Hello community, here is the log from the commit of package kernel-source for openSUSE:Factory checked in at 2018-01-05 00:58:00 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/kernel-source (Old) and /work/SRC/openSUSE:Factory/.kernel-source.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Package is "kernel-source" Fri Jan 5 00:58:00 2018 rev:398 rq:561601 version:4.14.11 Changes: -------- --- /work/SRC/openSUSE:Factory/kernel-source/dtb-aarch64.changes 2017-12-31 19:29:39.769258654 +0100 +++ /work/SRC/openSUSE:Factory/.kernel-source.new/dtb-aarch64.changes 2018-01-05 00:58:07.641728783 +0100 @@ -1,0 +2,488 @@ +Thu Jan 4 12:32:07 CET 2018 - jslaby@suse.cz + +- Refresh + patches.suse/0027-x86-kvm-Pad-RSB-on-VM-transition.patch. +- Refresh + patches.suse/0031-Reverting-the-commit-e5247c4f209530-to-replace.patch. + Fix i386 build. +- commit c36893f + +------------------------------------------------------------------- +Wed Jan 3 21:41:58 CET 2018 - jslaby@suse.cz + +- Set IBPB when running a different VCPU (bnc#1068032 + CVE-2017-5715). +- Clear the host registers after setbe (bnc#1068032 + CVE-2017-5715). +- Use the ibpb_inuse variable (bnc#1068032 CVE-2017-5715). +- Remove the code that uses MSR save/restore list (bnc#1068032 + CVE-2017-5715). +- KVM: x86: add SPEC_CTRL to MSR and CPUID lists (bnc#1068032 + CVE-2017-5715). +- kvm: vmx: add MSR_IA32_SPEC_CTRL and MSR_IA32_PRED_CMD + (bnc#1068032 CVE-2017-5715). +- Reverting the commit e5247c4f209530 to replace (bnc#1068032 + CVE-2017-5715). +- Use the "ibrs_inuse" variable (bnc#1068032 CVE-2017-5715). +- kvm: svm: add MSR_IA32_SPEC_CTRL and MSR_IA32_PRED_CMD + (bnc#1068032 CVE-2017-5715). +- x86/svm: Set IBPB when running a different VCPU (bnc#1068032 + CVE-2017-5715). +- x86/kvm: Pad RSB on VM transition (bnc#1068032 CVE-2017-5715). +- Revert x86/kvm: Pad RSB on VM transition (bnc#1068032 + CVE-2017-5715). +- x86/cpu/AMD: Add speculative control support for AMD + (bnc#1068032 CVE-2017-5715). +- x86/microcode: Recheck IBRS and IBPB feature on microcode reload + (bnc#1068032 CVE-2017-5715). +- x86: Move IBRS/IBPB feature detection to scattered.c + (bnc#1068032 CVE-2017-5715). +- x86/spec_ctrl: Add lock to serialize changes to ibrs and ibpb + control (bnc#1068032 CVE-2017-5715). +- x86/spec_ctrl: Add sysctl knobs to enable/disable SPEC_CTRL + feature (bnc#1068032 CVE-2017-5715). +- x86/kvm: clear registers on VM exit (bnc#1068032 CVE-2017-5715). +- x86/kvm: Pad RSB on VM transition (bnc#1068032 CVE-2017-5715). +- x86/kvm: Toggle IBRS on VM entry and exit (bnc#1068032 + CVE-2017-5715). +- x86/kvm: Set IBPB when switching VM (bnc#1068032 CVE-2017-5715). +- x86/kvm: add MSR_IA32_SPEC_CTRL and MSR_IA32_PRED_CMD to kvm + (bnc#1068032 CVE-2017-5715). +- x86/syscall: Clear unused extra registers on 32-bit compatible + syscall entrance (bnc#1068032 CVE-2017-5715). +- x86/syscall: Clear unused extra registers on syscall entrance + (bnc#1068032 CVE-2017-5715). +- x86/entry: Stuff RSB for entry to kernel for non-SMEP platform + (bnc#1068032 CVE-2017-5715). +- x86/mm: Only set IBPB when the new thread cannot ptrace current + thread (bnc#1068032 CVE-2017-5715). +- x86/mm: Set IBPB upon context switch (bnc#1068032 + CVE-2017-5715). +- x86/idle: Disable IBRS when offlining cpu and re-enable on + wakeup (bnc#1068032 CVE-2017-5715). +- x86/idle: Disable IBRS entering idle and enable it on wakeup + (bnc#1068032 CVE-2017-5715). +- x86/spec_ctrl: save IBRS MSR value in paranoid_entry + (bnc#1068032 CVE-2017-5715). +- x86/enter: Use IBRS on syscall and interrupts (bnc#1068032 + CVE-2017-5715). +- x86: Add macro that does not save rax, rcx, rdx on stack to + disable IBRS (bnc#1068032 CVE-2017-5715). +- x86/enter: MACROS to set/clear IBRS and set IBPB (bnc#1068032 + CVE-2017-5715). +- x86/feature: Report presence of IBPB and IBRS control + (bnc#1068032 CVE-2017-5715). +- x86: Add STIBP feature enumeration (bnc#1068032 CVE-2017-5715). +- x86/cpufeature: Add X86_FEATURE_IA32_ARCH_CAPS and + X86_FEATURE_IBRS_ATT (bnc#1068032 CVE-2017-5715). +- x86/feature: Enable the x86 feature to control Speculation + (bnc#1068032 CVE-2017-5715). +- commit 816f713 + +------------------------------------------------------------------- +Wed Jan 3 19:49:03 CET 2018 - jslaby@suse.cz + +- userns: prevent speculative execution (bnc#1068032 + CVE-2017-5753). +- udf: prevent speculative execution (bnc#1068032 CVE-2017-5753). +- net: mpls: prevent speculative execution (bnc#1068032 + CVE-2017-5753). +- fs: prevent speculative execution (bnc#1068032 CVE-2017-5753). +- ipv6: prevent speculative execution (bnc#1068032 CVE-2017-5753). +- ipv4: prevent speculative execution (bnc#1068032 CVE-2017-5753). +- Thermal/int340x: prevent speculative execution (bnc#1068032 + CVE-2017-5753). +- cw1200: prevent speculative execution (bnc#1068032 + CVE-2017-5753). +- qla2xxx: prevent speculative execution (bnc#1068032 + CVE-2017-5753). +- p54: prevent speculative execution (bnc#1068032 CVE-2017-5753). +- carl9170: prevent speculative execution (bnc#1068032 + CVE-2017-5753). +- uvcvideo: prevent speculative execution (bnc#1068032 + CVE-2017-5753). +- x86, bpf, jit: prevent speculative execution when JIT is enabled + (bnc#1068032 CVE-2017-5753). +- bpf: prevent speculative execution in eBPF interpreter + (bnc#1068032 CVE-2017-5753). +- locking/barriers: introduce new observable speculation barrier + (bnc#1068032 CVE-2017-5753). +- x86/cpu/AMD: Remove now unused definition of MFENCE_RDTSC + feature (bnc#1068032 CVE-2017-5753). +- x86/cpu/AMD: Make the LFENCE instruction serialized (bnc#1068032 + CVE-2017-5753). +- commit cf46932 + +------------------------------------------------------------------- +Wed Jan 3 16:57:12 CET 2018 - jslaby@suse.cz + +- Linux 4.14.11 (bnc#1012628). +- tracing: Remove extra zeroing out of the ring buffer page + (bnc#1012628). +- tracing: Fix possible double free on failure of allocating + trace buffer (bnc#1012628). +- tracing: Fix crash when it fails to alloc ring buffer + (bnc#1012628). +- x86/cpufeatures: Add X86_BUG_CPU_INSECURE (bnc#1012628). +- x86/mm/pti: Disable global pages if PAGE_TABLE_ISOLATION=y + (bnc#1012628). +- x86/mm/pti: Prepare the x86/entry assembly code for entry/exit + CR3 switching (bnc#1012628). +- x86/mm/pti: Add infrastructure for page table isolation + (bnc#1012628). +- x86/pti: Add the pti= cmdline option and documentation + (bnc#1012628). +- x86/mm/pti: Add mapping helper functions (bnc#1012628). +- x86/mm/pti: Allow NX poison to be set in p4d/pgd (bnc#1012628). +- x86/mm/pti: Allocate a separate user PGD (bnc#1012628). +- x86/mm/pti: Populate user PGD (bnc#1012628). +- x86/mm/pti: Add functions to clone kernel PMDs (bnc#1012628). +- x86/mm/pti: Force entry through trampoline when PTI active + (bnc#1012628). +- x86/mm/pti: Share cpu_entry_area with user space page tables + (bnc#1012628). +- x86/entry: Align entry text section to PMD boundary + (bnc#1012628). +- x86/mm/pti: Share entry text PMD (bnc#1012628). +- x86/mm/pti: Map ESPFIX into user space (bnc#1012628). +- x86/cpu_entry_area: Add debugstore entries to cpu_entry_area + (bnc#1012628). +- x86/events/intel/ds: Map debug buffers in cpu_entry_area + (bnc#1012628). +- x86/mm/64: Make a full PGD-entry size hole in the memory map + (bnc#1012628). +- x86/pti: Put the LDT in its own PGD if PTI is on (bnc#1012628). +- x86/pti: Map the vsyscall page if needed (bnc#1012628). +- x86/mm: Allow flushing for future ASID switches (bnc#1012628). +- x86/mm: Abstract switching CR3 (bnc#1012628). +- x86/mm: Use/Fix PCID to optimize user/kernel switches + (bnc#1012628). +- x86/mm: Optimize RESTORE_CR3 (bnc#1012628). +- x86/mm: Use INVPCID for __native_flush_tlb_single() + (bnc#1012628). +- x86/mm: Clarify the whole ASID/kernel PCID/user PCID naming + (bnc#1012628). +- x86/dumpstack: Indicate in Oops whether PTI is configured and + enabled (bnc#1012628). +- x86/mm/pti: Add Kconfig (bnc#1012628). +- x86/mm/dump_pagetables: Add page table directory to the debugfs + VFS hierarchy (bnc#1012628). +- x86/mm/dump_pagetables: Check user space page table for WX pages + (bnc#1012628). +- x86/mm/dump_pagetables: Allow dumping current pagetables + (bnc#1012628). +- x86/ldt: Make the LDT mapping RO (bnc#1012628). +- ring-buffer: Mask out the info bits when returning buffer page + length (bnc#1012628). +- ring-buffer: Do no reuse reader page if still in use + (bnc#1012628). +- iw_cxgb4: Only validate the MSN for successful completions + (bnc#1012628). +- ASoC: codecs: msm8916-wcd: Fix supported formats (bnc#1012628). +- ASoC: wm_adsp: Fix validation of firmware and coeff lengths + (bnc#1012628). +- ASoC: da7218: fix fix child-node lookup (bnc#1012628). +- ASoC: fsl_ssi: AC'97 ops need regmap, clock and cleaning up + on failure (bnc#1012628). +- ASoC: twl4030: fix child-node lookup (bnc#1012628). +- ASoC: tlv320aic31xx: Fix GPIO1 register definition + (bnc#1012628). +- gpio: fix "gpio-line-names" property retrieval (bnc#1012628). +- IB/hfi: Only read capability registers if the capability exists + (bnc#1012628). +- IB/mlx5: Serialize access to the VMA list (bnc#1012628). +- IB/uverbs: Fix command checking as part of + ib_uverbs_ex_modify_qp() (bnc#1012628). +- IB/core: Verify that QP is security enabled in create and + destroy (bnc#1012628). ++++ 300 more lines (skipped) ++++ between /work/SRC/openSUSE:Factory/kernel-source/dtb-aarch64.changes ++++ and /work/SRC/openSUSE:Factory/.kernel-source.new/dtb-aarch64.changes dtb-armv6l.changes: same change dtb-armv7l.changes: same change kernel-64kb.changes: same change kernel-debug.changes: same change kernel-default.changes: same change kernel-docs.changes: same change kernel-lpae.changes: same change kernel-obs-build.changes: same change kernel-obs-qa.changes: same change kernel-pae.changes: same change kernel-source.changes: same change kernel-syms.changes: same change kernel-syzkaller.changes: same change kernel-vanilla.changes: same change kernel-zfcpdump.changes: same change ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ dtb-aarch64.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.674390782 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:17.678389452 +0100 @@ -1,7 +1,7 @@ # # spec file for package dtb-aarch64 # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -17,7 +17,7 @@ %define srcversion 4.14 -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %include %_sourcedir/kernel-spec-macros @@ -29,9 +29,9 @@ %(chmod +x %_sourcedir/{guards,apply-patches,check-for-config-changes,group-source-files.pl,split-modules,modversions,kabi.pl,mkspec,compute-PATCHVERSION.sh,arch-symbols,log.sh,try-disable-staging-driver,compress-vmlinux.sh,mkspec-dtb}) Name: dtb-aarch64 -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif dtb-armv6l.spec: same change dtb-armv7l.spec: same change ++++++ kernel-64kb.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.758362843 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:17.762361513 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-64kb # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -18,7 +18,7 @@ %define srcversion 4.14 -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %define vanilla_only 0 @@ -58,9 +58,9 @@ Summary: Kernel with 64kb PAGE_SIZE License: GPL-2.0 Group: System/Kernel -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif kernel-debug.spec: same change kernel-default.spec: same change ++++++ kernel-docs.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.846333575 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:17.854330913 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-docs # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -17,7 +17,7 @@ %define srcversion 4.14 -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %include %_sourcedir/kernel-spec-macros @@ -31,9 +31,9 @@ Summary: Kernel Documentation License: GPL-2.0 Group: Documentation/Man -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif ++++++ kernel-lpae.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.878322931 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:17.878322931 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-lpae # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -18,7 +18,7 @@ %define srcversion 4.14 -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %define vanilla_only 0 @@ -58,9 +58,9 @@ Summary: Kernel for LPAE enabled systems License: GPL-2.0 Group: System/Kernel -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif ++++++ kernel-obs-build.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.902314949 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:17.906313618 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-obs-build # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -19,7 +19,7 @@ #!BuildIgnore: post-build-checks -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %define vanilla_only 0 @@ -57,9 +57,9 @@ Summary: package kernel and initrd for OBS VM builds License: GPL-2.0 Group: SLES -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif ++++++ kernel-obs-qa.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.938302975 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:17.942301645 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-obs-qa # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -17,7 +17,7 @@ # needsrootforbuild -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %include %_sourcedir/kernel-spec-macros @@ -36,9 +36,9 @@ Summary: Basic QA tests for the kernel License: GPL-2.0 Group: SLES -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif ++++++ kernel-pae.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.966293662 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:17.970292332 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-pae # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -18,7 +18,7 @@ %define srcversion 4.14 -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %define vanilla_only 0 @@ -58,9 +58,9 @@ Summary: Kernel with PAE Support License: GPL-2.0 Group: System/Kernel -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif ++++++ kernel-source.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:17.998283019 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:18.010279028 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-source # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -18,7 +18,7 @@ %define srcversion 4.14 -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %define vanilla_only 0 @@ -30,9 +30,9 @@ Summary: The Linux Kernel Sources License: GPL-2.0 Group: Development/Sources -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif ++++++ kernel-syms.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:18.046267054 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:18.050265723 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-syms # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -24,10 +24,10 @@ Summary: Kernel Symbol Versions (modversions) License: GPL-2.0 Group: Development/Sources -Version: 4.14.9 +Version: 4.14.11 %if %using_buildservice %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif ++++++ kernel-syzkaller.spec ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:18.082255080 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:18.082255080 +0100 @@ -1,7 +1,7 @@ # # spec file for package kernel-syzkaller # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -18,7 +18,7 @@ %define srcversion 4.14 -%define patchversion 4.14.9 +%define patchversion 4.14.11 %define variant %{nil} %define vanilla_only 0 @@ -58,9 +58,9 @@ Summary: Kernel used for fuzzing by syzkaller License: GPL-2.0 Group: System/Kernel -Version: 4.14.9 +Version: 4.14.11 %if 0%{?is_kotd} -Release: <RELEASE>.g9423ca2 +Release: <RELEASE>.gc36893f %else Release: 0 %endif kernel-vanilla.spec: same change kernel-zfcpdump.spec: same change ++++++ config.tar.bz2 ++++++ diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/arm64/default new/config/arm64/default --- old/config/arm64/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/arm64/default 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/arm64 4.14.5 Kernel Configuration +# Linux/arm64 4.14.11 Kernel Configuration # CONFIG_ARM64=y CONFIG_64BIT=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/armv6hl/default new/config/armv6hl/default --- old/config/armv6hl/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/armv6hl/default 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/arm 4.14.5 Kernel Configuration +# Linux/arm 4.14.11 Kernel Configuration # CONFIG_ARM=y CONFIG_ARM_HAS_SG_CHAIN=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/armv7hl/default new/config/armv7hl/default --- old/config/armv7hl/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/armv7hl/default 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/arm 4.14.5 Kernel Configuration +# Linux/arm 4.14.11 Kernel Configuration # CONFIG_ARM=y CONFIG_ARM_HAS_SG_CHAIN=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/armv7hl/lpae new/config/armv7hl/lpae --- old/config/armv7hl/lpae 2017-12-21 11:54:37.000000000 +0100 +++ new/config/armv7hl/lpae 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/arm 4.14.5 Kernel Configuration +# Linux/arm 4.14.11 Kernel Configuration # CONFIG_ARM=y CONFIG_ARM_HAS_SG_CHAIN=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/i386/default new/config/i386/default --- old/config/i386/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/i386/default 2018-01-03 16:57:12.000000000 +0100 @@ -5,7 +5,6 @@ # CONFIG_AK8974 is not set # CONFIG_ALTERA_PR_IP_CORE_PLAT is not set CONFIG_ARCH_FLATMEM_ENABLE=y -CONFIG_ARCH_HAS_REFCOUNT=y CONFIG_ATA=m # CONFIG_ATH10K_AHB is not set # CONFIG_BATTERY_LEGO_EV3 is not set @@ -205,7 +204,6 @@ CONFIG_OLPC_XO1_PM=y CONFIG_OLPC_XO1_RTC=y CONFIG_OLPC_XO1_SCI=y -CONFIG_OPTPROBES=y # CONFIG_PARAVIRT_SPINLOCKS is not set CONFIG_PATA_ISAPNP=m CONFIG_PATA_LEGACY=m @@ -323,7 +321,6 @@ CONFIG_SPEAKUP_SYNTH_DTLK=m CONFIG_SPEAKUP_SYNTH_KEYPC=m # CONFIG_SPI_FSL_SPI is not set -# CONFIG_SPI_INTEL_SPI_PLATFORM is not set # CONFIG_STAGING_BOARD is not set # CONFIG_STX104 is not set # CONFIG_SYSTEMPORT is not set diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/i386/pae new/config/i386/pae --- old/config/i386/pae 2017-12-21 11:54:37.000000000 +0100 +++ new/config/i386/pae 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/i386 4.14.5 Kernel Configuration +# Linux/i386 4.14.11 Kernel Configuration # # CONFIG_64BIT is not set CONFIG_X86_32=y @@ -511,7 +511,7 @@ CONFIG_DMI=y CONFIG_SWIOTLB=y CONFIG_IOMMU_HELPER=y -CONFIG_NR_CPUS=128 +CONFIG_NR_CPUS=64 CONFIG_SCHED_SMT=y CONFIG_SCHED_MC=y CONFIG_SCHED_MC_PRIO=y @@ -8040,7 +8040,7 @@ # CONFIG_WARN_ALL_UNSEEDED_RANDOM is not set # CONFIG_DEBUG_KOBJECT is not set CONFIG_DEBUG_BUGVERBOSE=y -CONFIG_DEBUG_LIST=y +# CONFIG_DEBUG_LIST is not set # CONFIG_DEBUG_PI_LIST is not set # CONFIG_DEBUG_SG is not set # CONFIG_DEBUG_NOTIFIERS is not set @@ -8157,7 +8157,7 @@ # CONFIG_TEST_STATIC_KEYS is not set # CONFIG_TEST_KMOD is not set CONFIG_MEMTEST=y -CONFIG_BUG_ON_DATA_CORRUPTION=y +# CONFIG_BUG_ON_DATA_CORRUPTION is not set # CONFIG_SAMPLES is not set CONFIG_HAVE_ARCH_KGDB=y CONFIG_KGDB=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/i386/vanilla new/config/i386/vanilla --- old/config/i386/vanilla 2017-12-21 11:54:37.000000000 +0100 +++ new/config/i386/vanilla 2018-01-03 16:57:12.000000000 +0100 @@ -1,5 +1,3 @@ -# CONFIG_FRAME_POINTER_UNWINDER is not set -CONFIG_GUESS_UNWINDER=y CONFIG_LOCALVERSION="-vanilla" CONFIG_MODULES=y # CONFIG_MODULE_SIG is not set diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/ppc64/default new/config/ppc64/default --- old/config/ppc64/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/ppc64/default 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/powerpc 4.14.5 Kernel Configuration +# Linux/powerpc 4.14.11 Kernel Configuration # CONFIG_PPC64=y @@ -6613,7 +6613,7 @@ # CONFIG_WARN_ALL_UNSEEDED_RANDOM is not set # CONFIG_DEBUG_KOBJECT is not set CONFIG_DEBUG_BUGVERBOSE=y -CONFIG_DEBUG_LIST=y +# CONFIG_DEBUG_LIST is not set # CONFIG_DEBUG_PI_LIST is not set # CONFIG_DEBUG_SG is not set # CONFIG_DEBUG_NOTIFIERS is not set @@ -6722,7 +6722,7 @@ # CONFIG_TEST_STATIC_KEYS is not set # CONFIG_TEST_KMOD is not set # CONFIG_MEMTEST is not set -CONFIG_BUG_ON_DATA_CORRUPTION=y +# CONFIG_BUG_ON_DATA_CORRUPTION is not set # CONFIG_SAMPLES is not set CONFIG_HAVE_ARCH_KGDB=y CONFIG_KGDB=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/ppc64le/default new/config/ppc64le/default --- old/config/ppc64le/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/ppc64le/default 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/powerpc 4.14.5 Kernel Configuration +# Linux/powerpc 4.14.11 Kernel Configuration # CONFIG_PPC64=y @@ -6468,7 +6468,7 @@ # CONFIG_WARN_ALL_UNSEEDED_RANDOM is not set # CONFIG_DEBUG_KOBJECT is not set CONFIG_DEBUG_BUGVERBOSE=y -CONFIG_DEBUG_LIST=y +# CONFIG_DEBUG_LIST is not set # CONFIG_DEBUG_PI_LIST is not set # CONFIG_DEBUG_SG is not set # CONFIG_DEBUG_NOTIFIERS is not set @@ -6579,7 +6579,7 @@ # CONFIG_TEST_STATIC_KEYS is not set # CONFIG_TEST_KMOD is not set # CONFIG_MEMTEST is not set -CONFIG_BUG_ON_DATA_CORRUPTION=y +# CONFIG_BUG_ON_DATA_CORRUPTION is not set # CONFIG_SAMPLES is not set CONFIG_HAVE_ARCH_KGDB=y CONFIG_KGDB=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/s390x/default new/config/s390x/default --- old/config/s390x/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/s390x/default 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/s390 4.14.5 Kernel Configuration +# Linux/s390 4.14.11 Kernel Configuration # CONFIG_MMU=y CONFIG_ZONE_DMA=y @@ -3012,7 +3012,7 @@ # CONFIG_WARN_ALL_UNSEEDED_RANDOM is not set # CONFIG_DEBUG_KOBJECT is not set CONFIG_DEBUG_BUGVERBOSE=y -CONFIG_DEBUG_LIST=y +# CONFIG_DEBUG_LIST is not set # CONFIG_DEBUG_PI_LIST is not set # CONFIG_DEBUG_SG is not set # CONFIG_DEBUG_NOTIFIERS is not set @@ -3121,7 +3121,7 @@ # CONFIG_TEST_STATIC_KEYS is not set # CONFIG_TEST_KMOD is not set # CONFIG_MEMTEST is not set -CONFIG_BUG_ON_DATA_CORRUPTION=y +# CONFIG_BUG_ON_DATA_CORRUPTION is not set # CONFIG_SAMPLES is not set CONFIG_ARCH_HAS_UBSAN_SANITIZE_ALL=y CONFIG_ARCH_WANTS_UBSAN_NO_NULL=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/s390x/zfcpdump new/config/s390x/zfcpdump --- old/config/s390x/zfcpdump 2017-12-21 11:54:37.000000000 +0100 +++ new/config/s390x/zfcpdump 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/s390 4.14.5 Kernel Configuration +# Linux/s390 4.14.11 Kernel Configuration # CONFIG_MMU=y CONFIG_ZONE_DMA=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/x86_64/default new/config/x86_64/default --- old/config/x86_64/default 2017-12-21 11:54:37.000000000 +0100 +++ new/config/x86_64/default 2018-01-03 16:57:12.000000000 +0100 @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/x86_64 4.14.5 Kernel Configuration +# Linux/x86_64 4.14.11 Kernel Configuration # CONFIG_64BIT=y CONFIG_X86_64=y @@ -8063,7 +8063,7 @@ # CONFIG_WARN_ALL_UNSEEDED_RANDOM is not set # CONFIG_DEBUG_KOBJECT is not set CONFIG_DEBUG_BUGVERBOSE=y -CONFIG_DEBUG_LIST=y +# CONFIG_DEBUG_LIST is not set # CONFIG_DEBUG_PI_LIST is not set # CONFIG_DEBUG_SG is not set # CONFIG_DEBUG_NOTIFIERS is not set @@ -8179,7 +8179,7 @@ # CONFIG_TEST_STATIC_KEYS is not set # CONFIG_TEST_KMOD is not set CONFIG_MEMTEST=y -CONFIG_BUG_ON_DATA_CORRUPTION=y +# CONFIG_BUG_ON_DATA_CORRUPTION is not set # CONFIG_SAMPLES is not set CONFIG_HAVE_ARCH_KGDB=y CONFIG_KGDB=y @@ -8247,6 +8247,7 @@ CONFIG_SECURITY_WRITABLE_HOOKS=y CONFIG_SECURITYFS=y CONFIG_SECURITY_NETWORK=y +CONFIG_PAGE_TABLE_ISOLATION=y CONFIG_SECURITY_INFINIBAND=y CONFIG_SECURITY_NETWORK_XFRM=y CONFIG_SECURITY_PATH=y diff -urN '--exclude=CVS' '--exclude=.cvsignore' '--exclude=.svn' '--exclude=.svnignore' old/config/x86_64/vanilla new/config/x86_64/vanilla --- old/config/x86_64/vanilla 2017-12-21 11:54:37.000000000 +0100 +++ new/config/x86_64/vanilla 2018-01-03 16:57:12.000000000 +0100 @@ -1,7 +1,4 @@ -# CONFIG_FRAME_POINTER_UNWINDER is not set -# CONFIG_GUESS_UNWINDER is not set CONFIG_LOCALVERSION="-vanilla" -CONFIG_ORC_UNWINDER=y CONFIG_MODULES=y # CONFIG_MODULE_SIG is not set CONFIG_EFI_STUB=y ++++++ patches.kernel.org.tar.bz2 ++++++ ++++ 27947 lines of diff (skipped) ++++++ patches.suse.tar.bz2 ++++++ ++++ 4549 lines of diff (skipped) ++++++ series.conf ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:19.813679012 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:19.817677682 +0100 @@ -1006,6 +1006,228 @@ patches.kernel.org/4.14.9-174-selftests-bpf-add-tests-for-recent-bugfixes.patch patches.kernel.org/4.14.9-175-linux-compiler.h-Split-into-compiler.h-and-com.patch patches.kernel.org/4.14.9-176-Linux-4.14.9.patch + patches.kernel.org/4.14.10-001-Revert-ipv6-grab-rt-rt6i_ref-before-allocatin.patch + patches.kernel.org/4.14.10-002-objtool-Move-synced-files-to-their-original-r.patch + patches.kernel.org/4.14.10-003-objtool-Move-kernel-headers-code-sync-check-t.patch + patches.kernel.org/4.14.10-004-objtool-Fix-cross-build.patch + patches.kernel.org/4.14.10-005-tools-headers-Sync-objtool-UAPI-header.patch + patches.kernel.org/4.14.10-006-objtool-Fix-64-bit-build-on-32-bit-host.patch + patches.kernel.org/4.14.10-007-x86-decoder-Fix-and-update-the-opcodes-map.patch + patches.kernel.org/4.14.10-008-x86-insn-eval-Add-utility-functions-to-get-se.patch + patches.kernel.org/4.14.10-009-x86-Kconfig-Limit-NR_CPUS-on-32-bit-to-a-sane.patch + patches.kernel.org/4.14.10-010-x86-mm-dump_pagetables-Check-PAGE_PRESENT-for.patch + patches.kernel.org/4.14.10-011-x86-mm-dump_pagetables-Make-the-address-hints.patch + patches.kernel.org/4.14.10-012-x86-vsyscall-64-Explicitly-set-_PAGE_USER-in-.patch + patches.kernel.org/4.14.10-013-x86-vsyscall-64-Warn-and-fail-vsyscall-emulat.patch + patches.kernel.org/4.14.10-014-arch-mm-Allow-arch_dup_mmap-to-fail.patch + patches.kernel.org/4.14.10-015-x86-ldt-Rework-locking.patch + patches.kernel.org/4.14.10-016-x86-ldt-Prevent-LDT-inheritance-on-exec.patch + patches.kernel.org/4.14.10-017-x86-mm-64-Improve-the-memory-map-documentatio.patch + patches.kernel.org/4.14.10-018-x86-doc-Remove-obvious-weirdnesses-from-the-x.patch + patches.kernel.org/4.14.10-019-x86-entry-Rename-SYSENTER_stack-to-CPU_ENTRY_.patch + patches.kernel.org/4.14.10-020-x86-uv-Use-the-right-TLB-flush-API.patch + patches.kernel.org/4.14.10-021-x86-microcode-Dont-abuse-the-TLB-flush-interf.patch + patches.kernel.org/4.14.10-022-x86-mm-Use-__flush_tlb_one-for-kernel-memory.patch + patches.kernel.org/4.14.10-023-x86-mm-Remove-superfluous-barriers.patch + patches.kernel.org/4.14.10-024-x86-mm-Add-comments-to-clarify-which-TLB-flus.patch + patches.kernel.org/4.14.10-025-x86-mm-Move-the-CR3-construction-functions-to.patch + patches.kernel.org/4.14.10-026-x86-mm-Remove-hard-coded-ASID-limit-checks.patch + patches.kernel.org/4.14.10-027-x86-mm-Put-MMU-to-hardware-ASID-translation-i.patch + patches.kernel.org/4.14.10-028-x86-mm-Create-asm-invpcid.h.patch + patches.kernel.org/4.14.10-029-x86-cpu_entry_area-Move-it-to-a-separate-unit.patch + patches.kernel.org/4.14.10-030-x86-cpu_entry_area-Move-it-out-of-the-fixmap.patch + patches.kernel.org/4.14.10-031-init-Invoke-init_espfix_bsp-from-mm_init.patch + patches.kernel.org/4.14.10-032-x86-cpu_entry_area-Prevent-wraparound-in-setu.patch + patches.kernel.org/4.14.10-033-ACPI-APEI-ERST-Fix-missing-error-handling-in-.patch + patches.kernel.org/4.14.10-034-acpi-nfit-fix-health-event-notification.patch + patches.kernel.org/4.14.10-035-crypto-skcipher-set-walk.iv-for-zero-length-i.patch + patches.kernel.org/4.14.10-036-crypto-mcryptd-protect-the-per-CPU-queue-with.patch + patches.kernel.org/4.14.10-037-crypto-af_alg-wait-for-data-at-beginning-of-r.patch + patches.kernel.org/4.14.10-038-crypto-af_alg-fix-race-accessing-cipher-reque.patch + patches.kernel.org/4.14.10-039-mfd-cros-ec-spi-Don-t-send-first-message-too-.patch + patches.kernel.org/4.14.10-040-mfd-twl4030-audio-Fix-sibling-node-lookup.patch + patches.kernel.org/4.14.10-041-mfd-twl6040-Fix-child-node-lookup.patch + patches.kernel.org/4.14.10-042-ALSA-rawmidi-Avoid-racy-info-ioctl-via-ctl-de.patch + patches.kernel.org/4.14.10-043-ALSA-hda-realtek-Fix-Dell-AIO-LineOut-issue.patch + patches.kernel.org/4.14.10-044-ALSA-hda-Add-vendor-id-for-Cannonlake-HDMI-co.patch + patches.kernel.org/4.14.10-045-ALSA-usb-audio-Add-native-DSD-support-for-Eso.patch + patches.kernel.org/4.14.10-046-ALSA-usb-audio-Fix-the-missing-ctl-name-suffi.patch + patches.kernel.org/4.14.10-047-PCI-PM-Force-devices-to-D0-in-pci_pm_thaw_noi.patch + patches.kernel.org/4.14.10-048-block-unalign-call_single_data-in-struct-requ.patch + patches.kernel.org/4.14.10-049-block-throttle-avoid-double-charge.patch + patches.kernel.org/4.14.10-050-parisc-Align-os_hpmc_size-on-word-boundary.patch + patches.kernel.org/4.14.10-051-parisc-Fix-indenting-in-puts.patch + patches.kernel.org/4.14.10-052-parisc-Hide-Diva-built-in-serial-aux-and-grap.patch + patches.kernel.org/4.14.10-053-Revert-parisc-Re-enable-interrupts-early.patch + patches.kernel.org/4.14.10-054-spi-xilinx-Detect-stall-with-Unknown-commands.patch + patches.kernel.org/4.14.10-055-spi-a3700-Fix-clk-prescaling-for-coefficient-.patch + patches.kernel.org/4.14.10-056-pinctrl-cherryview-Mask-all-interrupts-on-Int.patch + patches.kernel.org/4.14.10-057-arm64-kvm-Prevent-restoring-stale-PMSCR_EL1-f.patch + patches.kernel.org/4.14.10-058-KVM-arm-arm64-Fix-HYP-unmapping-going-off-lim.patch + patches.kernel.org/4.14.10-059-KVM-PPC-Book3S-fix-XIVE-migration-of-pending-.patch + patches.kernel.org/4.14.10-060-KVM-PPC-Book3S-HV-Fix-pending_pri-value-in-kv.patch + patches.kernel.org/4.14.10-061-KVM-MMU-Fix-infinite-loop-when-there-is-no-av.patch + patches.kernel.org/4.14.10-062-KVM-X86-Fix-load-RFLAGS-w-o-the-fixed-bit.patch + patches.kernel.org/4.14.10-063-kvm-x86-fix-RSM-when-PCID-is-non-zero.patch + patches.kernel.org/4.14.10-064-clk-sunxi-sun9i-mmc-Implement-reset-callback-.patch + patches.kernel.org/4.14.10-065-powerpc-perf-Dereference-BHRB-entries-safely.patch + patches.kernel.org/4.14.10-066-drm-i915-Flush-pending-GTT-writes-before-unbi.patch + patches.kernel.org/4.14.10-067-drm-sun4i-Fix-error-path-handling.patch + patches.kernel.org/4.14.10-068-libnvdimm-dax-fix-1GB-aligned-namespaces-vs-p.patch + patches.kernel.org/4.14.10-069-libnvdimm-btt-Fix-an-incompatibility-in-the-l.patch + patches.kernel.org/4.14.10-070-libnvdimm-pfn-fix-start_pad-handling-for-alig.patch + patches.kernel.org/4.14.10-071-net-mvneta-clear-interface-link-status-on-por.patch + patches.kernel.org/4.14.10-072-net-mvneta-use-proper-rxq_number-in-loop-on-r.patch + patches.kernel.org/4.14.10-073-net-mvneta-eliminate-wrong-call-to-handle-rx-.patch + patches.kernel.org/4.14.10-074-Revert-ipmi_si-fix-memory-leak-on-new_smi.patch + patches.kernel.org/4.14.10-075-Linux-4.14.10.patch + patches.kernel.org/4.14.11-001-tracing-Remove-extra-zeroing-out-of-the-ring-.patch + patches.kernel.org/4.14.11-002-tracing-Fix-possible-double-free-on-failure-o.patch + patches.kernel.org/4.14.11-003-tracing-Fix-crash-when-it-fails-to-alloc-ring.patch + patches.kernel.org/4.14.11-004-x86-cpufeatures-Add-X86_BUG_CPU_INSECURE.patch + patches.kernel.org/4.14.11-005-x86-mm-pti-Disable-global-pages-if-PAGE_TABLE.patch + patches.kernel.org/4.14.11-006-x86-mm-pti-Prepare-the-x86-entry-assembly-cod.patch + patches.kernel.org/4.14.11-007-x86-mm-pti-Add-infrastructure-for-page-table-.patch + patches.kernel.org/4.14.11-008-x86-pti-Add-the-pti-cmdline-option-and-docume.patch + patches.kernel.org/4.14.11-009-x86-mm-pti-Add-mapping-helper-functions.patch + patches.kernel.org/4.14.11-010-x86-mm-pti-Allow-NX-poison-to-be-set-in-p4d-p.patch + patches.kernel.org/4.14.11-011-x86-mm-pti-Allocate-a-separate-user-PGD.patch + patches.kernel.org/4.14.11-012-x86-mm-pti-Populate-user-PGD.patch + patches.kernel.org/4.14.11-013-x86-mm-pti-Add-functions-to-clone-kernel-PMDs.patch + patches.kernel.org/4.14.11-014-x86-mm-pti-Force-entry-through-trampoline-whe.patch + patches.kernel.org/4.14.11-015-x86-mm-pti-Share-cpu_entry_area-with-user-spa.patch + patches.kernel.org/4.14.11-016-x86-entry-Align-entry-text-section-to-PMD-bou.patch + patches.kernel.org/4.14.11-017-x86-mm-pti-Share-entry-text-PMD.patch + patches.kernel.org/4.14.11-018-x86-mm-pti-Map-ESPFIX-into-user-space.patch + patches.kernel.org/4.14.11-019-x86-cpu_entry_area-Add-debugstore-entries-to-.patch + patches.kernel.org/4.14.11-020-x86-events-intel-ds-Map-debug-buffers-in-cpu_.patch + patches.kernel.org/4.14.11-021-x86-mm-64-Make-a-full-PGD-entry-size-hole-in-.patch + patches.kernel.org/4.14.11-022-x86-pti-Put-the-LDT-in-its-own-PGD-if-PTI-is-.patch + patches.kernel.org/4.14.11-023-x86-pti-Map-the-vsyscall-page-if-needed.patch + patches.kernel.org/4.14.11-024-x86-mm-Allow-flushing-for-future-ASID-switche.patch + patches.kernel.org/4.14.11-025-x86-mm-Abstract-switching-CR3.patch + patches.kernel.org/4.14.11-026-x86-mm-Use-Fix-PCID-to-optimize-user-kernel-s.patch + patches.kernel.org/4.14.11-027-x86-mm-Optimize-RESTORE_CR3.patch + patches.kernel.org/4.14.11-028-x86-mm-Use-INVPCID-for-__native_flush_tlb_sin.patch + patches.kernel.org/4.14.11-029-x86-mm-Clarify-the-whole-ASID-kernel-PCID-use.patch + patches.kernel.org/4.14.11-030-x86-dumpstack-Indicate-in-Oops-whether-PTI-is.patch + patches.kernel.org/4.14.11-031-x86-mm-pti-Add-Kconfig.patch + patches.kernel.org/4.14.11-032-x86-mm-dump_pagetables-Add-page-table-directo.patch + patches.kernel.org/4.14.11-033-x86-mm-dump_pagetables-Check-user-space-page-.patch + patches.kernel.org/4.14.11-034-x86-mm-dump_pagetables-Allow-dumping-current-.patch + patches.kernel.org/4.14.11-035-x86-ldt-Make-the-LDT-mapping-RO.patch + patches.kernel.org/4.14.11-036-ring-buffer-Mask-out-the-info-bits-when-retur.patch + patches.kernel.org/4.14.11-037-ring-buffer-Do-no-reuse-reader-page-if-still-.patch + patches.kernel.org/4.14.11-038-iw_cxgb4-Only-validate-the-MSN-for-successful.patch + patches.kernel.org/4.14.11-039-ASoC-codecs-msm8916-wcd-Fix-supported-formats.patch + patches.kernel.org/4.14.11-040-ASoC-wm_adsp-Fix-validation-of-firmware-and-c.patch + patches.kernel.org/4.14.11-041-ASoC-da7218-fix-fix-child-node-lookup.patch + patches.kernel.org/4.14.11-042-ASoC-fsl_ssi-AC-97-ops-need-regmap-clock-and-.patch + patches.kernel.org/4.14.11-043-ASoC-twl4030-fix-child-node-lookup.patch + patches.kernel.org/4.14.11-044-ASoC-tlv320aic31xx-Fix-GPIO1-register-definit.patch + patches.kernel.org/4.14.11-045-gpio-fix-gpio-line-names-property-retrieval.patch + patches.kernel.org/4.14.11-046-IB-hfi-Only-read-capability-registers-if-the-.patch + patches.kernel.org/4.14.11-047-IB-mlx5-Serialize-access-to-the-VMA-list.patch + patches.kernel.org/4.14.11-048-IB-uverbs-Fix-command-checking-as-part-of-ib_.patch + patches.kernel.org/4.14.11-049-IB-core-Verify-that-QP-is-security-enabled-in.patch + patches.kernel.org/4.14.11-050-ALSA-hda-Drop-useless-WARN_ON.patch + patches.kernel.org/4.14.11-051-ALSA-hda-Add-MIC_NO_PRESENCE-fixup-for-2-HP-m.patch + patches.kernel.org/4.14.11-052-ALSA-hda-change-the-location-for-one-mic-on-a.patch + patches.kernel.org/4.14.11-053-ALSA-hda-fix-headset-mic-detection-issue-on-a.patch + patches.kernel.org/4.14.11-054-ALSA-hda-Fix-missing-COEF-init-for-ALC225-295.patch + patches.kernel.org/4.14.11-055-cpufreq-schedutil-Use-idle_calls-counter-of-t.patch + patches.kernel.org/4.14.11-056-block-fix-blk_rq_append_bio.patch + patches.kernel.org/4.14.11-057-block-don-t-let-passthrough-IO-go-into-.make_.patch + patches.kernel.org/4.14.11-058-kbuild-add-fno-stack-check-to-kernel-build-op.patch + patches.kernel.org/4.14.11-059-ipv4-igmp-guard-against-silly-MTU-values.patch + patches.kernel.org/4.14.11-060-ipv6-mcast-better-catch-silly-mtu-values.patch + patches.kernel.org/4.14.11-061-net-fec-unmap-the-xmit-buffer-that-are-not-tr.patch + patches.kernel.org/4.14.11-062-net-igmp-Use-correct-source-address-on-IGMPv3.patch + patches.kernel.org/4.14.11-063-netlink-Add-netns-check-on-taps.patch + patches.kernel.org/4.14.11-064-net-qmi_wwan-add-Sierra-EM7565-1199-9091.patch + patches.kernel.org/4.14.11-065-net-reevalulate-autoflowlabel-setting-after-s.patch + patches.kernel.org/4.14.11-066-ptr_ring-add-barriers.patch + patches.kernel.org/4.14.11-067-RDS-Check-cmsg_len-before-dereferencing-CMSG_.patch + patches.kernel.org/4.14.11-068-tcp_bbr-record-full-bw-reached-decision-in-ne.patch + patches.kernel.org/4.14.11-069-tcp-md5sig-Use-skb-s-saddr-when-replying-to-a.patch + patches.kernel.org/4.14.11-070-tg3-Fix-rx-hang-on-MTU-change-with-5717-5719.patch + patches.kernel.org/4.14.11-071-tcp_bbr-reset-full-pipe-detection-on-loss-rec.patch + patches.kernel.org/4.14.11-072-tcp_bbr-reset-long-term-bandwidth-sampling-on.patch + patches.kernel.org/4.14.11-073-s390-qeth-apply-takeover-changes-when-mode-is.patch + patches.kernel.org/4.14.11-074-s390-qeth-don-t-apply-takeover-changes-to-RXI.patch + patches.kernel.org/4.14.11-075-s390-qeth-lock-IP-table-while-applying-takeov.patch + patches.kernel.org/4.14.11-076-s390-qeth-update-takeover-IPs-after-configura.patch + patches.kernel.org/4.14.11-077-net-ipv4-fix-for-a-race-condition-in-raw_send.patch + patches.kernel.org/4.14.11-078-net-mvmdio-disable-unprepare-clocks-in-EPROBE.patch + patches.kernel.org/4.14.11-079-sctp-Replace-use-of-sockets_allocated-with-sp.patch + patches.kernel.org/4.14.11-080-adding-missing-rcu_read_unlock-in-ipxip6_rcv.patch + patches.kernel.org/4.14.11-081-ip6_gre-fix-device-features-for-ioctl-setup.patch + patches.kernel.org/4.14.11-082-ipv4-Fix-use-after-free-when-flushing-FIB-tab.patch + patches.kernel.org/4.14.11-083-net-bridge-fix-early-call-to-br_stp_change_br.patch + patches.kernel.org/4.14.11-084-net-Fix-double-free-and-memory-corruption-in-.patch + patches.kernel.org/4.14.11-085-net-phy-micrel-ksz9031-reconfigure-autoneg-af.patch + patches.kernel.org/4.14.11-086-sock-free-skb-in-skb_complete_tx_timestamp-on.patch + patches.kernel.org/4.14.11-087-tcp-invalidate-rate-samples-during-SACK-reneg.patch + patches.kernel.org/4.14.11-088-net-mlx5-Fix-rate-limit-packet-pacing-naming-.patch + patches.kernel.org/4.14.11-089-net-mlx5e-Fix-possible-deadlock-of-VXLAN-lock.patch + patches.kernel.org/4.14.11-090-net-mlx5e-Fix-features-check-of-IPv6-traffic.patch + patches.kernel.org/4.14.11-091-net-mlx5e-Add-refcount-to-VXLAN-structure.patch + patches.kernel.org/4.14.11-092-net-mlx5e-Prevent-possible-races-in-VXLAN-con.patch + patches.kernel.org/4.14.11-093-net-mlx5-Fix-error-flow-in-CREATE_QP-command.patch + patches.kernel.org/4.14.11-094-openvswitch-Fix-pop_vlan-action-for-double-ta.patch + patches.kernel.org/4.14.11-095-sfc-pass-valid-pointers-from-efx_enqueue_unwi.patch + patches.kernel.org/4.14.11-096-net-dsa-bcm_sf2-Clear-IDDQ_GLOBAL_PWR-bit-for.patch + patches.kernel.org/4.14.11-097-s390-qeth-fix-error-handling-in-checksum-cmd-.patch + patches.kernel.org/4.14.11-098-sctp-make-sure-stream-nums-can-match-optlen-i.patch + patches.kernel.org/4.14.11-099-tipc-fix-hanging-poll-for-stream-sockets.patch + patches.kernel.org/4.14.11-100-mlxsw-spectrum-Disable-MAC-learning-for-ovs-p.patch + patches.kernel.org/4.14.11-101-tcp-fix-potential-underestimation-on-rcv_rtt.patch + patches.kernel.org/4.14.11-102-net-phy-marvell-Limit-88m1101-autoneg-errata-.patch + patches.kernel.org/4.14.11-103-ipv6-Honor-specified-parameters-in-fibmatch-l.patch + patches.kernel.org/4.14.11-104-tcp-refresh-tcp_mstamp-from-timers-callbacks.patch + patches.kernel.org/4.14.11-105-net-mlx5-FPGA-return-EINVAL-if-size-is-zero.patch + patches.kernel.org/4.14.11-106-vxlan-restore-dev-mtu-setting-based-on-lower-.patch + patches.kernel.org/4.14.11-107-net-sched-fix-static-key-imbalance-in-case-of.patch + patches.kernel.org/4.14.11-108-bnxt_en-Fix-sources-of-spurious-netpoll-warni.patch + patches.kernel.org/4.14.11-109-phylink-ensure-the-PHY-interface-mode-is-appr.patch + patches.kernel.org/4.14.11-110-phylink-ensure-AN-is-enabled.patch + patches.kernel.org/4.14.11-111-ipv4-fib-Fix-metrics-match-when-deleting-a-ro.patch + patches.kernel.org/4.14.11-112-ipv6-set-all.accept_dad-to-0-by-default.patch + patches.kernel.org/4.14.11-113-Revert-mlx5-move-affinity-hints-assignments-t.patch + patches.kernel.org/4.14.11-114-skbuff-orphan-frags-before-zerocopy-clone.patch + patches.kernel.org/4.14.11-115-skbuff-skb_copy_ubufs-must-release-uarg-even-.patch + patches.kernel.org/4.14.11-116-skbuff-in-skb_copy_ubufs-unclone-before-relea.patch + patches.kernel.org/4.14.11-117-sparc64-repair-calling-incorrect-hweight-func.patch + patches.kernel.org/4.14.11-118-usbip-fix-usbip-bind-writing-random-string-af.patch + patches.kernel.org/4.14.11-119-usbip-prevent-leaking-socket-pointer-address-.patch + patches.kernel.org/4.14.11-120-usbip-stub-stop-printing-kernel-pointer-addre.patch + patches.kernel.org/4.14.11-121-usbip-vhci-stop-printing-kernel-pointer-addre.patch + patches.kernel.org/4.14.11-122-USB-chipidea-msm-fix-ulpi-node-lookup.patch + patches.kernel.org/4.14.11-123-USB-serial-ftdi_sio-add-id-for-Airbus-DS-P8GR.patch + patches.kernel.org/4.14.11-124-USB-serial-qcserial-add-Sierra-Wireless-EM756.patch + patches.kernel.org/4.14.11-125-USB-serial-option-add-support-for-Telit-ME910.patch + patches.kernel.org/4.14.11-126-USB-serial-option-adding-support-for-YUGA-CLM.patch + patches.kernel.org/4.14.11-127-usb-Add-device-quirk-for-Logitech-HD-Pro-Webc.patch + patches.kernel.org/4.14.11-128-usb-add-RESET_RESUME-for-ELSA-MicroLink-56K.patch + patches.kernel.org/4.14.11-129-USB-Fix-off-by-one-in-type-specific-length-ch.patch + patches.kernel.org/4.14.11-130-usb-xhci-Add-XHCI_TRUST_TX_LENGTH-for-Renesas.patch + patches.kernel.org/4.14.11-131-timers-Use-deferrable-base-independent-of-bas.patch + patches.kernel.org/4.14.11-132-timers-Invoke-timer_start_debug-where-it-make.patch + patches.kernel.org/4.14.11-133-timers-Reinitialize-per-cpu-bases-on-hotplug.patch + patches.kernel.org/4.14.11-134-binder-fix-proc-files-use-after-free.patch + patches.kernel.org/4.14.11-135-phy-tegra-fix-device-tree-node-lookups.patch + patches.kernel.org/4.14.11-136-drivers-base-cacheinfo-fix-cache-type-for-non.patch + patches.kernel.org/4.14.11-137-staging-android-ion-Fix-dma-direction-for-dma.patch + patches.kernel.org/4.14.11-138-nohz-Prevent-a-timer-interrupt-storm-in-tick_.patch + patches.kernel.org/4.14.11-139-x86-smpboot-Remove-stale-TLB-flush-invocation.patch + patches.kernel.org/4.14.11-140-x86-mm-Remove-preempt_disable-enable-from-__n.patch + patches.kernel.org/4.14.11-141-x86-32-Fix-kexec-with-stack-canary-CONFIG_CC_.patch + patches.kernel.org/4.14.11-142-x86-espfix-64-Fix-espfix-double-fault-handlin.patch + patches.kernel.org/4.14.11-143-x86-ldt-Plug-memory-leak-in-error-path.patch + patches.kernel.org/4.14.11-144-x86-ldt-Make-LDT-pgtable-free-conditional.patch + patches.kernel.org/4.14.11-145-n_tty-fix-EXTPROC-vs-ICANON-interaction-with-.patch + patches.kernel.org/4.14.11-146-tty-fix-tty_ldisc_receive_buf-documentation.patch + patches.kernel.org/4.14.11-147-Linux-4.14.11.patch ######################################################## # Build fixes that apply to the vanilla kernel too. @@ -1053,6 +1275,62 @@ patches.suse/setuid-dumpable-wrongdir patches.suse/0002-futex-futex_wake_op-fix-sign_extend32-sign-bits.patch + patches.suse/0001-x86-cpu-AMD-Make-the-LFENCE-instruction-serialized.patch + patches.suse/0002-x86-cpu-AMD-Remove-now-unused-definition-of-MFENCE_R.patch + patches.suse/0003-locking-barriers-introduce-new-observable-speculatio.patch + patches.suse/0004-bpf-prevent-speculative-execution-in-eBPF-interprete.patch + patches.suse/0005-x86-bpf-jit-prevent-speculative-execution-when-JIT-i.patch + patches.suse/0006-uvcvideo-prevent-speculative-execution.patch + patches.suse/0007-carl9170-prevent-speculative-execution.patch + patches.suse/0008-p54-prevent-speculative-execution.patch + patches.suse/0009-qla2xxx-prevent-speculative-execution.patch + patches.suse/0010-cw1200-prevent-speculative-execution.patch + patches.suse/0011-Thermal-int340x-prevent-speculative-execution.patch + patches.suse/0012-ipv4-prevent-speculative-execution.patch + patches.suse/0013-ipv6-prevent-speculative-execution.patch + patches.suse/0014-fs-prevent-speculative-execution.patch + patches.suse/0015-net-mpls-prevent-speculative-execution.patch + patches.suse/0016-udf-prevent-speculative-execution.patch + patches.suse/0017-userns-prevent-speculative-execution.patch + + patches.suse/0001-x86-feature-Enable-the-x86-feature-to-control-Specul.patch + patches.suse/0002-x86-cpufeature-Add-X86_FEATURE_IA32_ARCH_CAPS-and-X8.patch + patches.suse/0003-x86-Add-STIBP-feature-enumeration.patch + patches.suse/0004-x86-feature-Report-presence-of-IBPB-and-IBRS-control.patch + patches.suse/0005-x86-enter-MACROS-to-set-clear-IBRS-and-set-IBPB.patch + patches.suse/0006-x86-Add-macro-that-does-not-save-rax-rcx-rdx-on-stac.patch + patches.suse/0007-x86-enter-Use-IBRS-on-syscall-and-interrupts.patch + patches.suse/0008-x86-spec_ctrl-save-IBRS-MSR-value-in-paranoid_entry.patch + patches.suse/0009-x86-idle-Disable-IBRS-entering-idle-and-enable-it-on.patch + patches.suse/0010-x86-idle-Disable-IBRS-when-offlining-cpu-and-re-enab.patch + patches.suse/0011-x86-mm-Set-IBPB-upon-context-switch.patch + patches.suse/0012-x86-mm-Only-set-IBPB-when-the-new-thread-cannot-ptra.patch + patches.suse/0013-x86-entry-Stuff-RSB-for-entry-to-kernel-for-non-SMEP.patch + patches.suse/0014-x86-syscall-Clear-unused-extra-registers-on-syscall-.patch + patches.suse/0015-x86-syscall-Clear-unused-extra-registers-on-32-bit-c.patch + patches.suse/0016-x86-kvm-add-MSR_IA32_SPEC_CTRL-and-MSR_IA32_PRED_CMD.patch + patches.suse/0017-x86-kvm-Set-IBPB-when-switching-VM.patch + patches.suse/0018-x86-kvm-Toggle-IBRS-on-VM-entry-and-exit.patch + patches.suse/0019-x86-kvm-Pad-RSB-on-VM-transition.patch + patches.suse/0020-x86-kvm-clear-registers-on-VM-exit.patch + patches.suse/0021-x86-spec_ctrl-Add-sysctl-knobs-to-enable-disable-SPE.patch + patches.suse/0022-x86-spec_ctrl-Add-lock-to-serialize-changes-to-ibrs-.patch + patches.suse/0023-x86-Move-IBRS-IBPB-feature-detection-to-scattered.c.patch + patches.suse/0024-x86-microcode-Recheck-IBRS-and-IBPB-feature-on-micro.patch + patches.suse/0025-x86-cpu-AMD-Add-speculative-control-support-for-AMD.patch + patches.suse/0026-Revert-x86-kvm-Pad-RSB-on-VM-transition.patch + patches.suse/0027-x86-kvm-Pad-RSB-on-VM-transition.patch + patches.suse/0028-x86-svm-Set-IBPB-when-running-a-different-VCPU.patch + patches.suse/0029-kvm-svm-add-MSR_IA32_SPEC_CTRL-and-MSR_IA32_PRED_CMD.patch + patches.suse/0030-Use-the-ibrs_inuse-variable.patch + patches.suse/0031-Reverting-the-commit-e5247c4f209530-to-replace.patch + patches.suse/0032-kvm-vmx-add-MSR_IA32_SPEC_CTRL-and-MSR_IA32_PRED_CMD.patch + patches.suse/0033-KVM-x86-add-SPEC_CTRL-to-MSR-and-CPUID-lists.patch + patches.suse/0034-Remove-the-code-that-uses-MSR-save-restore-list.patch + patches.suse/0035-Use-the-ibpb_inuse-variable.patch + patches.suse/0036-Clear-the-host-registers-after-setbe.patch + patches.suse/0037-Set-IBPB-when-running-a-different-VCPU.patch + ######################################################## # Architecture-specific patches. These used to be all # at the end of series.conf, but since we don't do @@ -1173,7 +1451,6 @@ # Networking Core ######################################################## patches.suse/dccp-CVE-2017-8824-use-after-free-in-DCCP-code.patch - patches.suse/netlink-Add-netns-check-on-taps.patch ######################################################## # Netfilter ++++++ source-timestamp ++++++ --- /var/tmp/diff_new_pack.UOLeVq/_old 2018-01-05 00:58:19.845668369 +0100 +++ /var/tmp/diff_new_pack.UOLeVq/_new 2018-01-05 00:58:19.845668369 +0100 @@ -1,3 +1,3 @@ -2017-12-25 16:42:48 +0100 -GIT Revision: 9423ca2d83e140041bbc69d74e99172f891f4d08 +2018-01-04 12:32:07 +0100 +GIT Revision: c36893f025cf83d5b8d40847d1a34239cb7152eb GIT Branch: stable