[linux] 01/01: Merge tag 'debian/3.16.36-1+deb8u1' into jessie

debian-kernel at lists.debian.org debian-kernel at lists.debian.org
Sat Sep 24 13:53:28 UTC 2016


This is an automated email from the git hooks/post-receive script.

carnil pushed a commit to branch jessie
in repository linux.

commit 635b9f8c3942146911c37f8ec789151f7398d3e1
Merge: e5632e0 45b96bc
Author: Salvatore Bonaccorso <carnil at debian.org>
Date:   Sat Sep 24 15:52:06 2016 +0200

    Merge tag 'debian/3.16.36-1+deb8u1' into jessie

 debian/changelog                                   |  14 +
 ...ck-size-values-after-double-fetch-from-us.patch |  65 ++++
 ...uble-fetch-in-audit_log_single_execve_arg.patch | 414 +++++++++++++++++++++
 ...e-after-free-in-tcp_xmit_retransmit_queue.patch |  50 +++
 .../tcp-make-challenge-acks-less-predictable.patch |  71 ++++
 .../fs-fix-abi-change-for-aufs-f_setfl-fix.patch   |   5 +-
 debian/patches/series                              |   4 +
 7 files changed, 621 insertions(+), 2 deletions(-)

diff --cc debian/changelog
index a38c90c,dcf2adc..d1d9506
--- a/debian/changelog
+++ b/debian/changelog
@@@ -1,14 -1,17 +1,28 @@@
 +linux (3.16.36-2) UNRELEASED; urgency=medium
 +
 +  [ Aurelien Jarno ]
 +  * [mips*] Fix ptrace handling of any syscalls returning ENOSYS.
 +
 +  [ Salvatore Bonaccorso ]
 +  * [x86] KVM: VMX: Fix host initiated access to guest MSR_TSC_AUX
 +    (Closes: #838660)
 +
 + -- Aurelien Jarno <aurel32 at debian.org>  Tue, 09 Aug 2016 22:05:53 +0200
 +
+ linux (3.16.36-1+deb8u1) jessie-security; urgency=high
+ 
+   [ Ben Hutchings ]
+   * tcp: make challenge acks less predictable (CVE-2016-5696)
+   * audit: fix a double fetch in audit_log_single_execve_arg() (CVE-2016-6136)
+   * fs: Fix oops when fcntl() is called on an aufs directory (CVE-2016-7118;
+     regression in 3.16.36-1)
+ 
+   [ Salvatore Bonaccorso ]
+   * tcp: fix use after free in tcp_xmit_retransmit_queue() (CVE-2016-6828)
+   * aacraid: Check size values after double-fetch from user (CVE-2016-6480)
+ 
+  -- Salvatore Bonaccorso <carnil at debian.org>  Sat, 03 Sep 2016 08:55:23 +0200
+ 
  linux (3.16.36-1) jessie; urgency=medium
  
    * New upstream stable update:

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/kernel/linux.git



More information about the Kernel-svn-changes mailing list