-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 06 Jun 2022 20:45:23 +0200 Source: linux-signed-amd64 Architecture: source Version: 5.18.2+1 Distribution: sid Urgency: medium Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Changes: linux-signed-amd64 (5.18.2+1) unstable; urgency=medium . * Sign kernel from linux 5.18.2-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.18.1 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.18.2 - netfilter: nf_tables: disallow non-stateful expression in sets earlier (CVE-2022-1966) - pipe: Fix missing lock in pipe_resize_ring() (ZDI-CAN-17291) - netfilter: nf_tables: sanitize nft_set_desc_concat_parse() (CVE-2022-1972) - [x86] fpu: KVM: Set the base guest FPU uABI size to sizeof(struct kvm_xsave) (Closes: #1011168) - KVM: x86: avoid calling x86 emulator without a decoded instruction (CVE-2022-1852) . [ Diederik de Haas ] * [arm64,armel.marvell] Remove duplicate MTD_SPI_NOR config option * [arm64] Remove duplicate CAN_MCP251X config option * drivers/net/can/spi: Enable CAN_HI311X as module (Closes: #927252) . [ Henning Schild ] * [x86] drivers/platform/x86: Enable SIEMENS_SIMATIC_IPC as module * [x86] drivers/leds: Enable LEDS_SIEMENS_SIMATIC_IPC as module * [x86] drivers/wdt: Enable SIEMENS_SIMATIC_IPC_WDT as module . [ Lubomir Rintel ] * [x86] Enable X86_ANDROID_TABLETS as a module . [ Michal Simek ] * [arm64] Enable Xilinx PHY driver and SI5341 clock driver . [ Zhang Ning ] * [arm64] Enable COMMON_CLK_PWM which is needed for some Amlogic SBCs * [arm64] Enable Khadas MCU and fan * [arm64] cpufreq: Enable SCPI cpufreq driver * [arm64] cpuidle: Enable CONFIG_ARM_PSCI_CPUIDLE . [ Ben Hutchings ] * drivers/firmware: Build ISCSI_IBFT as module on all architectures with ACPI. Thanks to Eric Mackay. (Closes: #1008933). * intel-iommu: Correct matching of the "intgpu_off" option value. Thanks to Markus Kolb. * random: Enable RANDOM_TRUST_BOOTLOADER. This can be reverted using the kernel parameter: random.trust_bootloader=off . [ Bastian Blank ] * [amd64] Enable X86_SGX. . [ Salvatore Bonaccorso ] * block, loop: support partitions without scanning (Closes: #1012298) * Set ABI to 1 Checksums-Sha1: 1a57e121452c8410505ad897ceb20ba0bf40997a 8479 linux-signed-amd64_5.18.2+1.dsc 3500e80aa34d8efaec51fd85d9e6987a63702e05 2865724 linux-signed-amd64_5.18.2+1.tar.xz Checksums-Sha256: d107794259881658f06752d1fab50665ad51598e1d27b7ab60e8407921ffb263 8479 linux-signed-amd64_5.18.2+1.dsc 3b7a44c3ada09e3f3c2fbe00605607742e036293be05ad7759d6aeb33fa5ee94 2865724 linux-signed-amd64_5.18.2+1.tar.xz Files: e4ef90fbb95f586a0d1fa35d386bfbb9 8479 kernel optional linux-signed-amd64_5.18.2+1.dsc 0d30d3a23682cad973dfd40ec39ce91d 2865724 kernel optional linux-signed-amd64_5.18.2+1.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEfKFfvHEI+gkU+E+di0FRiLdONzYFAmKfDnQACgkQi0FRiLdO NzaYaQ//RQNpUyyVH/XMtMXgCkO9pXRSe3Vum7mTKpNmKet4nOx7D0h23BwLJ4NJ twJXGlpS9SlXil5Rco0ci4s5YUtKMzDYnfcFaz4OnQx5GE3HIs3I9WRroJmv4lVB mpi2pNNppCSBCMpw27LZ/9+pcZRi2if0+A2MYcE9u1+TlLCys1Z5jX9cLvNW/0/Y taB3+T4qBQNr3JkocuznxC5PgOLD46M1D1J+DIwOKF/i0C30QWXDMNJIc81ba5Uy tUVChvlHO6QPcEpHNqCfMYr/8EZE8Mh0KU6ywERFXjeTxqZU/flzY09bx+dLjeCh YcjXfPOR3yHz9Xv3XKHnum3eaGL/54cDEFwZoj+0LRXKgUOpdyXhisxU7aAVOP9H lKB+YkTaZ7pPiQiPKVCHoDjWaYCp6sVkOiisTJhljp5UTYMggDBYJoERsvo0HXOp rvC7PECJdi6gz44IEQJiqrNWc5ofdnorYYSBqhndSVUNKH2GM+bPiDx2Mq26zXU1 IsnC8SNWCN984zGIp1XgYkVr5ri8JN2mg4m2Cdfkm3RbQyk/g9pg77Vazda8RVGY ApJC/RHoCZTkacAUygf3NAVkleUKWhm/zP6+iS31kwDY3mcr/9IND51Zo/cOcsD5 bmxLXaDgXxidxDsMtRn70bXQNJ5vxnd4B9STniI46OqQm1Hq5Xc= =oSEQ -----END PGP SIGNATURE-----