e263127...
by
Marcelo Cerri
on 2018-01-19
UBUNTU: Ubuntu-4.13.0-31.34
Signed-off-by: Marcelo Henrique Cerri <email address hidden>
38d629b...
by
Marcelo Cerri
on 2018-01-18
UBUNTU: [Config] KERNEL_NOBP=y
CVE-2017-5753
CVE-2017-5715
Acked-by: Khalid Elmously <email address hidden>
Acked-by: Stefan Bader <email address hidden>
Signed-off-by: Marcelo Henrique Cerri <email address hidden>
adcf3c8...
by
Marcelo Cerri
on 2018-01-18
UBUNTU: SAUCE: s390: print messages for gmb and nobp
CVE-2017-5753
CVE-2017-5715
Acked-by: Khalid Elmously <email address hidden>
Acked-by: Stefan Bader <email address hidden>
Signed-off-by: Marcelo Henrique Cerri <email address hidden>
9e34b46...
by
Martin Schwidefsky <email address hidden>
on 2018-01-18
UBUNTU: SAUCE: s390: improve cpu alternative handling for gmb and nobp
CVE-2017-5753
CVE-2017-5715
Signed-off-by: Martin Schwidefsky <email address hidden>
Acked-by: Khalid Elmously <email address hidden>
Acked-by: Stefan Bader <email address hidden>
Signed-off-by: Marcelo Henrique Cerri <email address hidden>
e49a387...
by
Stefan Bader
on 2018-01-18
UBUNTU: Start new release
Ignore: yes
Signed-off-by: Stefan Bader <email address hidden>
27650b7...
by
Marcelo Cerri
on 2018-01-15
UBUNTU: Ubuntu-4.13.0-30.33
Signed-off-by: Marcelo Henrique Cerri <email address hidden>
2d616f1...
by
Andy Whitcroft
on 2018-01-15
UBUNTU: [Packaging] git-ubuntu-log -- handle multiple bugs/cves better
BugLink: http:// bugs.launchpad. net/bugs/ 1743383
Signed-off-by: Andy Whitcroft <email address hidden>
Signed-off-by: Marcelo Henrique Cerri <email address hidden>
81c0c5c...
by
Marcelo Cerri
on 2018-01-15
Revert "scsi: libsas: allow async aborts"
BugLink: http:// bugs.launchpad. net/bugs/ 1726519
This reverts commit 909657615d9b3ce 709be4fd95b9a9e 8c8c7c2be6.
Acked-by: Joseph Salisbury <email address hidden>
Acked-by: Kamal Mostafa <email address hidden>
Signed-off-by: Marcelo Henrique Cerri <email address hidden>
f316e93...
by
Jim Mattson <email address hidden>
on 2018-01-03
kvm: vmx: Scrub hardware GPRs at VM-exit
CVE-2017-5753
CVE-2017-5715
commit 0cb5b30698fdc8f 6b4646012e3acb4 ddce430788 upstream.
Guest GPR values are live in the hardware GPRs at VM-exit. Do not
leave any guest values in hardware GPRs after the guest GPR values are
saved to the vcpu_vmx structure.
This is a partial mitigation for CVE 2017-5715 and CVE 2017-5753.
Specifically, it defeats the Project Zero PoC for CVE 2017-5715.
Suggested-by: Eric Northup <email address hidden>
Signed-off-by: Jim Mattson <email address hidden>
Reviewed-by: Eric Northup <email address hidden>
Reviewed-by: Benjamin Serebrin <email address hidden>
Reviewed-by: Andrew Honig <email address hidden>
[Paolo: Add AMD bits, Signed-off-by: Tom Lendacky <email address hidden>]
Signed-off-by: Paolo Bonzini <email address hidden>
Signed-off-by: Greg Kroah-Hartman <email address hidden>
c891a91...
by
Andy Whitcroft
on 2018-01-15
Revert "x86/svm: Add code to clear registers on VM exit"
CVE-2017-5753
CVE-2017-5715
This reverts commit 95177e2c17c2cba 93d431e18c7c563 cc00b303e6.
Signed-off-by: Andy Whitcroft <email address hidden>