-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 08 Aug 2019 03:02:38 +0100 Source: linux-signed-arm64 Binary: kernel-image-4.19.0-5-arm64-di nic-modules-4.19.0-5-arm64-di nic-wireless-modules-4.19.0-5-arm64-di nic-shared-modules-4.19.0-5-arm64-di usb-serial-modules-4.19.0-5-arm64-di ppp-modules-4.19.0-5-arm64-di cdrom-core-modules-4.19.0-5-arm64-di scsi-core-modules-4.19.0-5-arm64-di scsi-modules-4.19.0-5-arm64-di scsi-nic-modules-4.19.0-5-arm64-di loop-modules-4.19.0-5-arm64-di btrfs-modules-4.19.0-5-arm64-di ext4-modules-4.19.0-5-arm64-di isofs-modules-4.19.0-5-arm64-di jfs-modules-4.19.0-5-arm64-di xfs-modules-4.19.0-5-arm64-di fat-modules-4.19.0-5-arm64-di md-modules-4.19.0-5-arm64-di multipath-modules-4.19.0-5-arm64-di usb-modules-4.19.0-5-arm64-di usb-storage-modules-4.19.0-5-arm64-di fb-modules-4.19.0-5-arm64-di input-modules-4.19.0-5-arm64-di event-modules-4.19.0-5-arm64-di nic-usb-modules-4.19.0-5-arm64-di sata-modules-4.19.0-5-arm64-di i2c-modules-4.19.0-5-arm64-di crc-modules-4.19.0-5-arm64-di crypto-modules-4.19.0-5-arm64-di crypto-dm-modules-4.19.0-5-arm64-di efi-modules-4.19.0-5-arm64-di ata-modules-4.19.0-5-arm64-di mmc-modules-4.19.0-5-arm64-di nbd-modules-4.19.0-5-arm64-di squashfs-modules-4.19.0-5-arm64-di uinput-modules-4.19.0-5-arm64-di compress-modules-4.19.0-5-arm64-di leds-modules-4.19.0-5-arm64-di udf-modules-4.19.0-5-arm64-di fuse-modules-4.19.0-5-arm64-di mtd-core-modules-4.19.0-5-arm64-di linux-image-4.19.0-5-arm64 linux-image-4.19.0-5-rt-arm64 Architecture: source Version: 4.19.37+5+deb10u2 Distribution: buster-security Urgency: high Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org> Changed-By: Ben Hutchings <ben@decadent.org.uk> Description: ata-modules-4.19.0-5-arm64-di - ATA disk modules (udeb) btrfs-modules-4.19.0-5-arm64-di - BTRFS filesystem support (udeb) cdrom-core-modules-4.19.0-5-arm64-di - CDROM support (udeb) compress-modules-4.19.0-5-arm64-di - lzo modules (udeb) crc-modules-4.19.0-5-arm64-di - CRC modules (udeb) crypto-dm-modules-4.19.0-5-arm64-di - devicemapper crypto module (udeb) crypto-modules-4.19.0-5-arm64-di - crypto modules (udeb) efi-modules-4.19.0-5-arm64-di - EFI modules (udeb) event-modules-4.19.0-5-arm64-di - Event support (udeb) ext4-modules-4.19.0-5-arm64-di - ext2/ext3/ext4 filesystem support (udeb) fat-modules-4.19.0-5-arm64-di - FAT filesystem support (udeb) fb-modules-4.19.0-5-arm64-di - Frame buffer support (udeb) fuse-modules-4.19.0-5-arm64-di - FUSE modules (udeb) i2c-modules-4.19.0-5-arm64-di - i2c support modules (udeb) input-modules-4.19.0-5-arm64-di - Input devices support (udeb) isofs-modules-4.19.0-5-arm64-di - ISOFS filesystem support (udeb) jfs-modules-4.19.0-5-arm64-di - JFS filesystem support (udeb) kernel-image-4.19.0-5-arm64-di - Linux kernel image and core modules for the Debian installer (udeb) leds-modules-4.19.0-5-arm64-di - LED modules (udeb) linux-image-4.19.0-5-arm64 - ${unsigned:DescriptionShort} (signed) linux-image-4.19.0-5-rt-arm64 - ${unsigned:DescriptionShort} (signed) loop-modules-4.19.0-5-arm64-di - Loopback filesystem support (udeb) md-modules-4.19.0-5-arm64-di - RAID and LVM support (udeb) mmc-modules-4.19.0-5-arm64-di - MMC/SD card modules (udeb) mtd-core-modules-4.19.0-5-arm64-di - MTD core (udeb) multipath-modules-4.19.0-5-arm64-di - Multipath support (udeb) nbd-modules-4.19.0-5-arm64-di - Network Block Device modules (udeb) nic-modules-4.19.0-5-arm64-di - NIC drivers (udeb) nic-shared-modules-4.19.0-5-arm64-di - Shared NIC drivers (udeb) nic-usb-modules-4.19.0-5-arm64-di - USB NIC drivers (udeb) nic-wireless-modules-4.19.0-5-arm64-di - Wireless NIC drivers (udeb) ppp-modules-4.19.0-5-arm64-di - PPP drivers (udeb) sata-modules-4.19.0-5-arm64-di - SATA drivers (udeb) scsi-core-modules-4.19.0-5-arm64-di - Core SCSI subsystem (udeb) scsi-modules-4.19.0-5-arm64-di - SCSI drivers (udeb) scsi-nic-modules-4.19.0-5-arm64-di - SCSI drivers for converged NICs (udeb) squashfs-modules-4.19.0-5-arm64-di - squashfs modules (udeb) udf-modules-4.19.0-5-arm64-di - UDF modules (udeb) uinput-modules-4.19.0-5-arm64-di - uinput support (udeb) usb-modules-4.19.0-5-arm64-di - USB support (udeb) usb-serial-modules-4.19.0-5-arm64-di - USB serial drivers (udeb) usb-storage-modules-4.19.0-5-arm64-di - USB storage support (udeb) xfs-modules-4.19.0-5-arm64-di - XFS filesystem support (udeb) Changes: linux-signed-arm64 (4.19.37+5+deb10u2) buster-security; urgency=high . * Sign kernel from linux 4.19.37-5+deb10u2 . [ Romain Perier ] * [x86] x86/insn-eval: Fix use-after-free access to LDT entry (CVE-2019-13233) * [powerpc*] mm/64s/hash: Reallocate context ids on fork (CVE-2019-12817) * nfc: Ensure presence of required attributes in the deactivate_target handler (CVE-2019-12984) * binder: fix race between munmap() and direct reclaim (CVE-2019-1999) * scsi: libsas: fix a race condition when smp task timeout (CVE-2018-20836) * Input: gtco - bounds check collection indent level (CVE-2019-13631) * floppy: fix out-of-bounds read in copy_buffer (CVE-2019-14283) * inet: switch IP ID generator to siphash (CVE-2019-10638) * floppy: fix div-by-zero in setup_format_params (CVE-2019-14284) * Bluetooth: hci_uart: check for missing tty operations (CVE-2019-10207) * [powerpc/tm] Fix oops on sigreturn on systems without TM (CVE-2019-13648) . [ Salvatore Bonaccorso ] * [x86] cpufeatures: Carve out CQM features retrieval * [x86] cpufeatures: Combine word 11 and 12 into a new scattered features word * [x86] speculation: Prepare entry code for Spectre v1 swapgs mitigations * [x86] speculation: Enable Spectre v1 swapgs mitigations (CVE-2019-1125) * [amd64] entry: Use JMP instead of JMPQ * [x86] speculation/swapgs: Exclude ATOMs from speculation through SWAPGS * Documentation: Add section about CPU vulnerabilities for Spectre * Documentation: Add swapgs description to the Spectre v1 documentation . [ Ben Hutchings ] * [x86] cpufeatures: Avoid ABI change for swapgs mitigations: - Move swapgs feature bits to existing scattered words - Revert "x86/cpufeatures: Combine word 11 and 12 into a new scattered features word" * inet: Avoid ABI change for IP ID hash change Checksums-Sha1: e1db16f1d2588e2b869dfe50e21c5bb0a013c09d 6565 linux-signed-arm64_4.19.37+5+deb10u2.dsc 218d38638b3ca19af36a5bd511b31eb2a151dd29 1816476 linux-signed-arm64_4.19.37+5+deb10u2.tar.xz Checksums-Sha256: 1b2b0e54824021f7bd18cd2ac4accd73d9afd6cabf0650768a39d074ee7af9b5 6565 linux-signed-arm64_4.19.37+5+deb10u2.dsc 9c37df07203707b1353a73cc05882169603adc0549a7e4c605cc00d374d7daf1 1816476 linux-signed-arm64_4.19.37+5+deb10u2.tar.xz Files: d0e20e5c9a116054fe8339a243fa6fa3 6565 kernel optional linux-signed-arm64_4.19.37+5+deb10u2.dsc e9e5c7c97ec9fb61295e256a18d81154 1816476 kernel optional linux-signed-arm64_4.19.37+5+deb10u2.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEE8nXL3e4u3Tgu6Vp6qgZoiu+K+NUFAl1Msh0ACgkQqgZoiu+K +NVfhw/+MXL0BDVWQ5Jdjsb3kR+eJ9lCUH4hLvE9xPVUHKdaEDweCVSXX8tOvMMe 1jrVrKFs5WRpAz5KYbZ1qs/ro8VNfEGzUn+q1ezx3kucjv6gzq6UtCBW1Vsv+ejz cwwqCcltspu8pWGUGRX+Jsrys/XnuGfQk2G2WjevljG+zVwMGUK8AvNq0sUP+pY8 quTLk9qUB2b3fGEwYre4KdD4Gxlnhyru5jDAZst5e4iQI4W4Exc8vlv0mJJJMqBP goimLhB+9jMdpSu2z3jEBoBRaxDbxv719selxpDMBv9ts4HLHDVUbiKq8qwEjz3a cyLALbNDYrxg7eZ0o0raEv2DNYvUAljtmZh+vnDoA4XQdsD1j3xAB919jr14s/hb a9p69GpHGcxgPcXlXJyZ8dhkSHvGY4DLd7Yp0Loy6mzB7/GulH+nyVmeaw/E1oKD sZU1kLDSymzw4egYlpuHvcaMVqCmvZXrJvDovIV0Lc70wS4nkhzN8PKcZL834eD2 +ix2QjFKsJeZJ82HDRpCxxflGbpMluQRti0VX4VR9iMNnvUUwk1yAsSzGngHmWyY k09+no3ZEbg5qeGnDQscnX3Gt+WmXhLhkHI4muRWAqDYHxica//1rrVujK5OuNY3 jCv+W4h2CMgUG7E75WSnjJ2U8UsTLH+QFm6unY15obp4nzstMFc= =8LWp -----END PGP SIGNATURE-----