Package: linux / 6.1.139-1

Metadata

Package Version Patches format
linux 6.1.139-1 3.0 (quilt)

Patch series

view the series file
Patch File delta Description
debian/fanotify taint on use of fanotify_access_permissions.patch | (download)

fs/notify/fanotify/fanotify_user.c | 8 8 + 0 - 0 !
1 file changed, 8 insertions(+)

 fanotify: taint on use of fanotify_access_permissions
Date: Wed, 13 Jul 2016 01:37:22 +0100
debian/btrfs warn about raid5 6 being experimental at mount.patch | (download)

fs/btrfs/disk-io.c | 9 9 + 0 - 0 !
1 file changed, 9 insertions(+)

 btrfs: warn about raid5/6 being experimental at mount time
Bug-Debian: https://bugs.debian.org/863290
bugfix/arm/arm dts kirkwood fix sata pinmux ing for ts419.patch | (download)

arch/arm/boot/dts/kirkwood-ts419.dtsi | 8 8 + 0 - 0 !
1 file changed, 8 insertions(+)

 arm: dts: kirkwood: fix sata pinmux-ing for ts419
bugfix/x86/perf tools fix unwind build on i386.patch | (download)

tools/perf/arch/x86/util/unwind-libunwind.c | 4 2 + 2 - 0 !
1 file changed, 2 insertions(+), 2 deletions(-)

 perf tools: fix unwind build on i386
bugfix/sh/sh boot do not use hyphen in exported variable name.patch | (download)

arch/sh/Makefile | 10 5 + 5 - 0 !
arch/sh/boot/compressed/Makefile | 4 2 + 2 - 0 !
arch/sh/boot/romimage/Makefile | 4 2 + 2 - 0 !
3 files changed, 9 insertions(+), 9 deletions(-)

 sh: do not use hyphen in exported variable names

arch/sh/Makefile defines and exports ld-bfd to be used by
arch/sh/boot/Makefile and arch/sh/boot/compressed/Makefile.  However
some shells, including dash, will not pass through environment
variables whose name includes a hyphen.  Usually GNU make does not use
a shell to recurse, but if e.g. $(srctree) contains '~' it will use a
shell here.

Rename the variable to ld_bfd.

(Another instance of this problem was fixed upstream by commit
82977af93a0d "sh: rename suffix-y to suffix_y".)

References: https://buildd.debian.org/status/fetch.php?pkg=linux&arch=sh4&ver=4.13%7Erc5-1%7Eexp1&stamp=1502943967&raw=0
Fixes: ef9b542fce00 ("sh: bzip2/lzma uImage support.")
Signed-off-by: Ben Hutchings <ben@decadent.org.uk>

bugfix/arm/arm mm export __sync_icache_dcache for xen privcmd.patch | (download)

arch/arm/mm/flush.c | 1 1 + 0 - 0 !
1 file changed, 1 insertion(+)

 arm: mm: export __sync_icache_dcache() for xen-privcmd
bugfix/powerpc/powerpc boot fix missing crc32poly.h when building with kernel_xz.patch | (download)

arch/powerpc/boot/Makefile | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

 powerpc/boot: fix missing crc32poly.h when building with kernel_xz
bugfix/arm64/arm64 acpi Add fixup for HPE m400 quirks.patch | (download)

arch/arm64/kernel/acpi.c | 40 36 + 4 - 0 !
1 file changed, 36 insertions(+), 4 deletions(-)

 arm64/acpi: add fixup for hpe m400 quirks
bugfix/alpha/alpha fix missing symbol versions for str n cat cpy.patch | (download)

arch/alpha/lib/Makefile | 14 0 + 14 - 0 !
arch/alpha/lib/stycpy.S | 8 8 + 0 - 0 !
arch/alpha/lib/styncpy.S | 8 8 + 0 - 0 !
3 files changed, 16 insertions(+), 14 deletions(-)

 alpha: fix missing symbol versions for str{,n}{cat,cpy}
features/arm64/dt bindings rockchip Add Hardkernel ODROID M1 board.patch | (download)

Documentation/devicetree/bindings/arm/rockchip.yaml | 5 5 + 0 - 0 !
1 file changed, 5 insertions(+)

 [01/13] dt-bindings: rockchip: add hardkernel odroid-m1 board
features/arm64/arm64 dts rockchip Add Hardkernel ODROID M1 board.patch | (download)

arch/arm64/boot/dts/rockchip/Makefile | 1 1 + 0 - 0 !
arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 414 414 + 0 - 0 !
2 files changed, 415 insertions(+)

 [02/13] arm64: dts: rockchip: add hardkernel odroid-m1 board
features/arm64/arm64 dts rockchip add thermal support to ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 6 6 + 0 - 0 !
1 file changed, 6 insertions(+)

 [03/13] arm64: dts: rockchip: add thermal support to odroid-m1
features/arm64/arm64 dts rockchip Add NOR flash to ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 58 58 + 0 - 0 !
1 file changed, 58 insertions(+)

 [04/13] arm64: dts: rockchip: add nor flash to odroid-m1
features/arm64/arm64 dts rockchip Add analog audio on ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 43 42 + 1 - 0 !
1 file changed, 42 insertions(+), 1 deletion(-)

 [05/13] arm64: dts: rockchip: add analog audio on odroid-m1
features/arm64/arm64 dts rockchip Enable vop2 and hdmi tx on ODROID.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 47 47 + 0 - 0 !
1 file changed, 47 insertions(+)

 [06/13] arm64: dts: rockchip: enable vop2 and hdmi tx on odroid-m1
features/arm64/arm64 dts rockchip Enable HDMI audio on ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 8 8 + 0 - 0 !
1 file changed, 8 insertions(+)

 [07/13] arm64: dts: rockchip: enable hdmi audio on odroid-m1.
features/arm64/arm64 dts rockchip Enable the GPU on ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 5 5 + 0 - 0 !
1 file changed, 5 insertions(+)

 [08/13] arm64: dts: rockchip: enable the gpu on odroid-m1
features/arm64/arm64 dts rockchip Enable the USB 2.0 ports on ODROI.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 61 61 + 0 - 0 !
1 file changed, 61 insertions(+)

 [09/13] arm64: dts: rockchip: enable the usb 2.0 ports on odroid-m1
features/arm64/arm64 dts rockchip Enable the USB 3.0 ports on ODROI.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 49 48 + 1 - 0 !
1 file changed, 48 insertions(+), 1 deletion(-)

 [10/13] arm64: dts: rockchip: enable the usb 3.0 ports on odroid-m1
features/arm64/arm64 dts rockchip Add SATA support to ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 9 9 + 0 - 0 !
1 file changed, 9 insertions(+)

 [11/13] arm64: dts: rockchip: add sata support to odroid-m1
features/arm64/arm64 dts rockchip Add PCIEe v3 nodes to ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 34 34 + 0 - 0 !
1 file changed, 34 insertions(+)

 [12/13] arm64: dts: rockchip: add pciee v3 nodes to odroid-m1
features/arm64/arm64 dts rockchip Add IR receiver node to ODROID M1.patch | (download)

arch/arm64/boot/dts/rockchip/rk3568-odroid-m1.dts | 14 14 + 0 - 0 !
1 file changed, 14 insertions(+)

 [13/13] arm64: dts: rockchip: add ir receiver node to odroid-m1
features/x86/x86 memtest WARN if bad RAM found.patch | (download)

mm/memtest.c | 4 4 + 0 - 0 !
1 file changed, 4 insertions(+)

 x86: memtest: warn if bad ram found
Bug-Debian: https://bugs.debian.org/613321
features/x86/x86 make x32 syscall support conditional.patch | (download)

Documentation/admin-guide/kernel-parameters.txt | 4 4 + 0 - 0 !
arch/x86/Kconfig | 8 8 + 0 - 0 !
arch/x86/entry/common.c | 2 1 + 1 - 0 !
arch/x86/entry/syscall_x32.c | 46 46 + 0 - 0 !
arch/x86/include/asm/elf.h | 6 5 + 1 - 0 !
arch/x86/include/asm/syscall.h | 13 13 + 0 - 0 !
6 files changed, 77 insertions(+), 2 deletions(-)

 x86: make x32 syscall support conditional on a kernel parameter
Bug-Debian: https://bugs.debian.org/708070
bugfix/arm64/arm64 dts rockchip fix spdif fe460000 ordering on rk.patch | (download)

arch/arm64/boot/dts/rockchip/rk356x.dtsi | 28 14 + 14 - 0 !
1 file changed, 14 insertions(+), 14 deletions(-)

 arm64: dts: rockchip: fix spdif@fe460000 ordering on rk356x
features/arm64/quartz64/arm64 dts rockchip RK356x Add I2S2 device node.patch | (download)

arch/arm64/boot/dts/rockchip/rk356x.dtsi | 22 22 + 0 - 0 !
1 file changed, 22 insertions(+)

 arm64: dts: rockchip: rk356x: add i2s2 device node
features/arm64/quartz64/arm64 dts rockchip Enable video output and HDMI on S.patch | (download)

arch/arm64/boot/dts/rockchip/rk3566-soquartz.dtsi | 47 47 + 0 - 0 !
1 file changed, 47 insertions(+)

 arm64: dts: rockchip: enable video output and hdmi on soquartz
features/arm64/quartz64/arm64 dts rockchip Enable HDMI sound on SOQuartz.patch | (download)

arch/arm64/boot/dts/rockchip/rk3566-soquartz.dtsi | 8 8 + 0 - 0 !
1 file changed, 8 insertions(+)

 arm64: dts: rockchip: enable hdmi sound on soquartz
features/arm64/quartz64/arm64 dts rockchip Enable PCIe 2 on SOQuartz CM4IO.patch | (download)

arch/arm64/boot/dts/rockchip/rk3566-soquartz-cm4.dts | 11 11 + 0 - 0 !
arch/arm64/boot/dts/rockchip/rk3566-soquartz.dtsi | 15 15 + 0 - 0 !
2 files changed, 26 insertions(+)

 arm64: dts: rockchip: enable pcie 2 on soquartz cm4io
features/arm64/quartz64/dt bindings arm rockchip Add SOQuartz Blade.patch | (download)

Documentation/devicetree/bindings/arm/rockchip.yaml | 1 1 + 0 - 0 !
1 file changed, 1 insertion(+)

 [1/4] dt-bindings: arm: rockchip: add soquartz blade
features/arm64/quartz64/arm64 dts rockchip Add SOQuartz blade board.patch | (download)

arch/arm64/boot/dts/rockchip/Makefile | 1 1 + 0 - 0 !
arch/arm64/boot/dts/rockchip/rk3566-soquartz-blade.dts | 194 194 + 0 - 0 !
2 files changed, 195 insertions(+)

 [2/4] arm64: dts: rockchip: add soquartz blade board
features/arm64/quartz64/dt bindings arm rockchip Add SOQuartz Model A.patch | (download)

Documentation/devicetree/bindings/arm/rockchip.yaml | 1 1 + 0 - 0 !
1 file changed, 1 insertion(+)

 [3/4] dt-bindings: arm: rockchip: add soquartz model a
features/arm64/quartz64/arm64 dts rockchip Add SOQuartz Model A baseboard.patch | (download)

arch/arm64/boot/dts/rockchip/Makefile | 1 1 + 0 - 0 !
arch/arm64/boot/dts/rockchip/rk3566-soquartz-model-a.dts | 232 232 + 0 - 0 !
2 files changed, 233 insertions(+)

 [4/4] arm64: dts: rockchip: add soquartz model a baseboard
bugfix/all/disable some marvell phys.patch | (download)

drivers/net/phy/marvell.c | 16 13 + 3 - 0 !
1 file changed, 13 insertions(+), 3 deletions(-)

 phy/marvell: disable 4-port phys
Date: Wed, 20 Nov 2013 08:30:14 +0000
Bug-Debian: https://bugs.debian.org/723177
bugfix/all/fs add module_softdep declarations for hard coded cr.patch | (download)

fs/btrfs/super.c | 2 1 + 1 - 0 !
fs/ext4/super.c | 2 1 + 1 - 0 !
fs/jbd2/journal.c | 1 1 + 0 - 0 !
fs/nfsd/nfsctl.c | 3 3 + 0 - 0 !
4 files changed, 6 insertions(+), 2 deletions(-)

 fs: add module_softdep declarations for hard-coded crypto drivers
Bug-Debian: https://bugs.debian.org/819725
features/all/lockdown/efi add an efi_secure_boot flag to indicate secure b.patch | (download)

arch/x86/kernel/setup.c | 14 1 + 13 - 0 !
drivers/firmware/efi/Makefile | 1 1 + 0 - 0 !
drivers/firmware/efi/secureboot.c | 39 39 + 0 - 0 !
include/linux/efi.h | 17 10 + 7 - 0 !
4 files changed, 51 insertions(+), 20 deletions(-)

 [28/30] efi: add an efi_secure_boot flag to indicate secure boot mode
features/all/lockdown/efi lock down the kernel if booted in secure boot mo.patch | (download)

arch/x86/kernel/setup.c | 4 2 + 2 - 0 !
drivers/firmware/efi/secureboot.c | 5 5 + 0 - 0 !
include/linux/security.h | 6 6 + 0 - 0 !
security/lockdown/Kconfig | 15 15 + 0 - 0 !
security/lockdown/lockdown.c | 2 1 + 1 - 0 !
5 files changed, 29 insertions(+), 3 deletions(-)


> UEFI Secure Boot provides a mechanism for ensuring that the firmware will
> only load signed bootloaders and kernels.  Certain use cases may also
> require that all kernel modules also be signed.  Add a configuration option
> that to lock down the kernel - which includes requiring validly signed
> modules - if the kernel is secure-booted.

Signed-off-by: Ben Hutchings <ben@decadent.org.uk>
[Salvatore Bonaccorso: After fixing https://bugs.debian.org/956197 the
help text for LOCK_DOWN_IN_EFI_SECURE_BOOT needs to be adjusted to
mention that lockdown is triggered in integrity mode]
Signed-off-by: Salvatore Bonaccorso <carnil@debian.org>

features/all/lockdown/mtd disable slram and phram when locked down.patch | (download)

drivers/mtd/devices/phram.c | 6 5 + 1 - 0 !
drivers/mtd/devices/slram.c | 9 8 + 1 - 0 !
2 files changed, 13 insertions(+), 2 deletions(-)

 mtd: phram,slram: disable when the kernel is locked down
features/all/lockdown/arm64 add kernel config option to lock down when.patch | (download)

drivers/firmware/efi/efi-init.c | 5 4 + 1 - 0 !
drivers/firmware/efi/fdtparams.c | 12 11 + 1 - 0 !
drivers/firmware/efi/libstub/fdt.c | 6 6 + 0 - 0 !
include/linux/efi.h | 3 2 + 1 - 0 !
4 files changed, 23 insertions(+), 3 deletions(-)

 arm64: add kernel config option to lock down when in secure boot mode
Bug-Debian: https://bugs.debian.org/831827
features/all/db mok keyring/0003 MODSIGN checking the blacklisted hash before loading a kernel module.patch | (download)

kernel/module/signing.c | 61 59 + 2 - 0 !
1 file changed, 59 insertions(+), 2 deletions(-)

 [patch 3/4] modsign: checking the blacklisted hash before loading a
 kernel module
features/all/db mok keyring/KEYS Make use of platform keyring for module signature.patch | (download)

kernel/module/signing.c | 7 7 + 0 - 0 !
1 file changed, 7 insertions(+)

 [patch] keys: make use of platform keyring for module signature
 verify
Bug-Debian: https://bugs.debian.org/935945
Bug-Debian: https://bugs.debian.org/1030200
features/all/db mok keyring/trust machine keyring by default.patch | (download)

security/integrity/platform_certs/machine_keyring.c | 3 1 + 2 - 0 !
1 file changed, 1 insertion(+), 2 deletions(-)

 trust machine keyring (mok) by default
 Debian always trusted keys in MoK by default. Upstream made it conditional on
 a new EFI variable being set. To keep backward compatibility skip this check.