-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 24 Jul 2022 00:32:10 +0200 Source: linux-signed-i386 Architecture: source Version: 5.10.127+2 Distribution: bullseye-security Urgency: high Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org> Changed-By: Ben Hutchings <benh@debian.org> Changes: linux-signed-i386 (5.10.127+2) bullseye-security; urgency=high . * Sign kernel from linux 5.10.127-2 . * [amd64,arm64,armhf] wireguard: Clear keys after suspend despite CONFIG_ANDROID=y * netfilter: nf_tables: stricter validation of element data (CVE-2022-34918) * net: rose: fix UAF bugs caused by timer handler (CVE-2022-2318) * net: rose: fix UAF bug caused by rose_t0timer_expiry * xen/{blk,net}front: fix leaking data in shared pages (CVE-2022-26365, CVE-2022-33740) * xen/{blk,net}front: force data bouncing when backend is untrusted (CVE-2022-33741, CVE-2022-33742) * xen-netfront: restore __skb_queue_tail() positioning in xennet_get_responses() (CVE-2022-33743) * [arm64,armhf] xen/arm: Fix race in RB-tree based P2M accounting (CVE-2022-33744) * fbdev: fbmem: Fix logo center image dx issue * fbdev: Fix potential out-of-bounds writes (CVE-2021-33655): - fbmem: Check virtual screen sizes in fb_set_var() - fbcon: Disallow setting font bigger than screen size - fbcon: Prevent that screen size is smaller than font size Checksums-Sha1: ba5df3057837d993b84e882d6c02a2078361d91c 14265 linux-signed-i386_5.10.127+2.dsc 868714800749dfa977fa424e593260c63a7c13a3 3723236 linux-signed-i386_5.10.127+2.tar.xz Checksums-Sha256: 05c151ff63e404f9250b99828ae277b9c77326d73c75f753ca3b498a1280a2ab 14265 linux-signed-i386_5.10.127+2.dsc e7c513cc233a6cfa1abac83b93445f71cc368ced1f14eaf8131b4586889d2a87 3723236 linux-signed-i386_5.10.127+2.tar.xz Files: 7a0a02d1c5de8954a0b6b343341817b6 14265 kernel optional linux-signed-i386_5.10.127+2.dsc 2fdf1ee5748894a735ad79017e13cfe1 3723236 kernel optional linux-signed-i386_5.10.127+2.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEfKFfvHEI+gkU+E+di0FRiLdONzYFAmLfVXoACgkQi0FRiLdO NzYQFBAAivB+/18X3p30lD3+NhdX3DEhIn4fIVt0OewCgyiU+cxUG1kLGWuXsrkf Y38M8/hQaGLCax+2971asqjerRe05E64LnyqwcUEcvpqpnZIH5xeEQkLMcNAlBN6 JHOrS4u1gHXiZFN6pXwLfx9WVTr3S4wUIwOvKrovVn2qs/eNw5mPytEYYtXQWBqB t9NdmQevmNVpXeRS4B2OZjBHYq15yfm9xJcPx5H1QZCwOufco/D1FzJRptEtkBIv +vWTVjzJ+xtejyQq9EWw212b/wckJQETd4L8AVcwYyCNyYRv3lNwys2TFbZegI0Z fY8dccmKvPt8BS6W8unDL2GtGhRWgSvZ+P3LqfAcoQ6Exr0eUUr+xPg/jQhjARv3 t0kTTjwm6rav5YWDw1dKIWOf7uPICK6MudZla40tB3GmM+O7t7NHKJF0FvAoNhP+ WioI+Ct9ngHkJHCP8kv74X5+MdK5+fUsE/BONVBbGIKNZ5JsXPCqJGb6FJMQ2UsB GNPCKyzG5hou4IYhmO9a+VDiQHQMrVlYFJ3tEeAdzExkH+arChgymu3cy5Qgaeht nuxBDmlzyP20qLdgeFzZl0l/OpPFToSg7qj9zRJTUFQxkiPVC/9KsbmsAz+LvkDC 32i3LoeOF+9FLp4RsEMWalFQQfx1QbEYa88EhTe6HB8wuXxE42U= =f3C6 -----END PGP SIGNATURE-----