Changelog
linux (3.11.10-1) unstable; urgency=medium
* New upstream stable update:
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.11.9
- net/mlx4_core: Fix call to __mlx4_unregister_mac
- net: sctp: do not trigger BUG_ON in sctp_cmd_delete_tcb
- cxgb3: Fix length calculation in write_ofld_wr() on 32-bit architectures
- tcp: gso: fix truesize tracking
- xen-netback: Handle backend state transitions in a more robust way
- xen-netback: transition to CLOSED when removing a VIF
- [x86] hyperv-fb: add pci stub
- tracing: Fix potential out-of-bounds in trace_get_user()
- perf: Fix perf ring buffer memory ordering
http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.11.10
- ACPICA: DeRefOf operator: Update to fully resolve FieldUnit and
BufferField refs.
- libertas: potential oops in debugfs (CVE-2013-6378)
- aacraid: prevent invalid pointer dereference
- ACPICA: Return error if DerefOf resolves to a null package element.
- ACPICA: Fix for a Store->ArgX when ArgX contains a reference to a field.
- USB: mos7840: fix tiocmget error handling
- Btrfs: relocate csums properly with prealloc extents
- [s390,s390x] crypto: s390 - Fix aes-cbc IV corruption
- can: c_can: Fix RX message handling, handle lost message before EOB
- ipc,shm: correct error return value in shmctl (SHM_UNLOCK)
- ipc,shm: fix shm_file deletion races
- drm/nvc0-/gr: fix a number of missing explicit array terminators...
- sched, idle: Fix the idle polling state logic
- [x86] ACPI / EC: Ensure lock is acquired before accessing ec struct
members
- [x86] ACPI / video: Quirk initial backlight level 0
- Staging: zram: Fix access of NULL pointer
- Drivers: hv: vmbus: Fix a bug in channel rescind code
- rt2x00: fix a crash bug in the HT descriptor handling fix
- Bluetooth: revert: "Bluetooth: Add missing reset_resume dev_pm_ops"
- exec/ptrace: fix get_dumpable() incorrect tests (CVE-2013-2929)
[ Ben Hutchings ]
* net: clamp ->msg_namelen instead of returning an error
* tcp: tsq: restore minimal amount of queueing
* rds: prevent BUG_ON triggered on congestion update to loopback
(CVE-2012-2372)
* ipv6: fix headroom calculation in udp6_ufo_fragment (CVE-2013-4563)
* [s390,s390x] qeth: avoid buffer overflow in snmp ioctl (CVE-2013-6381)
* xfs: underflow bug in xfs_attrlist_by_handle() (CVE-2013-6382)
* [x86] Enable CHROMEOS_LAPTOP as module (Closes: #731271)
- iio/light: Enable SENSORS_TSL2563, SENSORS_ISL29018, TSL2583 as modules
-- Ben Hutchings <email address hidden> Wed, 04 Dec 2013 14:49:01 +0000