[linux] 01/01: Merge tag 'debian/3.16.36-1+deb8u2' into wheezy-backports

debian-kernel at lists.debian.org debian-kernel at lists.debian.org
Thu Oct 20 01:23:49 UTC 2016


This is an automated email from the git hooks/post-receive script.

benh pushed a commit to branch wheezy-backports
in repository linux.

commit be9025c90fd94df610936b48111b149d9adb9f6c
Merge: 72bc83d 2473d35
Author: Ben Hutchings <ben at decadent.org.uk>
Date:   Wed Oct 19 19:33:54 2016 +0100

    Merge tag 'debian/3.16.36-1+deb8u2' into wheezy-backports

 debian/changelog                                   |  24 +
 ...ort-sprintf-buffer-in-proc-keys-show-func.patch |  70 +++
 ...ix-potential-null-dereference-in-rfcomm-b.patch |  62 +++
 ...up_flags-FOLL_WRITE-games-from-__get_user.patch |  77 ++++
 ...-x_tables-speed-up-jump-target-validation.patch | 493 +++++++++++++++++++++
 ...-Buffer-overflow-in-arcmsr_iop_message_xf.patch |  46 ++
 debian/patches/series                              |   5 +
 7 files changed, 777 insertions(+)

diff --cc debian/changelog
index 087327c,b69f6aa..b0ad21c
--- a/debian/changelog
+++ b/debian/changelog
@@@ -1,15 -1,15 +1,39 @@@
++linux (3.16.36-1+deb8u2~bpo70+1) wheezy-backports; urgency=medium
++
++  * Rebuild for wheezy:
++    - Disable architectures that weren't part of wheezy
++    - Use gcc-4.6 for all architectures
++    - Change ABI number to 0.bpo.4
++    - [arm] btrfs: Work around bug in gcc-4.6 (fixes FTBFS)
++    - linux-image: Depend on initramfs-tools without any alternatives, so
++      that neither apt nor aptitude will automatically switch to dracut
++
++ -- Ben Hutchings <ben at decadent.org.uk>  Wed, 19 Oct 2016 19:33:42 +0100
++
+ linux (3.16.36-1+deb8u2) jessie-security; urgency=high
+ 
+   * KEYS: Fix short sprintf buffer in /proc/keys show function (CVE-2016-7042)
+   * scsi: arcmsr: Buffer overflow in arcmsr_iop_message_xfer() (CVE-2016-7425)
+   * Bluetooth: Fix potential NULL dereference in RFCOMM bind callback
+     (CVE-2015-8956)
+   * netfilter: x_tables: speed up jump target validation (Closes: #831014)
+   * mm: remove gup_flags FOLL_WRITE games from __get_user_pages()
+     (CVE-2016-5195)
+ 
+  -- Salvatore Bonaccorso <carnil at debian.org>  Wed, 19 Oct 2016 06:27:03 +0200
+ 
 +linux (3.16.36-1+deb8u1~bpo70+1) wheezy-backports; urgency=medium
 +
 +  * Rebuild for wheezy:
 +    - Disable architectures that weren't part of wheezy
 +    - Use gcc-4.6 for all architectures
 +    - Change ABI number to 0.bpo.4
 +    - [arm] btrfs: Work around bug in gcc-4.6 (fixes FTBFS)
 +    - linux-image: Depend on initramfs-tools without any alternatives, so
 +      that neither apt nor aptitude will automatically switch to dracut
 +
 + -- Ben Hutchings <ben at decadent.org.uk>  Thu, 08 Sep 2016 22:30:55 +0100
 +
  linux (3.16.36-1+deb8u1) jessie-security; urgency=high
  
    [ Ben Hutchings ]

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/kernel/linux.git



More information about the Kernel-svn-changes mailing list