lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date:   Thu, 16 Aug 2018 12:15:44 +0200
From:   Greg KH <gregkh@...uxfoundation.org>
To:     linux-kernel@...r.kernel.org,
        Andrew Morton <akpm@...ux-foundation.org>,
        torvalds@...ux-foundation.org, stable@...r.kernel.org
Cc:     lwn@....net, Jiri Slaby <jslaby@...e.cz>
Subject: Linux 4.9.120

I'm announcing the release of the 4.9.120 kernel.

All users of the 4.9 kernel series must upgrade.

The updated 4.9.y git tree can be found at:
	git://git.kernel.org/pub/scm/linux/kernel/git/stable/linux-stable.git linux-4.9.y
and can be browsed at the normal kernel.org git web browser:
	http://git.kernel.org/?p=linux/kernel/git/stable/linux-stable.git;a=summary

thanks,

greg k-h

------------

 Documentation/ABI/testing/sysfs-devices-system-cpu           |   24 
 Documentation/index.rst                                      |    1 
 Documentation/kernel-parameters.txt                          |   78 +
 Documentation/l1tf.rst                                       |  610 +++++++++++
 Documentation/virtual/kvm/api.txt                            |   40 
 Makefile                                                     |    2 
 arch/Kconfig                                                 |    3 
 arch/arm/boot/dts/imx6sx.dtsi                                |    2 
 arch/parisc/Kconfig                                          |    2 
 arch/parisc/include/asm/barrier.h                            |   32 
 arch/parisc/kernel/entry.S                                   |    2 
 arch/parisc/kernel/pacache.S                                 |    1 
 arch/parisc/kernel/syscall.S                                 |    4 
 arch/x86/Kconfig                                             |    1 
 arch/x86/include/asm/apic.h                                  |   10 
 arch/x86/include/asm/cpufeatures.h                           |    4 
 arch/x86/include/asm/dmi.h                                   |    2 
 arch/x86/include/asm/hardirq.h                               |   26 
 arch/x86/include/asm/irqflags.h                              |    2 
 arch/x86/include/asm/kvm_host.h                              |    9 
 arch/x86/include/asm/msr-index.h                             |    7 
 arch/x86/include/asm/page_32_types.h                         |    9 
 arch/x86/include/asm/pgtable-2level.h                        |   17 
 arch/x86/include/asm/pgtable-3level.h                        |   37 
 arch/x86/include/asm/pgtable-invert.h                        |   32 
 arch/x86/include/asm/pgtable.h                               |   85 +
 arch/x86/include/asm/pgtable_64.h                            |   48 
 arch/x86/include/asm/pgtable_types.h                         |   10 
 arch/x86/include/asm/processor.h                             |   17 
 arch/x86/include/asm/smp.h                                   |    1 
 arch/x86/include/asm/topology.h                              |    6 
 arch/x86/include/asm/vmx.h                                   |   11 
 arch/x86/kernel/apic/apic.c                                  |   19 
 arch/x86/kernel/apic/htirq.c                                 |    2 
 arch/x86/kernel/apic/io_apic.c                               |    1 
 arch/x86/kernel/apic/msi.c                                   |    1 
 arch/x86/kernel/apic/vector.c                                |    1 
 arch/x86/kernel/cpu/amd.c                                    |   84 -
 arch/x86/kernel/cpu/bugs.c                                   |  171 ++-
 arch/x86/kernel/cpu/common.c                                 |   63 -
 arch/x86/kernel/cpu/cpu.h                                    |    2 
 arch/x86/kernel/cpu/intel.c                                  |    7 
 arch/x86/kernel/cpu/microcode/core.c                         |   26 
 arch/x86/kernel/cpu/topology.c                               |   41 
 arch/x86/kernel/fpu/core.c                                   |    1 
 arch/x86/kernel/ftrace.c                                     |    1 
 arch/x86/kernel/hpet.c                                       |    1 
 arch/x86/kernel/i8259.c                                      |    1 
 arch/x86/kernel/irq.c                                        |    1 
 arch/x86/kernel/irq_32.c                                     |    1 
 arch/x86/kernel/irq_64.c                                     |    1 
 arch/x86/kernel/irqinit.c                                    |    1 
 arch/x86/kernel/kprobes/core.c                               |    5 
 arch/x86/kernel/kprobes/opt.c                                |    1 
 arch/x86/kernel/paravirt.c                                   |   14 
 arch/x86/kernel/setup.c                                      |    6 
 arch/x86/kernel/smp.c                                        |    1 
 arch/x86/kernel/smpboot.c                                    |   25 
 arch/x86/kernel/time.c                                       |    1 
 arch/x86/kvm/svm.c                                           |   46 
 arch/x86/kvm/vmx.c                                           |  426 ++++++-
 arch/x86/kvm/x86.c                                           |  133 ++
 arch/x86/mm/fault.c                                          |    1 
 arch/x86/mm/init.c                                           |   25 
 arch/x86/mm/kaiser.c                                         |    1 
 arch/x86/mm/kmmio.c                                          |   25 
 arch/x86/mm/mmap.c                                           |   21 
 arch/x86/mm/pageattr.c                                       |    8 
 arch/x86/platform/efi/efi_64.c                               |    1 
 arch/x86/platform/efi/quirks.c                               |    1 
 arch/x86/platform/intel-mid/device_libs/platform_mrfld_wdt.c |    1 
 arch/x86/platform/uv/tlb_uv.c                                |    1 
 arch/x86/xen/enlighten.c                                     |    1 
 arch/x86/xen/setup.c                                         |    1 
 drivers/acpi/acpi_lpss.c                                     |    2 
 drivers/base/cpu.c                                           |    8 
 drivers/char/tpm/tpm-dev.c                                   |   43 
 drivers/infiniband/core/umem.c                               |   11 
 drivers/infiniband/hw/mlx4/mr.c                              |   50 
 drivers/infiniband/hw/ocrdma/ocrdma_stats.c                  |    2 
 drivers/mtd/nand/qcom_nandc.c                                |    3 
 drivers/net/xen-netfront.c                                   |    8 
 drivers/pci/host/pci-hyperv.c                                |    2 
 drivers/scsi/sr.c                                            |   29 
 fs/dcache.c                                                  |   13 
 fs/ext4/ialloc.c                                             |    5 
 fs/ext4/super.c                                              |    8 
 fs/namespace.c                                               |   28 
 fs/proc/inode.c                                              |    3 
 fs/proc/internal.h                                           |    7 
 fs/proc/proc_sysctl.c                                        |   83 +
 include/asm-generic/pgtable.h                                |   13 
 include/linux/compiler-clang.h                               |    3 
 include/linux/cpu.h                                          |   23 
 include/linux/swapfile.h                                     |    2 
 include/linux/sysctl.h                                       |    1 
 include/rdma/ib_verbs.h                                      |   14 
 include/uapi/linux/kvm.h                                     |    2 
 init/main.c                                                  |    2 
 kernel/cpu.c                                                 |  284 ++++-
 kernel/smp.c                                                 |    2 
 kernel/softirq.c                                             |   12 
 mm/memory.c                                                  |   29 
 mm/mprotect.c                                                |   49 
 mm/swapfile.c                                                |   46 
 tools/arch/x86/include/asm/cpufeatures.h                     |    4 
 106 files changed, 2709 insertions(+), 388 deletions(-)

Abel Vesa (1):
      cpu/hotplug: Non-SMP machines do not make use of booted_once

Al Viro (4):
      root dentries need RCU-delayed freeing
      make sure that __dentry_kill() always invalidates d_seq, unhashed or not
      fix mntput/mntput race
      fix __legitimize_mnt()/mntput() race

Andi Kleen (10):
      x86/speculation/l1tf: Increase 32bit PAE __PHYSICAL_PAGE_SHIFT
      x86/speculation/l1tf: Protect PROT_NONE PTEs against speculation
      x86/speculation/l1tf: Make sure the first page is always reserved
      x86/speculation/l1tf: Add sysfs reporting for l1tf
      x86/speculation/l1tf: Disallow non privileged high MMIO PROT_NONE mappings
      x86/speculation/l1tf: Limit swap file size to MAX_PA/2
      x86/speculation/l1tf: Invert all not present mappings
      x86/speculation/l1tf: Make pmd/pud_mknotpresent() invert
      x86/mm/pat: Make set_memory_np() L1TF safe
      x86/mm/kmmio: Make the tracer robust against L1TF

Andrey Konovalov (1):
      kasan: add no_sanitize attribute for clang builds

Ashok Raj (1):
      x86/microcode: Do not upload microcode if CPUs are offline

Bart Van Assche (1):
      scsi: sr: Avoid that opening a CD-ROM hangs with runtime power management enabled

Borislav Petkov (3):
      x86/CPU/AMD: Do not check CPUID max ext level before parsing SMP info
      x86/CPU/AMD: Move TOPOEXT reenablement before reading smp_num_siblings
      x86/CPU/AMD: Have smp_num_siblings and cpu_llc_id always be present

David Woodhouse (1):
      tools headers: Synchronise x86 cpufeatures.h for L1TF additions

Eric W. Biederman (2):
      proc/sysctl: Don't grab i_lock under sysctl_lock.
      proc: Fix proc_sys_prune_dcache to hold a sb reference

Fabio Estevam (1):
      mtd: nand: qcom: Add a NULL check for devm_kasprintf()

Greg Kroah-Hartman (1):
      Linux 4.9.120

Hans de Goede (1):
      ACPI / LPSS: Add missing prv_offset setting for byt/cht PWM devices

Helge Deller (1):
      parisc: Enable CONFIG_MLONGCALLS by default

Jack Morgenstein (2):
      IB/core: Make testing MR flags for writability a static inline function
      IB/mlx4: Mark user MR as writable if actual virtual memory is writable

Jim Mattson (1):
      kvm: nVMX: Update MSR load counts on a VMCS switch

Jiri Kosina (4):
      x86/speculation: Protect against userspace-userspace spectreRSB
      cpu/hotplug: Expose SMT control init function
      x86/bugs, kvm: Introduce boot-time control of L1TF mitigations
      x86/speculation/l1tf: Unbreak !__HAVE_ARCH_PFN_MODIFY_ALLOWED architectures

John David Anglin (1):
      parisc: Define mb() and add memory barriers to assembler unlock sequences

Josh Poimboeuf (2):
      cpu/hotplug: detect SMT disabled by BIOS
      x86/microcode: Allow late microcode loading with SMT disabled

Juergen Gross (1):
      xen/netfront: don't cache skb_shinfo()

Konrad Rzeszutek Wilk (9):
      x86/bugs: Move the l1tf function and define pr_fmt properly
      x86/cpufeatures: Add detection of L1D cache flush support.
      x86/KVM: Warn user if KVM is loaded SMT and L1TF CPU bug being present
      x86/KVM/VMX: Add module argument for L1TF mitigation
      x86/KVM/VMX: Split the VMX MSR LOAD structures to have an host/guest numbers
      x86/KVM/VMX: Add find_msr() helper function
      x86/KVM/VMX: Separate the VMX AUTOLOAD guest/host number accounting
      x86/KVM/VMX: Extend add_atomic_switch_msr() to allow VMENTER only MSRs
      x86/KVM/VMX: Use MSR save list for IA32_FLUSH_CMD if required

Konstantin Khlebnikov (1):
      proc/sysctl: prune stale dentries during unregistering

Linus Torvalds (4):
      Mark HI and TASKLET softirq synchronous
      init: rename and re-order boot_cpu_state_init()
      x86/speculation/l1tf: Change order of offset/type in swap entry
      x86/speculation/l1tf: Protect swap entries against L1TF

Masami Hiramatsu (1):
      kprobes/x86: Fix %p uses in error messages

Michael Mera (1):
      IB/ocrdma: fix out of bounds access to local buffer

Michal Hocko (1):
      x86/speculation/l1tf: Fix up pte->pfn conversion for PAE

Naoya Horiguchi (1):
      mm: x86: move _PAGE_SWP_SOFT_DIRTY from bit 7 to bit 1

Nick Desaulniers (1):
      x86/irqflags: Provide a declaration for native_save_fl

Nicolai Stange (9):
      x86/KVM/VMX: Initialize the vmx_l1d_flush_pages' content
      x86/KVM/VMX: Don't set l1tf_flush_l1d to true from vmx_l1d_flush()
      x86/KVM/VMX: Replace 'vmx_l1d_flush_always' with 'vmx_l1d_flush_cond'
      x86/KVM/VMX: Move the l1tf_flush_l1d test to vmx_l1d_flush()
      x86/irq: Demote irq_cpustat_t::__softirq_pending to u16
      x86/KVM/VMX: Introduce per-host-cpu analogue of l1tf_flush_l1d
      x86: Don't include linux/irq.h from asm/hardirq.h
      x86/irq: Let interrupt handlers set kvm_cpu_l1tf_flush_l1d
      x86/KVM/VMX: Don't set l1tf_flush_l1d from vmx_handle_external_intr()

Oleksij Rempel (1):
      ARM: dts: imx6sx: fix irq for pcie bridge

Paolo Bonzini (7):
      x86/KVM/VMX: Add L1D flush algorithm
      x86/KVM/VMX: Add L1D MSR based flush
      x86/KVM/VMX: Add L1D flush logic
      KVM: VMX: support MSR_IA32_ARCH_CAPABILITIES as a feature MSR
      x86/speculation: Simplify sysfs report of VMX L1TF vulnerability
      x86/speculation: Use ARCH_CAPABILITIES to skip L1D flush on vmentry
      KVM: VMX: Tell the nested hypervisor to skip L1D flush on vmentry

Peter Zijlstra (1):
      x86/paravirt: Fix spectre-v2 mitigations for paravirt guests

Suravee Suthikulpanit (1):
      x86/cpu/amd: Limit cpu_core_id fixup to families older than F17h

Tadeusz Struk (1):
      tpm: fix race condition in tpm_common_write()

Theodore Ts'o (1):
      ext4: fix check to prevent initializing reserved inodes

Thomas Gleixner (26):
      x86/smp: Provide topology_is_primary_thread()
      x86/topology: Provide topology_smt_supported()
      cpu/hotplug: Make bringup/teardown of smp threads symmetric
      cpu/hotplug: Split do_cpu_down()
      cpu/hotplug: Provide knobs to control SMT
      x86/cpu: Remove the pointless CPU printout
      x86/cpu/AMD: Remove the pointless detect_ht() call
      x86/cpu/common: Provide detect_ht_early()
      x86/cpu/topology: Provide detect_extended_topology_early()
      x86/cpu/intel: Evaluate smp_num_siblings early
      x86/cpu/AMD: Evaluate smp_num_siblings early
      x86/apic: Ignore secondary threads if nosmt=force
      Revert "x86/apic: Ignore secondary threads if nosmt=force"
      cpu/hotplug: Boot HT siblings at least once
      cpu/hotplug: Online siblings when SMT control is turned on
      x86/litf: Introduce vmx status variable
      x86/kvm: Drop L1TF MSR list approach
      x86/l1tf: Handle EPT disabled state proper
      x86/kvm: Move l1tf setup function
      x86/kvm: Add static key for flush always
      x86/kvm: Serialize L1D flush parameter setter
      x86/kvm: Allow runtime control of L1D flush
      cpu/hotplug: Set CPU_SMT_NOT_SUPPORTED early
      Documentation: Add section about CPU vulnerabilities
      Documentation/l1tf: Remove Yonah processors from not vulnerable list
      cpu/hotplug: Fix SMT supported evaluation

Tom Lendacky (2):
      KVM: x86: Add a framework for supporting MSR-based features
      KVM: SVM: Add MSR-based feature support for serializing LFENCE

Tony Luck (1):
      Documentation/l1tf: Fix typos

Vlastimil Babka (4):
      x86/speculation/l1tf: Extend 64bit swap file size limit
      x86/speculation/l1tf: Protect PAE swap entries against L1TF
      x86/smp: fix non-SMP broken build due to redefinition of apic_id_is_primary_thread
      x86/init: fix build with CONFIG_SWAP=n

Wanpeng Li (2):
      KVM: X86: Introduce kvm_get_msr_feature()
      KVM: X86: Allow userspace to define the microcode version


Download attachment "signature.asc" of type "application/pgp-signature" (834 bytes)

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ