg->offset is greater than
PAGE_SIZE (bsc#1051510).
- livepatch: Remove duplicate warning about missing reliable stacktrace
support (bsc#1071995).
- livepatch: Use static buffer for debugging messages under rq lock
(bsc#1071995).
- llc: fix skb leak in llc_build_and_send_ui_pkt()
(networking-stable-19_05_31).
- mac80211: do not start any work during reconfigure flow (bsc#1111666).
- mac80211: fix rate reporting inside cfg80211_calculate_bitrate_he()
(bsc#1111666).
- mac80211: free peer keys before vif down in mesh (bsc#1111666).
- mac80211: mesh: fix RCU warning (bsc#1111666).
- mac80211: only warn once on chanctx_conf being NULL (bsc#1111666).
- macsec: fix checksumming after decryption (bsc#1051510).
- macsec: fix use-after-free of skb during RX (bsc#1051510).
- macsec: let the administrator set UP state even if lowerdev is down
(bsc#1051510).
- macsec: update operstate when lower device changes (bsc#1051510).
- mailbox: handle failed named mailbox channel request (bsc#1051510).
- media: coda: fix last buffer handling in V4L2_ENC_CMD_STOP (bsc#1051510).
- media: coda: fix mpeg2 sequence number handling (bsc#1051510).
- media: coda: increment sequence offset for the last returned frame
(bsc#1051510).
- media: coda: Remove unbalanced and unneeded mutex unlock (bsc#1051510).
- media: cpia2_usb: first wake up, then free in disconnect (bsc#1135642).
- media: dvb: usb: fix use after free in dvb_usb_device_exit (bsc#1051510).
- media: hdpvr: fix locking and a missing msleep (bsc#1051510).
- media: marvell-ccic: fix DMA s/g desc number calculation (bsc#1051510).
- media: media_device_enum_links32: clean a reserved field (bsc#1051510).
- media: s5p-mfc: Make additional clocks optional (bsc#1051510).
- media: spi: IR LED: add missing of table registration (bsc#1051510).
- media: staging: media: davinci_vpfe: - Fix for memory leak if decoder
initialization fails (bsc#1051510).
- media: v4l2: Test type instead of cfg->type in v4l2_ctrl_new_custom()
(bsc#1051510).
- media: vivid: fix incorrect assignment operation when setting video mode
(bsc#1051510).
- media: vpss: fix a potential NULL pointer dereference (bsc#1051510).
- media: wl128x: Fix some error handling in fm_v4l2_init_video_device()
(bsc#1051510).
- mei: bus: need to unlink client before freeing (bsc#1051510).
- mei: me: add denverton innovation engine device IDs (bsc#1051510).
- mei: me: add gemini lake devices id (bsc#1051510).
- memory: tegra: Fix integer overflow on tick value calculation
(bsc#1051510).
- memstick: Fix error cleanup path of memstick_init (bsc#1051510).
- mfd: intel-lpss: Release IDA resources (bsc#1051510).
- mips: fix an off-by-one in dma_capable (jsc#SLE-6197 bsc#1140559
LTC#173150).
- mlxsw: spectrum_dcb: Configure DSCP map as the last rule is removed
(bsc#1112374).
- mmc: sdhci-pci: Try "cd" for card-detect lookup before using NULL
(bsc#1051510).
- mm: migrate: Fix reference check race between __find_get_block() and
migration (bnc#1137609).
- mm/nvdimm: add is_ioremap_addr and use that to check ioremap address
(bsc#1140322 LTC#176270).
- mm, page_alloc: fix has_unmovable_pages for HugePages (bsc#1127034).
- mm: replace all open encodings for NUMA_NO_NODE (bsc#1140322 LTC#176270).
- mt7601u: do not schedule rx_tasklet when the device has been
disconnected (bsc#1111666).
- mt7601u: fix possible memory leak when the device is disconnected
(bsc#1111666).
- neigh: fix use-after-free read in pneigh_get_next
(networking-stable-19_06_18).
- net/9p: include trans_common.h to fix missing prototype warning
(bsc#1051510).
- net/af_iucv: build proper skbs for HiperTransport (bsc#1142221
LTC#179332).
- net/af_iucv: remove GFP_DMA restriction for HiperTransport (bsc#1142112
bsc#1142221 LTC#179334 LTC#179332).
- net/af_iucv: remove GFP_DMA restriction for HiperTransport (bsc#1142221
LTC#179332).
- net: avoid weird emergency message (networking-stable-19_05_21).
- net: fec: fix the clk mismatch in failed_reset path
(networking-stable-19_05_31).
- netfilter: conntrack: fix calculation of next bucket number in
early_drop (git-fixes).
- net-gro: fix use-after-free read in napi_gro_frags()
(networking-stable-19_05_31).
- net: hns3: Fix inconsistent indenting (bsc#1140676).
- net: hns: fix ICMP6 neighbor solicitation messages discard problem
(bsc#1140676).
- net: hns: fix KASAN: use-after-free in hns_nic_net_xmit_hw()
(bsc#1140676).
- net: hns: Fix loopback test failed at copper ports (bsc#1140676).
- net: hns: Fix probabilistic memory overwrite when HNS driver initialized
(bsc#1140676).
- net: hns: fix unsigned comparison to less than zero (bsc#1140676).
- net: hns: Fix WARNING when remove HNS driver with SMMU enabled
(bsc#1140676).
- net: hns: Use NAPI_POLL_WEIGHT for hns driver (bsc#1140676).
- net/mlx4_core: Change the error print to info print
(networking-stable-19_05_21).
- net/mlx4_en: ethtool, Remove unsupported SFP EEPROM high pages query
(networking-stable-19_06_09).
- net/mlx5: Allocate root ns memory using kzalloc to match kfree
(networking-stable-19_05_31).
- net/mlx5: Avoid double free in fs init error unwinding path
(networking-stable-19_05_31).
- net/mlx5e: Rx, Fix checksum calculation for new hardware (bsc#1127611).
- net: mvneta: Fix err code path of probe (networking-stable-19_05_31).
- net: mvpp2: fix bad MVPP2_TXQ_SCHED_TOKEN_CNTR_REG queue value
(networking-stable-19_05_31).
- net: openvswitch: do not free vport if register_netdevice() is failed
(networking-stable-19_06_18).
- net/packet: fix memory leak in packet_set_ring() (git-fixes).
- net: rds: fix memory leak in rds_ib_flush_mr_pool
(networking-stable-19_06_09).
- net: remove duplicate fetch in sock_getsockopt
(networking-stable-19_07_02).
- net: seeq: fix crash caused by not set dev.parent
(networking-stable-19_05_14).
- net: stmmac: fixed new system time seconds value calculation
(networking-stable-19_07_02).
- net: stmmac: fix reset gpio free missing (networking-stable-19_05_31).
- net: stmmac: set IC bit when transmitting frames with HW timestamp
(networking-stable-19_07_02).
- net/tls: fix socket wmem accounting on fallback with netem (bsc#1109837).
- net/tls: make sure offload also gets the keys wiped (bsc#1109837).
- net: usb: qmi_wwan: add Telit 0x1260 and 0x1261 compositions
(networking-stable-19_05_21).
- nfc: fix potential illegal memory access (bsc#1051510).
- nvme: fix memory leak caused by incorrect subsystem free (bsc#1143185).
- nvme: fix possible use-after-free in connect error flow (bsc#1139500)
- nvme: fix possible use-after-free in connect error flow (bsc#1139500,
bsc#1140426)
- ocfs2: add first lock wait time in locking_state (bsc#1134390).
- ocfs2: add last unlock times in locking_state (bsc#1134390).
- ocfs2: add locking filter debugfs file (bsc#1134390).
- p54usb: Fix race between disconnect and firmware loading (bsc#1111666).
- packet: Fix error path in packet_init (networking-stable-19_05_14).
- packet: in recvmsg msg_name return at least sizeof sockaddr_ll
(git-fixes).
- PCI/AER: Use cached AER Capability offset (bsc#1142623).
- PCI: Always allow probing with driver_override (bsc#1051510).
- PCI: hv: Add hv_pci_remove_slots() when we unload the driver
(bsc#1142701).
- PCI: hv: Add pci_destroy_slot() in pci_devices_present_work(), if
necessary (bsc#1142701).
- PCI: hv: Fix a memory leak in hv_eject_device_work() (bsc#1142701).
- PCI: hv: Fix a use-after-free bug in hv_eject_device_work()
(bsc#1142701).
- PCI: hv: Fix panic by calling hv_pci_remove_slots() earlier
(bsc#1142701).
- PCI: hv: Fix return value check in hv_pci_assign_slots() (bsc#1142701).
- PCI: hv: Remove unused reason for refcount handler (bsc#1142701).
- PCI: hv: support reporting serial number as slot information
(bsc#1142701).
- PCI/P2PDMA: Fix missing check for dma_virt_ops (bsc#1111666).
- PCI / PM: Use SMART_SUSPEND and LEAVE_SUSPENDED flags for PCIe ports
(bsc#1142623).
- PCI/portdrv: Add #defines for AER and DPC Interrupt Message Number masks
(bsc#1142623).
- PCI/portdrv: Consolidate comments (bsc#1142623).
- PCI/portdrv: Disable port driver in compat mode (bsc#1142623).
- PCI/portdrv: Remove pcie_portdrv_err_handler.slot_reset (bsc#1142623).
- PCI: portdrv: Restore PCI config state on slot reset (bsc#1142623).
- PCI/portdrv: Support PCIe services on subtractive decode bridges
(bsc#1142623).
- PCI/portdrv: Use conventional Device ID table formatting (bsc#1142623).
- PCI: qcom: Ensure that PERST is asserted for at least 100 ms
(bsc#1142635).
- PCI: Return error if cannot probe VF (bsc#1051510).
- PCI: xilinx-nwl: Fix Multi MSI data programming (bsc#1142635).
- pinctrl: pistachio: fix leaked of_node references (bsc#1051510).
- pinctrl: rockchip: fix leaked of_node references (bsc#1051510).
- pkey: Indicate old mkvp only if old and current mkvp are different
(bsc#1137827 LTC#178090).
- pktgen: do not sleep with the thread lock held (git-fixes).
- platform/x86: asus-nb-wmi: Support ALS on the Zenbook UX430UQ
(bsc#1051510).
- platform/x86: asus-wmi: Only Tell EC the OS will handle display hotkeys
from asus_nb_wmi (bsc#1051510).
- platform/x86: intel_turbo_max_3: Remove restriction for HWP platforms
(jsc#SLE-5439).
- platform/x86: ISST: Add common API to register and handle ioctls
(jsc#SLE-5364).
- platform/x86: ISST: Add Intel Speed Select mailbox interface via MSRs
(jsc#SLE-5364).
- platform/x86: ISST: Add Intel Speed Select mailbox interface via PCI
(jsc#SLE-5364).
- platform/x86: ISST: Add Intel Speed Select mmio interface (jsc#SLE-5364).
- platform/x86: ISST: Add Intel Speed Select PUNIT MSR interface
(jsc#SLE-5364).
- platform/x86: ISST: Add IOCTL to Translate Linux logical CPU to PUNIT
CPU number (jsc#SLE-5364).
- platform/x86: ISST: Restore state on resume (jsc#SLE-5364).
- platform/x86: ISST: Store per CPU information (jsc#SLE-5364).
- platform/x86: pmc_atom: Add CB4063 Beckhoff Automation board to
critclk_systems DMI table (bsc#1051510).
- powerpc/64s: Remove POWER9 DD1 support (bsc#1055117, LTC#159753,
git-fixes).
- powerpc/crypto: Use cheaper random numbers for crc-vpmsum self-test ().
- powerpc/kdump: Handle crashkernel memory reservation failure
(bsc#1143466 LTC#179600).
- powerpc/mm: Change function prototype (bsc#1055117).
- powerpc/mm: Consolidate numa_enable check and min_common_depth check
(bsc#1140322 LTC#176270).
- powerpc/mm/drconf: Use NUMA_NO_NODE on failures instead of node 0
(bsc#1140322 LTC#176270).
- powerpc/mm: Fix node look up with numa=off boot (bsc#1140322 LTC#176270).
- powerpc/mm/hash/4k: Do not use 64K page size for vmemmap with 4K
pagesize (bsc#1142685 LTC#179509).
- powerpc/mm/hugetlb: Update huge_ptep_set_access_flags to call
__ptep_set_access_flags directly (bsc#1055117).
- powerpc/mm/nvdimm: Add an informative message if we fail to allocate
altmap block (bsc#1142685 LTC#179509).
- powerpc/mm/radix: Change pte relax sequence to handle nest MMU hang
(bsc#1055117).
- powerpc/mm/radix: Move function from radix.h to pgtable-radix.c
(bsc#1055117).
- powerpc/mm/radix: Use the right page size for vmemmap mapping
(bsc#1055117 bsc#1142685 LTC#179509).
- powerpc/nvdimm: Add support for multibyte read/write for metadata
(bsc#1142685 LTC#179509).
- powerpc/papr_scm: Force a scm-unbind if initial scm-bind fails
(bsc#1140322 LTC#176270).
- powerpc/papr_scm: Update drc_pmem_unbind() to use H_SCM_UNBIND_ALL
(bsc#1140322 LTC#176270).
- powerpc/pseries: Fix xive=off command line (bsc#1085030, git-fixes).
- powerpc/pseries/scm: Mark the region volatile if cache flush not
required (bsc#1142685 LTC#179509).
- powerpc/pseries: Update SCM hcall op-codes in hvcall.h (bsc#1140322
LTC#176270).
- powerpc/watchpoint: Restore NV GPRs while returning from exception
(bsc#1140945 bsc#1141401 bsc#1141402 bsc#1141452 bsc#1141453 bsc#1141454
LTC#178983 LTC#179191 LTC#179192 LTC#179193 LTC#179194 LTC#179195).
- ppc: Convert mmu context allocation to new IDA API (bsc#1139619
LTC#178538).
- ppp: deflate: Fix possible crash in deflate_init
(networking-stable-19_05_21).
- qed: Fix build error without CONFIG_DEVLINK (bsc#1136460 jsc#SLE-4691
bsc#1136461 jsc#SLE-4692).
- qed: Fix -Wmaybe-uninitialized false positive (bsc#1136460 jsc#SLE-4691
bsc#1136461 jsc#SLE-4692).
- qlge: Deduplicate lbq_buf_size (bsc#1106061).
- qlge: Deduplicate rx buffer queue management (bsc#1106061).
- qlge: Factor out duplicated expression (bsc#1106061).
- qlge: Fix dma_sync_single calls (bsc#1106061).
- qlge: Fix irq masking in INTx mode (bsc#1106061).
- qlge: Refill empty buffer queues from wq (bsc#1106061).
- qlge: Refill rx buffers up to multiple of 16 (bsc#1106061).
- qlge: Remove bq_desc.maplen (bsc#1106061).
- qlge: Remove irq_cnt (bsc#1106061).
- qlge: Remove page_chunk.last_flag (bsc#1106061).
- qlge: Remove qlge_bq.len & size (bsc#1106061).
- qlge: Remove rx_ring.sbq_buf_size (bsc#1106061).
- qlge: Remove rx_ring.type (bsc#1106061).
- qlge: Remove useless dma synchronization calls (bsc#1106061).
- qlge: Remove useless memset (bsc#1106061).
- qlge: Replace memset with assignment (bsc#1106061).
- qlge: Update buffer queue prod index despite oom (bsc#1106061).
- rbd: do not (ab)use obj_req->pages for stat requests (bsc#1141450).
- rbd: do not NULL out ->obj_request in rbd_img_obj_parent_read_full()
(bsc#1141450).
- rbd: get rid of img_req->copyup_pages (bsc#1141450).
- rbd: move from raw pages to bvec data descriptors (bsc#1141450).
- rbd: remove bio cloning helpers (bsc#1141450).
- rbd: start enums at 1 instead of 0 (bsc#1141450).
- rbd: use kmem_cache_zalloc() in rbd_img_request_create() (bsc#1141450).
- RDMA/odp: Fix missed unlock in non-blocking invalidate_start
(bsc#1103992).
- RDMA/srp: Accept again source addresses that do not have a port number
(bsc#1103992).
- RDMA/srp: Document srp_parse_in() arguments (bsc#1103992 ).
- RDMA/uverbs: check for allocation failure in uapi_add_elm()
(bsc#1103992).
- RDS: IB: fix 'passing zero to ERR_PTR()' warning (git-fixes).
- Refresh
patches.drivers/0001-PCI-pciehp-Unify-controller-and-slot-structs.patch.
(bsc#1141558)
- regmap: fix bulk writes on paged registers (bsc#1051510).
- Revert "bcache: set CACHE_SET_IO_DISABLE in bch_cached_dev_error()"
(bsc#1140652).
- Revert "bcache: set CACHE_SET_IO_DISABLE in bch_cached_dev_error()"
(bsc#1140652).
- Revert "e1000e: fix cyclic resets at link up with active tx"
(bsc#1051510).
- Revert "livepatch: Remove reliable stacktrace check in
klp_try_switch_task()" (bsc#1071995).
- Revert "serial: 8250: Do not service RX FIFO if interrupts are disabled"
(bsc#1051510).
- rtlwifi: rtl8192cu: fix error handle when usb probe failed (bsc#1111666).
- rtnetlink: always put IFLA_LINK for links with a link-netnsid
(networking-stable-19_05_21).
- s390: add alignment hints to vector load and store (jsc#SLE-6907
LTC#175887).
- s390/airq: use DMA memory for adapter interrupts (jsc#SLE-6197
bsc#1140559 LTC#173150).
- s390/cio: add basic protected virtualization support (jsc#SLE-6197
bsc#1140559 LTC#173150).
- s390/cio: introduce DMA pools to cio (jsc#SLE-6197 bsc#1140559
LTC#173150).
- s390/cpum_cf: add ctr_stcctm() function (jsc#SLE-6904 ).
- s390/cpum_cf: Add minimal in-kernel interface for counter measurements
(jsc#SLE-6904).
- s390/cpum_cf: Add support for CPU-MF SVN 6 (jsc#SLE-6904 ).
- s390/cpum_cf_diag: Add support for CPU-MF SVN 6 (jsc#SLE-6904 ).
- s390/cpum_cf_diag: Add support for s390 counter facility diagnostic
trace (jsc#SLE-6904).
- s390/cpum_cf: introduce kernel_cpumcf_alert() to obtain measurement
alerts (jsc#SLE-6904).
- s390/cpum_cf: introduce kernel_cpumcf_avail() function (jsc#SLE-6904).
- s390/cpum_cf: move counter set controls to a new header file
(jsc#SLE-6904).
- s390/cpum_cf: prepare for in-kernel counter measurements (jsc#SLE-6904).
- s390/cpum_cf: rename per-CPU counter facility structure and variables
(jsc#SLE-6904).
- s390/cpumf: Add extended counter set definitions for model 8561 and 8562
(bsc#1142052 LTC#179320).
- s390/cpu_mf: add store cpu counter multiple instruction support
(jsc#SLE-6904).
- s390/cpumf: Fix warning from check_processor_id (jsc#SLE-6904 ).
- s390/cpu_mf: move struct cpu_cf_events and per-CPU variable to header
file (jsc#SLE-6904).
- s390/cpu_mf: replace stcctm5() with the stcctm() function (jsc#SLE-6904).
- s390/dma: provide proper ARCH_ZONE_DMA_BITS value (jsc#SLE-6197
bsc#1140559 LTC#173150).
- s390/mm: force swiotlb for protected virtualization (jsc#SLE-6197
bsc#1140559 LTC#173150).
- s390/qdio: handle PENDING state for QEBSM devices (bsc#1142117
bsc#1142118 bsc#1142119 LTC#179329 LTC#179330 LTC#179331).
- s390/qdio: handle PENDING state for QEBSM devices (bsc#1142119
LTC#179331).
- s390/qeth: be drop monitor friendly (bsc#1142115 LTC#179337).
- s390/qeth: be drop monitor friendly (bsc#1142220 LTC#179335).
- s390: remove the unused dma_capable helper (jsc#SLE-6197 bsc#1140559
LTC#173150).
- s390: report new CPU capabilities (jsc#SLE-6907 LTC#175887).
- s390/vtime: steal time exponential moving average (bsc#1119222).
- s390/zcrypt: Fix wrong dispatching for control domain CPRBs (bsc#1137811
LTC#178088).
- scsi: bnx2fc: Fix error handling in probe() (bsc#1136502 jsc#SLE-4703).
- scsi: bnx2fc: fix incorrect cast to u64 on shift operation (bsc#1136502
jsc#SLE-4703).
- scsi: bnx2fc: Fix NULL dereference in error handling (bsc#1136502
jsc#SLE-4703).
- scsi: bnx2fc: Remove set but not used variable 'oxid' (bsc#1136502
jsc#SLE-4703).
- scsi: bnx2fc: remove unneeded variable (bsc#1136502 jsc#SLE-4703).
- scsi: cxgb4i: add wait_for_completion() (jsc#SLE-4678 bsc#1136342).
- SCSI: cxgbi: KABI: fix handle completion etc (jsc#SLE-4678 bsc#1136342).
- scsi: cxgbi: remove redundant __kfree_skb call on skb and free cst->atid
(jsc#SLE-4678 bsc#1136342).
- scsi: fc: add FPIN ELS definition (bsc#1136217,jsc#SLE-4722).
- scsi/fc: kABI fixes for new ELS_FPIN definition
(bsc#1136217,jsc#SLE-4722).
- scsi: ibmvfc: fix WARN_ON during event pool release (bsc#1137458
LTC#178093).
- scsi: libcxgbi: find cxgbi device by MAC address (bsc#1136352
jsc#SLE-4687).
- scsi: libcxgbi: remove uninitialized variable len (bsc#1136352
jsc#SLE-4687).
- scsi: libcxgbi: update route finding logic (bsc#1136352 jsc#SLE-4687)
- scsi: lpfc: Add loopback testing to trunking mode
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: add support for posting FC events on FPIN reception
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Annotate switch/case fall-through (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: avoid uninitialized variable warning
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Cancel queued work for an IO when processing a received ABTS
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Change smp_processor_id() into raw_smp_processor_id()
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Convert bootstrap mbx polling from msleep to udelay
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Coordinate adapter error handling with offline handling
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Correct boot bios information to FDMI registration
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Correct localport timeout duration error
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Correct __lpfc_sli_issue_iocb_s4 lockdep check
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Correct nvmet buffer free race condition
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Declare local functions static (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Enhance 6072 log string (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: fix 32-bit format string warning (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: fix a handful of indentation issues
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix alloc context on oas lun creations
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix a recently introduced compiler warning
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix BFS crash with DIX enabled (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix build error (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: fix calls to dma_set_mask_and_coherent()
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix deadlock due to nested hbalock call
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix driver crash in target reset handler
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix duplicate log message numbers (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix error code if kcalloc() fails (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix error codes in lpfc_sli4_pci_mem_setup()
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix fc4type information for FDMI (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix fcp_rsp_len checking on lun reset
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix FDMI fc4type for nvme support (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix FDMI manufacturer attribute value
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix handling of trunk links state reporting
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix hardlockup in scsi_cmd_iocb_cmpl
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix HDMI2 registration string for symbolic name
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix incorrect logical link speed on trunks when links down
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix indentation and balance braces
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix io lost on host resets (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix kernel warnings related to smp_processor_id()
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix link speed reporting for 4-link trunk
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix location of SCSI ktime counters
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix lpfc_nvmet_mrq attribute handling when 0
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix mailbox hang on adapter init (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix memory leak in abnormal exit path from lpfc_eq_create
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix missing wakeups on abort threads
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix nvmet async receive buffer replenishment
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix nvmet handling of first burst cmd
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix nvmet handling of received ABTS for unmapped frames
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix nvmet target abort cmd matching
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix oops when driver is loaded with 1 interrupt vector
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix poor use of hardware queues if fewer irq vectors
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix protocol support on G6 and G7 adapters
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix PT2PT PLOGI collison stopping discovery
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix SLI3 commands being issued on SLI4 devices
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: fix unused variable warning (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fixup eq_clr_intr references (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Fix use-after-free mailbox cmd completion
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Make lpfc_sli4_oas_verify static (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Move trunk_errmsg[] from a header file into a .c file
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Prevent 'use after free' memory overwrite in nvmet LS
handling (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Reduce memory footprint for lpfc_queue
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Remove set but not used variable 'phys_id'
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Remove set-but-not-used variables (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Remove unused functions (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Resolve inconsistent check of hdwq in
lpfc_scsi_cmd_iocb_cmpl (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Resolve irq-unsafe lockdep heirarchy warning in lpfc_io_free
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: resolve static checker warning in lpfc_sli4_hba_unset
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Revert message logging on unsupported topology
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Revise message when stuck due to unresponsive adapter
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Rework misleading nvme not supported in firmware message
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Separate CQ processing for nvmet_fc upcalls
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Specify node affinity for queue memory allocation
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Stop adapter if pci errors detected
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Update Copyright in driver version
(bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Update lpfc version to 12.2.0.1 (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: Update lpfc version to 12.2.0.3 (bsc#1136217,jsc#SLE-4722).
- scsi: lpfc: use dma_set_mask_and_coherent (bsc#1136217,jsc#SLE-4722).
- scsi: mpt3sas: Determine smp affinity on per HBA basis (bsc#1143738).
- scsi: mpt3sas: Fix msix load balance on and off settings (bsc#1143738).
- scsi: mpt3sas: make driver options visible in sys (bsc#1143738).
- scsi: mpt3sas: Mark expected switch fall-through (bsc#1143738).
- scsi: mpt3sas: Remove CPU arch check to determine perf_mode
(bsc#1143738).
- scsi: mpt3sas: Use 63-bit DMA addressing on SAS35 HBA (bsc#1143738).
- scsi: mpt3sas: Use configured PCIe link speed, not max (bsc#1143738).
- scsi: mpt3sas: use DEVICE_ATTR_{RO, RW} (bsc#1143738).
- scsi: qedf: Add additional checks for io_req->sc_cmd validity
(bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Add a flag to help debugging io_req which could not be
cleaned (bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Add comment to display logging levels (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Add driver state to 'driver_stats' debugfs node (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Add LBA to underrun debug messages (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Add missing return in qedf_post_io_req() in the fcport
offload check (bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Add missing return in qedf_scsi_done() (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Add port_id for fcport into initiate_cleanup debug message
(bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Add return value to log message if scsi_add_host fails
(bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Change MSI-X load error message (bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Check both the FCF and fabric ID before servicing clear
virtual link (bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Check for fcoe_libfc_config failure (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Check for tm_flags instead of cmd_type during cleanup
(bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Check the return value of start_xmit (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Cleanup rrq_work after QEDF_CMD_OUTSTANDING is cleared
(bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Correctly handle refcounting of rdata (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Do not queue anything if upload is in progress (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Do not send ABTS for under run scenario (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: fc_rport_priv reference counting fixes (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Fix lport may be used uninitialized warning (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Log message if scsi_add_host fails (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Modify abort and tmf handler to handle edge condition and
flush (bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Modify flush routine to handle all I/Os and TMF (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Print fcport information on wait for upload timeout
(bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Print scsi_cmd backpointer in good completion path if the
command is still being used (bsc#1136467 jsc#SLE-4694).
- scsi: qedf: remove memset/memcpy to nfunc and use func instead
(bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Remove set but not used variable 'fr_len' (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: remove set but not used variables (bsc#1136467 jsc#SLE-4694).
- scsi: qedf: Update the driver version to 8.37.25.19 (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Update the driver version to 8.37.25.20 (bsc#1136467
jsc#SLE-4694).
- scsi: qedf: Wait for upload and link down processing during soft ctx
reset (bsc#1136467 jsc#SLE-4694).
- scsi: qla2xxx: do not crash on uninitialized pool list (boo#1138874).
- scsi: scsi_transport_fc: Add FPIN fc event codes
(bsc#1136217,jsc#SLE-4722).
- scsi: scsi_transport_fc: refactor event posting routines
(bsc#1136217,jsc#SLE-4722).
- sctp: change to hold sk after auth shkey is created successfully
(networking-stable-19_07_02).
- sctp: Free cookie before we memdup a new one
(networking-stable-19_06_18).
- sctp: silence warns on sctp_stream_init allocations (bsc#1083710).
- serial: 8250: Fix TX interrupt handling condition (bsc#1051510).
- serial: uartps: Do not add a trailing semicolon to macro (bsc#1051510).
- serial: uartps: Fix long line over 80 chars (bsc#1051510).
- serial: uartps: Fix multiple line dereference (bsc#1051510).
- serial: uartps: Remove useless return from cdns_uart_poll_put_char
(bsc#1051510).
- staging: comedi: amplc_pci230: fix null pointer deref on interrupt
(bsc#1051510).
- staging: comedi: dt282x: fix a null pointer deref on interrupt
(bsc#1051510).
- staging: rtl8712: reduce stack usage, again (bsc#1051510).
- sunhv: Fix device naming inconsistency between sunhv_console and
sunhv_reg (networking-stable-19_06_18).
- tcp: fix tcp_set_congestion_control() use from bpf hook (bsc#1109837).
- tcp: reduce tcp_fastretrans_alert() verbosity (git-fixes).
- team: Always enable vlan tx offload (bsc#1051510).
- tipc: change to use register_pernet_device (networking-stable-19_07_02).
- tools: bpftool: Fix json dump crash on powerpc (bsc#1109837).
- tools: bpftool: use correct argument in cgroup errors (bsc#1109837).
- tools/power/x86: A tool to validate Intel Speed Select commands
(jsc#SLE-5364).
- tracing: Fix header include guards in trace event headers (bsc#1144474).
- tty/ldsem, locking/rwsem: Add missing ACQUIRE to read_failed sleep loop
(bsc#1051510).
- tty: max310x: Fix invalid baudrate divisors calculator (bsc#1051510).
- tty: rocket: fix incorrect forward declaration of 'rp_init()'
(bsc#1051510).
- tty: serial_core: Set port active bit in uart_port_activate
(bsc#1051510).
- tty: serial: cpm_uart - fix init when SMC is relocated (bsc#1051510).
- tty/serial: digicolor: Fix digicolor-usart already registered warning
(bsc#1051510).
- tty: serial: msm_serial: avoid system lockup condition (bsc#1051510).
- tua6100: Avoid build warnings (bsc#1051510).
- tuntap: synchronize through tfiles array instead of tun->numqueues
(networking-stable-19_05_14).
- tun: wake up waitqueues after IFF_UP is set (networking-stable-19_07_02).
- Update patches.arch/powerpc-pseries-Fix-xive-off-command-line.patch
(bsc#1085030, bsc#1144518, LTC#178833).
- Update References field to
patches.suse/0275-bcache-never-writeback-a-discard-operation.patch
(bsc#1130972, bsc#1102247).
- usb: core: hub: Disable hub-initiated U1/U2 (bsc#1051510).
- usb: gadget: ether: Fix race between gether_disconnect and rx_submit
(bsc#1051510).
- usb: gadget: fusb300_udc: Fix memory leak of fusb300->ep[i]
(bsc#1051510).
- usb: gadget: udc: lpc32xx: allocate descriptor with GFP_ATOMIC
(bsc#1051510).
- usb: Handle USB3 remote wakeup for LPM enabled devices correctly
(bsc#1051510).
- usb: pci-quirks: Correct AMD PLL quirk detection (bsc#1051510).
- USB: serial: ftdi_sio: add ID for isodebug v1 (bsc#1051510).
- USB: serial: option: add support for GosunCn ME3630 RNDIS mode
(bsc#1051510).
- usb: wusbcore: fix unbalanced get/put cluster_id (bsc#1051510).
- virtio/s390: add indirection to indicators access (jsc#SLE-6197
bsc#1140559 LTC#173150).
- virtio/s390: DMA support for virtio-ccw (jsc#SLE-6197 bsc#1140559
LTC#173150).
- virtio/s390: make airq summary indicators DMA (jsc#SLE-6197 bsc#1140559
LTC#173150).
- virtio/s390: use cacheline aligned airq bit vectors (jsc#SLE-6197
bsc#1140559 LTC#173150).
- virtio/s390: use DMA memory for ccw I/O and classic notifiers
(jsc#SLE-6197 bsc#1140559 LTC#173150).
- virtio/s390: use vring_create_virtqueue (jsc#SLE-6197 bsc#1140559
LTC#173150).
- VMCI: Fix integer overflow in VMCI handle arrays (bsc#1051510).
- vrf: sit mtu should not be updated when vrf netdev is the link
(networking-stable-19_05_14).
- vsock/virtio: free packets during the socket release
(networking-stable-19_05_21).
- vsock/virtio: set SOCK_DONE on peer shutdown
(networking-stable-19_06_18).
- wil6210: drop old event after wmi_call timeout (bsc#1111666).
- wil6210: fix potential out-of-bounds read (bsc#1051510).
- wil6210: fix spurious interrupts in 3-msi (bsc#1111666).
- x86, mm: fix fast GUP with hyper-based TLB flushing (VM Functionality,
bsc#1140903).
- xdp: fix possible cq entry leak (bsc#1109837).
- xdp: fix race on generic receive path (bsc#1109837).
- xdp: hold device for umem regardless of zero-copy mode (bsc#1109837).
- xen: let alloc_xenballooned_pages() fail if not enough memory free
(bsc#1142450 XSA-300).
- xfs: do not overflow xattr listent buffer (bsc#1143105).
- xprtrdma: Fix use-after-free in rpcrdma_post_recvs (bsc#1103992 ).
- xsk: Properly terminate assignment in xskq_produce_flush_desc
(bsc#1109837).
Special Instructions and Notes:
Please reboot the system after installing this update.
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1923=1
Package List:
- openSUSE Leap 15.1 (noarch):
kernel-devel-4.12.14-lp151.28.13.1
kernel-docs-4.12.14-lp151.28.13.1
kernel-docs-html-4.12.14-lp151.28.13.1
kernel-macros-4.12.14-lp151.28.13.1
kernel-source-4.12.14-lp151.28.13.1
kernel-source-vanilla-4.12.14-lp151.28.13.1
- openSUSE Leap 15.1 (x86_64):
kernel-debug-4.12.14-lp151.28.13.1
kernel-debug-base-4.12.14-lp151.28.13.1
kernel-debug-base-debuginfo-4.12.14-lp151.28.13.1
kernel-debug-debuginfo-4.12.14-lp151.28.13.1
kernel-debug-debugsource-4.12.14-lp151.28.13.1
kernel-debug-devel-4.12.14-lp151.28.13.1
kernel-debug-devel-debuginfo-4.12.14-lp151.28.13.1
kernel-default-4.12.14-lp151.28.13.1
kernel-default-base-4.12.14-lp151.28.13.1
kernel-default-base-debuginfo-4.12.14-lp151.28.13.1
kernel-default-debuginfo-4.12.14-lp151.28.13.1
kernel-default-debugsource-4.12.14-lp151.28.13.1
kernel-default-devel-4.12.14-lp151.28.13.1
kernel-default-devel-debuginfo-4.12.14-lp151.28.13.1
kernel-kvmsmall-4.12.14-lp151.28.13.1
kernel-kvmsmall-base-4.12.14-lp151.28.13.1
kernel-kvmsmall-base-debuginfo-4.12.14-lp151.28.13.1
kernel-kvmsmall-debuginfo-4.12.14-lp151.28.13.1
kernel-kvmsmall-debugsource-4.12.14-lp151.28.13.1
kernel-kvmsmall-devel-4.12.14-lp151.28.13.1
kernel-kvmsmall-devel-debuginfo-4.12.14-lp151.28.13.1
kernel-obs-build-4.12.14-lp151.28.13.1
kernel-obs-build-debugsource-4.12.14-lp151.28.13.1
kernel-obs-qa-4.12.14-lp151.28.13.1
kernel-syms-4.12.14-lp151.28.13.1
kernel-vanilla-4.12.14-lp151.28.13.1
kernel-vanilla-base-4.12.14-lp151.28.13.1
kernel-vanilla-base-debuginfo-4.12.14-lp151.28.13.1
kernel-vanilla-debuginfo-4.12.14-lp151.28.13.1
kernel-vanilla-debugsource-4.12.14-lp151.28.13.1
kernel-vanilla-devel-4.12.14-lp151.28.13.1
kernel-vanilla-devel-debuginfo-4.12.14-lp151.28.13.1
References:
https://www.suse.com/security/cve/CVE-2018-20855.html
https://www.suse.com/security/cve/CVE-2019-10207.html
https://www.suse.com/security/cve/CVE-2019-1125.html
https://www.suse.com/security/cve/CVE-2019-11810.html
https://www.suse.com/security/cve/CVE-2019-13631.html
https://www.suse.com/security/cve/CVE-2019-13648.html
https://www.suse.com/security/cve/CVE-2019-14283.html
https://www.suse.com/security/cve/CVE-2019-14284.html
https://bugzilla.suse.com/1051510
https://bugzilla.suse.com/1055117
https://bugzilla.suse.com/1071995
https://bugzilla.suse.com/1083647
https://bugzilla.suse.com/1083710
https://bugzilla.suse.com/1085030
https://bugzilla.suse.com/1086103
https://bugzilla.suse.com/1102247
https://bugzilla.suse.com/1103991
https://bugzilla.suse.com/1103992
https://bugzilla.suse.com/1104745
https://bugzilla.suse.com/1106061
https://bugzilla.suse.com/1109837
https://bugzilla.suse.com/1111666
https://bugzilla.suse.com/1112374
https://bugzilla.suse.com/1114279
https://bugzilla.suse.com/1119222
https://bugzilla.suse.com/1123959
https://bugzilla.suse.com/1127034
https://bugzilla.suse.com/1127315
https://bugzilla.suse.com/1127611
https://bugzilla.suse.com/1129770
https://bugzilla.suse.com/1130972
https://bugzilla.suse.com/1131281
https://bugzilla.suse.com/1133021
https://bugzilla.suse.com/1134090
https://bugzilla.suse.com/1134097
https://bugzilla.suse.com/1134390
https://bugzilla.suse.com/1134399
https://bugzilla.suse.com/1135335
https://bugzilla.suse.com/1135642
https://bugzilla.suse.com/1135897
https://bugzilla.suse.com/1136217
https://bugzilla.suse.com/1136342
https://bugzilla.suse.com/1136352
https://bugzilla.suse.com/1136460
https://bugzilla.suse.com/1136461
https://bugzilla.suse.com/1136467
https://bugzilla.suse.com/1136502
https://bugzilla.suse.com/1137458
https://bugzilla.suse.com/1137534
https://bugzilla.suse.com/1137535
https://bugzilla.suse.com/1137584
https://bugzilla.suse.com/1137609
https://bugzilla.suse.com/1137811
https://bugzilla.suse.com/1137827
https://bugzilla.suse.com/1138874
https://bugzilla.suse.com/1139101
https://bugzilla.suse.com/1139358
https://bugzilla.suse.com/1139500
https://bugzilla.suse.com/1139619
https://bugzilla.suse.com/1140133
https://bugzilla.suse.com/1140139
https://bugzilla.suse.com/1140322
https://bugzilla.suse.com/1140426
https://bugzilla.suse.com/1140559
https://bugzilla.suse.com/1140652
https://bugzilla.suse.com/1140676
https://bugzilla.suse.com/1140903
https://bugzilla.suse.com/1140945
https://bugzilla.suse.com/1141312
https://bugzilla.suse.com/1141401
https://bugzilla.suse.com/1141402
https://bugzilla.suse.com/1141450
https://bugzilla.suse.com/1141452
https://bugzilla.suse.com/1141453
https://bugzilla.suse.com/1141454
https://bugzilla.suse.com/1141478
https://bugzilla.suse.com/1141558
https://bugzilla.suse.com/1142023
https://bugzilla.suse.com/1142052
https://bugzilla.suse.com/1142083
https://bugzilla.suse.com/1142112
https://bugzilla.suse.com/1142115
https://bugzilla.suse.com/1142117
https://bugzilla.suse.com/1142118
https://bugzilla.suse.com/1142119
https://bugzilla.suse.com/1142220
https://bugzilla.suse.com/1142221
https://bugzilla.suse.com/1142254
https://bugzilla.suse.com/1142265
https://bugzilla.suse.com/1142350
https://bugzilla.suse.com/1142351
https://bugzilla.suse.com/1142354
https://bugzilla.suse.com/1142359
https://bugzilla.suse.com/1142450
https://bugzilla.suse.com/1142623
https://bugzilla.suse.com/1142635
https://bugzilla.suse.com/1142673
https://bugzilla.suse.com/1142685
https://bugzilla.suse.com/1142701
https://bugzilla.suse.com/1142857
https://bugzilla.suse.com/1142868
https://bugzilla.suse.com/1143003
https://bugzilla.suse.com/1143045
https://bugzilla.suse.com/1143105
https://bugzilla.suse.com/1143185
https://bugzilla.suse.com/1143189
https://bugzilla.suse.com/1143191
https://bugzilla.suse.com/1143209
https://bugzilla.suse.com/1143466
https://bugzilla.suse.com/1143507
https://bugzilla.suse.com/1143738
https://bugzilla.suse.com/1144474
https://bugzilla.suse.com/1144518
1
0
openSUSE-SU-2019:1924-1: important: Security update for the Linux Kernel
by opensuse-security@opensuse.org 16 Aug '19
by opensuse-security@opensuse.org 16 Aug '19
16 Aug '19
openSUSE Security Update: Security update for the Linux Kernel
______________________________________________________________________________
Announcement ID: openSUSE-SU-2019:1924-1
Rating: important
References: #1051510 #1055117 #1071995 #1083647 #1083710
#1085030 #1086103 #1102247 #1106061 #1111666
#1114279 #1119222 #1123959 #1127034 #1127315
#1129770 #1130972 #1131281 #1133021 #1134097
#1134390 #1134399 #1135335 #1135642 #1135897
#1137458 #1137534 #1137535 #1137584 #1137609
#1137811 #1137827 #1139101 #1139358 #1139500
#1140133 #1140139 #1140322 #1140426 #1140652
#1140887 #1140888 #1140889 #1140891 #1140893
#1140903 #1140945 #1140948 #1140954 #1140955
#1140956 #1140957 #1140958 #1140959 #1140960
#1140961 #1140962 #1140964 #1140971 #1140972
#1140992 #1141401 #1141402 #1141450 #1141452
#1141453 #1141454 #1141478 #1142023 #1142112
#1142117 #1142118 #1142119 #1142220 #1142221
#1142254 #1142265 #1142350 #1142351 #1142354
#1142359 #1142450 #1142496 #1142635 #1142685
#1142701 #1142857 #1142868 #1143003 #1143045
#1143105 #1143185 #1143189 #1143191 #1143466
#1143507 #1144474 #1144518
Cross-References: CVE-2018-20855 CVE-2019-10207 CVE-2019-1125
CVE-2019-11810 CVE-2019-13631 CVE-2019-13648
CVE-2019-14283 CVE-2019-14284
Affected Products:
openSUSE Leap 15.0
______________________________________________________________________________
An update that solves 8 vulnerabilities and has 90 fixes is
now available.
Description:
The openSUSE Leap 15.0 kernel was updated to receive various security and
bugfixes.
The following security bugs were fixed:
- CVE-2019-1125: Fix Spectre V1 variant memory disclosure by speculation
over the SWAPGS instruction (bsc#1139358).
- CVE-2019-10207: A NULL pointer dereference was possible in the bluetooth
stack, which could lead to crashes. (bnc#1123959 bnc#1142857).
- CVE-2018-20855: In create_qp_common in drivers/infiniband/hw/mlx5/qp.c,
mlx5_ib_create_qp_resp was never initialized, resulting in a leak of
stack memory to userspace (bnc#1143045).
- CVE-2019-14284: drivers/block/floppy.c allowed a denial of service by
setup_format_params division-by-zero. Two consecutive ioctls can trigger
the bug: the first one should set the drive geometry with .sect and
.rate values that make F_SECT_PER_TRACK be zero. Next, the floppy format
operation should be called. It can be triggered by an unprivileged local
user even when a floppy disk has not been inserted. NOTE: QEMU creates
the floppy device by default (bnc#1143189).
- CVE-2019-14283: set_geometry in drivers/block/floppy.c did not validate
the sect and head fields, as demonstrated by an integer overflow and
out-of-bounds read. It can be triggered by an unprivileged local user
when a floppy disk has been inserted. NOTE: QEMU creates the floppy
device by default (bnc#1143191).
- CVE-2019-11810: A NULL pointer dereference can occur when
megasas_create_frame_pool() fails in megasas_alloc_cmds() in
drivers/scsi/megaraid/megaraid_sas_base.c. This causes a Denial of
Service, related to a use-after-free (bnc#1134399).
- CVE-2019-13648: In the Linux kernel on the powerpc platform, when
hardware transactional memory is disabled, a local user can cause a
denial of service (TM Bad Thing exception and system crash) via a
sigreturn() system call that sends a crafted signal frame. This affects
arch/powerpc/kernel/signal_32.c and arch/powerpc/kernel/signal_64.c
(bnc#1142254 bnc#1142265).
- CVE-2019-13631: In parse_hid_report_descriptor in
drivers/input/tablet/gtco.c in the Linux kernel a malicious USB device
can send an HID report that triggers an out-of-bounds write during
generation of debugging messages (bnc#1142023).
The following non-security bugs were fixed:
- 9p: acl: fix uninitialized iattr access (bsc#1051510).
- 9p: p9dirent_read: check network-provided name length (bsc#1051510).
- 9p: pass the correct prototype to read_cache_page (bsc#1051510).
- 9p/rdma: do not disconnect on down_interruptible EAGAIN (bsc#1051510).
- 9p/rdma: remove useless check in cm_event_handler (bsc#1051510).
- 9p/virtio: Add cleanup path in p9_virtio_init (bsc#1051510).
- 9p/xen: Add cleanup path in p9_trans_xen_init (bsc#1051510).
- 9p/xen: fix check for xenbus_read error in front_probe (bsc#1051510).
- Abort file_remove_privs() for non-reg. files (bsc#1140888).
- acpi/arm64: ignore 5.1 FADTs that are reported as 5.0 (bsc#1051510).
- acpi/IORT: Fix off-by-one check in iort_dev_find_its_id() (bsc#1051510).
- acpi/nfit: Always dump _DSM output payload (bsc#1142351).
- acpi: PM: Allow transitions to D0 to occur in special cases
(bsc#1051510).
- acpi: PM: Avoid evaluating _PS3 on transitions from D3hot to D3cold
(bsc#1051510).
- acpi: PM: Fix regression in acpi_device_set_power() (bsc#1051510).
- Add back sibling paca poiter to paca (bsc#1055117).
- Add support for crct10dif-vpmsum ().
- af_key: fix leaks in key_pol_get_resp and dump_sp (bsc#1051510).
- af_packet: Block execution of tasks waiting for transmit to complete in
AF_PACKET (networking-stable-19_07_02).
- af_unix: remove redundant lockdep class (git-fixes).
- ALSA: compress: Be more restrictive about when a drain is allowed
(bsc#1051510).
- ALSA: compress: Do not allow paritial drain operations on capture
streams (bsc#1051510).
- ALSA: compress: Fix regression on compressed capture streams
(bsc#1051510).
- ALSA: compress: Prevent bypasses of set_params (bsc#1051510).
- ALSA: hda - Add a conexant codec entry to let mute led work
(bsc#1051510).
- ALSA: hda/realtek: apply ALC891 headset fixup to one Dell machine
(bsc#1051510).
- ALSA: hda/realtek - Fixed Headphone Mic can't record on Dell platform
(bsc#1051510).
- ALSA: hda/realtek - Headphone Mic can't record after S3 (bsc#1051510).
- ALSA: line6: Fix a typo (bsc#1051510).
- ALSA: line6: Fix wrong altsetting for LINE6_PODHD500_1 (bsc#1051510).
- ALSA: pcm: fix lost wakeup event scenarios in snd_pcm_drain
(bsc#1051510).
- ALSA: seq: Break too long mutex context in the write loop (bsc#1051510).
- ALSA: usb-audio: Add quirk for Focusrite Scarlett Solo (bsc#1051510).
- ALSA: usb-audio: Add quirk for MOTU MicroBook II (bsc#1051510).
- ALSA: usb-audio: Cleanup DSD whitelist (bsc#1051510).
- ALSA: usb-audio: Enable .product_name override for Emagic, Unitor 8
(bsc#1051510).
- ALSA: usb-audio: Fix gpf in snd_usb_pipe_sanity_check (bsc#1051510).
- ALSA: usb-audio: Sanity checks for each pipe and EP types (bsc#1051510).
- arm64: KVM: Fix architecturally invalid reset value for FPEXC32_EL2
(bsc#1133021).
- ARM: KVM: Add SMCCC_ARCH_WORKAROUND_1 fast handling (bsc#1133021).
- ARM: KVM: report support for SMCCC_ARCH_WORKAROUND_1 (bsc#1133021).
- ASoC : cs4265 : readable register too low (bsc#1051510).
- ASoC: cx2072x: fix integer overflow on unsigned int multiply
(bsc#1111666).
- ASoC: max98090: remove 24-bit format support if RJ is 0 (bsc#1051510).
- ASoC: soc-pcm: BE dai needs prepare when pause release after resume
(bsc#1051510).
- ata: libahci: do not complain in case of deferred probe (bsc#1051510).
- ath6kl: add some bounds checking (bsc#1051510).
- batman-adv: fix for leaked TVLV handler (bsc#1051510).
- bcache: acquire bch_register_lock later in cached_dev_detach_finish()
(bsc#1140652).
- bcache: acquire bch_register_lock later in cached_dev_free()
(bsc#1140652).
- bcache: add code comments for journal_read_bucket() (bsc#1140652).
- bcache: Add comments for blkdev_put() in registration code path
(bsc#1140652).
- bcache: add comments for closure_fn to be called in closure_queue()
(bsc#1140652).
- bcache: add comments for kobj release callback routine (bsc#1140652).
- bcache: add comments for mutex_lock(&b->write_lock) (bsc#1140652).
- bcache: add error check for calling register_bdev() (bsc#1140652).
- bcache: add failure check to run_cache_set() for journal replay
(bsc#1140652).
- bcache: add io error counting in write_bdev_super_endio() (bsc#1140652).
- bcache: add more error message in bch_cached_dev_attach() (bsc#1140652).
- bcache: add pendings_cleanup to stop pending bcache device (bsc#1140652).
- bcache: add reclaimed_journal_buckets to struct cache_set (bsc#1140652).
- bcache: add return value check to bch_cached_dev_run() (bsc#1140652).
- bcache: avoid a deadlock in bcache_reboot() (bsc#1140652).
- bcache: avoid clang -Wunintialized warning (bsc#1140652).
- bcache: avoid flushing btree node in cache_set_flush() if io disabled
(bsc#1140652).
- bcache: avoid potential memleak of list of journal_replay(s) in the
CACHE_SYNC branch of run_cache_set (bsc#1140652).
- bcache: check CACHE_SET_IO_DISABLE bit in bch_journal() (bsc#1140652).
- bcache: check CACHE_SET_IO_DISABLE in allocator code (bsc#1140652).
- bcache: check c->gc_thread by IS_ERR_OR_NULL in cache_set_flush()
(bsc#1140652).
- bcache: Clean up bch_get_congested() (bsc#1140652).
- bcache: destroy dc->writeback_write_wq if failed to create
dc->writeback_thread (bsc#1140652).
- bcache: do not assign in if condition in bcache_device_init()
(bsc#1140652).
- bcache: do not set max writeback rate if gc is running (bsc#1140652).
- bcache: fix a race between cache register and cacheset unregister
(bsc#1140652).
- bcache: fix crashes stopping bcache device before read miss done
(bsc#1140652).
- bcache: fix failure in journal relplay (bsc#1140652).
- bcache: fix inaccurate result of unused buckets (bsc#1140652).
- bcache: fix mistaken sysfs entry for io_error counter (bsc#1140652).
- bcache: fix potential deadlock in cached_def_free() (bsc#1140652).
- bcache: fix race in btree_flush_write() (bsc#1140652).
- bcache: fix return value error in bch_journal_read() (bsc#1140652).
- bcache: fix stack corruption by PRECEDING_KEY() (bsc#1140652).
- bcache: fix wrong usage use-after-freed on keylist in out_nocoalesce
branch of btree_gc_coalesce (bsc#1140652).
- bcache: ignore read-ahead request failure on backing device
(bsc#1140652).
- bcache: improve bcache_reboot() (bsc#1140652).
- bcache: improve error message in bch_cached_dev_run() (bsc#1140652).
- bcache: make bset_search_tree() be more understandable (bsc#1140652).
- bcache: make is_discard_enabled() static (bsc#1140652).
- bcache: more detailed error message to bcache_device_link()
(bsc#1140652).
- bcache: move definition of 'int ret' out of macro read_bucket()
(bsc#1140652).
- bcache: never set KEY_PTRS of journal key to 0 in journal_reclaim()
(bsc#1140652).
- bcache: only clear BTREE_NODE_dirty bit when it is set (bsc#1140652).
- bcache: only set BCACHE_DEV_WB_RUNNING when cached device attached
(bsc#1140652).
- bcache: performance improvement for btree_flush_write() (bsc#1140652).
- bcache: remove redundant LIST_HEAD(journal) from run_cache_set()
(bsc#1140652).
- bcache: remove retry_flush_write from struct cache_set (bsc#1140652).
- bcache: remove unncessary code in bch_btree_keys_init() (bsc#1140652).
- bcache: remove unnecessary prefetch() in bset_search_tree()
(bsc#1140652).
- bcache: remove "XXX:" comment line from run_cache_set() (bsc#1140652).
- bcache: return error immediately in bch_journal_replay() (bsc#1140652).
- bcache: Revert "bcache: fix high CPU occupancy during journal"
(bsc#1140652).
- bcache: Revert "bcache: free heap cache_set->flush_btree in
bch_journal_free" (bsc#1140652).
- bcache: set largest seq to ja->seq[bucket_index] in
journal_read_bucket() (bsc#1140652).
- bcache: shrink btree node cache after bch_btree_check() (bsc#1140652).
- bcache: stop writeback kthread and kworker when bch_cached_dev_run()
failed (bsc#1140652).
- bcache: use sysfs_match_string() instead of __sysfs_match_string()
(bsc#1140652).
- be2net: Fix number of Rx queues used for flow hashing
(networking-stable-19_06_18).
- be2net: Signal that the device cannot transmit during reconfiguration
(bsc#1127315).
- be2net: Synchronize be_update_queues with dev_watchdog (bsc#1127315).
- block, bfq: NULL out the bic when it's no longer valid (bsc#1142359).
- Bluetooth: 6lowpan: search for destination address in all peers
(bsc#1051510).
- Bluetooth: Add SMP workaround Microsoft Surface Precision Mouse bug
(bsc#1051510).
- Bluetooth: Check state in l2cap_disconnect_rsp (bsc#1051510).
- Bluetooth: hci_bcsp: Fix memory leak in rx_skb (bsc#1051510).
- Bluetooth: validate BLE connection interval updates (bsc#1051510).
- bnx2x: Prevent load reordering in tx completion processing (bsc#1142868).
- bnxt_en: Fix aggregation buffer leak under OOM condition
(networking-stable-19_05_31).
- bonding: Always enable vlan tx offload (networking-stable-19_07_02).
- bonding: fix arp_validate toggling in active-backup mode
(networking-stable-19_05_14).
- bonding: Force slave speed check after link state recovery for 802.3ad
(bsc#1137584).
- bpf, x64: fix stack layout of JITed bpf code (bsc#1083647).
- bpf, x64: save 5 bytes in prologue when ebpf insns came from cbpf
(bsc#1083647).
- bridge: Fix error path for kobject_init_and_add()
(networking-stable-19_05_14).
- btrfs: fix race between block group removal and block group allocation
(bsc#1143003).
- btrfs-kill-btrfs_clear_path_blocking.patch: (bsc#1140139).
- btrfs: scrub: add memalloc_nofs protection around init_ipath
(bsc#1086103).
- btrfs: use GFP_KERNEL in init_ipath (bsc#1086103).
- ceph: fix iov_iter issues in ceph_direct_read_write() (bsc#1141450).
- cgroup: Use css_tryget() instead of css_tryget_online() in
task_get_css() (bsc#1141478).
- clk: qcom: Fix -Wunused-const-variable (bsc#1051510).
- clk: rockchip: Do not yell about bad mmc phases when getting
(bsc#1051510).
- clk: tegra210: fix PLLU and PLLU_OUT1 (bsc#1051510).
- cpufreq: acpi-cpufreq: Report if CPU does not support boost technologies
(bsc#1051510).
- cpufreq: brcmstb-avs-cpufreq: Fix initial command check (bsc#1051510).
- cpufreq: brcmstb-avs-cpufreq: Fix types for voltage/frequency
(bsc#1051510).
- cpufreq: check if policy is inactive early in __cpufreq_get()
(bsc#1051510).
- cpufreq: kirkwood: fix possible object reference leak (bsc#1051510).
- cpufreq/pasemi: fix possible object reference leak (bsc#1051510).
- cpufreq: pmac32: fix possible object reference leak (bsc#1051510).
- cpufreq: ppc_cbe: fix possible object reference leak (bsc#1051510).
- cpufreq: Use struct kobj_attribute instead of struct global_attr
(bsc#1051510).
- crypto: arm64/sha1-ce - correct digest for empty data in finup
(bsc#1051510).
- crypto: arm64/sha2-ce - correct digest for empty data in finup
(bsc#1051510).
- crypto: ccp - Fix 3DES complaint from ccp-crypto module (bsc#1051510).
- crypto: ccp - fix AES CFB error exposed by new test vectors
(bsc#1051510).
- crypto: ccp - Fix SEV_VERSION_GREATER_OR_EQUAL (bsc#1051510).
- crypto: ccp/gcm - use const time tag comparison (bsc#1051510).
- crypto: ccp - memset structure fields to zero before reuse (bsc#1051510).
- crypto: ccp - Validate the the error value used to index error messages
(bsc#1051510).
- crypto: chacha20poly1305 - fix atomic sleep when using async algorithm
(bsc#1051510).
- crypto: crypto4xx - fix a potential double free in ppc4xx_trng_probe
(bsc#1051510).
- crypto: ghash - fix unaligned memory access in ghash_setkey()
(bsc#1051510).
- crypto: talitos - Align SEC1 accesses to 32 bits boundaries
(bsc#1051510).
- crypto: talitos - check data blocksize in ablkcipher (bsc#1051510).
- crypto: talitos - fix CTR alg blocksize (bsc#1051510).
- crypto: talitos - fix max key size for sha384 and sha512 (bsc#1051510).
- crypto: talitos - fix skcipher failure due to wrong output IV
(bsc#1051510).
- crypto: talitos - HMAC SNOOP NO AFEU mode requires SW icv checking
(bsc#1051510).
- crypto: talitos - properly handle split ICV (bsc#1051510).
- crypto: talitos - reduce max key size for SEC1 (bsc#1051510).
- crypto: talitos - rename alternative AEAD algos (bsc#1051510).
- dasd_fba: Display '00000000' for zero page when dumping sense
(bsc#11123080).
- dax: Fix xarray entry association for mixed mappings (bsc#1140893).
- Delete patches.fixes/s390-setup-fix-early-warning-messages (bsc#1140948).
- dma-buf: balance refcount inbalance (bsc#1051510).
- dmaengine: hsu: Revert "set HSU_CH_MTSR to memory width" (bsc#1051510).
- Documentation: Add nospectre_v1 parameter (bsc#1051510).
- Documentation: DMA-API: fix a function name of max_mapping_size
(bsc#1140954).
- Documentation/networking: fix default_ttl typo in mpls-sysctl
(bsc#1051510).
- dpaa_eth: fix SG frame cleanup (networking-stable-19_05_14).
- driver core: Fix use-after-free and double free on glue directory
(bsc#1131281).
- drm/amdgpu/gfx9: use reset default for PA_SC_FIFO_SIZE (bsc#1051510).
- drm/bridge: sii902x: pixel clock unit is 10kHz instead of 1kHz
(bsc#1051510).
- drm/bridge: tc358767: read display_props in get_modes() (bsc#1051510).
- drm/crc-debugfs: User irqsafe spinlock in drm_crtc_add_crc_entry
(bsc#1051510).
- drm/i915/dmc: protect against reading random memory (bsc#1051510).
- drm/meson: Add support for XBGR8888 & ABGR8888 formats (bsc#1051510).
- drm/msm/a3xx: remove TPL1 regs from snapshot (bsc#1051510).
- drm/msm: Depopulate platform on probe failure (bsc#1051510).
- drm/nouveau/i2c: Enable i2c pads & busses during preinit (bsc#1051510).
- drm/panel: simple: Fix panel_simple_dsi_probe (bsc#1051510).
- drm/rockchip: Properly adjust to a true clock in adjusted_mode
(bsc#1051510).
- drm/virtio: Add memory barriers for capset cache (bsc#1051510).
- e1000e: start network tx queue only when link is up (bsc#1051510).
- eCryptfs: fix a couple type promotion bugs (bsc#1051510).
- EDAC: Fix global-out-of-bounds write when setting edac_mc_poll_msec
(bsc#1114279).
- efi/bgrt: Drop BGRT status field reserved bits check (bsc#1051510).
- ethtool: check the return value of get_regs_len (git-fixes).
- ethtool: fix potential userspace buffer overflow
(networking-stable-19_06_09).
- ext4: do not delete unlinked inode from orphan list on failed truncate
(bsc#1140891).
- firmware: ti_sci: Always request response from firmware (bsc#1051510).
- Fix kABI for asus-wmi quirk_entry field addition (bsc#1051510).
- Fix memory leak in sctp_process_init (networking-stable-19_06_09).
- fork, memcg: fix cached_stacks case (bsc#1134097).
- fork, memcg: fix crash in free_thread_stack on memcg charge fail
(bsc#1134097).
- fs/ocfs2: fix race in ocfs2_dentry_attach_lock() (bsc#1140889).
- fs/proc/proc_sysctl.c: Fix a NULL pointer dereference (bsc#1140887).
- fs/proc/proc_sysctl.c: fix NULL pointer dereference in put_links
(bsc#1140887).
- gpio: omap: ensure irq is enabled before wakeup (bsc#1051510).
- gpio: omap: fix lack of irqstatus_raw0 for OMAP4 (bsc#1051510).
- HID: wacom: correct touch resolution x/y typo (bsc#1051510).
- HID: wacom: generic: Correct pad syncing (bsc#1051510).
- HID: wacom: generic: only switch the mode on devices with LEDs
(bsc#1051510).
- HID: wacom: generic: read HID_DG_CONTACTMAX from any feature report
(bsc#1051510).
- hpet: Fix division by zero in hpet_time_div() (bsc#1051510).
- hugetlbfs: dirty pages as they are added to pagecache (git fixes
(mm/hugetlbfs)).
- hugetlbfs: fix kernel BUG at fs/hugetlbfs/inode.c:444! (git fixes
(mm/hugetlbfs)).
- hwmon: (nct6775) Fix register address and added missed tolerance for
nct6106 (bsc#1051510).
- iio: iio-utils: Fix possible incorrect mask calculation (bsc#1051510).
- Input: alps - do not handle ALPS cs19 trackpoint-only device
(bsc#1051510).
- Input: alps - fix a mismatch between a condition check and its comment
(bsc#1051510).
- Input: elantech - enable middle button support on 2 ThinkPads
(bsc#1051510).
- Input: imx_keypad - make sure keyboard can always wake up system
(bsc#1051510).
- Input: psmouse - fix build error of multiple definition (bsc#1051510).
- Input: synaptics - enable SMBUS on T480 thinkpad trackpad (bsc#1051510).
- Input: synaptics - whitelist Lenovo T580 SMBus intertouch (bsc#1051510).
- Input: tm2-touchkey - acknowledge that setting brightness is a blocking
call (bsc#1129770).
- Input: trackpoint - only expose supported controls for Elan, ALPS and
NXP (bsc#1051510).
- intel_th: msu: Fix single mode with disabled IOMMU (bsc#1051510).
- intel_th: pci: Add Ice Lake NNPI support (bsc#1051510).
- iommu/amd: Make iommu_disable safer (bsc#1140955).
- iommu/arm-smmu: Add support for qcom,smmu-v2 variant (bsc#1051510).
- iommu/arm-smmu: Avoid constant zero in TLBI writes (bsc#1140956).
- iommu/arm-smmu-v3: sync the OVACKFLG to PRIQ consumer register
(bsc#1051510).
- iommu/arm-smmu-v3: Use explicit mb() when moving cons pointer
(bsc#1051510).
- iommu: Fix a leak in iommu_insert_resv_region (bsc#1140957).
- iommu: Use right function to get group for device (bsc#1140958).
- iommu/vt-d: Duplicate iommu_resv_region objects per device list
(bsc#1140959).
- iommu/vt-d: Handle PCI bridge RMRR device scopes in
intel_iommu_get_resv_regions (bsc#1140960).
- iommu/vt-d: Handle RMRR with PCI bridge device scopes (bsc#1140961).
- iommu/vt-d: Introduce is_downstream_to_pci_bridge helper (bsc#1140962).
- iommu/vt-d: Remove unnecessary rcu_read_locks (bsc#1140964).
- ipv4: Fix raw socket lookup for local traffic
(networking-stable-19_05_14).
- ipv4/igmp: fix another memory leak in igmpv3_del_delrec()
(networking-stable-19_05_31).
- ipv4/igmp: fix build error if !CONFIG_IP_MULTICAST
(networking-stable-19_05_31).
- ipv4: Use return value of inet_iif() for __raw_v4_lookup in the while
loop (git-fixes).
- ipv6: Consider sk_bound_dev_if when binding a raw socket to an address
(networking-stable-19_05_31).
- ipv6: fix EFAULT on sendto with icmpv6 and hdrincl
(networking-stable-19_06_09).
- ipv6: flowlabel: fl6_sock_lookup() must use atomic_inc_not_zero
(networking-stable-19_06_18).
- ipv6: use READ_ONCE() for inet->hdrincl as in ipv4
(networking-stable-19_06_09).
- irqchip/gic-v3-its: fix some definitions of inner cacheability
attributes (bsc#1051510).
- irqchip/mbigen: Do not clear eventid when freeing an MSI (bsc#1051510).
- kbuild: use -flive-patching when CONFIG_LIVEPATCH is enabled
(bsc#1071995).
- kernel: jump label transformation performance (bsc#1137534
bsc#1137535 LTC#178058 LTC#178059).
- KVM: arm64: Fix caching of host MDCR_EL2 value (bsc#1133021).
- KVM: arm/arm64: Close VMID generation race (bsc#1133021).
- KVM: arm/arm64: Convert kvm_host_cpu_state to a static per-cpu
allocation (bsc#1133021).
- KVM: arm/arm64: Drop resource size check for GICV window (bsc#1133021).
- KVM: arm/arm64: Fix lost IRQs from emulated physcial timer when blocked
(bsc#1133021).
- KVM: arm/arm64: Fix VMID alloc race by reverting to lock-less
(bsc#1133021).
- KVM: arm/arm64: Handle CPU_PM_ENTER_FAILED (bsc#1133021).
- KVM: arm/arm64: Reduce verbosity of KVM init log (bsc#1133021).
- KVM: arm/arm64: Set dist->spis to NULL after kfree (bsc#1133021).
- KVM: arm/arm64: Skip updating PMD entry if no change (bsc#1133021).
- KVM: arm/arm64: Skip updating PTE entry if no change (bsc#1133021).
- KVM: arm/arm64: vgic: Add missing irq_lock to vgic_mmio_read_pending
(bsc#1133021).
- KVM: arm/arm64: vgic: Fix kvm_device leak in vgic_its_destroy
(bsc#1133021).
- KVM: arm/arm64: vgic-its: Fix potential overrun in vgic_copy_lpi_list
(bsc#1133021).
- KVM: arm/arm64: vgic-its: Take the srcu lock when parsing the memslots
(bsc#1133021).
- KVM: arm/arm64: vgic-its: Take the srcu lock when writing to guest
memory (bsc#1133021).
- kvm: arm/arm64: vgic-v3: Tighten synchronization for guests using v2 on
v3 (bsc#1133021).
- kvm: Disallow wraparound in kvm_gfn_to_hva_cache_init (bsc#1133021).
- KVM/Eventfd: Avoid crash when assign and deassign specific eventfd in
parallel (bsc#1133021).
- kvm: mmu: Fix overflow on kvm mmu page limit calculation (bsc#1135335).
- KVM: mmu: Fix overlap between public and private memslots (bsc#1133021).
- kvm/mmu: kABI fix for *_mmu_pages changes in struct kvm_arch
(bsc#1135335).
- KVM: polling: add architecture backend to disable polling (bsc#1119222).
- KVM: Reject device ioctls from processes other than the VM's creator
(bsc#1133021).
- KVM: s390: change default halt poll time to 50us (bsc#1119222).
- KVM: s390: enable CONFIG_HAVE_KVM_NO_POLL (bsc#1119222) We need to
enable CONFIG_HAVE_KVM_NO_POLL for bsc#1119222
- KVM: s390: fix typo in parameter description (bsc#1119222).
- KVM: s390: kABI Workaround for 'lowcore' (bsc#1119222).
- KVM: s390: provide kvm_arch_no_poll function (bsc#1119222).
- kvm: svm/avic: Do not send AVIC doorbell to self (bsc#1140133).
- kvm: svm/avic: fix off-by-one in checking host APIC ID (bsc#1140971).
- KVM: SVM: Fix detection of AMD Errata 1096 (bsc#1142354).
- KVM: x86: fix return value for reserved EFER (bsc#1140992).
- KVM: x86: Skip EFER vs. guest CPUID checks for host-initiated writes
(bsc#1140972).
- lapb: fixed leak of control-blocks (networking-stable-19_06_18).
- libata: do not request sense data on !ZAC ATA devices (bsc#1051510).
- libata: zpodd: Fix small read overflow in zpodd_get_mech_type()
(bsc#1051510).
- lib/bitmap.c: make bitmap_parselist() thread-safe and much faster
(bsc#1143507).
- libceph: add osd_req_op_extent_osd_data_bvecs() (bsc#1141450).
- libceph: assign cookies in linger_submit() (bsc#1135897).
- libceph: check reply num_data_items in setup_request_data()
(bsc#1135897).
- libceph: do not consume a ref on pagelist in
ceph_msg_data_add_pagelist() (bsc#1135897).
- libceph: enable fallback to ceph_msg_new() in ceph_msgpool_get()
(bsc#1135897).
- libceph: handle zero-length data items (bsc#1141450).
- libceph: introduce alloc_watch_request() (bsc#1135897).
- libceph: introduce BVECS data type (bsc#1141450).
- libceph: introduce ceph_pagelist_alloc() (bsc#1135897).
- libceph: preallocate message data items (bsc#1135897).
- libceph, rbd: add error handling for osd_req_op_cls_init() (bsc#1135897).
- libceph, rbd, ceph: move ceph_osdc_alloc_messages() calls (bsc#1135897).
- libceph, rbd: new bio handling code (aka do not clone bios)
(bsc#1141450).
- libceph: use single request data item for cmp/setxattr (bsc#1139101).
- lib: fix stall in __bitmap_parselist() (bsc#1051510).
- libnvdimm/namespace: Fix label tracking error (bsc#1142350).
- lib/scatterlist: Fix mapping iterator when sg->offset is greater than
PAGE_SIZE (bsc#1051510).
- livepatch: Remove duplicate warning about missing reliable stacktrace
support (bsc#1071995).
- livepatch: Use static buffer for debugging messages under rq lock
(bsc#1071995).
- llc: fix skb leak in llc_build_and_send_ui_pkt()
(networking-stable-19_05_31).
- macsec: fix checksumming after decryption (bsc#1051510).
- macsec: fix use-after-free of skb during RX (bsc#1051510).
- macsec: let the administrator set UP state even if lowerdev is down
(bsc#1051510).
- macsec: update operstate when lower device changes (bsc#1051510).
- mailbox: handle failed named mailbox channel request (bsc#1051510).
- media: coda: fix last buffer handling in V4L2_ENC_CMD_STOP (bsc#1051510).
- media: coda: fix mpeg2 sequence number handling (bsc#1051510).
- media: coda: increment sequence offset for the last returned frame
(bsc#1051510).
- media: coda: Remove unbalanced and unneeded mutex unlock (bsc#1051510).
- media: cpia2_usb: first wake up, then free in disconnect (bsc#1135642).
- media: dvb: usb: fix use after free in dvb_usb_device_exit (bsc#1051510).
- media: hdpvr: fix locking and a missing msleep (bsc#1051510).
- media: marvell-ccic: fix DMA s/g desc number calculation (bsc#1051510).
- media: media_device_enum_links32: clean a reserved field (bsc#1051510).
- media: s5p-mfc: Make additional clocks optional (bsc#1051510).
- media: spi: IR LED: add missing of table registration (bsc#1051510).
- media: staging: media: davinci_vpfe: - Fix for memory leak if decoder
initialization fails (bsc#1051510).
- media: v4l2: Test type instead of cfg->type in v4l2_ctrl_new_custom()
(bsc#1051510).
- media: vivid: fix incorrect assignment operation when setting video mode
(bsc#1051510).
- media: vpss: fix a potential NULL pointer dereference (bsc#1051510).
- media: wl128x: Fix some error handling in fm_v4l2_init_video_device()
(bsc#1051510).
- mei: bus: need to unlink client before freeing (bsc#1051510).
- mei: me: add denverton innovation engine device IDs (bsc#1051510).
- mei: me: add gemini lake devices id (bsc#1051510).
- memory: tegra: Fix integer overflow on tick value calculation
(bsc#1051510).
- memstick: Fix error cleanup path of memstick_init (bsc#1051510).
- mfd: hi655x: Fix regmap area declared size for hi655x (bsc#1051510).
- mfd: intel-lpss: Release IDA resources (bsc#1051510).
- mmc: sdhci-pci: Try "cd" for card-detect lookup before using NULL
(bsc#1051510).
- mm: migrate: Fix reference check race between __find_get_block() and
migration (bnc#1137609).
- mm/nvdimm: add is_ioremap_addr and use that to check ioremap address
(bsc#1140322 LTC#176270).
- mm, page_alloc: fix has_unmovable_pages for HugePages (bsc#1127034).
- mm: replace all open encodings for NUMA_NO_NODE (bsc#1140322 LTC#176270).
- mm/vmscan.c: prevent useless kswapd loops (git fixes (mm/vmscan)).
- neigh: fix use-after-free read in pneigh_get_next
(networking-stable-19_06_18).
- net/9p: include trans_common.h to fix missing prototype warning
(bsc#1051510).
- net/af_iucv: remove GFP_DMA restriction for HiperTransport (bsc#1142112
bsc#1142221 LTC#179334 LTC#179332).
- net: avoid weird emergency message (networking-stable-19_05_21).
- net: fec: fix the clk mismatch in failed_reset path
(networking-stable-19_05_31).
- netfilter: conntrack: fix calculation of next bucket number in
early_drop (git-fixes).
- net-gro: fix use-after-free read in napi_gro_frags()
(networking-stable-19_05_31).
- net/mlx4_core: Change the error print to info print
(networking-stable-19_05_21).
- net/mlx4_en: ethtool, Remove unsupported SFP EEPROM high pages query
(networking-stable-19_06_09).
- net/mlx5: Allocate root ns memory using kzalloc to match kfree
(networking-stable-19_05_31).
- net/mlx5: Avoid double free in fs init error unwinding path
(networking-stable-19_05_31).
- net: mvneta: Fix err code path of probe (networking-stable-19_05_31).
- net: mvpp2: fix bad MVPP2_TXQ_SCHED_TOKEN_CNTR_REG queue value
(networking-stable-19_05_31).
- net: openvswitch: do not free vport if register_netdevice() is failed
(networking-stable-19_06_18).
- net/packet: fix memory leak in packet_set_ring() (git-fixes).
- net: rds: fix memory leak in rds_ib_flush_mr_pool
(networking-stable-19_06_09).
- net: remove duplicate fetch in sock_getsockopt
(networking-stable-19_07_02).
- net: seeq: fix crash caused by not set dev.parent
(networking-stable-19_05_14).
- net: stmmac: fixed new system time seconds value calculation
(networking-stable-19_07_02).
- net: stmmac: fix reset gpio free missing (networking-stable-19_05_31).
- net: stmmac: set IC bit when transmitting frames with HW timestamp
(networking-stable-19_07_02).
- net: usb: qmi_wwan: add Telit 0x1260 and 0x1261 compositions
(networking-stable-19_05_21).
- nfc: fix potential illegal memory access (bsc#1051510).
- nvme: fix memory leak caused by incorrect subsystem free (bsc#1143185).
- nvme: fix possible use-after-free in connect error flow (bsc#1139500,
bsc#1140426)
- ocfs2: add first lock wait time in locking_state (bsc#1134390).
- ocfs2: add last unlock times in locking_state (bsc#1134390).
- ocfs2: add locking filter debugfs file (bsc#1134390).
- packet: Fix error path in packet_init (networking-stable-19_05_14).
- packet: in recvmsg msg_name return at least sizeof sockaddr_ll
(git-fixes).
- PCI: Always allow probing with driver_override (bsc#1051510).
- PCI: Do not poll for PME if the device is in D3cold (bsc#1051510).
- PCI: hv: Add hv_pci_remove_slots() when we unload the driver
(bsc#1142701).
- PCI: hv: Add pci_destroy_slot() in pci_devices_present_work(), if
necessary (bsc#1142701).
- PCI: hv: Fix a memory leak in hv_eject_device_work() (bsc#1142701).
- PCI: hv: Fix a use-after-free bug in hv_eject_device_work()
(bsc#1142701).
- PCI: hv: Fix panic by calling hv_pci_remove_slots() earlier
(bsc#1142701).
- PCI: hv: Fix return value check in hv_pci_assign_slots() (bsc#1142701).
- PCI: hv: Remove unused reason for refcount handler (bsc#1142701).
- PCI: hv: support reporting serial number as slot information
(bsc#1142701).
- PCI: qcom: Ensure that PERST is asserted for at least 100 ms
(bsc#1142635).
- PCI: Return error if cannot probe VF (bsc#1051510).
- PCI: xilinx-nwl: Fix Multi MSI data programming (bsc#1142635).
- pinctrl: pistachio: fix leaked of_node references (bsc#1051510).
- pinctrl: rockchip: fix leaked of_node references (bsc#1051510).
- pkey: Indicate old mkvp only if old and current mkvp are different
(bsc#1137827 LTC#178090).
- pktgen: do not sleep with the thread lock held (git-fixes).
- platform/x86: asus-nb-wmi: Support ALS on the Zenbook UX430UQ
(bsc#1051510).
- platform/x86: asus-wmi: Only Tell EC the OS will handle display hotkeys
from asus_nb_wmi (bsc#1051510).
- platform/x86: intel_turbo_max_3: Remove restriction for HWP platforms
(jsc#SLE-5439).
- platform/x86: pmc_atom: Add CB4063 Beckhoff Automation board to
critclk_systems DMI table (bsc#1051510).
- powerpc/64s: Remove POWER9 DD1 support (bsc#1055117, LTC#159753,
git-fixes).
- powerpc/crypto: Use cheaper random numbers for crc-vpmsum self-test ().
- powerpc/kdump: Handle crashkernel memory reservation failure
(bsc#1143466 LTC#179600).
- powerpc/mm: Change function prototype (bsc#1055117).
- powerpc/mm: Consolidate numa_enable check and min_common_depth check
(bsc#1140322 LTC#176270).
- powerpc/mm/drconf: Use NUMA_NO_NODE on failures instead of node 0
(bsc#1140322 LTC#176270).
- powerpc/mm: Fix node look up with numa=off boot (bsc#1140322 LTC#176270).
- powerpc/mm/hash/4k: Do not use 64K page size for vmemmap with 4K
pagesize (bsc#1142685 LTC#179509).
- powerpc/mm/hugetlb: Update huge_ptep_set_access_flags to call
__ptep_set_access_flags directly (bsc#1055117).
- powerpc/mm/radix: Change pte relax sequence to handle nest MMU hang
(bsc#1055117).
- powerpc/mm/radix: Move function from radix.h to pgtable-radix.c
(bsc#1055117).
- powerpc/mm/radix: Use the right page size for vmemmap mapping
(bsc#1055117 bsc#1142685 LTC#179509).
- powerpc/pseries: Fix xive=off command line (bsc#1085030, git-fixes).
- powerpc/watchpoint: Restore NV GPRs while returning from exception
(bsc#1140945 bsc#1141401 bsc#1141402 bsc#1141452 bsc#1141453 bsc#1141454
LTC#178983 LTC#179191 LTC#179192 LTC#179193 LTC#179194 LTC#179195).
- ppp: deflate: Fix possible crash in deflate_init
(networking-stable-19_05_21).
- ptrace: Fix ->ptracer_cred handling for PTRACE_TRACEME (git-fixes).
- ptrace: restore smp_rmb() in __ptrace_may_access() (git-fixes).
- pwm: stm32: Use 3 cells ->of_xlate() (bsc#1111666).
- qlge: Deduplicate lbq_buf_size (bsc#1106061).
- qlge: Deduplicate rx buffer queue management (bsc#1106061).
- qlge: Factor out duplicated expression (bsc#1106061).
- qlge: Fix dma_sync_single calls (bsc#1106061).
- qlge: Fix irq masking in INTx mode (bsc#1106061).
- qlge: Refill empty buffer queues from wq (bsc#1106061).
- qlge: Refill rx buffers up to multiple of 16 (bsc#1106061).
- qlge: Remove bq_desc.maplen (bsc#1106061).
- qlge: Remove irq_cnt (bsc#1106061).
- qlge: Remove page_chunk.last_flag (bsc#1106061).
- qlge: Remove qlge_bq.len & size (bsc#1106061).
- qlge: Remove rx_ring.sbq_buf_size (bsc#1106061).
- qlge: Remove rx_ring.type (bsc#1106061).
- qlge: Remove useless dma synchronization calls (bsc#1106061).
- qlge: Remove useless memset (bsc#1106061).
- qlge: Replace memset with assignment (bsc#1106061).
- qlge: Update buffer queue prod index despite oom (bsc#1106061).
- qmi_wwan: Fix out-of-bounds read (bsc#1111666).
- rbd: do not (ab)use obj_req->pages for stat requests (bsc#1141450).
- rbd: do not NULL out ->obj_request in rbd_img_obj_parent_read_full()
(bsc#1141450).
- rbd: get rid of img_req->copyup_pages (bsc#1141450).
- rbd: move from raw pages to bvec data descriptors (bsc#1141450).
- rbd: remove bio cloning helpers (bsc#1141450).
- rbd: start enums at 1 instead of 0 (bsc#1141450).
- rbd: use kmem_cache_zalloc() in rbd_img_request_create() (bsc#1141450).
- RDS: IB: fix 'passing zero to ERR_PTR()' warning (git-fixes).
- regmap: fix bulk writes on paged registers (bsc#1051510).
- regulator: s2mps11: Fix buck7 and buck8 wrong voltages (bsc#1051510).
- Revert "bcache: set CACHE_SET_IO_DISABLE in bch_cached_dev_error()"
(bsc#1140652).
- Revert "e1000e: fix cyclic resets at link up with active tx"
(bsc#1051510).
- Revert "livepatch: Remove reliable stacktrace check in
klp_try_switch_task()" (bsc#1071995).
- Revert "serial: 8250: Do not service RX FIFO if interrupts are disabled"
(bsc#1051510).
- rtnetlink: always put IFLA_LINK for links with a link-netnsid
(networking-stable-19_05_21).
- s390/qdio: handle PENDING state for QEBSM devices (bsc#1142117
bsc#1142118 bsc#1142119 LTC#179329 LTC#179330 LTC#179331).
- s390/qeth: be drop monitor friendly (bsc#1142220 LTC#179335).
- s390/vtime: steal time exponential moving average (bsc#1119222).
- s390/zcrypt: Fix wrong dispatching for control domain CPRBs (bsc#1137811
LTC#178088).
- scsi: ibmvfc: fix WARN_ON during event pool release (bsc#1137458
LTC#178093).
- sctp: change to hold sk after auth shkey is created successfully
(networking-stable-19_07_02).
- sctp: Free cookie before we memdup a new one
(networking-stable-19_06_18).
- sctp: silence warns on sctp_stream_init allocations (bsc#1083710).
- serial: 8250: Fix TX interrupt handling condition (bsc#1051510).
- serial: uartps: Do not add a trailing semicolon to macro (bsc#1051510).
- serial: uartps: Fix long line over 80 chars (bsc#1051510).
- serial: uartps: Fix multiple line dereference (bsc#1051510).
- serial: uartps: Remove useless return from cdns_uart_poll_put_char
(bsc#1051510).
- signal/ptrace: Do not leak unitialized kernel memory with
PTRACE_PEEK_SIGINFO (git-fixes).
- sky2: Disable MSI on ASUS P6T (bsc#1142496).
- staging: comedi: amplc_pci230: fix null pointer deref on interrupt
(bsc#1051510).
- staging: comedi: dt282x: fix a null pointer deref on interrupt
(bsc#1051510).
- staging:iio:ad7150: fix threshold mode config bit (bsc#1051510).
- staging: rtl8712: reduce stack usage, again (bsc#1051510).
- sunhv: Fix device naming inconsistency between sunhv_console and
sunhv_reg (networking-stable-19_06_18).
- tcp: reduce tcp_fastretrans_alert() verbosity (git-fixes).
- team: Always enable vlan tx offload (bsc#1051510).
- tipc: change to use register_pernet_device (networking-stable-19_07_02).
- tracing: Fix header include guards in trace event headers (bsc#1144474).
- tty/ldsem, locking/rwsem: Add missing ACQUIRE to read_failed sleep loop
(bsc#1051510).
- tty: max310x: Fix invalid baudrate divisors calculator (bsc#1051510).
- tty: rocket: fix incorrect forward declaration of 'rp_init()'
(bsc#1051510).
- tty: serial_core: Set port active bit in uart_port_activate
(bsc#1051510).
- tty: serial: cpm_uart - fix init when SMC is relocated (bsc#1051510).
- tty/serial: digicolor: Fix digicolor-usart already registered warning
(bsc#1051510).
- tty: serial: msm_serial: avoid system lockup condition (bsc#1051510).
- tua6100: Avoid build warnings (bsc#1051510).
- tuntap: synchronize through tfiles array instead of tun->numqueues
(networking-stable-19_05_14).
- tun: wake up waitqueues after IFF_UP is set (networking-stable-19_07_02).
- Update patches.arch/powerpc-pseries-Fix-xive-off-command-line.patch
(bsc#1085030, bsc#1144518, LTC#178833).
- Update References field to
patches.suse/0275-bcache-never-writeback-a-discard-operation.patch
(bsc#1130972, bsc#1102247).
- usb: core: hub: Disable hub-initiated U1/U2 (bsc#1051510).
- usb: gadget: ether: Fix race between gether_disconnect and rx_submit
(bsc#1051510).
- usb: gadget: fusb300_udc: Fix memory leak of fusb300->ep[i]
(bsc#1051510).
- usb: gadget: udc: lpc32xx: allocate descriptor with GFP_ATOMIC
(bsc#1051510).
- usb: Handle USB3 remote wakeup for LPM enabled devices correctly
(bsc#1051510).
- usb: pci-quirks: Correct AMD PLL quirk detection (bsc#1051510).
- usb: serial: ftdi_sio: add ID for isodebug v1 (bsc#1051510).
- usb: serial: option: add support for GosunCn ME3630 RNDIS mode
(bsc#1051510).
- usb: wusbcore: fix unbalanced get/put cluster_id (bsc#1051510).
- VMCI: Fix integer overflow in VMCI handle arrays (bsc#1051510).
- vrf: sit mtu should not be updated when vrf netdev is the link
(networking-stable-19_05_14).
- vsock/virtio: free packets during the socket release
(networking-stable-19_05_21).
- vsock/virtio: set SOCK_DONE on peer shutdown
(networking-stable-19_06_18).
- wil6210: fix potential out-of-bounds read (bsc#1051510).
- x86, mm: fix fast GUP with hyper-based TLB flushing (VM Functionality,
bsc#1140903).
- xen: let alloc_xenballooned_pages() fail if not enough memory free
(bsc#1142450 XSA-300).
- xfs: do not overflow xattr listent buffer (bsc#1143105).
Special Instructions and Notes:
Please reboot the system after installing this update.
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1924=1
Package List:
- openSUSE Leap 15.0 (x86_64):
kernel-debug-4.12.14-lp150.12.70.1
kernel-debug-base-4.12.14-lp150.12.70.1
kernel-debug-base-debuginfo-4.12.14-lp150.12.70.1
kernel-debug-debuginfo-4.12.14-lp150.12.70.1
kernel-debug-debugsource-4.12.14-lp150.12.70.1
kernel-debug-devel-4.12.14-lp150.12.70.1
kernel-debug-devel-debuginfo-4.12.14-lp150.12.70.1
kernel-default-4.12.14-lp150.12.70.1
kernel-default-base-4.12.14-lp150.12.70.1
kernel-default-base-debuginfo-4.12.14-lp150.12.70.1
kernel-default-debuginfo-4.12.14-lp150.12.70.1
kernel-default-debugsource-4.12.14-lp150.12.70.1
kernel-default-devel-4.12.14-lp150.12.70.1
kernel-default-devel-debuginfo-4.12.14-lp150.12.70.1
kernel-kvmsmall-4.12.14-lp150.12.70.1
kernel-kvmsmall-base-4.12.14-lp150.12.70.1
kernel-kvmsmall-base-debuginfo-4.12.14-lp150.12.70.1
kernel-kvmsmall-debuginfo-4.12.14-lp150.12.70.1
kernel-kvmsmall-debugsource-4.12.14-lp150.12.70.1
kernel-kvmsmall-devel-4.12.14-lp150.12.70.1
kernel-kvmsmall-devel-debuginfo-4.12.14-lp150.12.70.1
kernel-obs-build-4.12.14-lp150.12.70.1
kernel-obs-build-debugsource-4.12.14-lp150.12.70.1
kernel-obs-qa-4.12.14-lp150.12.70.1
kernel-syms-4.12.14-lp150.12.70.1
kernel-vanilla-4.12.14-lp150.12.70.1
kernel-vanilla-base-4.12.14-lp150.12.70.1
kernel-vanilla-base-debuginfo-4.12.14-lp150.12.70.1
kernel-vanilla-debuginfo-4.12.14-lp150.12.70.1
kernel-vanilla-debugsource-4.12.14-lp150.12.70.1
kernel-vanilla-devel-4.12.14-lp150.12.70.1
kernel-vanilla-devel-debuginfo-4.12.14-lp150.12.70.1
- openSUSE Leap 15.0 (noarch):
kernel-devel-4.12.14-lp150.12.70.1
kernel-docs-4.12.14-lp150.12.70.1
kernel-docs-html-4.12.14-lp150.12.70.1
kernel-macros-4.12.14-lp150.12.70.1
kernel-source-4.12.14-lp150.12.70.1
kernel-source-vanilla-4.12.14-lp150.12.70.1
References:
https://www.suse.com/security/cve/CVE-2018-20855.html
https://www.suse.com/security/cve/CVE-2019-10207.html
https://www.suse.com/security/cve/CVE-2019-1125.html
https://www.suse.com/security/cve/CVE-2019-11810.html
https://www.suse.com/security/cve/CVE-2019-13631.html
https://www.suse.com/security/cve/CVE-2019-13648.html
https://www.suse.com/security/cve/CVE-2019-14283.html
https://www.suse.com/security/cve/CVE-2019-14284.html
https://bugzilla.suse.com/1051510
https://bugzilla.suse.com/1055117
https://bugzilla.suse.com/1071995
https://bugzilla.suse.com/1083647
https://bugzilla.suse.com/1083710
https://bugzilla.suse.com/1085030
https://bugzilla.suse.com/1086103
https://bugzilla.suse.com/1102247
https://bugzilla.suse.com/1106061
https://bugzilla.suse.com/1111666
https://bugzilla.suse.com/1114279
https://bugzilla.suse.com/1119222
https://bugzilla.suse.com/1123959
https://bugzilla.suse.com/1127034
https://bugzilla.suse.com/1127315
https://bugzilla.suse.com/1129770
https://bugzilla.suse.com/1130972
https://bugzilla.suse.com/1131281
https://bugzilla.suse.com/1133021
https://bugzilla.suse.com/1134097
https://bugzilla.suse.com/1134390
https://bugzilla.suse.com/1134399
https://bugzilla.suse.com/1135335
https://bugzilla.suse.com/1135642
https://bugzilla.suse.com/1135897
https://bugzilla.suse.com/1137458
https://bugzilla.suse.com/1137534
https://bugzilla.suse.com/1137535
https://bugzilla.suse.com/1137584
https://bugzilla.suse.com/1137609
https://bugzilla.suse.com/1137811
https://bugzilla.suse.com/1137827
https://bugzilla.suse.com/1139101
https://bugzilla.suse.com/1139358
https://bugzilla.suse.com/1139500
https://bugzilla.suse.com/1140133
https://bugzilla.suse.com/1140139
https://bugzilla.suse.com/1140322
https://bugzilla.suse.com/1140426
https://bugzilla.suse.com/1140652
https://bugzilla.suse.com/1140887
https://bugzilla.suse.com/1140888
https://bugzilla.suse.com/1140889
https://bugzilla.suse.com/1140891
https://bugzilla.suse.com/1140893
https://bugzilla.suse.com/1140903
https://bugzilla.suse.com/1140945
https://bugzilla.suse.com/1140948
https://bugzilla.suse.com/1140954
https://bugzilla.suse.com/1140955
https://bugzilla.suse.com/1140956
https://bugzilla.suse.com/1140957
https://bugzilla.suse.com/1140958
https://bugzilla.suse.com/1140959
https://bugzilla.suse.com/1140960
https://bugzilla.suse.com/1140961
https://bugzilla.suse.com/1140962
https://bugzilla.suse.com/1140964
https://bugzilla.suse.com/1140971
https://bugzilla.suse.com/1140972
https://bugzilla.suse.com/1140992
https://bugzilla.suse.com/1141401
https://bugzilla.suse.com/1141402
https://bugzilla.suse.com/1141450
https://bugzilla.suse.com/1141452
https://bugzilla.suse.com/1141453
https://bugzilla.suse.com/1141454
https://bugzilla.suse.com/1141478
https://bugzilla.suse.com/1142023
https://bugzilla.suse.com/1142112
https://bugzilla.suse.com/1142117
https://bugzilla.suse.com/1142118
https://bugzilla.suse.com/1142119
https://bugzilla.suse.com/1142220
https://bugzilla.suse.com/1142221
https://bugzilla.suse.com/1142254
https://bugzilla.suse.com/1142265
https://bugzilla.suse.com/1142350
https://bugzilla.suse.com/1142351
https://bugzilla.suse.com/1142354
https://bugzilla.suse.com/1142359
https://bugzilla.suse.com/1142450
https://bugzilla.suse.com/1142496
https://bugzilla.suse.com/1142635
https://bugzilla.suse.com/1142685
https://bugzilla.suse.com/1142701
https://bugzilla.suse.com/1142857
https://bugzilla.suse.com/1142868
https://bugzilla.suse.com/1143003
https://bugzilla.suse.com/1143045
https://bugzilla.suse.com/1143105
https://bugzilla.suse.com/1143185
https://bugzilla.suse.com/1143189
https://bugzilla.suse.com/1143191
https://bugzilla.suse.com/1143466
https://bugzilla.suse.com/1143507
https://bugzilla.suse.com/1144474
https://bugzilla.suse.com/1144518
1
0
openSUSE-RU-2019:1925-1: moderate: Recommended update for habootstrap-formula, python-shaptools, saphanabootstrap-formula
by maintenance@opensuse.org 16 Aug '19
by maintenance@opensuse.org 16 Aug '19
16 Aug '19
openSUSE Recommended Update: Recommended update for habootstrap-formula, python-shaptools, saphanabootstrap-formula
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1925-1
Rating: moderate
References: #1137989 #1142306
Affected Products:
openSUSE Leap 15.1
openSUSE Leap 15.0
______________________________________________________________________________
An update that has two recommended fixes can now be
installed.
Description:
This update for habootstrap-formula, python-shaptools,
saphanabootstrap-formula fixes the following issues:
python-shaptools was updated to version 0.3.1:
- Add support for Power machines (jsc#SLE-4031, jsc#SLE-4143, boo#1137989)
- Add an option to run the commands in remote nodes to shapcli
- shapcli is provided to expose shaptools api methods as command line tool
- Add support for Power machines
- Add an option to run the commands in remote nodes to shapcli
- shapcli is provided to expose shaptools api methods as command line tool
habootstrap-formula was updated to version 0.2.4:
- Fix issue with file permissions during package installation in
/usr/share/salt-formulas (boo#1142306)
- Make pkg.install more resilient, allowing retries during install
- Change the salt-formula directories permissions to 0750 to avoid
conflicts with the package salt-standalone-formulas-configuration.
- Correct the required package name to
salt-standalone-formulas-configuration
saphanabootstrap-formula was updated to version 0.2.9:
- Fix srHook script usage for cost optimized scenario
- Add scenario type options to the form.yml file (boo#1137989)
- Fix errors in the form.yml file to match with the formula names
- Fix some styling issues
- Add support for Power machines
- Fix issues with SAP HANA deployment template and the exporter
- Fix issue with file permissions during package installation in
/usr/share/salt-formulas (boo#1142306)
- Retry pkg.install multiple times, in case a pkg installtion fails for
having a more resilient installation.
- hanadb_exporter executed as a daemon
- hanadb_exporter installation suggested
- Change the salt-formula directories permissions to 0750 to avoid
conflicts with the package salt-standalone-formulas-configuration.
- Correct the required package name to
salt-standalone-formulas-configuration
- supporting hanadb_exporter logging system
- adding hanadb_exporter deployment
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2019-1925=1
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2019-1925=1
Package List:
- openSUSE Leap 15.1 (noarch):
habootstrap-formula-0.2.4-lp151.7.1
python2-shaptools-0.3.1-lp151.5.1
python3-shaptools-0.3.1-lp151.5.1
saphanabootstrap-formula-0.2.9-lp151.7.1
- openSUSE Leap 15.0 (noarch):
habootstrap-formula-0.2.4-lp150.6.1
python2-shaptools-0.3.1-lp150.5.1
python3-shaptools-0.3.1-lp150.5.1
saphanabootstrap-formula-0.2.9-lp150.6.1
References:
https://bugzilla.suse.com/1137989
https://bugzilla.suse.com/1142306
1
0
openSUSE-RU-2019:1922-1: moderate: Recommended update for gnuhealth
by maintenance@opensuse.org 16 Aug '19
by maintenance@opensuse.org 16 Aug '19
16 Aug '19
openSUSE Recommended Update: Recommended update for gnuhealth
______________________________________________________________________________
Announcement ID: openSUSE-RU-2019:1922-1
Rating: moderate
References: #1107771
Affected Products:
openSUSE Backports SLE-15-SP1
______________________________________________________________________________
An update that has one recommended fix can now be installed.
Description:
This update for gnuhealth fixes the following issues:
Changes in gnuhealth:
- correction for gnuhealth-control (v 3.2.4)
- Adding a dummy executable called 'gnuhealth' with some help text
(boo#1107771)
This update was imported from the openSUSE:Leap:15.1:Update update project.
Patch Instructions:
To install this openSUSE Recommended Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Backports SLE-15-SP1:
zypper in -t patch openSUSE-2019-1922=1
Package List:
- openSUSE Backports SLE-15-SP1 (noarch):
gnuhealth-3.4.1-bp151.3.3.3
References:
https://bugzilla.suse.com/1107771
1
0
openSUSE-SU-2019:1921-1: important: Security update for pdns
by opensuse-security@opensuse.org 15 Aug '19
by opensuse-security@opensuse.org 15 Aug '19
15 Aug '19
openSUSE Security Update: Security update for pdns
______________________________________________________________________________
Announcement ID: openSUSE-SU-2019:1921-1
Rating: important
References: #1138582 #1142810
Cross-References: CVE-2019-10162 CVE-2019-10163 CVE-2019-10203
Affected Products:
openSUSE Backports SLE-15-SP1
______________________________________________________________________________
An update that fixes three vulnerabilities is now available.
Description:
This update for pdns fixes the following issues:
Security issues fixed:
- CVE-2019-10203: Updated PostgreSQL schema to address a possible denial
of service by an authorized user by inserting a crafted record in a
MASTER type zone under their control. (boo#1142810)
- CVE-2019-10162: Fixed a denial of service but when authorized user to
cause the server to exit by inserting a crafted record in a MASTER type
zone under their control. (boo#1138582)
- CVE-2019-10163: Fixed a denial of service of slave server when an
authorized master server sends large number of NOTIFY messages.
(boo#1138582)
Non-security issues fixed:
- Enabled the option to disable superslave support.
- Fixed `pdnsutil b2b-migrate` to not lose NSEC3 settings.
This update was imported from the openSUSE:Leap:15.1:Update update project.
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Backports SLE-15-SP1:
zypper in -t patch openSUSE-2019-1921=1
Package List:
- openSUSE Backports SLE-15-SP1 (aarch64 ppc64le s390x x86_64):
pdns-4.1.8-bp151.3.3.1
pdns-backend-geoip-4.1.8-bp151.3.3.1
pdns-backend-godbc-4.1.8-bp151.3.3.1
pdns-backend-ldap-4.1.8-bp151.3.3.1
pdns-backend-lua-4.1.8-bp151.3.3.1
pdns-backend-mydns-4.1.8-bp151.3.3.1
pdns-backend-mysql-4.1.8-bp151.3.3.1
pdns-backend-postgresql-4.1.8-bp151.3.3.1
pdns-backend-remote-4.1.8-bp151.3.3.1
pdns-backend-sqlite3-4.1.8-bp151.3.3.1
References:
https://www.suse.com/security/cve/CVE-2019-10162.html
https://www.suse.com/security/cve/CVE-2019-10163.html
https://www.suse.com/security/cve/CVE-2019-10203.html
https://bugzilla.suse.com/1138582
https://bugzilla.suse.com/1142810
1
0