-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 19 Dec 2021 00:20:10 +0100 Source: linux Architecture: source Version: 5.15.5-2 Distribution: unstable Urgency: medium Maintainer: Debian Kernel Team <debian-ker...@lists.debian.org> Changed-By: Salvatore Bonaccorso <car...@debian.org> Closes: 988044 1001128 Changes: linux (5.15.5-2) unstable; urgency=medium . * atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait (CVE-2021-43975) * fget: check that the fd still exists after getting a ref to it (CVE-2021-4083) * USB: gadget: detect too-big endpoint 0 requests (CVE-2021-39685) * USB: gadget: zero allocate endpoint 0 buffers (CVE-2021-39685) * [x86] Revert "drm/i915: Implement Wa_1508744258" (Closes: #1001128) * nfsd: fix use-after-free due to delegation race (Closes: #988044) * bpf: Fix kernel address leakage in atomic fetch * bpf: Fix signed bounds propagation after mov32 * bpf: Make 32->64 bounds propagation slightly more robust * bpf: Fix kernel address leakage in atomic cmpxchg's r0 aux reg Checksums-Sha1: d68f2ae5d3548653b74dcb747de95efedb020acb 194397 linux_5.15.5-2.dsc c06d9fe53dd5e4c18c68908f9f8f9bae4e397c1f 3989552 linux_5.15.5-2.debian.tar.xz 50f7e99eb4498ccfb1ed25ca469ae8f4cb02cc20 6360 linux_5.15.5-2_source.buildinfo Checksums-Sha256: 418e26862b7eb77a7412cfd405c4320a9e79733b0a440ead5a4e31dae63640cc 194397 linux_5.15.5-2.dsc 400be7035b1dadef34f06dbfcc008f0cc380ee09d3f096b6b5cc5fc5e319f656 3989552 linux_5.15.5-2.debian.tar.xz e207b81b9f7cd5228137b676c4e63a7f95255f4d2beb86b5d8216a6ceeb9b5b1 6360 linux_5.15.5-2_source.buildinfo Files: 2441961f5584a913a908b43b7a1748dd 194397 kernel optional linux_5.15.5-2.dsc d203b366ff7d2aaf358d4f9e5aca4acb 3989552 kernel optional linux_5.15.5-2.debian.tar.xz ac2f70eb76d4b19c3e8cd1f47aa12908 6360 kernel optional linux_5.15.5-2_source.buildinfo
-----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmG+bSdfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89EMHgQAJxjmrIKfOBlXAydYK3aHPN34aDCCVLY rpziGOvdd8EpgYOUwT05pw4BQgtmff0sAT/ifWFa9QfLZrwSqneHHJjX5BF774ST iBzGd/fga8eqjvczh7vRYiM5Q7UwLo/unl0OXle9pb8QKSmr/OUm1MMl07ie3dff 7Mh0mIlozTS5Cwqjw38Eu1zwCUajrrvZyYbnOfv5rIpqJGEcWsT7+2GXi7p6QLdk jXTUPDzCzCh1b5IXBA6e/O/2E320IzA3pmE/KUV6FACm0SPaturWnMxgHCxdsC5M bMhLuikHYimkkXmVr3v/ZP59QZ7Q89806V0pO2o16c/5LwoyGL8Dxfzpof+JsSAz FCD8RhKJUR6LsGHyYoJHjX6Ka4d3I5JVujOuPG7oIjudnVKW5Yx/PA2RjmHXl2sI k5ga1FfGLtPgTXddzlxdXZaV//wQsLe5+IVMgW9V9qy6nQSTPZ5wtzg34JbI7dxS ecXtFOg1+kJe/ApJ0cy82VK4gTcd0NPlEAPNqA9nNbVKnM5Imdj0lNC2bARtJMUu FNF8btMfxG72ubmxgE4bZdFJJjZZ1OVaXgdL5uw6frMFaBwENgz1j/rCd6Jflywa cJJbuEOdOo8mBTlCANYTcMKSb2xMB1VoQ5tJ6sasbQr6TiDS9A5sBdXMnm2AMP7P LdlKNfqa+TTB =dgva -----END PGP SIGNATURE-----