This bug will contain status and test results related to a kernel source (or snap) as stated in the title.
For an explanation of the tasks and the associated workflow see:
https://wiki.ubuntu.com/Kernel/kernel-sru-workflow
-- swm properties --
boot-testing-requested: true
built:
route-entry: 1
delta:
sru-review:
- meta
- lrm
- main
- signed
- lrg
- lrs
issue: KSRU-555
packages:
lrg: linux-restricted-generate
lrm: linux-restricted-modules
lrs: linux-restricted-signatures
main: linux
meta: linux-meta
signed: linux-signed
phase: Holding before Promote to Proposed
phase-changed: Saturday, 27. November 2021 08:05 UTC
reason:
derivatives-held: Stalled -- derivative preparation block requested
promote-to-proposed: Stalled -- manual kernel-block/kernel-block-ppa
present
trackers:
bionic/linux-aws: bug 1952325
bionic/linux-azure-4.15: bug 1952330
bionic/linux-dell300x: bug 1952331
bionic/linux-fips: bug 1952332
bionic/linux-gcp-4.15: bug 1952337
bionic/linux-ibm-gt: bug 1952339
bionic/linux-kvm: bug 1952340
bionic/linux-oracle: bug 1952342
bionic/linux-raspi2: bug 1952344
bionic/linux-snapdragon: bug 1952346
bionic/linux/pc-kernel: bug 1952321
bionic/linux/pc-lowlatency-kernel: bug 1952322
xenial/linux-hwe: bug 1952347
variant: debs
versions:
lrm: 4.15.0-164.172
main: 4.15.0-164.172
meta: 4.15.0.164.153
signed: 4.15.0-164.172
source: 4.15.0-164.172
This bug was fixed in the package linux - 4.15.0-166.174
---------------
linux (4.15.0-166.174) bionic; urgency=medium
* bionic/linux: 4.15.0-166.174 -proposed tracker (LP: #1953667)
* Ubuntu version macros overflow with high ABI numbers (LP: #1953522)
- SAUCE: Revert "stable: clamp SUBLEVEL in 4.14"
* test_bpf.sh test in net of ubuntu_ kernel_ selftests failed on B-4.15 and
variants (LP: #1953287)
- SAUCE: Revert "bpf: add also cbpf long jump test cases with heavy expansion"
* test_bpf.sh test in net of ubuntu_ kernel_ selftests failed on B-4.15 and
variants (LP: #1953287) // CVE-2018-25020
- bpf: fix truncated jump targets on heavy expansions
linux (4.15.0-165.173) bionic; urgency=medium
* bionic/linux: 4.15.0-165.173 -proposed tracker (LP: #1952780)
* Support builtin revoked certificates (LP: #1932029) certificate_ list to a common function n_list' to gitignore revoked- certs.pem from branch/arch certs SYSTEM_ REVOCATION_ KEYS with revoked keys
- certs: Add EFI_CERT_X509_GUID support for dbx entries
- certs: Move load_system_
- integrity: Move import of MokListRT certs to a separate routine
- integrity: Load certs from the EFI MOK config table
- certs: Add ability to preload revocation certs
- certs: add 'x509_revocatio
- SAUCE: Dump stack when X.509 certificates cannot be loaded
- [Packaging] build canonical-
- [Packaging] Revoke 2012 UEFI signing certificate as built-in
- [Config] Configure CONFIG_
* Support importing mokx keys into revocation list from the mok table
(LP: #1928679)
- efi: Support for MOK variable config table
- efi: mokvar-table: fix some issues in new code
- efi: mokvar: add missing include of asm/early_ioremap.h
- efi/mokvar: Reserve the table only if it is in boot services data
- SAUCE: integrity: Load mokx certs from the EFI MOK config table
- SAUCE: integrity: add informational messages when revoking certs
* CVE-2021-4002
- arm64: tlb: Provide forward declaration of tlb_flush() before including
tlb.h
- mm: mmu_notifier fix for tlb_end_vma
- hugetlbfs: flush TLBs correctly after huge_pmd_unshare
linux (4.15.0-164.172) bionic; urgency=medium
* bionic/linux: 4.15.0-164.172 -proposed tracker (LP: #1952348)
* Packaging resync (LP: #1786013) dkms-versions helper dkms-versions -- update from kernel-versions (main/2021.11.29)
- [Packaging] resync update-
- debian/
* Bionic update: upstream stable patchset 2021-11-23 (LP: #1951997) fd_decode_ status( ): fix back to ERROR_ACTIVE state
- btrfs: always wait on ordered extents at fsync time
- ARM: dts: at91: sama5d2_som1_ek: disable ISC node by default
- xtensa: xtfpga: use CONFIG_USE_OF instead of CONFIG_OF
- xtensa: xtfpga: Try software restart before simulating CPU reset
- NFSD: Keep existing listeners on portlist error
- netfilter: ipvs: make global sysctl readonly in non-init netns
- NIOS2: irqflags: rename a redefined register name
- can: rcar_can: fix suspend/resume
- can: peak_usb: pcan_usb_
notification
- can: peak_pci: peak_pci_remove(): fix UAF
- ocfs2: fix data corruption after conversio...