Overview

Request 483729 accepted

Leap 42.1 kernel update, mainly for CVE-2017-7184, that went out of EMBARGO
today. Due to embargo, it's not submitted from KOTD.

- xen: Linux 4.1.37 (CVE-2015-8956 CVE-2016-6828 CVE-2016-7425
bnc#1012628 bsc#1003925 bsc#1014943 bsc#994296 bsc#999932).
- commit 7aab3d3

- patches.xen/xen3-patch-4.1.patch: Fold back into base patch.
- commit a70cdde

- previously overlooked Kconfig adjustment.
- commit 798463e

- ipc/shm: Fix shmat mmap nil-page protection (CVE-2017-5669 bsc#1026914).
- commit 8eeb053

- irda: Fix lockdep annotations in hashbin_delete() (bsc#1027178,
CVE-2017-6348).
- commit 51dff9c

- ext4: fix fencepost in s_first_meta_bg validation (bsc#1029986).
- commit b9fac33

- xfrm_user: validate XFRM_MSG_NEWAE incoming ESN size harder
(CVE-2017-7184 bsc#1030573).
- xfrm_user: validate XFRM_MSG_NEWAE XFRMA_REPLAY_ESN_VAL
replay_window (CVE-2017-7184 bsc#1030573).
- commit 256b6b4

- Fix kABI breakage of musb struct in 4.1.39 (stable 4.1.39).
- commit 13a840e

- kabi/severities: Ignore x86/kvm kABI changes for 4.1.39

Request History
Takashi Iwai's avatar

tiwai created request

Leap 42.1 kernel update, mainly for CVE-2017-7184, that went out of EMBARGO
today. Due to embargo, it's not submitted from KOTD.

- xen: Linux 4.1.37 (CVE-2015-8956 CVE-2016-6828 CVE-2016-7425
bnc#1012628 bsc#1003925 bsc#1014943 bsc#994296 bsc#999932).
- commit 7aab3d3

- patches.xen/xen3-patch-4.1.patch: Fold back into base patch.
- commit a70cdde

- previously overlooked Kconfig adjustment.
- commit 798463e

- ipc/shm: Fix shmat mmap nil-page protection (CVE-2017-5669 bsc#1026914).
- commit 8eeb053

- irda: Fix lockdep annotations in hashbin_delete() (bsc#1027178,
CVE-2017-6348).
- commit 51dff9c

- ext4: fix fencepost in s_first_meta_bg validation (bsc#1029986).
- commit b9fac33

- xfrm_user: validate XFRM_MSG_NEWAE incoming ESN size harder
(CVE-2017-7184 bsc#1030573).
- xfrm_user: validate XFRM_MSG_NEWAE XFRMA_REPLAY_ESN_VAL
replay_window (CVE-2017-7184 bsc#1030573).
- commit 256b6b4

- Fix kABI breakage of musb struct in 4.1.39 (stable 4.1.39).
- commit 13a840e

- kabi/severities: Ignore x86/kvm kABI changes for 4.1.39


Maintenance Bot's avatar

maintbot added Kernel:stable as a reviewer

Submission for None by someone who is not maintainer in the devel project (Kernel:stable). Please review


Maintenance Bot's avatar

maintbot accepted review

accepted


Jiri Slaby's avatar

jirislaby accepted review

.


Jiri Slaby's avatar

jirislaby approved review

.


Marcus Meissner's avatar

msmeissn accepted request

ok

openSUSE Build Service is sponsored by