------------------------------------------------------------------ --- Changelog.all ----------- Wed Jun 24 17:28:46 UTC 2015 ------ ------------------------------------------------------------------ ------------------------------------------------------------------ ------------------ 2015-6-18 - Jun 18 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Delete patches.suse/scsi-Debug-sg-tablesize-mismatch.patch (bsc#935120). - commit 4b89d0c ------------------------------------------------------------------ ------------------ 2015-6-17 - Jun 17 2015 ------------------- ------------------------------------------------------------------ ++++ mvapich2: - Use the right option to build shared libraries. ++++ postgresql94-libs: - Re-enable running the test suite during build. - Fix false positive in security_label in the test package. ++++ python-httplib2: - Release for BDK 11-SP3 to sync arches on 11-SP4 (bsc#934450) ------------------------------------------------------------------ ------------------ 2015-6-16 - Jun 16 2015 ------------------- ------------------------------------------------------------------ ++++ lapack: - Release for BDK 11-SP3 to sync arches on 11-SP4 (bsc#934807) ++++ sax2: - n_For-KMS-inactivate-the-resolution-selection.patch * For KMS inactivate the resolution selection KMS either uses the native, the modesetting or the fbdev driver. For the first two one can use RandR to change resolution, for the latter one there is no way of setting the resolution at all (bsc#928621). ------------------------------------------------------------------ ------------------ 2015-6-15 - Jun 15 2015 ------------------- ------------------------------------------------------------------ ++++ mvapich2: - Add three patches that didn't make it into the package: mvapich2-fix_quoting_in_configure.patch fixes quoting in configure.ac mvapich2-return_value.patch fixes missing return values. mvapich-no_implicit_decls.patch includes headers and adds prototypes as needed to not get warnings about implicit declarations. ++++ yast2-ca-management: - bnc#922765 - changed default TLD from .site to .suse - 2.17.27 ++++ yast2-dns-server: - bnc#922765 - changed default TLD from .site to .suse - 2.17.24 ------------------------------------------------------------------ ------------------ 2015-6-13 - Jun 13 2015 ------------------- ------------------------------------------------------------------ ++++ yast2: - bnc#922765 - changed default TLD from .site to .suse - 2.17.140 ------------------------------------------------------------------ ------------------ 2015-6-11 - Jun 11 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - scsi: Debug sg tablesize mismatch (bsc#933782). - commit cb4c719 ++++ postgresql94-libs: - Bugfix release 9.4.4: * Fix possible failure to recover from an inconsistent database state. * Fix rare failure to invalidate relation cache init file. * Avoid deadlock between incoming sessions and CREATE/DROP DATABASE. * Improve planner's cost estimates for semi-joins and anti-joins with inner indexscans - For the full release notse, see: http://www.postgresql.org/docs/9.4/static/release-9-4-4.html - Let the devel package also accept newer versins of libpq and libecpg (bnc#907651). ------------------------------------------------------------------ ------------------ 2015-6-10 - Jun 10 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - iscsi_ibft: Define missing 'ibft_addr' (bsc#932047). - commit f64b71d - fixup iBFT support on ia64 (bsc#932047) * Update config files. * Refresh patches.suse/firmware-iBFT-firmware-is-also-supported-on-EFI-mach.patch. - commit 15d79c2 ------------------------------------------------------------------ ------------------ 2015-6-9 - Jun 9 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - s390/pci: fix possible information leak in mmio syscalls (bnc#932697, LTC#125551). - commit ce696e4 - Revert "pipe: fix iov overrun for failed atomic copy (bsc#933429" This reverts commit 78ad0e0150743d08ba00865f0e5f3480c9bed132. - commit fa66b2d - Re-arrange scsi/libiscsi kabi fix (bsc#920907) This commit alters 3 existing patches and adds one new one. The end result (the code) is the same, except that sections of scsi code that reference unused sysfs attributes have the ifdef removing them changed from "#if 0" to "#ifdef SYSFS_UNUSED_ATTRS". Changes: - patches.drivers/ib-iser-add-discovery-support - rebased - patches.drivers/libiscsi-exporting-new-attrs-for-iscsi-session-and-connection-in-sysfs, and patches.drivers/scsi_transport_iscsi-exporting-new-attrs-for-iscsi-session-and-connection-in-sysfs - removed the "#if 0"s added to remove unused sysfs fields - patches.suse/scsi-limit-kabi-changes-to-discovery-session - new patch created to ifdef out unused sysfs fields, as well as put "#ifndef __GENKSYMS__" around kabi-sensitive changes - commit 4f1ceb0 ++++ kiwi: - v5.05.89 released - fix version detection for src rpms ++++ sensors: - lm_sensors-r6282-detect-graphics-card-in-all-cases.patch: sensors-detect: Detect graphics card in all cases (bsc#933072). - lm_sensors-r6283-skip-addresses-0x37-0x4f-on-DDC.patch: sensors-detect: Skip addresses 0x37 and 0x4f on DDC channels (bsc#933072). ++++ parted: - libparted: partitions on MDRAID have the form of 'mdXpY' (bnc#933125) - libparted-fix-md-partition-name.patch ------------------------------------------------------------------ ------------------ 2015-6-8 - Jun 8 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - pipe: fix iov overrun for failed atomic copy (bsc#933429 CVE-2015-1805). - commit 78ad0e0 - iommu/amd: Handle integer overflow in dma_ops_area_alloc (bsc#931538). - commit 41c202c - e1000e: Bump the version to 3.2.5 (bug#923242). - e1000e: fix unit hang during loopback test (bug#923242). - e1000e: fix systim issues (bug#923242). - e1000e: fix legacy interrupt handling in i219 (bug#923242). - e1000e: fix flush_desc_ring implementation (bug#923242). - e1000e: fix logical error in flush_desc_rings (bug#923242). - e1000e: remove call to do_div and sign mismatch warning (bug#923242). - e1000e: i219 execute unit hang fix on every reset or power state transition (bug#923242). - e1000e: i219 fix unit hang on reset and runtime D3 (bug#923242). - e1000e: fix call to do_div() to use u64 arg (bug#923242). - e1000e: Cleanup handling of VLAN_HLEN as a part of max frame size (bug#923242). - e1000e: NVM write protect access removed from SPT HW (bug#923242). - e1000e: call netif_carrier_off early on down (bug#923242). - commit 8f215b6 ++++ sax2: - n_Use-modesetting-for-ast.patch * Use modesetting instead of fbdev driver for "ast" in secure boot mode (bnc#927399) - n_Fix-applying-profiles-for-ast-driver.patch * profiles weren't applied for ast driver due to a typo in the driver map (driver entry "ast:" instead of "ast"); this resulted in using "ast" instead of "fbdev" driver for configuration on AST machines in secureboot mode (bsc#927399) ------------------------------------------------------------------ ------------------ 2015-6-5 - Jun 5 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - client MUST ignore EncryptionKeyLength if CAP_EXTENDED_SECURITY is set (bnc#932348). - commit 1c52cc6 - kabi/severities: The IPMI driver subdirectory is self-contained, ignore KABI changes. - commit 1937b91 - firmware: iBFT firmware is also supported on EFI machines with ACPI (bsc#932047). - Update config files. - commit f79d123 - Fixing kabi breakage from previous fix (bsc#920907) ifdefed-out non-needed parts of two patches, to minimize kabi changes, used ifdef to protect remaining new enum and struct field, and refreshed ib-iser-add-discovery-support - commit 5d053d9 ++++ linuxrc: - move fcoe & iscsi detection to a place where all required modules have been loaded (bsc#929974, bsc#874522) - 3.3.108 ++++ yast2-network: - bnc#923990 - replaced already registered ".site" TLD with ".suse" - 2.17.208 ------------------------------------------------------------------ ------------------ 2015-6-4 - Jun 4 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Btrfs: fix up bounds checking in lseek (bnc#916521). - commit 11b0058 ++++ util-linux: - Update and fix mount XFS documentation (bsc925705, util-linux-mount-man-xfs.patch). ------------------------------------------------------------------ ------------------ 2015-6-3 - Jun 3 2015 ------------------- ------------------------------------------------------------------ ++++ freetype2: - Modified patch: * CVE-2014-9671.patch - Correct the code to correspond to the logic of freetype2 git master (fixes bsc#930711) ++++ java-1_7_1-ibm: - Filter out cuda requires/provides as it ain't provided in SUSE bnc#931693 ++++ kernel-docs: - ipr: Increase default adapter init stage change timeout (bsc#930761). - commit 31989f1 - audit: keep inode pinned (bsc#851068). - commit 09b646d ------------------------------------------------------------------ ------------------ 2015-6-2 - Jun 2 2015 ------------------- ------------------------------------------------------------------ ++++ e2fsprogs: - badblocks-Use-ext2fs_get_device_size2.patch: badblocks: Use ext2fs_get_device_size2() (bsc#932539) ++++ java-1_7_1-ibm: - Version bump to 7.1-3.0 release bnc#930365 CVE-2015-0192 CVE-2015-2808 CVE-2015-1914 CVE-2015-0138 - Fix removeing links before update-alternatives run. bnc#931702 - Fix bnc#912434, javaws/plugin stuff should slave plugin update-alternatives - Fix bnc#912447, use system cacerts ++++ kernel-docs: - IB/iser: Enable iser when FMRs are not supported (bnc#930274). - commit de0f520 - Import kabi files from RC2 - commit 14ecf27 - IB/iser: Add Discovery support (bsc#920907). - libiscsi: Exporting new attrs for iscsi session and connection in sysfs (bsc#920907). - scsi_transport_iscsi: Exporting new attrs for iscsi session and connection in sysfs (bsc#920907). - IB/iser: Move informational messages from error to info level (bsc#920907). - commit da9d2fb ++++ postgresql94-libs: - Bugfix release 9.4.3: * Avoid failures while fsync'ing data directory during crash restart. * Fix pg_get_functiondef() to show functions' LEAKPROOF property, if set. * Fix pushJsonbValue() to unpack jbvBinary objects. - For the full release notse, see: http://www.postgresql.org/docs/9.4/static/release-9-4-3.html - Revert the master name for update-alternatives back to psql to avoid a dependency conflict with 8.3 packages that might still be installed. ++++ yast2: - bnc#932446, bnc#868001 - Check IPv4 and IPv6 for running network. - 2.17.139 ------------------------------------------------------------------ ------------------ 2015-6-1 - Jun 1 2015 ------------------- ------------------------------------------------------------------ ++++ java-1_7_1-ibm: - Add condition for fdupes to build on SLE10 ++++ xen: - bsc#932996 - VUL-0: CVE-2015-4164: XSA-136: xen: DoS through iret hypercall handler xsa136.patch ------------------------------------------------------------------ ------------------ 2015-5-29 - May 29 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - rtlwifi: rtl8192cu: Fix kernel deadlock (bnc#927786). - commit 00ed9b1 ++++ sg3_utils: - Ported patches from SLES12: * Correctly ignore invalid VPD pages (bnc#907049) Add: 0001-Correctly-ignore-invalid-VPD-entries.patch * sg_inq: Differentiate between NAA VPD descriptor types (bnc#907483) Add: 0002-sg_inq-Differentiate-between-NAA-VPD-descriptor-type.patch * rescan-scsi-bus.sh: set IPTYPE and IPQUAL on failure (bnc#903329) Add: 0003-rescan-scsi-bus.sh-set-IPTYPE-and-IPQUAL-on-failure.patch * Add option '--issue-lip-wait' to rescan-scsi-bus.sh (bnc#903332) Add: 0004-Add-option-issue-lip-wait-to-rescan-scsi-bus.sh.patch * Allow spaces in type comparison (bnc#903323) Add: 0005-Allow-spaces-in-type-comparison.patch * Use upstream version for fixing VPD page decoding Add: 0006-Use-upstream-fix-for-VPD-decoding.patch - rescan-scsi-bus.sh: Check for temporary file before deleting (bsc#917049) Add: 0007-rescan-scsi-bus.sh-Check-for-temporary-file-before-d.patch - sg_turs: return 'not ready' for blocked devices (bsc#903332) Add: 0008-sg_turs-return-not-ready-for-blocked-devices.patch - sg_inq: udev-conformant character encoding for --export (bsc#917011) Add: 0009-sg_inq-udev-conformant-character-encoding-for-export.patch - rescan-scsi-bus.sh: use 'IPTYPE=31' (bsc#903329) Add: 0010-rescan-scsi-bus.sh-use-IPTYPE-31.patch ++++ xen: - bsc#932770 - VUL-0: CVE-2015-3209: XSA-135: qemu,xen,kvm: heap overflow in qemu pcnet controller allowing guest to host escape xsa135-qemut-1.patch xsa135-qemut-2.patch xsa135-qemuu-4.5-1.patch xsa135-qemuu-4.5-2.patch - bsc#932790 - VUL-0: CVE-2015-4163: XSA-134: xen: GNTTABOP_swap_grant_ref operation misbehavior xsa134.patch - bsc#931628 - VUL-0: CVE-2015-4106: XSA-131: xen: Unmediated PCI register access in qemu xsa131-qemut-1.patch xsa131-qemut-2.patch xsa131-qemut-3.patch xsa131-qemut-4.patch xsa131-qemut-5.patch xsa131-qemut-6.patch xsa131-qemut-7.patch xsa131-qemut-8.patch xsa131-qemuu-2.patch xsa131-qemuu-3.patch xsa131-qemuu-4.4-1.patch xsa131-qemuu-4.patch xsa131-qemuu-5.patch xsa131-qemuu-6.patch xsa131-qemuu-7.patch xsa131-qemuu-8.patch - bsc#931627 - VUL-0: CVE-2015-4105: XSA-130: xen: Guest triggerable qemu MSI-X pass-through error messages xsa130-qemut.patch xsa130-qemuu.patch - bsc#931626 - VUL-0: CVE-2015-4104: XSA-129: xen: PCI MSI mask bits inadvertently exposed to guests xsa129-qemut.patch xsa129-qemuu.patch - bsc#931625 - VUL-0: CVE-2015-4103: XSA-128: xen: Potential unintended writes to host MSI message data field via qemu xsa128-qemut.patch xsa128-qemuu.patch ------------------------------------------------------------------ ------------------ 2015-5-28 - May 28 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - mlx4_core: Fix fallback from MSI-X to INTx (bug#930480). - commit de81b4a - be2net: implement .sriov_configure() PCI callback (bug#908322 FATE#317535). - be2net: re-distribute SRIOV resources allowed by FW (bug#908322 FATE#317535). - be2net: avoid creating the non-RSS default RXQ if FW allows to (bug#908322 FATE#317535). - be2net: move interface create code to a separate routine (bug#908322 FATE#317535). - commit 84dfc25 - Refresh patches.fixes/deal-with-deadlock-in-d_walk-fix.patch. based on 3.2 stable fix 20defcec264c ("dcache: Fix locking bugs in backported "deal with deadlock in d_walk()""). Not harmfull for regular SLES kernels but RT or PREEMPT kernels would see disbalance. - commit 4d6cb73 ++++ util-linux: - Fix recognition of /dev/dm-N partitions names (bsc#931607#c9, util-linux-fdisk-dm-partname.patch). - Fix util-linux-wholedisk-device-mapper.patch (bsc#923904#c25). ++++ libgtop: - Revert GLIBTOP_NCPU to 256. This is part of the library ABI and changing it would require rebuilding all applications that use the glibtop_cpu structure. (bsc#929509) ++++ xen: - bsc#932224 - xm vncviewer - when virtual-manager was used before, the xm vncviewer crashes ioemu-vnc-clear-WMVi-flag.patch ------------------------------------------------------------------ ------------------ 2015-5-27 - May 27 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Btrfs: fix race when reusing stale extent buffers that leads to BUG_ON. - Btrfs: btrfs_release_extent_buffer_page didn't free pages of dummy extent (bnc#930226 bnc#916521). - commit 5e89917 - x86, mce: Introduce mce_gather_info() (bsc#914987). - x86/mce: Fix mce regression from recent cleanup (bsc#914987). - x86/mce: Update MCE severity condition check (bsc#914987). - commit 41e1045 - Update patches.arch/kvm-x86-improve-thread-safety-in-pit.patch (CVE-2014-3611 bnc#899192). Update references and upstream status. - commit 5d40f8c ------------------------------------------------------------------ ------------------ 2015-5-26 - May 26 2015 ------------------- ------------------------------------------------------------------ ++++ e2fsprogs: - libext2fs-fix-potential-buffer-overflow-in-closefs.patch: libext2fs: fix potential buffer overflow in closefs() (bsc#918346 CVE-2015-1572) - libext2fs-avoid-buffer-overflow-if-s_first_meta_bg-i.patch: libext2fs: avoid buffer overflow if s_first_meta_bg is too big (bsc#915402 CVE-2015-0247) ++++ kernel-docs: - crypto: s390 - fix incorrect ghash icv buffer handling (bnc#932055, LTC#125410). - commit b320d03 - st: fix corruption of the st_modedef structures in st_set_options() (bnc#928333). - commit d766098 ------------------------------------------------------------------ ------------------ 2015-5-25 - May 25 2015 ------------------- ------------------------------------------------------------------ ++++ util-linux: - Follow SLE11 device mapper partition names configuration (bsc#931607, util-linux-fdisk-device-mapper-names.patch). - Fix recognition of device mapper partitions (bsc#923904, util-linux-wholedisk-device-mapper.patch). ------------------------------------------------------------------ ------------------ 2015-5-23 - May 23 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - iscsi_ibft: Fix finding Broadcom specific ibft sign (bsc#932035). - commit f2a72c0 ------------------------------------------------------------------ ------------------ 2015-5-22 - May 22 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - lpfc: Fix race on command completion (bnc#906027,bnc#889221). - commit 3a86544 - x86, kvm: Remove incorrect redundant assembly constraint (bnc#931850). - commit 740785e ++++ lldpad: - l2_linux_packet: correctly process return value of get_perm_hwaddr (bsc#929171) - lldpad: Only set Tx adminStatus if interface is not managed (bsc#929171) - mkinitrd-boot: avoid error messages during boot ++++ php53: - security update: * CVE-2015-4024 [bnc#931421] + php-CVE-2015-4024.patch * CVE-2015-4026 [bnc#931776] + php-CVE-2015-4026.patch * CVE-2015-4022 [bnc#931772] + php-CVE-2015-4022.patch * CVE-2015-4021 [bnc#931769] + php-CVE-2015-4021.patch ++++ postgresql94-libs: - Security and bugfix release 9.4.2: * CVE-2015-3165, bsc#931972: Avoid possible crash when client disconnects just before the authentication timeout expires. * CVE-2015-3166, bsc#931973: Consistently check for failure of the *printf() family of functions. * CVE-2015-3167, bsc#931974: In contrib/pgcrypto, uniformly report decryption failures as "Wrong key or corrupt data". * Protect against wraparound of multixact member IDs. - For the full release notse, see: http://www.postgresql.org/docs/9.4/static/release-9-4-2.html ------------------------------------------------------------------ ------------------ 2015-5-21 - May 21 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.arch/0001-intel_idle-Support-Intel-Atom-Processor-C2000-Produc.patch. - commit 08985bc - Add deep sleep (idle) support for specific Intel BDW-H CPU (bnc#925340) Refresh patches.arch/intel_idle-broadwell-support.patch. - commit 6006665 - Refresh patches.suse/fs-add-link-restrictions.patch. (bnc#931200) - commit e9b71c5 - Fixup patches.fixes/edd-support-original-Phoenix-EDD-3.0-information.patch. - commit f83cf11 - edd: support original Phoenix EDD 3.0 information (bnc#762285,bsc#929974). - Delete patches.fixes/edd-check-for-correct-device_path_info_length.patch. - commit 68288ee - disable: 0002-rtc-restore-the-rtc-alarm-time-to-the-configured-ala.patch - resurrect: rtc-cmos-add-more-quirks-for-TGCS.patch for the time being. Per request: (bnc#930145) - commit 910248a ++++ yast2-network: - Always detect network cards when saving the network config before reboot in the first stage to include the correct card name in the ifcfg file (bnc#915180). - 2.17.207 ------------------------------------------------------------------ ------------------ 2015-5-20 - May 20 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - hyperv: Negotiate version with the host without waiting for the daemon (bnc#930821). - commit 205fd43 ++++ parted: - Added new Linux-specific partition GUID type code (0FC63DAF-8483-4772-8E79-3D69D8477DE4) for Linux filesystem data on GPT disks. This type code is now assigned as the default partition type code for new partitions holding Linux filesystems. (bnc#921941, fate#318946) - add-support-for-a-new-Linux-specific-GPT-partition-type.patch ++++ yast2-installation: - set Xvnc server resolution to 96 dpi to fix broken layout in VNC installations (defaults to 75 dpi) (bsc#919456) - 2.17.114 ++++ yast2-kdump: - Autoyast: "add_crashkernel_param" will be set by using autoinst.xml and will not be overwritten by proposal. (bnc#930950) - 2.17.27 ++++ yast2-storage: - mark partition alignment names for translation (bsc#928949) - 2.17.157 ------------------------------------------------------------------ ------------------ 2015-5-19 - May 19 2015 ------------------- ------------------------------------------------------------------ ++++ fuse: - add libfuse-fix-exec-environment-for-mount-and-unmount.patch (bsc#931452 CVE-2015-3202) ++++ kernel-docs: - ipmi: Turn off all activity on an idle ipmi interface (bsc#915747). - commit 3638b14 - crypto: aesni - fix memory usage in GCM decryption (bsc#927257,CVE-2015-3331). - commit 6e25468 - Btrfs: fix race when reusing stale extent buffers that leads to BUG_ON. - Btrfs: btrfs_release_extent_buffer_page didn't free pages of dummy extent (bnc#930226 bnc#916521). - Btrfs: fix inode eviction infinite loop after extent_same ioctl (bnc#930224 bnc#916521). - commit 09458b7 - Update patches.suse/btrfs-8888-add-allow_unsupported-module-parameter.patch (fate#314697 fate#318556). Update supported features. - commit 5754b3f - Btrfs: correctly get tree level in tree_backref_for_extent. - Btrfs: fix race that makes btrfs_lookup_extent_info miss skinny extent items. - Btrfs: fix invalid leaf slot access in btrfs_lookup_extent(). - Btrfs: fix btrfs_print_leaf for skinny metadata. - Btrfs: fix scrub_print_warning to handle skinny metadata extents. - Btrfs: use correct key when repeating search for extent item. - Btrfs: fix to search previous metadata extent item since skinny metadata. - Btrfs: fix missing skinny metadata check in scrub_stripe(). - Btrfs: fix qgroup rescan to work with skinny metadata. - Btrfs: fix extent_from_logical to deal with skinny metadata. - btrfs: Export btrfs_prev_leaf. - Btrfs: don't miss skinny extent items on delayed ref head contention. - Btrfs: optimize btrfs_lookup_extent_info(). - Btrfs: check to see if we have an inline item properly. - Btrfs: make backref walking code handle skinny metadata. - Btrfs: fix not being able to find skinny extents during relocate. - commit 66798bd ------------------------------------------------------------------ ------------------ 2015-5-18 - May 18 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - powerpc/mm: Fix mmap errno when MAP_FIXED is set and mapping exceeds the allowed address space (bsc#930669). - commit 3ef84d6 - Revert "Update config files: 2048 CPUs on POWER (bsc#930692)" This reverts commit bd1aa170883f5273ef2514670ca731644f76c4d8. The respective bugzilla has been reopened and the issue needs to be reconsidered. - commit 2d18200 - Update config files: 2048 CPUs on POWER (bsc#930692) - commit bd1aa17 - rtc: Restore the RTC alarm time to the configured alarm time in BIOS Setup (bnc#930145, bnc#927262). - Delete patches.fixes/rtc-cmos-add-more-quirks-for-TGCS.patch. - commit 26e5613 - storvsc: Set the SRB flags correctly when no data transfer is needed (bnc#931130). - commit 825a958 - Delete patches.suse/suse-hv-hv_kvp-sles11sp2-negotiate-serveral-versions.patch. - commit 60e9706 ++++ cryptsetup: - fix unlocking lvm volumes mounted by uuid/label (bnc#722916, bnc#924843) 0028-cryptsetup-boot-Rescan-LVM-volumes-after-opening-cryp.diff ++++ yast2: - bnc#851769, bnc#913722 - fixed reading bridge configuration - thanks to Waldemar Spitz - 2.17.138 ++++ yast2-network: - bnc#913722 - improved device description in installer's Internet Connection Test client. Especially regarding virtual devices. - 2.17.206 ------------------------------------------------------------------ ------------------ 2015-5-15 - May 15 2015 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 31.7.0 ESR (bsc#930622) * MFSA 2015-46/CVE-2015-2708/CVE-2015-2709 (bmo#1120655, bmo#1143299, bmo#1151139, bmo#1152177, bmo#1111251, bmo#1117977, bmo#1128064, bmo#1135066, bmo#1143194, bmo#1146101, bmo#1149526, bmo#1153688, bmo#1155474) Miscellaneous memory safety hazards (rv:38.0 / rv:31.7) * MFSA 2015-47/CVE-2015-0797 (bmo#1080995) Buffer overflow parsing H.264 video with Linux Gstreamer * MFSA 2015-48/CVE-2015-2710 (bmo#1149542) Buffer overflow with SVG content and CSS * MFSA 2015-51/CVE-2015-2713 (bmo#1153478) Use-after-free during text processing with vertical text enabled * MFSA 2015-54/CVE-2015-2716 (bmo#1140537) Buffer overflow when parsing compressed XML ++++ crash: - crash-xen-struct-domain-change.patch: xen: support changed item in struct domain (bsc#922005). ++++ kernel-docs: - ipv6: Don't reduce hop limit for an interface (bsc#922583, CVE-2015-2922). - net: llc: use correct size for sysctl timeout entries (bsc#919007, CVE-2015-2041). - ipv4: Missing sk_nulls_node_init() in ping_unhash() (bsc#929525, CVE-2015-3636). - ipv6: Don't reduce hop limit for an interface (bsc#922583, CVE-2015-2922). - net: llc: use correct size for sysctl timeout entries (bsc#919007, CVE-2015-2041). - ipv4: Missing sk_nulls_node_init() in ping_unhash() (bsc#929525, CVE-2015-3636). - commit 7b1a09b - iommu/amd: Correctly encode huge pages in iommu page tables (bsc#931014). - iommu/amd: Optimize amd_iommu_iova_to_phys for new fetch_pte interface (bsc#931014). - iommu/amd: Optimize alloc_new_range for new fetch_pte interface (bsc#931014). - iommu/amd: Optimize iommu_unmap_page for new fetch_pte interface (bsc#931014). - iommu/amd: Return the pte page-size in fetch_pte (bsc#931014). - commit e004fad - mm: exclude reserved pages from dirtyable memory (bnc#931015, bnc#930788). - mm: fix calculation of dirtyable memory (bnc#931015, bnc#930788). - mm/page-writeback.c: fix dirty_balance_reserve subtraction from dirtyable memory (bnc#931015, bnc#930788). - Refresh patches.fixes/mm-fix-return-type-for-functions-nr_free_-_pages.patch. - Refresh patches.kabi/mm-fix-return-type-for-functions-nr_free_-_pages-kabi.patch. - Refresh patches.suse/mm-page-writeback.c-do-not-count-anon-pages-as-dirtyable-memory.patch. - commit ead164e - x86-64: Don't apply destructive erratum workaround on unaffected CPUs (bsc#929076). - commit d898111 - Revert patch set 'dm-table-switch-to-readonly' (bsc#928801) - Refresh patches.fixes/dm-ignore-merge_bvec-for-snapshots-when-safe.patch. - Refresh patches.fixes/dm-optimize-use-SRCU-and-RCU.patch. - Delete patches.fixes/dm-release-map_lock-before-set_disk_ro. - Delete patches.fixes/dm-table-switch-to-readonly. - commit b9af4d0 - megaraid_sas : Modify return value of megasas_issue_blocked_cmd() (bsc#930925). - commit f386a91 - x86/asm/entry/64: Remove a bogus 'ret_from_fork' optimization (bsc#926240, CVE-2015-2830). - Refresh other Xen patches. - commit 88ab2e7 - sched: Fix potential near-infinite distribute_cfs_runtime() loop (bnc#930786) - commit fa5efb1 - NFS: Fix a regression in nfs_file_llseek() (bnc#930401). - commit 3fd447b ++++ kexec-tools: - Fix possible buffer flow warning in fs2dt.c (bsc#931051, bsc#929441c7) ++++ util-linux: - Fix lsblk -f on CCISS devices (and other devices with nodes in /dev subdirectory) (bsc#924994, util-linux-fix-cciss-dev-lookup.patch). ++++ translation-update-upstream: - String updates from the latest LCN and f-spot from upstream. ------------------------------------------------------------------ ------------------ 2015-5-14 - May 14 2015 ------------------- ------------------------------------------------------------------ ++++ gnome-patch-translation: - Updated ar, cs, de, es, fr, hu, it, ja, ko, nl, pl, pt_BR, ru, sv, zh_CN, zh_TW. ++++ kernel-docs: - tty: Correct tty buffer flush (bnc#929647). - Delete patches.fixes/tty-hold-lock-across-tty-buffer-finding-and-buffer-f.patch. - commit 98bbb91 - tty: hold lock across tty buffer finding and buffer filling (bnc#929647). - commit 65d335d ++++ util-linux: - script: Fix hang caused by mis-interpreted EOF on big-endian (bsc#930236, util-linux-script-mangled-EOF-big-endian.patch). ++++ udev: - rules: support "locally administered" mac address in persistent rules (bnc#921831) add: udev-147-support-locally-administered-mac-addresses-in-persistent-rules.patch - rules: drop all SRIOV rules/generators - they dont really work properly (bnc#921831) drop: udev-147-implement-virtual-function-interface-support.patch drop: udev-147-only-rename-SRIOV-VF-devices-when-name-starts-with-eth.patch ------------------------------------------------------------------ ------------------ 2015-5-13 - May 13 2015 ------------------- ------------------------------------------------------------------ ++++ fping: - add fping-2.4b2-flood.patch to fix hanging of fping during unrelated flood ping [bnc#919511] ++++ libapr-util1: - Rebuild to sync sub-packages on all products and architectures (bsc#929182) ++++ struts: - Drop fdupes call as it removes links across packages and actually leaves dangling symlinks. ++++ xen: - Upstream patches from Jan 5513dcf4-x86-don-t-change-affinity-with-interrupt-unmasked.patch 552d0f49-x86-traps-identify-the-vcpu-in-context-when-dumping-registers.patch 552d293b-x86-vMSI-X-honor-all-mask-requests.patch 552d2966-x86-vMSI-X-add-valid-bits-for-read-acceleration.patch 5530c800-x86-efi-Reserve-SMBIOS-table-region-when-EFI-booting.patch 553a1549-passthrough-amd-avoid-reading-an-uninitialized-variable.patch 5547421d-x86_emulate-fix-EFLAGS-setting-of-CMPXCHG-emulation.patch 5548e903-domctl-don-t-truncate-XEN_DOMCTL_max_mem-requests.patch 554b6589-cpupool-assigning-a-CPU-to-a-pool-can-fail.patch 55506a66-x86-keep-high-bits-of-RAX-on-guest-port-reads.patch ------------------------------------------------------------------ ------------------ 2015-5-12 - May 12 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Fix IA64 kernel/kthread.c build woes. Hide #include from kABI checker. - commit 6bc7ef5 - Fix potential crash in __sched_setscheduler(). It's illegal to call it in interrupt context, and an SLE12-RT kernel did that (with non-standard config, but..). Be paranoid, guarantee it can't possibly happen here - Modified: patches.fixes/sched-provide-rtkthreads-rtworkqueues-boot-options.patch - commit eb3c512 - megaraid_sas : Update threshold based reply post host index register (bnc#919808). - commit 406c1c0 ++++ kiwi: - v5.05.88 released Fixed spec file use of sles_version macro The macro has been deleted with SP4 thus the find-boot-requires script from Adrian was broken. This patch fixes the detection of the build os for SLES ++++ release-notes-sdk: - 11.4.2: - Update SP4 release notes from FATE. - 11.4.2: - Update SP4 release notes from FATE. ++++ yast2-network: - bnc#874259 - keep device configuration provided via linuxrc when autoyast keep_install_network is set - 2.17.205 ------------------------------------------------------------------ ------------------ 2015-5-11 - May 11 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - x86/reboot: Fix a warning message triggered by stop_other_cpus() (bnc#930284). - Refresh patches.suse/kdb-v4.4-3.1-x86-1. - commit 9ff36c9 - dasd: Fix inability to set a DASD device offline (bnc#927338, LTC#123905). - dasd: Fix device having no paths after suspend/resume (bnc#927338, LTC#123896). - dasd: Fix unresumed device after suspend/resume (bnc#927338, LTC#123892). - af_iucv: fix AF_IUCV sendmsg() errno (bnc#927338, LTC#123304). - commit b933f8d - s390/spinlock: cleanup spinlock code (bnc#925012). - s390/spinlock: optimize spinlock code sequence (bnc#925012). - s390/spinlock,rwlock: always to a load-and-test first (bnc#925012). - s390/rwlock: add missing local_irq_restore calls (bnc#925012). - s390/spinlock: refactor arch_spin_lock_wait[_flags] (bnc#925012). - s390/spinlock: optimize spin_unlock code (bnc#925012). - s390/time: use stck clock fast for do_account_vtime (bnc#925012). - s390/kernel: use stnsm 255 instead of stosm 0 (bnc#925012). - s390: avoid z13 cache aliasing (bnc#925012). - s390/mm: align 64-bit PIE binaries to 4GB (bnc#925012). - s390/memory hotplug: initialize storage keys (bnc#925012). - s390: enable large page support with CONFIG_DEBUG_PAGEALLOC (bnc#925012). - s390/facilities: cleanup PFMF and HPAGE machine facility detection (bnc#925012). - s390/mm: use pfmf instruction to initialize storage keys (bnc#925012). - s390/memory hotplug: use pfmf instruction to initialize storage keys (bnc#925012). - s390/mm: speedup storage key initialization (bnc#925012). - s390: z13 base performance (bnc#925012, LTC#KRN1514). - commit 2640a5d - mm, oom: fix and cleanup oom score calculations (bnc#930171). - commit eb70d60 - x86/apic/uv: Update the UV APIC HUB check (bsc#929145). - x86/apic/uv: Update the UV APIC driver check (bsc#929145). - x86/apic/uv: Update the APIC UV OEM check (bsc#929145). - commit dc231fb - deal with deadlock in d_walk fix (bnc#929148, bnc#929283). - commit e3ca8a9 - Enable the EXTENT_SAME ioctl (FATE#306586) - Refresh patches.suse/btrfs-1418-Introduce-extent_read_full_page_nolock.patch. - Refresh patches.suse/btrfs-8014-add-new-ioctl-to-determine-size-of-compressed-.patch. - Refresh patches.suse/btrfs-8283-replace-error-code-from-btrfs_drop_extents.patch. - commit 7388ba6 ++++ linuxrc: - Small simplification with util_get_attr2. - Fixed the previous one to consider ip-addr even if dhcp is used. - If iBFT addresses are IPv6, enable ipv6 automatically (bsc#925173). - Removed an unused function. - Removed a leftover header. - 3.3.107 ++++ sax2: - n_For-KMS-only-propose-modes-supported-by-driver.patch * With KMS hwinfo obtains the video modes from the driver. Use this list to present a selection of modes to the user rather than the full list of video modes known to man as without any special effort other modes won't be set (bnc#928621). ++++ xen: - bsc#927967 - VUL-0: CVE-2015-3340: xen: Information leak through XEN_DOMCTL_gettscinfo (XSA-132) 5535f633-dont-leak-hypervisor-stack-to-toolstacks.patch ------------------------------------------------------------------ ------------------ 2015-5-8 - May 8 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - bnx2x: Fix kdump when iommu=on (bug#921769). - commit eb6aa55 - genhd: fix leftover might_sleep() in blk_free_devt() (bsc#928040). - block: Fix dev_t minor allocation lifetime (bsc#928040). - commit c4c55bb - xfs: xfs_alloc_fix_minleft can underflow near ENOSPC (bnc#913080, bnc#912741). - commit 71222b4 ++++ lldpad: - Turning off pfc does not stop FCoE traffic (bsc#926967) ------------------------------------------------------------------ ------------------ 2015-5-7 - May 7 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Fixup kABI false positive patches.fixes/vfs-fix-race-between-fcntl-and-file-f_flags-checks.patch. - commit 87cf0d3 - Fixup compiler warning in patches.fixes/vfs-fix-race-between-fcntl-and-file-f_flags-checks.patch. - commit d758cc3 - Added hunks missing from the patch patches.fixes/vfs-fix-race-between-fcntl-and-file-f_flags-checks.patch. - commit ae792c8 - ch: fixup refcounting imbalance for SCSI devices (bsc#925443). - ch: remove 'ch_mutex' (bnc#925443). - commit 52c0c14 - vfs: Fix race between fcntl() and file->f_flags checks (bnc#900881 CVE-2014-8086). - commit e0a018a ++++ libqt4: - add 0001-Fixes-crash-in-gif-image-decoder.patch, 0002-Fixes-crash-in-bmp-and-ico-image-decoding.patch (bnc#927806, bnc#927807, bnc#927808, CVE-2015-1858, CVE-2015-1859, CVE-2015-1860) - add 0001-Don-t-leak-RENDER-Pictures-in-QPixmap-paintEngine.patch - add 0001-QDbus-Fix-a-b-comparison.patch ++++ libqt4-devel-doc: - add 0001-Fixes-crash-in-gif-image-decoder.patch, 0002-Fixes-crash-in-bmp-and-ico-image-decoding.patch (bnc#927806, bnc#927807, bnc#927808, CVE-2015-1858, CVE-2015-1859, CVE-2015-1860) - add 0001-Don-t-leak-RENDER-Pictures-in-QPixmap-paintEngine.patch - add 0001-QDbus-Fix-a-b-comparison.patch ++++ libqt4-devel-doc-data: - add 0001-Fixes-crash-in-gif-image-decoder.patch, 0002-Fixes-crash-in-bmp-and-ico-image-decoding.patch (bnc#927806, bnc#927807, bnc#927808, CVE-2015-1858, CVE-2015-1859, CVE-2015-1860) - add 0001-Don-t-leak-RENDER-Pictures-in-QPixmap-paintEngine.patch - add 0001-QDbus-Fix-a-b-comparison.patch ++++ libqt4-sql-plugins: - add 0001-Fixes-crash-in-gif-image-decoder.patch, 0002-Fixes-crash-in-bmp-and-ico-image-decoding.patch (bnc#927806, bnc#927807, bnc#927808, CVE-2015-1858, CVE-2015-1859, CVE-2015-1860) - add 0001-Don-t-leak-RENDER-Pictures-in-QPixmap-paintEngine.patch - add 0001-QDbus-Fix-a-b-comparison.patch ++++ libzypp: - Allow to overlay the default translation set. (bnc#928945) - version 9.38.8 (8) - Update sle-zypp-po.tar.bz2 ++++ xen: - bnc#929339 - VUL-0: CVE-2015-3456: qemu kvm xen: VENOM qemu floppy driver host code execution CVE-2015-3456-xsa133-qemuu.patch CVE-2015-3456-xsa133-qemut.patch ------------------------------------------------------------------ ------------------ 2015-5-6 - May 6 2015 ------------------- ------------------------------------------------------------------ ++++ curl: - ignore Content-Length with chunk-encoded transfer (bnc#927174) * added curl-chunked-encoding-with-content-length.patch ++++ libzypp: - Fix repo alias containing ']' not handled correctly (bnc#929528) - version 9.38.7 (8) ++++ translation-update-upstream: - String updates from the latest LCN and upstream. - Merge latest upstream-collect.sh fixes from SLE12: * upstream-collect.sh supplementary script: Fixed inverted po file age check (bnc#889513). * Reset translation tarballs: use only packaged translations. * Only process PO header in msgheadermerge * speed up msgheadermerge by factor 20-25. * Improve supplementary script translation-update-upstream-to-translation-update.sh to fit well for SLE, openSUSE and SLE service packs. ------------------------------------------------------------------ ------------------ 2015-5-5 - May 5 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - net/tg3: Release IRQs on permanent error (bsc#90458 FATE#317507 bsc#925107). - commit a419359 ++++ sensors: - Package /etc/sensors.d/. - lm_sensors-r6025-sensord-fix-memory-leaks.patch: sensord: Fix memory leaks revealed by valgrind (bnc#751177). - lm_sensors-r6030-fix-power-interval-output.patch: Fix power interval output. - lm_sensors-r6040-avoid-probing-EDID.patch: sensors-detect: Avoid probing EDID addresses on graphics cards (bnc#838619). - lm_sensors-r6084-skip-graphics-cards.patch: sensors-detect: Do not scan I2C adapters on graphics cards by default (bnc#838619). - lm_sensors-r6208-increase-MAX_SENSORS_PER_TYPE-to-37.patch: libsensors: Increase MAX_SENSORS_PER_TYPE to 37. ++++ libzypp: - Fix SEGV when dumping rpm header with epoch (bnc#929483) - version 9.38.6 (8) ------------------------------------------------------------------ ------------------ 2015-5-4 - May 4 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - xfs: prevent deadlock trying to cover an active log (bsc#917093). - commit 71d9b3d ++++ kexec-tools: - kexec-tools-purgatory-force-PIC-PIE-SSP-off.patch: purgatory: force PIC/PIE/SSP off (bsc#929441). ++++ udev: - rules: persistent device names for NVMe devices (bnc#928391). add: udev-147-rules-persistent-device-names-for-NVMe-devices.patch ------------------------------------------------------------------ ------------------ 2015-4-30 - Apr 30 2015 ------------------- ------------------------------------------------------------------ ++++ gnome-patch-translation: - Updated strings from SLE11-SP4 LCN snapshot (6 new strings). - Updated all translations from SLE11 SP4 LCN branch. ++++ kernel-docs: - NVMe: Add translation for block limits (bnc#926056). - NVMe: Initialize device list head before starting (bnc#926056). - nvme: Fix PRP list calculation for non-4k system page size (bnc#926056). - NVMe: Fix potential corruption on sync commands (bnc#926056). - NVMe: Fix potential corruption during shutdown (bnc#926056). - NVMe: Asynchronous controller probe (bnc#926056). - NVMe: Register management handle under nvme class (bnc#926056). - NVMe: Update SCSI Inquiry VPD 83h translation (bnc#926056). - NVMe: Update data structures for NVMe 1.2 (bnc#926056). - NVMe: Update namespace and controller identify structures to the 1.1a spec (bnc#926056). - NVMe: Flush with data support (bnc#926056). - NVMe: Add tracepoints (bnc#926056). - commit 6a838b1 - hv: no rmmod for hv_vmbus and hv_utils. - commit d4f05af - Drivers: hv: hv_balloon: correctly handle num_pages>INT_MAX case (fate#317533). - Drivers: hv: hv_balloon: correctly handle val.freeram (FATE#318825). - commit 4fd43e9 - eventpoll: use-after-possible-free in epoll_create1() (bug#917648). - commit 65ee3a2 - net/mlx4_core: Reset flow activation upon SRIOV fatal command cases (bug#924708). - net/mlx4_core: Enable device recovery flow with SRIOV (bug#924708). - net/mlx4_core: Handle AER flow properly (bug#924708). - net/mlx4_core: Manage interface state for Reset flow cases (bug#924708). - net/mlx4_core: Activate reset flow upon fatal command cases (bug#924708). - net/mlx4_core: Enhance the catas flow to support device reset (bug#924708). - net/mlx4_core: Refactor the catas flow to work per device (bug#924708). - net/mlx4_core: Set device configuration data to be persistent across reset (bug#924708). - net/mlx4_core: Maintain a persistent memory for mlx4 device (bug#924708). - commit 98c27a6 - Refresh patches.drivers/disable-catas_reset-by-default-to-avoid-problems-with-eeh.patch. - Refresh patches.drivers/mlx4-0014-mlx4-Move-the-Mellanox-driver.patch. - Refresh patches.drivers/mlx4-0073-mlx4_core-adjust-catas-operation-for-SRIOV-mode.patch. - commit 18e5377 ++++ libqt4: - Added patch fix-preprocessor-strings.diff to fix the compilation with gcc >= 4.7 (bnc#927468, fate#318856) - Added patch glib-honor-ExcludeSocketNotifiers-flag.diff to honor the QEventLoop::ExcludeSocketNotifiers flag when using glib's event loop (QTBUG-37380) - Added patch fix-qclipboard-recursive-calls.diff to fix a recursive call when using a clipboard that sets "useEventLoopWhenWaiting" since the X11 event processing in clipboardWaitForEvents would interfere with the LO X11 locking (QTBUG-34614). Includes a change from Qt4.8 to make a call to QEventDispatcherGlibPrivate::runTimersOnceWithNormalPriority() - Added patch decrease-qclipboard_delay.diff to remove or decrease (depending on the case) a delay in QX11Data::clipboardWaitForEvent (QTBUG-38585) - All these patches fix issues appearing in the LibreOffice-KDE integration (fate#318856). ++++ libqt4-devel-doc: - Added patch fix-preprocessor-strings.diff to fix the compilation with gcc >= 4.7 (bnc#927468, fate#318856) - Added patch glib-honor-ExcludeSocketNotifiers-flag.diff to honor the QEventLoop::ExcludeSocketNotifiers flag when using glib's event loop (QTBUG-37380) - Added patch fix-qclipboard-recursive-calls.diff to fix a recursive call when using a clipboard that sets "useEventLoopWhenWaiting" since the X11 event processing in clipboardWaitForEvents would interfere with the LO X11 locking (QTBUG-34614). Includes a change from Qt4.8 to make a call to QEventDispatcherGlibPrivate::runTimersOnceWithNormalPriority() - Added patch decrease-qclipboard_delay.diff to remove or decrease (depending on the case) a delay in QX11Data::clipboardWaitForEvent (QTBUG-38585) - All these patches fix issues appearing in the LibreOffice-KDE integration (fate#318856). ++++ libqt4-devel-doc-data: - Added patch fix-preprocessor-strings.diff to fix the compilation with gcc >= 4.7 (bnc#927468, fate#318856) - Added patch glib-honor-ExcludeSocketNotifiers-flag.diff to honor the QEventLoop::ExcludeSocketNotifiers flag when using glib's event loop (QTBUG-37380) - Added patch fix-qclipboard-recursive-calls.diff to fix a recursive call when using a clipboard that sets "useEventLoopWhenWaiting" since the X11 event processing in clipboardWaitForEvents would interfere with the LO X11 locking (QTBUG-34614). Includes a change from Qt4.8 to make a call to QEventDispatcherGlibPrivate::runTimersOnceWithNormalPriority() - Added patch decrease-qclipboard_delay.diff to remove or decrease (depending on the case) a delay in QX11Data::clipboardWaitForEvent (QTBUG-38585) - All these patches fix issues appearing in the LibreOffice-KDE integration (fate#318856). ++++ libqt4-sql-plugins: - Added patch fix-preprocessor-strings.diff to fix the compilation with gcc >= 4.7 (bnc#927468, fate#318856) - Added patch glib-honor-ExcludeSocketNotifiers-flag.diff to honor the QEventLoop::ExcludeSocketNotifiers flag when using glib's event loop (QTBUG-37380) - Added patch fix-qclipboard-recursive-calls.diff to fix a recursive call when using a clipboard that sets "useEventLoopWhenWaiting" since the X11 event processing in clipboardWaitForEvents would interfere with the LO X11 locking (QTBUG-34614). Includes a change from Qt4.8 to make a call to QEventDispatcherGlibPrivate::runTimersOnceWithNormalPriority() - Added patch decrease-qclipboard_delay.diff to remove or decrease (depending on the case) a delay in QX11Data::clipboardWaitForEvent (QTBUG-38585) - All these patches fix issues appearing in the LibreOffice-KDE integration (fate#318856). ++++ ofed: - Only require ofed-kmp if it is being built (bsc#927107). ------------------------------------------------------------------ ------------------ 2015-4-15 - Apr 15 2015 ------------------- ------------------------------------------------------------------ ++++ timezone-java: - update to 2015c (bsc#927184): * Egypt's 2015 spring-forward transition will be on Thursday, April 30 at 24:00, not Friday, April 24 at 00:00. * This release also includes changes affecting past time stamps and documentation. ------------------------------------------------------------------ ------------------ 2015-4-14 - Apr 14 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Limit allocation of crypto mechanisms to dialect which requires (bnc#925729). - commit 9b9dd09 - lib: cpu_rmap: avoid flushing all workqueues (bsc922339). - commit 9e751e5 ------------------------------------------------------------------ ------------------ 2015-4-10 - Apr 10 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update patches.drivers/HID-multitouch-add-support-for-Atmel-213c (bnc#793727,bnc#863946,bnc#924142). This revisited the Atmel maxTouch touchscreen support. Now the Win8 device entry is detected dynamically (but applied only for specified devices for safety reasons). - commit 49d8c7f - mlx4_core: Disable 64b CQE EQE by default (bnc#924482 bnc#924653). - Refresh patches.drivers/mlx4-0222-net-mlx4_core-Removed-unnecessary-bit-operation-cond.patch. - Refresh patches.drivers/mlx4-0270-net-mlx4_core-Enable-CQE-EQE-stride-support.patch. - commit 25288b4 - Btrfs: move fs/btrfs/ioctl.h to include/uapi/linux/btrfs.h (bsc#925073 FATE#308234). - Refresh patches.suse/btrfs-1055-add-no-file-data-flag-to-btrfs-send-ioctl.patch. - Refresh patches.suse/btrfs-1070-Add-a-new-ioctl-to-get-the-label-of-a-mounted-.patch. - Refresh patches.suse/btrfs-1071-set-change-the-label-of-a-mounted-file-system.patch. - Refresh patches.suse/btrfs-1216-rescan-for-qgroups.patch. - Refresh patches.suse/btrfs-1300-add-ioctl-to-wait-for-qgroup-rescan-completion.patch. - Refresh patches.suse/btrfs-1419-offline-dedupe.patch. - Refresh patches.suse/btrfs-8014-add-new-ioctl-to-determine-size-of-compressed-.patch. - Refresh patches.suse/btrfs-8236-retrieve-more-info-from-FS_INFO-ioctl.patch. - commit ab44f27 - Refresh patches.drivers/HID-multitouch-add-support-for-Atmel-212c (bnc#924142). - commit 22a6a53 - NVMe: Return 0 from make request on ended bio (bsc#926480). - commit b2a0b33 - PCI: Remove spurious error for sriov_numvfs store and simplify flow (bsc#923260 bsc#908684 FATE#317539). - commit 70fa093 - net/mlx4_en: Doorbell is byteswapped in Little Endian archs (bug#925105). - commit fabc0d8 ------------------------------------------------------------------ ------------------ 2015-4-9 - Apr 9 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ACPI / osl: speedup grace period in acpi_os_map_cleanup (bnc#877456). - commit af38a47 - eCryptfs: Remove buggy and unnecessary write in file name decode routine (bsc#918333, CVE-2014-9683). - commit 6b8568f - i2c: i801: Add DeviceIDs for SunrisePoint LP (bnc#925554). - commit 24f73db - net: rds: use correct size for max unacked packets and bytes (bsc#919018 CVE-2015-2042). - commit 07fbbcb - enclosure: handle non-unique element descriptors (bsc#925417). - enclosure: fix WARN_ON in dual path device removing (bsc#925417). - commit 6f08df3 - mm, slab: lock the correct nodelist after reenabling irqs (bnc#926439). - commit 450fe7f ++++ udev: - Check if NAME key has a value before going thru the rule (bnc#922899). update: udev-147-only-rename-SRIOV-VF-devices-when-name-starts-with-eth.patch ++++ openldap2: - Apply upstream fix of "CVE-2015-1546: openldap2: slapd crash in valueReturnFilter cleanup" bnc#916914 - Apply upstream fix of "CVE-2015-1545: openldap2: slapd crashes on search with deref control and empty attr list" bnc#916897 - Apply the fix of "CVE-2013-4449: segfault on certain queries with rwm overlay" for SUSE 11 bnc#846389 ++++ openldap2-client: - Apply upstream fix of "CVE-2015-1546: openldap2: slapd crash in valueReturnFilter cleanup" bnc#916914 - Apply upstream fix of "CVE-2015-1545: openldap2: slapd crashes on search with deref control and empty attr list" bnc#916897 - Apply the fix of "CVE-2013-4449: segfault on certain queries with rwm overlay" for SUSE 11 bnc#846389 ++++ yast2-network: - Write also --noproxy to .curlrc otherwise it is ignored even if set in the environment (bsc#923788). - 2.17.204 ------------------------------------------------------------------ ------------------ 2015-4-8 - Apr 8 2015 ------------------- ------------------------------------------------------------------ ++++ binutils: - Add binutils-ppc-increase-commonpagesize.diff. [bnc #926413] ++++ cross-ppc-binutils: - Add binutils-ppc-increase-commonpagesize.diff. [bnc #926413] ++++ cross-spu-binutils: - Add binutils-ppc-increase-commonpagesize.diff. [bnc #926413] ++++ iprutils: - iprconfig utility shouldn't provide option to create RAID10T2 if prerequisite is not met (GXP/ZR1) (bsc#923180) - added patches: * iprutils.bug-923180_avoid_creating_raid10t2_without_gxp_zr1.patch ++++ kernel-docs: - x86/asm/entry/64: Remove a bogus 'ret_from_fork' optimization (bsc#926240, CVE-2015-2830). - commit d6d09f0 ++++ openldap2: - Prevent connection-0 (internal connection) from show up in the monitor backend bnc#905959 ++++ openldap2-client: - Prevent connection-0 (internal connection) from show up in the monitor backend bnc#905959 ------------------------------------------------------------------ ------------------ 2015-4-7 - Apr 7 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - isci: fix breakage caused by >16byte CDB patch (bug#923943). - commit 8ef0d91 - Remove obsolete patch patches.arch/s390-sles11sp3-17-01-uverbs-kwrite-mmio.patch (bnc#924682) - Refresh patches.drivers/mlx5-0072-IB-core-Introduce-signature-verbs-API.patch. - Delete patches.arch/s390-sles11sp3-17-01-uverbs-kwrite-mmio.patch. - commit 7216da6 - ipc/shm.c: fix overly aggressive shmdt() when calls span multiple segments (ipc fixes). - commit b9069a6 - ALSA: hda_intel: apply the Seperate stream_tag for Sunrise Point (bsc#925370). - ALSA: hda_intel: apply the Seperate stream_tag for Skylake (bsc#925370). - ALSA: hda_controller: Separate stream_tag for input and output streams (bsc#925370). - commit 2bef3a6 ------------------------------------------------------------------ ------------------ 2015-4-6 - Apr 6 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.arch/kvm-x86-distinguish-between-stack-operation-and-near-branches.patch. - Update patches.arch/kvm-x86-emulator-fixes-for-eip-canonical-checks-on-near-branches.patch (CVE-2014-3647 bnc#899192 bsc#924721 bsc#925895). - commit 641bc6d ------------------------------------------------------------------ ------------------ 2015-4-3 - Apr 3 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - vfs: new helper: file_inode(file). - Refresh patches.suse/btrfs-1131-fix-missing-qgroup-reservation-before-fallocat.patch. - Refresh patches.suse/btrfs-1302-fix-estale-with-btrfs-send.patch. - Refresh patches.suse/btrfs-1317-check-if-we-can-nocow-if-we-don-t-have-data-sp.patch. - Refresh patches.suse/btrfs-1417-btrfs_ioctl_clone-Move-clone-code-into-it-s-own-func.patch. - Refresh patches.suse/btrfs-8223-Return-EXDEV-for-cross-file-system-snapshot.patch. - Refresh patches.suse/btrfs-8888-add-allow_unsupported-module-parameter.patch. - commit 722d2fd - Delete config/x86_64/bigsmp (fate#318083) - commit 6f10cdd - Provide/Obsolete all subpackages of old flavors (bnc#925567) - commit 1274d22 - Update patches.arch/kvm-x86-handle-errors-when-rip-is-set-during-far-jumps.patch (CVE-2014-3647 bnc#899192 bsc#925895). - commit 3b6df24 - vfs: switch open-coded instances of d_make_root() to new helper. - commit 0290c2b - vfs: switch a bunch of places to mnt_want_write_file(). Partial backport. - Refresh patches.suse/btrfs-0668-Push-mnt_want_write-outside-of-i_mutex.patch. - Refresh patches.suse/btrfs-0894-disallow-mutually-exclusive-admin-operations-f.patch. - Refresh patches.suse/btrfs-0978-fix-mutually-exclusive-op-is-running-error-cod.patch. - Refresh patches.suse/btrfs-0981-reorder-locks-and-sanity-checks-in-btrfs_ioctl.patch. - Refresh patches.suse/btrfs-1417-btrfs_ioctl_clone-Move-clone-code-into-it-s-own-func.patch. - commit 5dc0bd8 - vfs: new helper: mount_subtree(). Partial backport. - commit 8319a6c - Btrfs: compat vfs wapper for set_nlink - Refresh patches.suse/btrfs-0496-use-i_version-instead-of-our-own-sequence.patch. - Refresh patches.suse/btrfs-0694-use-printk_get_level-and-printk_skip_level-add-_printf-fix-fallout-compat.patch. - Refresh patches.suse/btrfs-0791-extended-inode-refs.patch. - Refresh patches.suse/btrfs-1122-improve-the-delayed-inode-throttling.patch. - commit 9335b57 - btrfs: kill magical embedded struct superblock. - Refresh patches.suse/0002-btrfs-Introduce-btrfs_get_maps_dev.patch. - Refresh patches.suse/btrfs-0242-fix-tree-corruption-after-multi-thread-snapsho.patch. - Refresh patches.suse/btrfs-0248-fix-stat-blocks-accounting.patch. - Refresh patches.suse/btrfs-0662-introduce-subvol-uuids-and-times.patch. - Refresh patches.suse/btrfs-0935-rename-root_times_lock-to-root_item_lock.patch. - Refresh patches.suse/btrfs-1030-use-the-inode-own-lock-to-protect-its-delalloc.patch. - Refresh patches.suse/btrfs-1425-fix-memory-leak-of-orphan-block-rsv.patch. - Refresh patches.suse/btrfs-disk-io-__setup_root-should-return-void. - commit 47f15ce ++++ subversion: - Add patch for bnc#923795 CVE-2015-0251: * subversion-bnc923795.patch - Add patch for bnc#923794 CVE-2015-0248: * subversion-bnc923794.patch ------------------------------------------------------------------ ------------------ 2015-4-2 - Apr 2 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update kabi files. - commit e37b865 ++++ libzypp: - POODLE: libzypp should only talk TLS (bnc#903405) - version 9.38.5 (8) ++++ ofed: - Don't build the cxgb3-firmware package on s390(x). ------------------------------------------------------------------ ------------------ 2015-4-1 - Apr 1 2015 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 31.6.0 ESR (bsc#925368) * MFSA 2015-30/CVE-2015-0814/CVE-2015-0815 (bmo#1005991, bmo#1111327, bmo#1116306, bmo#1127012, bmo#1130150, bmo#1132342, bmo#1133909, bmo#1136397, bmo#1137624, bmo#1138391, bmo#1036515, bmo#1137326, bmo#1138199) Miscellaneous memory safety hazards (rv:37.0 / rv:31.6) * MFSA 2015-31/CVE-2015-0813 (bmo#1106596) Use-after-free when using the Fluendo MP3 GStreamer plugin * MFSA 2015-33/CVE-2015-0816 (bmo#1144991) resource:// documents can load privileged pages * MFSA 2015-37/CVE-2015-0807 (bmo#1111834) CORS requests should not follow 30x redirections after preflight * MFSA 2015-40/CVE-2015-0801 (bmo#1146339) Same-origin bypass through anchor navigation ++++ gvfs: - Add gvfs-hal-volume-monitor-memory-leak.patch (bnc#924621) gvfs-hal-volume-monitor memory issue ++++ kernel-docs: - btrfs: remove the second argument of k[un]map_atomic(). The 1-argument api is available and used already. - Refresh patches.suse/btrfs-0480-change-scrub-to-support-big-blocks.patch. - Refresh patches.suse/btrfs-0678-don-t-allocate-a-seperate-csums-array-for-dire.patch. - Refresh patches.suse/btrfs-0879-rename-the-scrub-context-structure.patch. - Refresh patches.suse/btrfs-0881-make-the-scrub-page-array-dynamically-allocate.patch. - Refresh patches.suse/btrfs-1151-cleanup-unused-arguments-of-btrfs_csum_data.patch. - Refresh patches.suse/btrfs-include-the-device-in-most-error-printks.patch. - commit b6d8ec3 - Delete obsolete patches.suse/suse-hv-Drivers-hv-util-Fix-a-bug-in-util-version-negotiatio.patch (removed from series.conf by commit 7d878c8f) - commit 69feeaa - Generate rpm changelog from git - commit d65cefb - be2net: use PCI MMIO read instead of config read for errors (bug#925065). - commit c111b4e - md: don't give up looking for spares on first failure-to-add (bnc#908706). - commit 68670bb ++++ lxc: - Fix lxc-create man page to indicate the actual fstype default. (bsc#924892). lxc-default-lvm-snapshot-to-ext3.patch - Fix path to config file for LVM case in lxc-create. (bsc#924891). lxc-config-path.patch ++++ ofed: - Remove ExcludeArch for s390(x) ++++ php53: - security update: * CVE-2015-2787 [bnc#924972] + php-CVE-2015-2787.patch * unserialize SoapClient type confusion [bnc#925109] + php-unserialize-soap-type-confusion.patch ++++ struts: - fix bnc#924887 CVE-2015-0899: * struts-CVE-2015-0899.patch ------------------------------------------------------------------ ------------------ 2015-3-31 - Mar 31 2015 ------------------- ------------------------------------------------------------------ ++++ ConsoleKit: - Rebuild to sync all products and architectures (bsc#924326) ++++ PolicyKit: - Rebuild to sync all products and architectures (bsc#924326) ++++ kernel-docs: - Update patches.drivers/mlx4-0233-net-mlx4_en-Use-affinity-hint.patch (bug#919382 FATE#317529 bug#924717). According to the findings in bug#924717 - commit 70b84e7 - Btrfs: fix an while-loop of listxattr. - Refresh patches.suse/btrfs-0629-fix-buffer-leak-in-btrfs_next_old_leaf.patch. - Refresh patches.suse/btrfs-0644-add-helper-for-tree-enumeration.patch. - commit efcaaa3 - dasd: Missing partition after online processing (bnc#917120, LTC#120565). - commit 63dd6b0 ++++ libflaim: - Rebuild to sync all products and architectures (bsc#924326) ++++ lcms2: - Rebuild to sync all products and architectures (bsc#924326) ++++ samba: - Purge printer name cache on spoolss SetPrinter change; (bso#11210); (bnc#901813). ++++ libnl: - Rebuild to sync all products and architectures (bsc#924326) ------------------------------------------------------------------ ------------------ 2015-3-30 - Mar 30 2015 ------------------- ------------------------------------------------------------------ ++++ beagle: - Rebuild to sync all products and architectures (bsc#924326) ++++ kernel-docs: - epoll: fix use-after-free in eventpoll_release_file (epoll scaling). - commit ea7ee81 - Rename and move btrfs patches from 3.12 - Btrfs: Release uuid_mutex for shrink during device delete (FATE#312888). - btrfs: fall back to global reservation when removing subvolumes (FATE#312888). - Btrfs: add missing error checks to add_data_references (FATE#312888). - btrfs: fix get set label blocking against balance. - Btrfs: reset ret in record_one_backref (FATE#312888). - Btrfs: cleanup reloc roots properly on error (FATE#312888). - Btrfs: add sanity checks regarding to parsing mount options (FATE#312888). - Btrfs: use u64 for subvolid when parsing mount options (FATE#312888). - Btrfs: add missing mounting options in btrfs_show_options() (FATE#312888). - Btrfs: don't bug_on when we fail when cleaning up transactions (FATE#312888). - Btrfs: add missing error handling to read_tree_block (FATE#312888). - Btrfs: handle errors when doing slow caching (FATE#312888). - Btrfs: fix inode leak on kmalloc failure in tree-log.c (FATE#312888). - Btrfs: don't ignore errors from btrfs_run_delayed_items (FATE#312888). - Btrfs: return ENOSPC when target space is full (FATE#312888). - Btrfs: fix possible memory leak in find_parent_nodes(). - btrfs: abtract out range locking in clone ioctl(). - btrfs_ioctl_clone: Move clone code into it's own function. - btrfs: Introduce extent_read_full_page_nolock() (FATE#308234). - btrfs: offline dedupe (FATE#308234). - Btrfs: don't allow a subvol to be deleted if it is the default subovl (FATE#312888). - Btrfs: fix the error handling wrt orphan items. - Btrfs: fix oops when writing dirty qgroups to disk (FATE#312888). - Btrfs: add missing error code to BTRFS_IOC_INO_LOOKUP handler (FATE#312888). - Btrfs: don't miss inode ref items in BTRFS_IOC_INO_LOOKUP (FATE#312888). - Btrfs: fix memory leak of orphan block rsv (FATE#312888). - Btrfs: fix printing of non NULL terminated string (FATE#312888). - Btrfs: do not clear our orphan item runtime flag on eexist (FATE#312888). - Btrfs: remove ourselves from the cluster list under lock (FATE#312888). - Btrfs: actually limit the size of delalloc range. - Btrfs: actually log directory we are fsync()'ing. - Btrfs: check roots last log commit when checking if an inode has been logged. - Btrfs: replay dir_index items before other items. - Btrfs: drop dir i_size when adding new names on replay. - Revert "Btrfs: rework the overcommit logic to be based on the total size". - Btrfs: fix worst case calculator for space usage. - Btrfs: iput inode on allocation failure. - Btrfs: btrfs_ioctl_default_subvol: Revert back to toplevel subvolume when arg is 0. - btrfs: refuse to remount read-write after abort. - btrfs: Add btrfs: prefix to kernel log output (FATE#306586). - Btrfs: dir_inode_operations should use btrfs_update_time also. - Btrfs: fix transid verify errors when recovering log tree. - Btrfs: use right root when checking for hash collision. - Refresh patches.suse/btrfs-8257-check-file-extent-type-before-anything-else.patch. - Delete patches.suse/btrfs-8021-add-btrfs-prefix-to-kernel-log-output.patch. - Delete patches.suse/btrfs-8135-Release-uuid_mutex-for-shrink-during-device-de.patch. - Delete patches.suse/btrfs-8136-fall-back-to-global-reservation-when-removing-.patch. - Delete patches.suse/btrfs-8137-fix-get-set-label-blocking-against-balance.patch. - Delete patches.suse/btrfs-8138-reset-ret-in-record_one_backref.patch. - Delete patches.suse/btrfs-8139-cleanup-reloc-roots-properly-on-error.patch. - Delete patches.suse/btrfs-8140-add-sanity-checks-regarding-to-parsing-mount-o.patch. - Delete patches.suse/btrfs-8141-use-u64-for-subvolid-when-parsing-mount-option.patch. - Delete patches.suse/btrfs-8142-add-missing-mounting-options-in-btrfs_show_opt.patch. - Delete patches.suse/btrfs-8143-don-t-bug_on-when-we-fail-when-cleaning-up-tra.patch. - Delete patches.suse/btrfs-8144-return-ENOSPC-when-target-space-is-full.patch. - Delete patches.suse/btrfs-8145-don-t-allow-a-subvol-to-be-deleted-if-it-is-th.patch. - Delete patches.suse/btrfs-8146-fix-the-error-handling-wrt-orphan-items.patch. - Delete patches.suse/btrfs-8147-add-missing-error-code-to-btrfs_IOC_INO_LOOKUP.patch. - Delete patches.suse/btrfs-8148-don-t-miss-inode-ref-items-in-btrfs_IOC_INO_LO.patch. - Delete patches.suse/btrfs-8149-fix-memory-leak-of-orphan-block-rsv.patch. - Delete patches.suse/btrfs-8150-fix-printing-of-non-NULL-terminated-string.patch. - Delete patches.suse/btrfs-8156-add-missing-error-checks-to-add_data_reference.patch. - Delete patches.suse/btrfs-8158-add-missing-error-handling-to-read_tree_block.patch. - Delete patches.suse/btrfs-8159-handle-errors-when-doing-slow-caching.patch. - Delete patches.suse/btrfs-8160-fix-inode-leak-on-kmalloc-failure-in-tree-log..patch. - Delete patches.suse/btrfs-8161-don-t-ignore-errors-from-btrfs_run_delayed_ite.patch. - Delete patches.suse/btrfs-8162-fix-oops-when-writing-dirty-qgroups-to-disk.patch. - Delete patches.suse/btrfs-8163-do-not-clear-our-orphan-item-runtime-flag-on-e.patch. - Delete patches.suse/btrfs-8164-remove-ourselves-from-the-cluster-list-under-l.patch. - Delete patches.suse/btrfs-8207-fix-possible-memory-leak-in-find_parent_nodes.patch. - Delete patches.suse/btrfs-8208-actually-limit-the-size-of-delalloc-range.patch. - Delete patches.suse/btrfs-8209-actually-log-directory-we-are-fsync-ing.patch. - Delete patches.suse/btrfs-8210-check-roots-last-log-commit-when-checking-if-a.patch. - Delete patches.suse/btrfs-8211-replay-dir_index-items-before-other-items.patch. - Delete patches.suse/btrfs-8212-drop-dir-i_size-when-adding-new-names-on-repla.patch. - Delete patches.suse/btrfs-8213-Revert-rework-the-overcommit-logic-to-be-based.patch. - Delete patches.suse/btrfs-8214-fix-worst-case-calculator-for-space-usage.patch. - Delete patches.suse/btrfs-8215-iput-inode-on-allocation-failure.patch. - Delete patches.suse/btrfs-8216-btrfs_ioctl_default_subvol-Revert-back-to-topl.patch. - Delete patches.suse/btrfs-8217-refuse-to-remount-read-write-after-abort.patch. - Delete patches.suse/btrfs-8218-dir_inode_operations-should-use-btrfs_update_t.patch. - Delete patches.suse/btrfs-8219-fix-transid-verify-errors-when-recovering-log-.patch. - Delete patches.suse/btrfs-8220-use-right-root-when-checking-for-hash-collisio.patch. - Delete patches.suse/btrfs-8287-Introduce-extent_read_full_page_nolock.patch. - Delete patches.suse/btrfs-8288-offline-dedupe.patch. - Delete patches.suse/btrfs-8289-btrfs_ioctl_clone-Move-clone-code-into-it-s-own-func.patch. - Delete patches.suse/btrfs-8290-abtract-out-range-locking-in-clone-ioctl.patch. - commit c8ec423 - epoll: fix use-after-free in eventpoll_release_file (epoll scaling). - commit efb7031 - Rename and move btrfs patches from 3.11 - Btrfs: add ioctl to wait for qgroup rescan completion (FATE#312888). - Btrfs: remove useless copy in quota_ctl (FATE#312888). - Btrfs: fix estale with btrfs send (FATE#312888). - Btrfs: return error code in btrfs_check_trunc_cache_free_space() (FATE#312888). - Btrfs: dont do log_removal in insert_new_root (FATE#312888). - Btrfs: check if leaf's parent exists before pushing items around (FATE#312888). - Btrfs: allow file data clone within a file (FATE#312888). - Btrfs: simplify unlink reservations (FATE#312888). - Btrfs: fix qgroup rescan resume on mount (FATE#312888). - Btrfs: do not pin while under spin lock (FATE#312888). - Btrfs: add some missing iput()'s in btrfs_orphan_cleanup (FATE#312888). - Btrfs: put our inode if orphan cleanup fails (FATE#312888). - Btrfs: exclude logged extents before replying when we are mixed (FATE#312888). - Btrfs: fix broken nocow after balance (FATE#312888). - Btrfs: wake up delayed ref flushing waiters on abort (FATE#312888). - Btrfs: fix transaction throttling for delayed refs (FATE#312888). - Btrfs: unlock extent range on enospc in compressed submit (FATE#312888). - Btrfs: check if we can nocow if we don't have data space (FATE#312888). - Btrfs: hold the tree mod lock in __tree_mod_log_rewind (FATE#312888). - Btrfs: only do the tree_mod_log_free_eb if this is our last ref (FATE#312888). - Btrfs: update drop progress before stopping snapshot dropping (FATE#312888). - Btrfs: fix lock leak when resuming snapshot deletion (FATE#312888). - Btrfs: re-add root to dead root list if we stop dropping it (FATE#312888). - btrfs: fix file truncation if FALLOC_FL_KEEP_SIZE is specified (FATE#312888). - Btrfs: fix a bug of snapshot-aware defrag to make it work on partial extents (FATE#312888). - Btrfs: fix extent buffer leak after backref walking (FATE#312888). - Btrfs: do not offset physical if we're compressed (FATE#312888). - Btrfs: fix backref walking when we hit a compressed extent (FATE#312888). - Btrfs: make sure the backref walker catches all refs to our extent (FATE#312888). - Btrfs: release both paths before logging dir/changed extents (FATE#312888). - Btrfs: remove unnecessary ->s_umount in cleaner_kthread() (FATE#312888). - Btrfs: make the cleaner complete early when the fs is going to be umounted (FATE#312888). - Btrfs: move the R/O check out of btrfs_clean_one_deleted_snapshot() (FATE#312888). - Btrfs: make the snap/subv deletion end more early when the fs is R/O (FATE#312888). - Btrfs: introduce qgroup_ulist to avoid frequently allocating/freeing ulist (FATE#312888). - Btrfs: fix memory patcher through fs_info->qgroup_ulist (FATE#312888). - Btrfs: avoid double free of fs_info->qgroup_ulist (FATE#312888). - Btrfs: fix crash regarding to ulist_add_merge (FATE#312888). - Btrfs: introduce lock_ref/unlock_ref (FATE#312888). - btrfs: don't loop on large offsets in readdir (bnc#863300). - Btrfs: batch the extent state operation when reading pages (FATE#308234). - Refresh patches.suse/btrfs-compat-add-btrfs_fs_incompat.patch. - Delete patches.suse/btrfs-8100-add-ioctl-to-wait-for-qgroup-rescan-completion.patch. - Delete patches.suse/btrfs-8101-remove-useless-copy-in-quota_ctl.patch. - Delete patches.suse/btrfs-8103-fix-estale-with-btrfs-send.patch. - Delete patches.suse/btrfs-8104-return-error-code-in-btrfs_check_trunc_cache_f.patch. - Delete patches.suse/btrfs-8105-dont-do-log_removal-in-insert_new_root.patch. - Delete patches.suse/btrfs-8106-check-if-leaf-s-parent-exists-before-pushing-i.patch. - Delete patches.suse/btrfs-8107-allow-file-data-clone-within-a-file.patch. - Delete patches.suse/btrfs-8108-simplify-unlink-reservations.patch. - Delete patches.suse/btrfs-8109-fix-qgroup-rescan-resume-on-mount.patch. - Delete patches.suse/btrfs-8110-do-not-pin-while-under-spin-lock.patch. - Delete patches.suse/btrfs-8111-add-some-missing-iput-s-in-btrfs_orphan_cleanu.patch. - Delete patches.suse/btrfs-8112-put-our-inode-if-orphan-cleanup-fails.patch. - Delete patches.suse/btrfs-8113-exclude-logged-extents-before-replying-when-we.patch. - Delete patches.suse/btrfs-8114-fix-broken-nocow-after-balance.patch. - Delete patches.suse/btrfs-8115-wake-up-delayed-ref-flushing-waiters-on-abort.patch. - Delete patches.suse/btrfs-8117-fix-transaction-throttling-for-delayed-refs.patch. - Delete patches.suse/btrfs-8119-unlock-extent-range-on-enospc-in-compressed-su.patch. - Delete patches.suse/btrfs-8121-check-if-we-can-nocow-if-we-don-t-have-data-sp.patch. - Delete patches.suse/btrfs-8122-hold-the-tree-mod-lock-in-__tree_mod_log_rewin.patch. - Delete patches.suse/btrfs-8123-only-do-the-tree_mod_log_free_eb-if-this-is-ou.patch. - Delete patches.suse/btrfs-8125-update-drop-progress-before-stopping-snapshot-.patch. - Delete patches.suse/btrfs-8126-fix-lock-leak-when-resuming-snapshot-deletion.patch. - Delete patches.suse/btrfs-8127-re-add-root-to-dead-root-list-if-we-stop-dropp.patch. - Delete patches.suse/btrfs-8128-fix-file-truncation-if-FALLOC_FL_KEEP_SIZE-is-.patch. - Delete patches.suse/btrfs-8129-fix-a-bug-of-snapshot-aware-defrag-to-make-it-.patch. - Delete patches.suse/btrfs-8130-fix-extent-buffer-leak-after-backref-walking.patch. - Delete patches.suse/btrfs-8131-do-not-offset-physical-if-we-re-compressed.patch. - Delete patches.suse/btrfs-8132-fix-backref-walking-when-we-hit-a-compressed-e.patch. - Delete patches.suse/btrfs-8133-make-sure-the-backref-walker-catches-all-refs-.patch. - Delete patches.suse/btrfs-8134-release-both-paths-before-logging-dir-changed-.patch. - Delete patches.suse/btrfs-8152-remove-unnecessary-s_umount-in-cleaner_kthread.patch. - Delete patches.suse/btrfs-8153-make-the-cleaner-complete-early-when-the-fs-is.patch. - Delete patches.suse/btrfs-8154-move-the-R-O-check-out-of-btrfs_clean_one_dele.patch. - Delete patches.suse/btrfs-8155-make-the-snap-subv-deletion-end-more-early-whe.patch. - Delete patches.suse/btrfs-8166-introduce-qgroup_ulist-to-avoid-frequently-all.patch. - Delete patches.suse/btrfs-8167-fix-memory-patcher-through-fs_info-qgroup_ulis.patch. - Delete patches.suse/btrfs-8168-avoid-double-free-of-fs_info-qgroup_ulist.patch. - Delete patches.suse/btrfs-8169-fix-crash-regarding-to-ulist_add_merge.patch. - Delete patches.suse/btrfs-8173-introduce-lock_ref-unlock_ref.patch. - Delete patches.suse/btrfs-8222-don-t-loop-on-large-offsets-in-readdir.patch. - Delete patches.suse/btrfs-8286-batch-the-extent-state-operation-when-reading-.patch. - commit 11c6f1d ++++ libHX: - Rebuild to sync all products and architectures (bsc#924326) ++++ libcanberra: - Rebuild to sync all products and architectures (bsc#924326) ++++ libthai: - Rebuild to sync all products and architectures (bsc#924326) ++++ seahorse: - Rebuild to sync all products and architectures (bsc#924326) ------------------------------------------------------------------ ------------------ 2015-3-27 - Mar 27 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update patches.arch/kvm-x86-distinguish-between-stack-operation-and-near-branches.patch (CVE-2014-3647 bnc#899192 bsc#924721). - Update patches.arch/kvm-x86-emulator-fixes-for-eip-canonical-checks-on-near-branches.patch (CVE-2014-3647 bnc#899192 bsc#924721). - commit 5517431 - configfs: fix race between dentry put and lookup (bnc#924333). - commit b16ec5c ------------------------------------------------------------------ ------------------ 2015-3-26 - Mar 26 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - net: relax rcvbuf limits (bug#923344). - commit f032beb - powerpc+sparc64/mm: Remove hack in mmap randomize layout (bsc#917839). - commit f499c60 - Refresh patches.kabi/0005-kabi-invalidate-removed-field.patch. remove now unused headers - commit 697bc11 - mm: fix anon_vma->degree underflow in anon_vma endless growing prevention (bnc#904242). - commit e979cb3 - Refresh patches.kabi/0005-kabi-invalidate-removed-field.patch. Neil Brown has reported a crash caused by the poisoning because sysfs_notify_dirent checks s_attr.open and dereference it if non-NULL. s_attr and s_dir are in the same union and s_dir::children_unused is sharing the offset with sysfs_elem_attr::open so it would crash when dereferencing poison value. Drop the poisoning. - commit 1fcdb56 - Update patches.fixes/0001-NFSv4-Do-not-accept-delegated-opens-when-a-delegatio.patch (bnc#864409, bnc#924282). - commit 0e3c7c8 ++++ ofed: - Replace ofed-openibd_mellanox.patch with ofed-handle_mlx4_and_mlx5_modules.patch to make the openibd script work as intended. Update openibd.conf so that mlx5 is handled (bnc#922018). ++++ parted: - gpt: eliminate four PED_ASSERT uses (bnc#904118). - libparted-gpt-eliminate-four-PED_ASSERT-uses.patch - fix partprobe (bnc#912246) - partprobe-remove-partitions-when-there-is-no-partiti.patch - make pc98 detection depend on signatures (bnc#833409) - libparted-make-pc98-detection-depend-on-signatures.patch - Fix partition device names on MMC devices (bnc#847580) - libparted-fix-mmcblk-partition-name.patch ------------------------------------------------------------------ ------------------ 2015-3-25 - Mar 25 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - xen: pv-on-hvm: skip initialization of emulated devices (fate#311487, bnc#922309). - commit 81acf96 ++++ gnutls: - fix for CVE-2015-0294 (bnc#919938) * certificate algorithm consistency checking issue * added gnutls-CVE-2015-0294.patch - fix for CVE-2015-0282 (bnc#921684) * GNUTLS-SA-2015-1: Signature forgery * added patches: - gnutls-add_x509_cert_functions.patch - gnutls-CVE-2015-0282.patch ++++ iproute2: - iproute2-Add-VF-link-state-control.patch iproute2-Document-VF-link-state-control-in-the-ip-link-man-pa.patch Add VF link state control (bsc#909484 FATE#317397) ------------------------------------------------------------------ ------------------ 2015-3-24 - Mar 24 2015 ------------------- ------------------------------------------------------------------ ++++ apache2: - add httpd-2.2.x-bnc871310-CVE-2013-5704-mod_headers_chunked_requests.patch to fix flaw in the way mod_headers handled chunked requests. Adds "MergeTrailers" directive to restore legacy behavior [bnc#871310], [CVE-2013-5704] - add httpd-2.2.x-bnc899836-check_null_pointer_dereference.patch to avoid a crash when Content-Type has an empty value [bnc#899836], [CVE-2014-3581] - add httpd-2.2.x-bnc904427-mod_ldap_server_unavailable.patch that treats the "server unavailable" condition as a transient error with all LDAP SDKs [bnc#904427] - add httpd-2.2.x-bnc917402-CVE-2003-1418-ETag_disclosure.patch that removes inode from the default value of FileETag directive [bnc#907477], [bnc#713970], [CVE-2003-1418] ++++ gd: - fixed CVE-2014-9709 [bnc#923945] + gd-CVE-2014-9709.patch ++++ kernel-docs: - zcrypt: Early hwrng request prevent crypto devices to get online (bnc#923450,LTC#122974). - commit c32c577 - iommu/vt-d: Fix dmar_domain leak in iommu_attach_device (bsc#920960). - iommu/vt-d: Only remove domain when device is removed (bnc#920960). - driver core: Add BUS_NOTIFY_REMOVED_DEVICE event (bnc#920960). - commit fb9e130 ++++ ofed: - Autoload QIB (bnc#922241) ++++ php53: - security update: * CVE-2014-9709 [bnc#923946] + php-CVE-2014-9709.patch * CVE-2015-2301 [bnc#922022] + php-CVE-2015-2301.patch * CVE-2015-2305 [bnc#922452] + php-CVE-2015-2305.patch * CVE-2014-9705 [bnc#922451] + php-CVE-2014-9705.patch ++++ python-keyring: - Release version 3.6 for SLE 11-SP3 (FATE#317907, bsc#923696) ++++ xen: - bnc#923758 - xen dmesg contains bogus output in early boot xen-figlet-makefile.patch - bsc#922705 - VUL-0: CVE-2015-2752: xen: XSA-125: Long latency MMIO mapping operations are not preemptible xsa125.patch - bsc#922706 - VUL-0: CVE-2015-2756: xen: XSA-126: Unmediated PCI command register access in qemu xsa126.patch - bsc#922709 - VUL-0: CVE-2015-2751: xen: XSA-127: Certain domctl operations may be abused to lock up the host xsa127.patch - Upstream patches from Jan 54fd9963-VT-d-print_vtd_entries-should-cope-with-superpages.patch 54fee8f1-EFI-fix-getting-EFI-variable-list-on-some-systems.patch 5502bb30-x86-EFI-allow-reboot-overrides-when-running-under-EFI.patch 5502cc91-Revert-cpupools-update-domU-s-node-affinity-in-cpupool_unassign_cpu.patch 5502ccff-x86-don-t-apply-reboot-quirks-if-reboot-set-by-user.patch ------------------------------------------------------------------ ------------------ 2015-3-23 - Mar 23 2015 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 31.5.3 ESR (bsc#923534) * MFSA 2015-29/CVE-2015-0817 (bmo#1145255) Code execution through incorrect JavaScript bounds checking elimination * MFSA 2015-28/CVE-2015-0818 (bmo#1144988) Privilege escalation through SVG navigation ++++ kernel-docs: - Disable two hv_storvsc changes to avoid CDROM failures (bnc#923775) scsi: storvsc: Set the tablesize based on the information given by the host scsi: storvsc: Enable clustering - commit 1116313 ++++ xen: - Update to Xen 4.4.2 xen-4.4.2-testing-src.tar.bz2 - Dropped xen-4.4.1-testing-src.tar.bz2 537c9c77-libxc-check-return-values-on-mmap-and-madvise.patch 53f737b1-VMX-fix-DebugCtl-MSR-clearing.patch 53f7386d-x86-irq-process-softirqs-in-irq-keyhandlers.patch 53ff3716-x86-ats-Disable-Address-Translation-Services-by-default.patch 53ff3899-x86-NMI-allow-processing-unknown-NMIs-with-watchdog.patch 540effe6-evtchn-check-control-block-exists-when-using-FIFO-based-events.patch 540f2624-x86-idle-add-barriers-to-CLFLUSH-workaround.patch 541825dc-VMX-don-t-leave-x2APIC-MSR-intercepts-disabled.patch 541ad81a-VT-d-suppress-UR-signaling-for-further-desktop-chipsets.patch 54216833-x86-shadow-fix-race-when-sampling-dirty-vram-state.patch 54216882-x86-emulate-check-cpl-for-all-privileged-instructions.patch 542168ae-x86emul-only-emulate-swint-injection-for-real-mode.patch 54228a37-x86-EFI-fix-freeing-of-uninitialized-pointer.patch 542bf997-x86-HVM-properly-bound-x2APIC-MSR-range.patch 54325cc0-x86-MSI-fix-MSI-X-case-of-freeing-IRQ.patch 54325d2f-x86-restore-reserving-of-IO-APIC-pages-in-XENMEM_machine_memory_map-output.patch 54325d95-don-t-allow-Dom0-access-to-IOMMUs-MMIO-pages.patch 54325ecc-AMD-guest_iommu-properly-disable-guest-iommu-support.patch 54325f3c-x86-paging-make-log-dirty-operations-preemptible.patch 5448ba29-fix-vcpu-listing-for-domains-lacking-any.patch 544e6762-vmx-fix-save-restore-issue-with-apicv.patch 544e67be-hvm-load-correct-length-checks-for-zeroextended-records.patch 544e6810-x86-tolerate-running-on-EFI-rt-pgts-in-map_domain_page.patch 544e6838-EFI-allow-to-suppress-the-use-of-runtime-services.patch 544e6885-x86-HVM-sanity-check-xsave-area-when-migrating-from-older-Xen.patch 545364ef-VMX-MSR_IA32_SYSENTER-values-should-be-canonical.patch 5453653b-x86-HVM-only-kill-on-unknown-exit-from-kernel-mode.patch 5463470e-adjust-number-of-domains-in-cpupools-when-destroying-domain.patch 546a0107-EFI-allow-retry-of-ExitBootServices-call.patch 546b4669-x86-don-t-allow-page-table-updates-on-non-PV-pts.patch 546b46a7-x86emul-enforce-privilege-level-restrictions-when-loading-CS.patch 546e1916-x86-mm-fix-a-reference-counting-error-in-MMU_MACHPHYS_UPDATE.patch 54744659-x86-cpuidle-don-t-count-C1-multiple-times.patch 54744729-SVM-don-t-crash-guest-upon-problems-occurring-in-user-mode.patch 54772067-x86-limit-checks-in-hypercall_xlat_continuation-to-actual-arguments.patch 547720b4-x86-HVM-confine-internally-handled-MMIO-to-solitary-regions.patch 5485ab8a-switch-to-write-biased-r-w-locks.patch 54aaabb8-domctl-fix-IRQ-permission-granting-revocation.patch 54abda24-x86-HVM-prevent-use-after-free-when-destroying-a-domain.patch 54ad06e6-VT-d-don-t-crash-when-PTE-bits-52-and-up-are-non-zero.patch 54b3dd08-x86emul-tighten-CLFLUSH-emulation.patch 54bce379-common-memory-fix-an-XSM-error-path.patch 54be2302-xsm-evtchn-never-pretend-to-have-successfully-created.patch 54c0e36c-x86-don-t-expose-XSAVES-capability-to-PV-guests.patch 54c0e398-x86-correctly-check-for-sub-leaf-zero-of-leaf-7-in-pv_cpuid.patch 54c62a2d-x86-vcpu_destroy_pagetables-must-not-return-EINTR.patch 54c90530-bunzip2-off-by-one-in-get_next_block.patch 54d0a331-x86-VPMU-disable-when-NMI-watchdog-is-on.patch 54db8052-x86-traps-export-exception_table-to-C.patch 54db80d3-x86-nmi-shootdown-pcpus-in-VMX-non-root-mode.patch xsa119.patch xsa121.patch xsa122.patch xsa123.patch ++++ zlib: - Fix bnc#912771 bnc#920442 * zlib-inftrees.patch * zlib-write-empty-file.patch ------------------------------------------------------------------ ------------------ 2015-3-21 - Mar 21 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Delete patches.kabi/* workarounds - commit 2ff3137 - be2net: fixup TX-rate setting code for Skyhawk-R (bnc#908322 FATE#317535). - be2net: use -ENETDOWN error status when interface is down (bnc#908322 FATE#317535). - commit 843c4d1 ++++ timezone-java: - update to 2015b (bsc#923498): * Mongolia will start observing DST again in 2015, from the last Saturday in March to the last Saturday in September. * Palestine will start DST on March 28, not March 27. * Correct the 1992-2010 DST abbreviation in Volgograd from "MSK" to "MSD". * Fix integer overflow bug in reference 'mktime' implementation. * This release also includes changes affecting past time stamps and documentation. ------------------------------------------------------------------ ------------------ 2015-3-20 - Mar 20 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - btrfs: cleanup orphans while looking up default subvolume (bsc#914818). - commit b8d2147 - Refresh patches.kabi/0005-kabi-invalidate-removed-field.patch. SLE11-SP3 gcc doesn't like static initialization of unnamed unions - commit fe1d511 - kabi: invalidate removed sys_elem_dir::children (bnc#919589). - commit 7b4b400 ++++ ofed: - Don't build the kmp on s90(x) (bnc#922304). ------------------------------------------------------------------ ------------------ 2015-3-19 - Mar 19 2015 ------------------- ------------------------------------------------------------------ ++++ ibutils: - Remove ExcludeArch, which was erroneousls left in. ++++ kernel-docs: - e1000e: remove calls to ioremap/unmap for NVM addr (bug#909495 FATE#317394). - e1000e: fix obscure comments (bug#909495 FATE#317394). - e1000e: initial support for i219 (bug#909495 FATE#317394). - e1000e: Fix 82572EI that has no hardware timestamp support (bug#909495 FATE#317394). - ethernet/intel: Use eth_skb_pad and skb_put_padto helpers (bug#909495 FATE#317394). - net: Add functions for handling padding frame and adding to length (bug#909495 FATE#317394). - commit bbd4bfd - mutex: Fix/document access-once assumption in mutex_can_spin_on_owner() (bnc#923099). - Refresh patches.fixes/0001-locking-mcs-Add-some-needed-ACCESS_ONCE-calls.patch. - commit b63e425 ++++ udev: - Only rename SRIOV-VF devices if device name start with eth (bnc#922899). add: udev-147-only-rename-SRIOV-VF-devices-when-name-starts-with-eth.patch ++++ libguestfs: - Update to version 1.20.12 * daemon: Fix xfs_info parser because of new format. * fish: Use UNIX_PATH_MAX instead of hard-coded value for max length of socket buf. * daemon: sh: Fix missing initializer which caused segfault (RHBZ#1000121). * fish: Document that guestfish --remote --add won't work as expected (RHBZ#998513). * launch: direct: Don't try to wait for qemu if parent process forked (RHBZ#998482). * FAQ: Replace the debugging section (again) with a checklist of information we need to start to fix bugs. * cleanups: Use correct types for some cleanup functions. * lib: Add stringsbuf mini-library for constructing lists of strings. * list-filesystems: Don't fail if there are no filesystems found (RHBZ#995711). * cmd: Better type checking in CLEANUP_CMD_CLOSE macro. * utils: Move guestfs___drive_name function to the utilities library. * virt-list-filesystems: Fix to use $g->canonical_device_name instead of homebrew function. * launch: direct: Print \n after printing qemu command line. * lib: Turn 'random_chars' function used by libvirt backend into utility function. * daemon: ldm: Don't return an error if /dev/mapper doesn't exist. * daemon: Remove unnecessary sysroot_path (selinux). * daemon: Close augeas, hivex handles in unmount_all. * Fix parsing of boot flag in do_part_get_bootable() * augeas: Improve error reporting. * launch: direct: Add drives after machine parameters. * resize: Move isatty_stdout function to separate module (TTY.isatty_stdout). * daemon: cap-get-file: Return empty string if no capability on file (RHBZ#989356). * resize: Link to information about dracut-modules-growroot. * src/file.c: Be sure to call guestfs___lazy_make_tmpdir before using g->tmpdir. * generator: Fix the case where a daemon function has one FileIn/FileOut parameter and no other parameters. * sysprep: On RHEL, firstboot script should be called S99... not 99. * fish: For -N option, add drive with explicit format = "raw". * fish: Split up long line in --help output. * fish: Clarify documentation. * daemon: Implement set-label for XFS and fix it for btrfs (RHBZ#986875). * mkfs: Use -b size= for xfs (RHBZ#981715). * cmd: Allow callers to override file-closing behaviour after fork. * acls: Improve documentation for acl_set_file (RHBZ#985269). * filesystem-available: Clarify documentation for this test. * configure: python: RHEL 6 doesn't have sysconfig, use distutils.sysconfig instead. * daemon: Verify ext2/3/4 filesystem name before passing to mke2fs (RHBZ#978302). * virt-resize: Add notes about Windows and disk consistency (RHBZ#975753). * virt-resize: Take into account large start offset of the first partition when calculating overhead (RHBZ#974904). * virt-resize: Add some more debugging messages. * virt-resize: Fix minor typo in error message. * launch: direct: Calculate appliance root correctly when iface drives are added (RHBZ#975797). * FAQ: RHEL 7 is based on libguestfs 1.22. * FAQ: Add link to RHEL 6.5 preview repository. * txz-out: Fix this API to produce xz files again (RHBZ#972775). * inspect: Fix bogus warning for partitions without /boot.ini * inspect: Partial support for non-standard windows system root * inspection: Refactor windows systemroot detection to allow re-use * python: Build extension with PEP-3149 compliant suffix if defined. * docs: Updated release versions which fix CVE-2013-2124. * events: Avoid event handler limit if program allocates and deallocates handlers. * proto: Fix for rare FileIn hangs. (RHBZ#969845). * events: Use bool for flag. * events: Refactor code to make the common path clear. * release notes: Recompile so that long URLs aren't broken in text output. * podwrapper: Set Text::Wrap::huge property to "overflow". * security: Centralize CVE information in one place (in guestfs(3)). * security: Add documentation for CVE-2013-2124. * Fix for changed selinux mountpoint * sysprep: Be prepared for CentOS etc. 7 which will act the same way as RHEL 7. * sysprep: Update /etc/machine-info on Fedora 18+, RHEL 7+ (RHBZ#890027). * sysprep: Refactor code, introducing a function to replace a line in a file. * Fix compiler warning when libselinux is not present * Use pkg-config for Python * build: Add 'make maintainer-tag' rule for tagging HEAD with current version. * fuse: Document the fstype parameter * fuse: Allow specifying the fstype of a mount * grub-install: Change test to use /dev/sda instead of /dev/vda. * virt-ls: Use string instead of small array. * FAQ: Add a quick summary to the debugging section of the FAQ. * is_lv: Does not need to depend on lvm2. * Remove use of gnulib progname module. * examples: Add example program showing enabling debugging and capturing log messages. * pod: Fix "wide character in print" warnings by declaring encoding correctly. * daemon/copy: Ensure errno is preserved along error paths. * python: Let RHashtable be returned as a Python dict. * Better error messages for FUSE and other things not supported. * docs: Remove obsolete sections from libguestfs gotchas. * docs: Refresh API overview section. * docs: Alternate ways to list filesystems through the API. * FAQ: Update distro support section. * daemon: file: Remove extraneous space after output of 'file' command (RHBZ#928995). * OCaml tools: Use Common_gettext and Common_utils modules. * inspection: Remove unused #includes. * lib: Add missing cases in switch statements. * drives: Make drv->readonly flag into a bool. * drives: Refactor code to separate 'struct drive' creation from adding drives. * launch: Move code concerned with adding drives to 'src/drives.c'. * launch: Print attach-method, tmpdir, umask, euid when launching. * utils: Fix error messages for external commands that fail (RHBZ#921040). remove 0001-inspection-handle-empty-file-in-parse_suse_release.patch remove 0047-inspection-Don-t-fail-if-libosinfo-database-is-not-f.patch remove 0049-daemon-Properly-quote-arguments-for-tar-out-base64-o.patch remove 0051-inspection-Fix-double-free-when-certain-guest-files-.patch remove 0107-inspection-Test-for-failure-from-match1-function.patch remove 845720-fish-CVE-2013-4419-Fix-insecure-temporary-directory-.patch ++++ mercurial: - Fix mommand Injection via sshpeer._validaterepo() (CVE-2014-9462, bnc#923070): mercurial-CVE-2014-9462.patch ------------------------------------------------------------------ ------------------ 2015-3-18 - Mar 18 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - supported.conf: Add i40e (Intel(R) Ethernet Controller XL710 Family support) - commit df8547c - btrfs: fix lost return value due to variable shadowing. - Btrfs: abort the transaction if we fail to update the free space cache inode. - Btrfs: fix scheduler warning when syncing log. - btrfs: add more checks to btrfs_read_sys_array. - btrfs: cleanup, rename a few variables in btrfs_read_sys_array. - btrfs: add checks for sys_chunk_array sizes. - btrfs: more superblock checks, lower bounds on devices and sectorsize/nodesize. - Btrfs: fix setup_leaf_for_split() to avoid leaf corruption. - btrfs: fix typos in btrfs_check_super_valid. - btrfs: use macro accessors in superblock validation checks. - btrfs: add more superblock checks. - commit ca7ff5f - Btrfs: avoid premature -ENOMEM in clear_extent_bit(). - Btrfs: avoid returning -ENOMEM in convert_extent_bit() too early. - Btrfs: call inode_dec_link_count() on mkdir error path. - Btrfs: fix fs corruption on transaction abort if device supports discard. - Btrfs: make sure we wait on logged extents when fsycning two subvols. - Btrfs: make xattr replace operations atomic. - commit 3965eec - net: sctp: fix slab corruption from use after free on INIT collisions (bsc#915577, CVE-2015-1421). - commit 01d23ef - cifs: fix use-after-free bug in find_writable_file (bnc#909477). - commit 54fe613 ++++ libguestfs: - Create symlink from /etc/mtab to /proc/self/mounts (bnc#840662) - Create an /etc/resolv.conf file referring to qemu user network nameserver (RHBZ#1044585) - Resolve also library dependencies of libnss in mkinitrd (bnc#847785) - BuildRequire nfs-utils to get mount.nfs, for virt-rescue - Include crypto modules in appliance to enable luks related commands - init: Display clocksource - Disable ipv6 in the appliance because qemu usernet is ipv4 only - Fix permissions on initramfs to allow regular users access. - Add cdrkit-cdrtools-compat, psmisc, gptfdisk, syslinux to reduce amount of missing commands - Include fdisk and bc (bnc#886372) - Add isofs and other fs drivers (bnc#906692) - Package guestfs_lvm_conf.aug (bnc#908632) ++++ pciutils: - Fix bnc#922872 lspci failing on listing some of ppc platforms * pciutils-fix-incomplete-slot-address.patch ------------------------------------------------------------------ ------------------ 2015-3-17 - Mar 17 2015 ------------------- ------------------------------------------------------------------ ++++ PackageKit: - Add PackageKit-0.3.14-proxy-networking.patch to fix bnc#910462 ++++ kernel-docs: - Refresh patches.fixes/0001-md-plug_cnt.fix. Included missing hunks for RAID10 and RAID5. As ->plug_cnt is no longer being decremented, we must stop testing it altogether. See bug 922693 - commit 65d2a98 - kabi: fix for changes in the sysfs_dirent structure (bnc#919589). - sysfs: Make sysfs_rename safe with sysfs_dirents in rbtrees (bnc#919589). - sysfs: use rb-tree for inode number lookup (bnc#919589). - sysfs: use rb-tree for name lookups (bnc919589). - commit a69df19 - fs/pipe.c: add ->statfs callback for pipefs (bsc#916848). - commit d6ffc96 - atomic: implement generic atomic_dec_if_positive() (bnc#913241,FATE#317338). - commit 0f64208 - hpsa: Bump version to 3.4.8 (bnc#913241,FATE#317338). - commit 2b7eba6 - hpsa: Use local workqueues instead of system workqueues (bnc#913241,FATE#317338). - hpsa: add in P840ar controller model name (bnc#913241,FATE#317338). - hpsa: add in gen9 controller model names (bnc#913241,FATE#317338). - hpsa: detect and report failures changing controller transport modes (bnc#913241,FATE#317338). - hpsa: shorten the wait for the CISS doorbell mode change ack (bnc#913241,FATE#317338). - hpsa: refactor duplicated scan completion code into a new routine (bnc#913241,FATE#317338). - hpsa: move SG descriptor set-up out of hpsa_scatter_gather() (bnc#913241,FATE#317338). - hpsa: do not use function pointers in fast path command submission (bnc#913241,FATE#317338). - hpsa: print CDBs instead of kernel virtual addresses for uncommon (bnc#913241,FATE#317338). - hpsa: do not use a void pointer for scsi_cmd field of struct (bnc#913241,FATE#317338). - hpsa: return failed from device reset/abort handlers (bnc#913241,FATE#317338). - hpsa: check for ctlr lockup after command allocation in main io path (bnc#913241,FATE#317338). - hpsa: guard against overflowing raid map array (bnc#913241,FATE#317338). - hpsa: do not ack controller events on controllers that do not support (bnc#913241,FATE#317338). - hpsa: remove incorrect BUG_ONs checking for raid offload enable (bnc#913241,FATE#317338). - hpsa: count passthru cmds with atomics, not a spin locked int (bnc#913241,FATE#317338). - hpsa: optimize cmd_alloc function by remembering last allocation (bnc#913241,FATE#317338). - hpsa: fix race between abort handler and main i/o path (bnc#913241,FATE#317338). - hpsa: honor queue depth of physical devices (bnc#913241,FATE#317338). - hpsa: use workqueue to resubmit failed ioaccel commands (bnc#913241,FATE#317338). - hpsa: factor out hpsa_ciss_submit function (bnc#913241,FATE#317338). - hpsa: do not request device rescan on every ioaccel path error (bnc#913241,FATE#317338). - hpsa: do not queue commands internally in driver (bnc#913241,FATE#317338). - hpsa: get rid of cmd_special_alloc and cmd_special_free (bnc#913241,FATE#317338). - hpsa: reserve some commands for use by driver (bnc#913241,FATE#317338). - hpsa: avoid unneccesary calls to resource freeing functions (bnc#913241,FATE#317338). - hpsa: fix memory leak in hpsa_alloc_cmd_pool (bnc#913241,FATE#317338). - hpsa: report allocation failures while allocating SG chain blocks (bnc#913241,FATE#317338). - hpsa: pass error from pci_set_consistent_dma_mask from hpsa_message (bnc#913241,FATE#317338). - hpsa: rename hpsa_request_irq to hpsa_request_irqs (bnc#913241,FATE#317338). - hpsa: report failure to ioremap config table (bnc#913241,FATE#317338). - hpsa: trivial message and comment clean ups (bnc#913241,FATE#317338). - hpsa: refactor hpsa_find_board_params() to encapsulate legacy test (bnc#913241,FATE#317338). - hpsa: downgrade the Waiting for no-op print to dev_info (bnc#913241,FATE#317338). - hpsa: propagate return value from board ID lookup (bnc#913241,FATE#317338). - hpsa: propagate hard_reset failures in reset_devices mode (bnc#913241,FATE#317338). - hpsa: remove 0x from queue depth print which is in decimal (bnc#913241,FATE#317338). - hpsa: notice all request_irq errors (bnc#913241,FATE#317338). - hpsa: Fix -Wunused-but-set-variable warning (bnc#913241,FATE#317338). - hpsa: rename free_irqs to hpsa_free_irqs (bnc#913241,FATE#317338). - hpsa: adjust RAID-1, RAID-1ADM, and RAID-6 names (bnc#913241,FATE#317338). - hpsa: change how SA controllers are reset (bnc#913241,FATE#317338). - hpsa: turn off interrupts when kdump starts (bnc#913241,FATE#317338). - hpsa: fix memory leak in kdump hard reset (bnc#913241,FATE#317338). - hpsa: correct endian sparse warnings (bnc#913241,FATE#317338). - commit a7dc4cf - direct-io: don't read inode->i_blkbits multiple times (bnc#919357). - fs/buffer.c: make block-size be per-page and protected by the page lock (bnc#919357). - commit 30188ad ++++ samba: - Remove deprecated base_rid example from idmap_rid manpage; (bso#11169); (bnc#913304). ------------------------------------------------------------------ ------------------ 2015-3-16 - Mar 16 2015 ------------------- ------------------------------------------------------------------ ++++ mono-core: - Add mono-handshake-validation.patch, mono-remove-export-ciphers.patch, 0001-Remove-the-client-side-SSLv2-fallback.patch: Fix TLS vulnerabilities, and remove SSLv2 support (CVE-2015-2318, CVE-2015-2319, CVE-2015-2320, bsc#921312). ++++ kernel-docs: - fork: report pid reservation failure properly (bnc#909684). - commit 5dd51e2 ++++ openssl: - security update: * CVE-2015-0209 (bnc#919648) - Fix a failure to NULL a pointer freed on error * CVE-2015-0286 (bnc#922496) - Segmentation fault in ASN1_TYPE_cmp * CVE-2015-0287 (bnc#922499) - ASN.1 structure reuse memory corruption * CVE-2015-0288 x509: (bnc#920236) - added missing public key is not NULL check * CVE-2015-0289 (bnc#922500) - PKCS7 NULL pointer dereferences * CVE-2015-0292 (bnc#922501) - Base64 decode * CVE-2015-0293 (bnc#922488) - Fix reachable assert in SSLv2 servers * added patches: openssl-CVE-2015-0209.patch openssl-CVE-2015-0286.patch openssl-CVE-2015-0287.patch openssl-CVE-2015-0288.patch openssl-CVE-2015-0289.patch openssl-CVE-2015-0292.patch openssl-CVE-2015-0293.patch ++++ openCryptoki: - fix filelist to build on s390 ++++ xorg-x11-libs: - u_libxfont_bdfreadproperties_property_count_needs_range_check.patch u_libxfont_bdfreadcharacters_bailout_if_a_char_s_bitmap_cannot_be_read.patch u_libxfont_bdfreadcharacters_ensure_metrics_fit_into_xcharinfo_struct.patch * Security fixes. (bnc#921978, CVE-2015-1802, CVE-2015-1803, CVE-2015-1804) ++++ yast2-installation: - Use a consistent look for openqa tests even via SSH (bsc#920635) - Enable the installation theme. - Let Y2FULLSCREEN=1 enable the full screen mode. - 2.17.113 ++++ yast2-storage: - check for GPT PReP in have_ppc_boot (bsc#922431) - 2.17.153 ------------------------------------------------------------------ ------------------ 2015-3-13 - Mar 13 2015 ------------------- ------------------------------------------------------------------ ++++ gdbm: - teach libgdbm that the new GDBM_MAGIC values from SLE12 are compatible [bnc#922303] ++++ kernel-docs: - Refresh patches.drivers/mlx4-0241-net-mlx4_en-Don-t-use-irq_affinity_notifier-to-track.patch. - Refresh patches.drivers/mlx4-0249-net-mlx4_en-cq-irq_desc-wasn-t-set-in-legacy-EQ-s.patch. - commit 78522d1 - Refresh patches.drivers/mlx4-0241-net-mlx4_en-Don-t-use-irq_affinity_notifier-to-track.patch. - commit 06fcfc6 - genirq: Add missing irq_to_desc export for CONFIG_SPARSE_IRQ=n (bug#919382 FATE#317529). - commit f58560b - genirq: export handle_edge_irq() and irq_to_desc() (bug#919382 FATE#317529). - commit 8a0be0f - bnx2x: Force fundamental reset for EEH recovery (bsc#908684 FATE#317539). - bnx2x: Configure device endianity on driver load and reset endianity on removal (bsc#908684 FATE#317539). - bnx2x: prevent incorrect byte-swap in BE (bsc#908684 FATE#317539). - bnx2x: Fix sparse warnings (bsc#908684 FATE#317539). - bnx2x: Fix static checker warning regarding `txdata_ptr' (bsc#908684 FATE#317539). - bnx2x: Fix timesync endianity (bsc#908684 FATE#317539). - bnx2x: Be more forgiving toward SW GRO (bsc#908684 FATE#317539). - bnx2x: VF clean statistics (bsc#908684 FATE#317539). - bnx2x: Fix stop-on-error (bsc#908684 FATE#317539). - bnx2x: ethtool -d might cause timeout in log (bsc#908684 FATE#317539). - bnx2x: FW assertion changes (bsc#908684 FATE#317539). - bnx2x: Make BP_VF more robust (bsc#908684 FATE#317539). - bnx2x: Prevent pci_disable_sriov with assigned VFs (bsc#908684 FATE#317539). - bnx2x: Prevent IOV if no entries in CAM (bsc#908684 FATE#317539). - bnx2x: Safe bnx2x_panic_dump() (bsc#908684 FATE#317539). - bnx2x: Update driver version to 1.710.51 (bsc#908684 FATE#317539). - bnx2x: Code cleanup (bsc#908684 FATE#317539). - bnx2x: Add timestamping and PTP hardware clock support (bsc#908684 FATE#317539). - bnx2x: Utilize FW 7.10.51 (bsc#908684 FATE#317539). - net: ethernet: broadcom: bnx2x: Remove redundant #ifdef (bsc#908684 FATE#317539). - bnx2x: fix set_setting for some PHYs (bsc#908684 FATE#317539). - bnx2x: Fix the MSI flags (bsc#908684 FATE#317539). - bnx2x: Enlarge the dorq threshold for VFs (bsc#908684 FATE#317539). - bnx2x: Fix 1G-baseT link (bsc#908684 FATE#317539). - bnx2x: Fix link for KR with swapped polarity lane (bsc#908684 FATE#317539). - bnx2x: Remove useless return variables (bsc#908684 FATE#317539). - bnx2x: Convert return 0 to return rc (bsc#908684 FATE#317539). - bnx2x: fix build when BNX2X_SRIOV is not enabled (bsc#908684 FATE#317539). - bnx2x: Memory leak during VF removal (bsc#908684 FATE#317539). - net: bnx2x: include irq.h for irqreturn_t definitions (bsc#908684 FATE#317539). - bnx2x: Fix compilation when CONFIG_BNX2X_SRIOV is not set (bsc#908684 FATE#317539). - bnx2x: Don't show port statistics for VFs (bsc#908684 FATE#317539). - bnx2x: Create workqueue for IOV related tasks (bsc#908684 FATE#317539). - bnx2x: Support mng. request for driver version (bsc#908684 FATE#317539). - bnx2x: Don't receive packets when the napi budget == 0 (bsc#908684 FATE#317539). - bnx2x: save RAM in kdump kernel by disabling TPA (bsc#908684 FATE#317539). - bnx2x: save RAM in kdump kernel by using a single queue (bsc#908684 FATE#317539). - bnx2x: clamp num_queues to prevent passing a negative value (bsc#908684 FATE#317539). - bnx2x: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#908684 FATE#317539). - bnx2x: utilize FW 7.8.19 (bsc#908684 FATE#317539). - bnx2x: (semantic) revise scheduling of sp_rtnl (bsc#908684 FATE#317539). - bnx2x: Fix bnx2x_panic_dump for VFs (bsc#908684 FATE#317539). - bnx2x: Revise IOV vlan/mac validation (bsc#908684 FATE#317539). - bnx2x: Add support in PF driver for RSC (bsc#908684 FATE#317539). - bnx2x: Semantic Validate vlan/mac changes (bsc#908684 FATE#317539). - bnx2x: Remove unnecessary internal mem config (bsc#908684 FATE#317539). - bnx2x: Remove unused iov code (bsc#908684 FATE#317539). - bnx2x: [Debug] change verbosity of some prints (bsc#908684 FATE#317539). - bnx2x: Allow VF rss on higher PFs (bsc#908684 FATE#317539). - bnx2[x]: Make module parameters readable (bsc#908684 FATE#317539). - bnx2x: fix L2-GRE TCP issues (bsc#908684 FATE#317539). - bnx2x: Fix generic option settings (bsc#908684 FATE#317539). - bnx2x: More Shutdown revisions (bsc#908684 FATE#317539). - bnx2x: Fix VF flr flow (bsc#908684 FATE#317539). - bnx2x: Don't release PCI bars on shutdown (bsc#908684 FATE#317539). - bnx2x: fix sparse warning (bsc#908684 FATE#317539). - bnx2x: Correct default Tx switching behaviour (bsc#908684 FATE#317539). - bnx2x: namespace and dead code cleanups (bsc#908684 FATE#317539). - bnx2x: fix DMA unmapping of TSO split BDs (bsc#908684 FATE#317539). - bnx2x: fix VLAN configuration for VFs (bsc#908684 FATE#317539). - bnx2x: fix AFEX memory overflow (bsc#908684 FATE#317539). - bnx2x: Clean before update RSS arrives (bsc#908684 FATE#317539). - bnx2x: Correct number of MSI-X vectors for VFs (bsc#908684 FATE#317539). - bnx2x: limit number of interrupt vectors for 57711 (bsc#908684 FATE#317539). - bnx2x: Fix KR2 work-around detection of BCM8073 (bsc#908684 FATE#317539). - bnx2x: Fix incorrect link-up report (bsc#908684 FATE#317539). - bnx2x: Fix Duplex setting for 54618se (bsc#908684 FATE#317539). - bnx2x: Fix passive DAC cable detection (bsc#908684 FATE#317539). - bnx2x: Fix 578xx-KR 1G link (bsc#908684 FATE#317539). - net: bnx2x: slight optimization of addr compare (bsc#908684 FATE#317539). - bnx2x: Fix build with SRIOV disabled (bsc#908684 FATE#317539). - bnx2x: add VF Multicast filters support (bsc#908684 FATE#317539). - bnx2x: Add num of VFs to Management statistics (bsc#908684 FATE#317539). - bnx2x: no error when RSS configuration fails (bsc#908684 FATE#317539). - bnx2x: add Big-Endian ethtool comment (bsc#908684 FATE#317539). - bnx2x: Add AER support (missing bits) (bsc#908684 FATE#317539). - bnx2x: downgrade "valid ME register value" message level (bsc#908684 FATE#317539). - bnx2x: avoid null pointer dereference when enabling SR-IOV (bsc#908684 FATE#317539). - bnx2x: Prevent "timeout waiting for state X" (bsc#908684 FATE#317539). - bnx2x: prevent CFC attention (bsc#908684 FATE#317539). - bnx2x: Prevent panic during DMAE timeout (bsc#908684 FATE#317539). - bnx2x: Clean the sp rtnl task upon unload (bsc#908684 FATE#317539). - bnx2x: Disable VF access on PF removal (bsc#908684 FATE#317539). - bnx2x: prevent FW assert on low mem during unload (bsc#908684 FATE#317539). - bnx2x: Set NETIF_F_HIGHDMA unconditionally (bsc#908684 FATE#317539). - bnx2x: Don't pretend during register dump (bsc#908684 FATE#317539). - bnx2x: Lock DMAE when used by statistic flow (bsc#908684 FATE#317539). - bnx2x: Prevent null pointer dereference on error flow (bsc#908684 FATE#317539). - bnx2x: Fix config when SR-IOV and iSCSI are enabled (bsc#908684 FATE#317539). - bnx2x: Fix Coalescing configuration (bsc#908684 FATE#317539). - bnx2x: Unlock VF-PF channel on MAC/VLAN config error (bsc#908684 FATE#317539). - bnx2x: Prevent an illegal pointer dereference during panic (bsc#908684 FATE#317539). - bnx2x: Fix Maximum CoS estimation for VFs (bsc#908684 FATE#317539). - net: bnx2x: remove unnecessary pci_set_drvdata() (bsc#908684 FATE#317539). - bnx2x: record rx queue for LRO packets (bsc#908684 FATE#317539). - net: bnx2x: Change variable type to bool (bsc#908684 FATE#317539). - net: skb_is_gso_v6() requires skb_is_gso() (bsc#908684 FATE#317539). - bnx2x: Add support for EXTPHY2 LED mode (bsc#908684 FATE#317539). - bnx2x: Change function prototype (bsc#908684 FATE#317539). - bnx2x: Don't disable/enable SR-IOV when loading (bsc#908684 FATE#317539). - bnx2x: Correct VF driver info (bsc#908684 FATE#317539). - bnx2x: Test nvram when interface is down (bsc#908684 FATE#317539). - bnx2x: handle known but unsupported VF messages (bsc#908684 FATE#317539). - bnx2x: prevent masked MCP parities from appearing (bsc#908684 FATE#317539). - bnx2x: prevent masking error from cnic (bsc#908684 FATE#317539). - bnx2x: add missing VF resource allocation during init (bsc#908684 FATE#317539). - bnx2x: Fix support for VFs on some PFs (bsc#908684 FATE#317539). - bnx2x: Prevent mistaken hangup between driver & FW (bsc#908684 FATE#317539). - bnx2x: Fix 848xx duplex settings (bsc#908684 FATE#317539). - bnx2x: Specific Active-DAC is not detected on 57810 (bsc#908684 FATE#317539). - bnx2x: 57840 non-external loopback test fail on 1G (bsc#908684 FATE#317539). - bnx2x: KR2 disablement fix (bsc#908684 FATE#317539). - bnx2x: Generalize KR work-around (bsc#908684 FATE#317539). - DMA-API: net: broadcom/bnx2x: replace dma_set_mask()+dma_set_coherent_mask() with new helper (bsc#908684 FATE#317539). - net: bnx2x: Staticize local symbols (bsc#908684 FATE#317539). - bnx2x: Use pci_dev pm_cap (bsc#908684 FATE#317539). - bnx2x: Fix configuration of doorbell block (bsc#908684 FATE#317539). - bnx2x: Restore a call to config_init (bsc#908684 FATE#317539). - bnx2x: fix broken compilation with CONFIG_BNX2X_SRIOV is not set (bsc#908684 FATE#317539). - bnx2x: Add missing braces in bnx2x:bnx2x_link_initialize (bsc#908684 FATE#317539). - bnx2x: VF RSS support - VF side (bsc#908684 FATE#317539). - bnx2x: VF RSS support - PF side (bsc#908684 FATE#317539). - bnx2x: Fix VF stats sync (bsc#908684 FATE#317539). - bnx2x: Fix VF memory leak unload (bsc#908684 FATE#317539). - bnx2x: Fix functionality of configuring vlan list (bsc#908684 FATE#317539). - bnx2x: Fix move FP memory deallocations (bsc#908684 FATE#317539). - bnx2x: vf mark stats started (bsc#908684 FATE#317539). - bnx2x: set VF DMAE when first function has 0 supported VFs (bsc#908684 FATE#317539). - bnx2x: Protect against VFs' ndos when SR-IOV is disabled (bsc#908684 FATE#317539). - bnx2x: prevent VF benign attentions (bsc#908684 FATE#317539). - bnx2x: Consider DCBX remote error (bsc#908684 FATE#317539). - bnx2x: Change DCB context handling (bsc#908684 FATE#317539). - bnx2x: dropless flow control not always functional (bsc#908684 FATE#317539). - bnx2x: prevent crash in shutdown flow with CNIC (bsc#908684 FATE#317539). - bnx2x: fix PTE write access error (bsc#908684 FATE#317539). - bnx2x: fix memory leak in VF (bsc#908684 FATE#317539). - bnx2x: update fairness parameters following DCB negotiation (bsc#908684 FATE#317539). - bnx2x: clean up unnecessary MSI/MSI-X capability find (bsc#908684 FATE#317539). - bnx2x: Revising locking scheme for MAC configuration (bsc#908684 FATE#317539). - bnx2x: fill in sane dump flag information (bsc#908684 FATE#317539). - bnx2x: fix dump flag handling (bsc#908684 FATE#317539). - bnx2x: remove zeroing of dump data buffer (bsc#908684 FATE#317539). - bnx2x: Remove sparse and coccinelle warnings (bsc#908684 FATE#317539). - bnx2x: Fix compilation with no IOV support (bsc#908684 FATE#317539). - bnx2x: Fix 20G KR2 support claims (bsc#908684 FATE#317539). - bnx2x: improve VF timings (bsc#908684 FATE#317539). - bnx2x: VF ndo sanity (bsc#908684 FATE#317539). - bnx2x: Improve PF behaviour toward VF (bsc#908684 FATE#317539). - Bnx2x: remove redundant D0 power state set (bsc#908684 FATE#317539). - bnx2x: fix a power state test (bsc#908684 FATE#317539). - bnx2x: semi-Semantic changes (bsc#908684 FATE#317539). - bnx2x: Revise prints (bsc#908684 FATE#317539). - bnx2x: Semantic removal and beautification (bsc#908684 FATE#317539). - bnx2x: Revise comments and alignment (bsc#908684 FATE#317539). - bnx2x: Semantic change of empty lines (bsc#908684 FATE#317539). - bnx2x: Implement PCI shutdown (bsc#908684 FATE#317539). - bnx2x: Count number of possible FCoE interfaces (bsc#908684 FATE#317539). - bnx2x, bnx2fc: Use per port max exchange resources (bsc#908684 FATE#317539). - bnx2x: Ack unknown VF messages (bsc#908684 FATE#317539). - bnx2x: Add and correct PCI link speed prints (bsc#908684 FATE#317539). - bnx2x: Zero VFs starting MACs (bsc#908684 FATE#317539). - bnx2x: Enable `set_phys_id' for all functions (bsc#908684 FATE#317539). - bnx2x: Wait for MCP validity during AER (bsc#908684 FATE#317539). - bnx2x: Link-flap avoidance in switch dependent mode (bsc#908684 FATE#317539). - net-bnx2x: dont reload on GRO change (bsc#908684 FATE#317539). - bnx2x: Prevent memory leak when cnic is absent (bsc#908684 FATE#317539). - bnx2x: correct reading of speed capabilities (bsc#908684 FATE#317539). - Revert "bnx2x: allow nvram test to run when device is down" (bsc#908684 FATE#317539). - bnx2x: Prevent NULL pointer dereference in kdump (bsc#908684 FATE#317539). - bnx2x: Allow recovery from second slot reset (bsc#908684 FATE#317539). - bnx2x: Fix memory leak (bsc#908684 FATE#317539). - bnx2x: Enhance MAC configuration for VFs (bsc#908684 FATE#317539). - bnx2x: Allow RX/TX pause control in autoneg (bsc#908684 FATE#317539). - bnx2x: prevent GRO false checksum claims (bsc#908684 FATE#317539). - bnx2x: update version to 1.78.17-0 (bsc#908684 FATE#317539). - bnx2x: allow nvram test to run when device is down (bsc#908684 FATE#317539). - bnx2x: add additional regions for CRC memory test (bsc#908684 FATE#317539). - bnx2x: remove non-necessary assignment (bsc#908684 FATE#317539). - bnx2x: fix byte-by-byte nvram write for BE machines (bsc#908684 FATE#317539). - bnx2x: refactor nvram read procedure (bsc#908684 FATE#317539). - bnx2x: Fix status blocks configuration (bsc#908684 FATE#317539). - bnx2x: Prevent UNDI FW illegal host access (bsc#908684 FATE#317539). - bnx2x: fix compilation without CONFIG_BNX2X_SRIOV (bsc#908684 FATE#317539). - bnx2x: Cosmetic changes (bsc#908684 FATE#317539). - bnx2x: Prevent VF race (bsc#908684 FATE#317539). - bnx2x: Fix VF outer vlan removal (bsc#908684 FATE#317539). - bnx2x: Fix VF statistics (bsc#908684 FATE#317539). - bnx2x: missing ARI should not be lethal (bsc#908684 FATE#317539). - bnx2x: Fix AER semaphore release (bsc#908684 FATE#317539). - bnx2x: fix assignment of signed expression to unsigned variable (bsc#908684 FATE#317539). - bnx2x: AER revised (bsc#908684 FATE#317539). - bnx2x: fix occasional statistics off-by-4GB error (bsc#908684 FATE#317539). - bnx2x: add RSS capability for GRE traffic (bsc#908684 FATE#317539). - bnx2x: add missing napi deletion in error path (bsc#908684 FATE#317539). - bnx2x: use list_move instead of list_del/list_add (bsc#908684 FATE#317539). - bnx2x: Control number of vfs dynamically (bsc#908684 FATE#317539). - bnx2x: Add iproute2 support for vfs (bsc#908684 FATE#317539). - bnx2x: Set ethtool ops for vfs (bsc#908684 FATE#317539). - bnx2x: Fix SFP+ misconfiguration in iSCSI boot scenario (bsc#908684 FATE#317539). - bnx2x: use the default NAPI weight (bsc#908684 FATE#317539). - bnx2x: fix UDP checksum for 57710/57711 (bsc#908684 FATE#317539). - bnx2x: remove dead code and make local funcs static (bsc#908684 FATE#317539). - bnx2x: Force link UP when the interface is in LOOPBACK mode (bsc#908684 FATE#317539). - bnx2x: SR-IOV version compatibility bugfix (bsc#908684 FATE#317539). - bnx2x: Fix compilation with stop-on-error (bsc#908684 FATE#317539). - bnx2x: correct memory release scheme (bsc#908684 FATE#317539). - bnx2x: Remove many sparse warnings (bsc#908684 FATE#317539). - bnx2x: Add missing VFs reference in macros (bsc#908684 FATE#317539). - bnx2x: Add additional debug information (bsc#908684 FATE#317539). - bnx2x: correct usleep_range usage (bsc#908684 FATE#317539). - bnx2x: reorganization and beautification (bsc#908684 FATE#317539). - bnx2x: Semantic renovation (bsc#908684 FATE#317539). - bnx2x: Introduce 2013 and advance version to 1.78.02 (bsc#908684 FATE#317539). - bnx2x: improve stop-on-error (bsc#908684 FATE#317539). - bnx2x: add `ethtool -w' support (bsc#908684 FATE#317539). - bnx2x: move debugging code before the return (bsc#908684 FATE#317539). - bnx2x: align define usage to satisfy static checkers (bsc#908684 FATE#317539). - bnx2x: NULL dereference on error in debug code (bsc#908684 FATE#317539). - bnx2x: Segregate SR-IOV code (bsc#908684 FATE#317539). - bnx2x: Add VF device ids and enable feature (bsc#908684 FATE#317539). - bnx2x: Support PF <-> VF Bulletin Board (bsc#908684 FATE#317539). - bnx2x: Support VF FLR (bsc#908684 FATE#317539). - bnx2x: Support of PF driver of a VF release request (bsc#908684 FATE#317539). - bnx2x: Support of PF driver of a VF close request (bsc#908684 FATE#317539). - bnx2x: Support of PF driver of a VF q_teardown request (bsc#908684 FATE#317539). - bnx2x: Support of PF driver of a VF q_filters request (bsc#908684 FATE#317539). - bnx2x: Support of PF driver of a VF setup_q request (bsc#908684 FATE#317539). - bnx2x: Support statistics collection for VFs by the PF (bsc#908684 FATE#317539). - bnx2x: Support of PF driver of a VF init request (bsc#908684 FATE#317539). - bnx2x: Support of PF driver of a VF acquire request (bsc#908684 FATE#317539). - bnx2x: Infrastructure for VF <-> PF request on PF side (bsc#908684 FATE#317539). - bnx2x: Prepare device and initialize VF database (bsc#908684 FATE#317539). - bnx2x: Allocate VF database in PF when VFs are present (bsc#908684 FATE#317539). - bnx2x: VF fastpath (bsc#908684 FATE#317539). - bnx2x: Support ndo_set_rxmode in VF driver (bsc#908684 FATE#317539). - bnx2x: Add teardown_q and close to VF <-> PF channel (bsc#908684 FATE#317539). - bnx2x: Add init, setup_q, set_mac to VF <-> PF channel (bsc#908684 FATE#317539). - bnx2x: Separate VF and PF logic (bsc#908684 FATE#317539). - bnx2x: Add to VF <-> PF channel the release request (bsc#908684 FATE#317539). - bnx2x: VF <-> PF channel 'acquire' at vf probe (bsc#908684 FATE#317539). - bnx2x: Support probing and removing of VF device (bsc#908684 FATE#317539). - bnx2x: remove __dev* attributes (bsc#908684 FATE#317539). - commit 60da670 - net/mlx4_core: Limit count field to 24 bits in qp_alloc_res (bug#919382 FATE#317529). - net/mlx4_core: Call synchronize_irq() before freeing EQ buffer (bug#919382 FATE#317529). - mlx4: fix race accessing page->_count (bug#919382 FATE#317529). - net: add netdev_txq_bql_{enqueue, complete}_prefetchw() helpers (bug#919382 FATE#317529). - net/mlx4_en: remove NETDEV_TX_BUSY (bug#919382 FATE#317529). - net/mlx4_en: Enable the compiler to make is_inline() inlined (bug#919382 FATE#317529). - net/mlx4_en: tx_info->ts_requested was not cleared (bug#919382 FATE#317529). - net/mlx4_en: Use local var for skb_headlen(skb) (bug#919382 FATE#317529). - net/mlx4_en: Use local var in tx flow for skb_shinfo(skb) (bug#919382 FATE#317529). - net/mlx4_en: mlx4_en_xmit() reads ring->cons once, and ahead of time to avoid stalls (bug#919382 FATE#317529). - net/mlx4_en: Avoid false sharing in mlx4_en_en_process_tx_cq() (bug#919382 FATE#317529). - net/mlx4_en: Use prefetch in tx path (bug#919382 FATE#317529). - net/mlx4_en: Avoid a cache line miss in TX completion for single frag skb's (bug#919382 FATE#317529). - net/mlx4_en: tx_info allocated with kmalloc() instead of vmalloc() (bug#919382 FATE#317529). - nick kvfree() from apparmor (bug#919382 FATE#317529). - apparmor: no need to delay vfree() (bug#919382 FATE#317529). - net/mlx4_en: Avoid calling bswap in tx fast path (bug#919382 FATE#317529). - net/mlx4_en: Align tx path structures to cache lines (bug#919382 FATE#317529). - net/mlx4_en: Code cleanups in tx path (bug#919382 FATE#317529). - net/mlx4_core: Deprecate error message at ConnectX-2 cards startup to debug (bug#919382 FATE#317529). - net/mlx4_core: Protect QUERY_PORT wrapper from untrusted guests (bug#919382 FATE#317529). - net/mlx4_core: New init and exit flow for mlx4_core (bug#919382 FATE#317529). - net/mlx4_core: Don't disable SRIOV if there are active VFs (bug#919382 FATE#317529). - mellanox: Change en_print to return void (bug#919382 FATE#317529). - net/mlx4_en: Add mlx4_en_get_cqe helper (bug#919382 FATE#317529). - net/mlx4_core: Cache line EQE size support (bug#919382 FATE#317529). - net/mlx4_core: Enable CQE/EQE stride support (bug#919382 FATE#317529). - mlx4_en: Convert the normal skb free path to dev_consume_skb_any() (bug#919382 FATE#317529). - net/mlx4: Use is_kdump_kernel() to detect kdump kernel (bug#919382 FATE#317529). - treewide: fix errors in printk (bug#919382 FATE#317529). - net/mlx4_core: Allow not to specify probe_vf in SRIOV IB mode (bug#919382 FATE#317529). - IB/mlx4: Do not allow APM under RoCE (bug#919382 FATE#317529). - IB/mlx4: Avoid accessing netdevice when building RoCE qp1 header (bug#919382 FATE#317529). - mlx4: Fix mlx4 reg/unreg mac to work properly with 0-mac addresses (bug#919382 FATE#317529). - IB/mlx4: Avoid executing gid task when device is being removed (bug#919382 FATE#317529). - IB/mlx4: Fix lockdep splat for the iboe lock (bug#919382 FATE#317529). - IB/mlx4: Disable TSO for Connect-X rev. A0 HCAs (bug#919382 FATE#317529). - net/mlx4: Use the correct VSD mask in UPDATE_QP (bug#919382 FATE#317529). - net/mlx4: Correctly configure single ported VFs from the host (bug#919382 FATE#317529). - net/mlx4_en: do not ignore autoneg in mlx4_en_set_pauseparam() (bug#919382 FATE#317529). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bug#919382 FATE#317529). - mlx4_core: Add support for secure-host and SMP firewall (bug#919382 FATE#317529). - net/mlx4_en: mlx4_en_et_priv_flags() can be static (bug#919382 FATE#317529). - net/mlx4_en: Reduce memory consumption on kdump kernel (bug#919382 FATE#317529). - net/mlx4_core: Use low memory profile on kdump kernel (bug#919382 FATE#317529). - net/mlx4_en: Disable blueflame using ethtool private flags (bug#919382 FATE#317529). - net/mlx4_en: current_mac isn't updated in port up (bug#919382 FATE#317529). - net/mlx4_en: cq->irq_desc wasn't set in legacy EQ's (bug#919382 FATE#317529). - net/mlx4_core: Remove MCG in case it is attached to promiscuous QPs only (bug#919382 FATE#317529). - net/mlx4_core: In SR-IOV mode host should add promisc QP to default entry only (bug#919382 FATE#317529). - net/mlx4_core: Make sure the max number of QPs per MCG isn't exceeded (bug#919382 FATE#317529). - net/mlx4_core: Make sure that negative array index isn't used (bug#919382 FATE#317529). - net/mlx4_core: Fix leakage of SW multicast entries (bug#919382 FATE#317529). - net/mlx4_en: Ignore budget on TX napi polling (bug#919382 FATE#317529). - net/mlx4_en: IRQ affinity hint is not cleared on port down (bug#919382 FATE#317529). - net/mlx4_en: Don't use irq_affinity_notifier to track changes in IRQ affinity map (bug#919382 FATE#317529). - net/mlx4_en: Fix mac_hash database inconsistency (bug#919382 FATE#317529). - net/mlx4_en: Do not count LLC/SNAP in MTU calculation (bug#919382 FATE#317529). - net/mlx4_en: Do not disable vlan filter during promiscuous mode (bug#919382 FATE#317529). - net/mlx4: Verify port number in __mlx4_unregister_mac (bug#919382 FATE#317529). - net/mlx4_en: Run loopback test only when port is up (bug#919382 FATE#317529). - net/mlx4_en: Fix set port ratelimit for 40GE (bug#919382 FATE#317529). - net/mlx4_core: Fix the error flow when probing with invalid VF configuration (bug#919382 FATE#317529). - net/mlx4_en: Use affinity hint (bug#919382 FATE#317529). - cpumask: Utility function to set n'th cpu - local cpu first (bug#919382 FATE#317529). - net/mlx4_core: Keep only one driver entry release mlx4_priv (bug#919382 FATE#317529). - net/mlx4_core: Fix SRIOV free-pool management when enforcing resource quotas (bug#919382 FATE#317529). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bug#919382 FATE#317529). - net/mlx4_core: Replace pr_warning() with pr_warn() (bug#919382 FATE#317529). - net/mlx4_core: Deprecate use_prio module parameter (bug#919382 FATE#317529). - net/mlx4_en: Fix uninitialized use of 'port_up' in mlx4_en_set_channels() (bug#919382 FATE#317529). - net/mlx4_core: Fix inaccurate return value of mlx4_flow_attach() (bug#919382 FATE#317529). - net/mlx4_en: Using positive error value for unsigned (bug#919382 FATE#317529). - net/mlx4_en: Protect MAC address modification with the state_lock mutex (bug#919382 FATE#317529). - net/mlx4_core: Removed unnecessary bit operation condition (bug#919382 FATE#317529). - net/mlx4_core: Fix smatch error - possible access to a null variable (bug#919382 FATE#317529). - net/mlx4_en: Fix errors in MAC address changing when port is down (bug#919382 FATE#317529). - net/mlx4_en: User prio mapping gets corrupted when changing number of channels (bug#919382 FATE#317529). - net/mlx4_core: Enforce irq affinity changes immediatly (bug#919382 FATE#317529). - radix-tree: fix contiguous iterator (bug#919382 FATE#317529). - radix-tree: introduce bit-optimized iterator (bug#919382 FATE#317529). - net: get rid of SET_ETHTOOL_OPS (bug#919382 FATE#317529). - mellanox: Logging message cleanups (bug#919382 FATE#317529). - IB/mlx4: SET_PORT called by mlx4_ib_modify_port should be wrapped (bug#919382 FATE#317529). - mlx4_core: Fix incorrect FLAGS1 bitmap test in mlx4_QUERY_FUNC_CAP (bug#919382 FATE#317529). - mlx4_core: Fix memory leaks in SR-IOV error paths (bug#919382 FATE#317529). - net/mlx4_core: Don't issue PCIe speed/width checks for VFs (bug#919382 FATE#317529). - net/mlx4_core: Load the Eth driver first (bug#919382 FATE#317529). - net/mlx4_core: Adjust port number in qp_attach wrapper when detaching (bug#919382 FATE#317529). - mlx4_en: don't use napi_synchronize inside mlx4_en_netpoll (bug#919382 FATE#317529). - net/mlx4_core: Preserve pci_dev_data after __mlx4_remove_one() (bug#919382 FATE#317529). - mlx4_core: Make buffer larger to avoid overflow warning (bug#919382 FATE#317529). - mlx4_core: Fix some indenting in mlx4_ib_add() (bug#919382 FATE#317529). - net/mlx4_core: pass pci_device_id.driver_data to __mlx4_init_one during reset (bug#919382 FATE#317529). - mlx4: Add support for CONFIG_DEV command (bug#919382 FATE#317529). - net/mlx4: USe one wrapper that returns -EPERM (bug#919382 FATE#317529). - mlx4: Use actual number of PCI functions (PF + VFs) for alias GUID logic (bug#919382 FATE#317529). - net/mlx4: Adapt num_vfs/probed_vf params for single port VF (bug#919382 FATE#317529). - net/mlx4: Adapt code for N-Port VF (bug#919382 FATE#317529). - net/mlx4: Add utils for N-Port VFs (bug#919382 FATE#317529). - net/mlx4: Add data structures to support N-Ports per VF (bug#919382 FATE#317529). - mlx4: Don't receive packets when the napi budget == 0 (bug#919382 FATE#317529). - net/mlx4_core: Load the IB driver when the device supports IBoE (bug#919382 FATE#317529). - net/mlx4_core: Fix wrong dump of the vxlan offloads device capability (bug#919382 FATE#317529). - net/mlx4_core: Fix memory access error in mlx4_QUERY_DEV_CAP_wrapper() (bug#919382 FATE#317529). - net/mlx4: Support shutdown() interface (bug#919382 FATE#317529). - mlx4: Call dev_kfree_skby_any instead of dev_kfree_skb (bug#919382 FATE#317529). - net/mlx4_en: mlx4_en_verify_params() can be static (bug#919382 FATE#317529). - net,IB/mlx: Bump all Mellanox driver versions (bug#919382 FATE#317529). - net/mlx4_en: Change Connect-X description in kconfig (bug#919382 FATE#317529). - net/mlx4_en: Use union for BlueFlame WQE (bug#919382 FATE#317529). - net/mlx4_core: Fix sparse warning (bug#919382 FATE#317529). - net/mlx4_en: Fix selftest failing on non 10G link speed (bug#919382 FATE#317529). - net/mlx4: Replace mlx4_en_mac_to_u64() with mlx4_mac_to_u64() (bug#919382 FATE#317529). - net/mlx4_en: Move queue stopped/waked counters to be per ring (bug#919382 FATE#317529). - net/mlx4_en: Pad ethernet packets smaller than 17 bytes (bug#919382 FATE#317529). - net/mlx4_en: Verify mlx4_en module parameters (bug#919382 FATE#317529). - net/mlx4_en: Fix UP limit in ieee_ets->prio_tc (bug#919382 FATE#317529). - net/mlx4_en: Fix bad use of dev_id (bug#919382 FATE#317529). - net/mlx4_en: Expose port number through sysfs (bug#919382 FATE#317529). - net/mlx4: Fix limiting number of IRQ's instead of RSS queues (bug#919382 FATE#317529). - net/mlx4: Set number of RX rings in a utility function (bug#919382 FATE#317529). - IB: Report using RoCE IP based gids in port caps (bug#919382 FATE#317529). - mlx4: Use pci_enable_msix_range() instead of pci_enable_msix() (bug#919382 FATE#317529). - net/mlx4_core: Remove unnecessary validation for port number (bug#919382 FATE#317529). - net/mlx4_core: clean up srq_res_start_move_to() (bug#919382 FATE#317529). - net/mlx4_core: clean up cq_res_start_move_to() (bug#919382 FATE#317529). - drivers/net: delete non-required instances of include (bug#919382 FATE#317529). - mlx4_en: Select PTP_1588_CLOCK (bug#919382 FATE#317529). - net/mlx4_core: Warn if device doesn't have enough PCI bandwidth (bug#919382 FATE#317529). - PCI: Add PCIe Link Capability link speed and width names (bug#919382 FATE#317529). - mlx4_en: Only cycle port if HW timestamp config changes (bug#919382 FATE#317529). - mlx4_en: Add PTP hardware clock (bug#919382 FATE#317529). - net: mlx4: slight optimization of addr compare (bug#919382 FATE#317529). - net/mlx4_core: Check port number for validity before accessing data (bug#919382 FATE#317529). - net/mlx4_en: Add NAPI support for transmit side (bug#919382 FATE#317529). - net/mlx4_en: Ignore irrelevant hypervisor events (bug#919382 FATE#317529). - net/mlx4_core: Set CQE/EQE size to 64B by default (bug#919382 FATE#317529). - net/mlx4_en: Configure the XPS queue mapping on driver load (bug#919382 FATE#317529). - net/mlx4_core: Expose physical port id as PF/VF capability (bug#919382 FATE#317529). - net/mlx4_core: Introduce nic_info new flag in QUERY_FUNC_CAP (bug#919382 FATE#317529). - net/mlx4_core: Rename QUERY_FUNC_CAP fields (bug#919382 FATE#317529). - net/mlx4_core: Remove zeroed out of explicit QUERY_FUNC_CAP fields (bug#919382 FATE#317529). - net: mlx4 calls skb_set_hash (bug#919382 FATE#317529). - mlx4_core: Roll back round robin bitmap allocation commit for CQs, SRQs, and MPTs (bug#919382 FATE#317529). - mlx4_en: Implement the SIOCGHWTSTAMP ioctl (bug#919382 FATE#317529). - IB/mlx4: Fix error return code (bug#919382 FATE#317529). - net/mlx4_core: destroy workqueue when driver fails to register (bug#919382 FATE#317529). - net/mlx4_en: Remove selftest TX queues empty condition (bug#919382 FATE#317529). - IB/mlx4: Fix device max capabilities check (bug#919382 FATE#317529). - IB/mlx4: Fix endless loop in resize CQ (bug#919382 FATE#317529). - treewide: Fix typo in printk (bug#919382 FATE#317529). - net/mlx4_en: Datapath structures are allocated per NUMA node (bug#919382 FATE#317529). - net/mlx4_core: ICM pages are allocated on device NUMA node (bug#919382 FATE#317529). - net/mlx4_en: Datapath resources allocated dynamically (bug#919382 FATE#317529). - net/mlx4_core: Add immediate activate for VGT->VST->VGT (bug#919382 FATE#317529). - net/mlx4_core: Initialize all mailbox buffers to zero before use (bug#919382 FATE#317529). - net/mlx4_en: Add RFS support in UDP (bug#919382 FATE#317529). - net/mlx4_en: Fixed crash when port type is changed (bug#919382 FATE#317529). - net/mlx4_core: Implement resource quota enforcement (bug#919382 FATE#317529). - net/mlx4_core: Fix quota handling in the QUERY_FUNC_CAP wrapper (bug#919382 FATE#317529). - mlx4: Structures and init/teardown for VF resource quotas (bug#919382 FATE#317529). - net/mlx4_core: Fix checking order in MR table init (bug#919382 FATE#317529). - net/mlx4_core: Don't fail reg/unreg vlan for older guests (bug#919382 FATE#317529). - net/mlx4_core: Resource tracker for reg/unreg vlans (bug#919382 FATE#317529). - net/mlx4_en: Use vlan id instead of vlan index for unregistration (bug#919382 FATE#317529). - net/mlx4_core: Fix reg/unreg vlan/mac to conform to the firmware spec (bug#919382 FATE#317529). - net/mlx4_core: Fix register/unreg vlan flow (bug#919382 FATE#317529). - net/mlx4_core: Fix call to __mlx4_unregister_mac (bug#919382 FATE#317529). - net/mlx4_core: Load higher level modules according to ports type (bug#919382 FATE#317529). - net/mlx4: Unused local variable in mlx4_opreq_action (bug#919382 FATE#317529). - net/mlx4: Fix typo, move similar defs to same location (bug#919382 FATE#317529). - net/mlx4: Clean the code to eliminate trivial build warnings (bug#919382 FATE#317529). - net/mlx4_en: Fix pages never dma unmapped on rx (bug#919382 FATE#317529). - net/mlx4_en: Rename name of mlx4_en_rx_alloc members (bug#919382 FATE#317529). - net/mlx4_en: Check device state when setting coalescing (bug#919382 FATE#317529). - net/mlx4_en: Reduce scope of local variables in mlx4_en_xmit (bug#919382 FATE#317529). - net/mlx4_en: Fix handling of dma_map failure (bug#919382 FATE#317529). - net/mlx4_en: Notify user when TX ring in error state (bug#919382 FATE#317529). - net/mlx4_en: Disable global flow control when PFC enabled (bug#919382 FATE#317529). - net/mlx4_en: Coding style cleanup in mlx4_en_dcbnl_ieee_setpfc() (bug#919382 FATE#317529). - net: mlx4: Staticize local functions (bug#919382 FATE#317529). - include: Convert ethernet mac address declarations to use ETH_ALEN (bug#919382 FATE#317529). - net/mlx4_core: Respond to operation request by firmware (bug#919382 FATE#317529). - net/mlx4_en: Fix BlueFlame race (bug#919382 FATE#317529). - mlx4_core: Fix XRC QPs detection in the resource tracker (bug#919382 FATE#317529). - net/mlx4_core: VFs must ignore the enable_64b_cqe_eqe module param (bug#919382 FATE#317529). - net/mlx4_core: Don't give VFs MAC addresses which are derived from the PF MAC (bug#919382 FATE#317529). - IB/mlx4: Use default pkey when creating tunnel QPs (bug#919382 FATE#317529). - net/mlx4: fix small memory leak on error (bug#919382 FATE#317529). - net/mlx4_core: Dynamic VST to VST vlan/qos changes (bug#919382 FATE#317529). - net/mlx4_core: Fail device init if num_vfs is negative (bug#919382 FATE#317529). - net/mlx4_core: Add warning in case of command timeouts (bug#919382 FATE#317529). - net/mlx4_core: Replace sscanf() with kstrtoint() (bug#919382 FATE#317529). - net/mlx4_en: Add prints when TX timeout occurs (bug#919382 FATE#317529). - net/mlx4_en: Fix a race between napi poll function and RX ring cleanup (bug#919382 FATE#317529). - net/mlx4_en: Change log level from error to debug for vlan related messages (bug#919382 FATE#317529). - net/mlx4_en: Move register_netdev() to the end of initialization function (bug#919382 FATE#317529). - net/mlx4_en: Do not query stats when device port is down (bug#919382 FATE#317529). - net/mlx4_en: Fix resource leak in error flow (bug#919382 FATE#317529). - mlx4: allow order-0 memory allocations in RX path (bug#919382 FATE#317529). - mlx4: use __netdev_pick_tx instead of __skb_tx_hash in mlx4_en_select_queue (bug#919382 FATE#317529). - net/mlx4: use one page fragment per incoming frame (bug#919382 FATE#317529). - treewide: Fix typo in printk (bug#919382 FATE#317529). - net/mlx_en: Timestamping is not supported in slave mode (bug#919382 FATE#317529). - net/mlx4_core: Keep VF assigned MAC in the PF admin table (bug#919382 FATE#317529). - net/mlx4_en: Handle unassigned VF MAC address correctly (bug#919382 FATE#317529). - net/mlx4_en: Fix adaptive moderation cq update (bug#919382 FATE#317529). - net/mlx4: Strengthen VLAN tags/priorities enforcement in VST mode (bug#919382 FATE#317529). - net/mlx4_core: Add missing report on VST and spoof-checking dev caps (bug#919382 FATE#317529). - mlx4_core: Expose a few helpers to fill DMFS HW strucutures (bug#919382 FATE#317529). - mlx4_core: Directly expose fields of DMFS HW rule control segment (bug#919382 FATE#317529). - mlx4_core: Change a few DMFS fields names to match firmare spec (bug#919382 FATE#317529). - mlx4: Match DMFS promiscuous field names to firmware spec (bug#919382 FATE#317529). - mlx4_core: Move DMFS HW structs to common header file (bug#919382 FATE#317529). - IB/mlx4: Set link type for RAW PACKET QPs in the QP context (bug#919382 FATE#317529). - IB/mlx4: Disable VLAN stripping for RAW PACKET QPs (bug#919382 FATE#317529). - mlx4_core: Reduce warning message for SRQ_LIMIT event to debug level (bug#919382 FATE#317529). - mlx4_en: fix a build error on 32bit arches (bug#919382 FATE#317529). - net/mlx4: Add support to get VF config (bug#919382 FATE#317529). - net/mlx4: Add VF MAC spoof checking support (bug#919382 FATE#317529). - net/mlx4: Add set VF default vlan ID and priority support (bug#919382 FATE#317529). - net/mlx4: Add set VF mac address support (bug#919382 FATE#317529). - net/mlx4: Add structures to keep VF Ethernet ports information (bug#919382 FATE#317529). - net/mlx4: Add reference counting to MAC registeration (bug#919382 FATE#317529). - net/mlx4_en: Disable HW clock overflow check when no HW support (bug#919382 FATE#317529). - net/mlx4_core: Disable HW timestamping for VFs (bug#919382 FATE#317529). - net/mlx4_en: Add a service task (bug#919382 FATE#317529). - net/mlx4_en: Support software timestamping (bug#919382 FATE#317529). - net/mlx4_en: Add HW timestamping (TS) support (bug#919382 FATE#317529). - net/mlx4_core: Read HCA frequency and map internal clock (bug#919382 FATE#317529). - net/mlx4_core: Add timestamping device capability (bug#919382 FATE#317529). - net/mlx4_en: set correct MTU in SRIOV (bug#919382 FATE#317529). - net/mlx4_core: Translate guest B0 steering rules to DMFS (bug#919382 FATE#317529). - net/mlx4_core: Add helper function to translate B0 steering rules to DMFS (bug#919382 FATE#317529). - net/mlx4_en: Advertize DCB_CAP_DCBX_HOST in getdcbx (bug#919382 FATE#317529). - net/mlx4_en: Enable DCB ETS ops only when supported by the firmware (bug#919382 FATE#317529). - net/mlx4_core: Added proper description for two device capabilities (bug#919382 FATE#317529). - drivers:net: Remove dma_alloc_coherent OOM messages (bug#919382 FATE#317529). - drivers:net: Remove unnecessary OOM messages after netdev_alloc_skb (bug#919382 FATE#317529). - mlx4: Remove driver specific fdb handlers (bug#919382 FATE#317529). - net/mlx4_en: Fix setting initial MAC address (bug#919382 FATE#317529). - net/mlx4_core: Disallow releasing VF QPs which have steering rules (bug#919382 FATE#317529). - net/mlx4_core: Always use 64 bit resource ID when doing lookup (bug#919382 FATE#317529). - net/mlx4_en: Remove ethtool flow steering rules before releasing QPs (bug#919382 FATE#317529). - net/mlx4_core: Fix wrong order of flow steering resources removal (bug#919382 FATE#317529). - net/mlx4_core: Fix wrong mask applied on EQ numbers in the wrapper (bug#919382 FATE#317529). - mlx4: remove leftover idr_pre_get() call (bug#919382 FATE#317529). - net/mlx4_en: Disable RFS when running in SRIOV mode (bug#919382 FATE#317529). - net/mlx4_en: Cleanup MAC resources on module unload or port stop (bug#919382 FATE#317529). - net/mlx4_en: Fix race when setting the device MAC address (bug#919382 FATE#317529). - net/mlx4_core: Fix endianness bug in set_param_l (bug#919382 FATE#317529). - net/mlx4_core: Turn off device-managed FS bit in dev-cap wrapper if DMFS is not enabled (bug#919382 FATE#317529). - net/mlx4_core: Disable mlx4_QP_ATTACH calls from guests if the host uses flow steering (bug#919382 FATE#317529). - mlx4_en: fix allocation of CPU affinity reverse-map (bug#919382 FATE#317529). - mlx4_en: fix allocation of device tx_cq (bug#919382 FATE#317529). - mlx4_core: Disable memory windows for virtual functions (bug#919382 FATE#317529). - IB/mlx4: Remove redundant NULL check before kfree (bug#919382 FATE#317529). - IB/mlx4: Fix compiler warning about uninitialized 'vlan' variable (bug#919382 FATE#317529). - IB/mlx4: Convert is_xxx variables in build_mlx_header() to bool (bug#919382 FATE#317529). - mlx4_core: Propagate MR deregistration failures to caller (bug#919382 FATE#317529). - mlx4_core: Rename MPT-related functions to have mpt_ prefix (bug#919382 FATE#317529). - IB/mlx4_ib: Remove local invalidate segment unused fields (bug#919382 FATE#317529). - IB/mlx4: Adjust duplicate test (bug#919382 FATE#317529). - IB/mlx4: Fix bug unwinding on error in mlx4_ib_init_sriov() (bug#919382 FATE#317529). - treewide: Replace incomming with incoming in all comments and strings (bug#919382 FATE#317529). - drivers: net: Remove remaining alloc/OOM messages (bug#919382 FATE#317529). - mlx4_en: Fix BQL reset TX queue call point (bug#919382 FATE#317529). - net/mlx4_en: Implement ndo fdb functionality (bug#919382 FATE#317529). - net/mlx4_en: Manage hash of MAC addresses per port (bug#919382 FATE#317529). - net/mlx4_en: Save previous MAC address of the port so we can replace it later (bug#919382 FATE#317529). - net/mlx4: Move Ethernet related functionality from mlx4_core to mlx4_en (bug#919382 FATE#317529). - net/mlx4_en: Cleanup multiline strings (bug#919382 FATE#317529). - net/mlx4_en: Optimize Rx fast path filter checks (bug#919382 FATE#317529). - net/mlx4_en: Optimize loopback related checks in data path (bug#919382 FATE#317529). - net/mlx4_en: Fix compilation error when CONFIG_INET isn't defined (bug#919382 FATE#317529). - net/mlx4_en: Fix error propagation for ethtool helper function (bug#919382 FATE#317529). - ethernet: Remove unnecessary alloc/OOM messages, alloc cleanups (bug#919382 FATE#317529). - net/mlx4_en: Fix transmit timeout when driver restarts port (bug#919382 FATE#317529). - net/mlx4_en: Don't reassign port mac address on firmware that supports it (bug#919382 FATE#317529). - net/mlx4_core: Use firmware driven flow steering hash mode (bug#919382 FATE#317529). - net/mlx4_en: Fix ethtool rules leftovers after module unloaded (bug#919382 FATE#317529). - net/mlx4_en: Block insertion of ethtool steering rules while the interface is down (bug#919382 FATE#317529). - net/mlx4_en: Fix vlan mask for ethtool steering rules (bug#919382 FATE#317529). - net/mlx4_en: Validate VLAN IDs provided in ethtool flow steering rules (bug#919382 FATE#317529). - net/mlx4_en: Fix ip/udp steering rules multicast mac when attached via ethtool (bug#919382 FATE#317529). - net/mlx4_core: Set correctly allow_loopback flag (bug#919382 FATE#317529). - net/mlx4_core: Directly expose fields of HW flow steering rule control segment (bug#919382 FATE#317529). - net/mlx4_en: Initialize RFS filters lock and list in init_netdev (bug#919382 FATE#317529). - net/mlx4_en: Fix a race when closing TX queue (bug#919382 FATE#317529). - net/mlx4_core: Return proper error code when __mlx4_add_one fails (bug#919382 FATE#317529). - net/mlx4_en: Use the correct netif lock on ndo_set_rx_mode (bug#919382 FATE#317529). - net/mlx4_en: Fix traffic loss under promiscuous mode (bug#919382 FATE#317529). - net/mlx4_en: Issue the dump eth statistics command under lock (bug#919382 FATE#317529). - net/mlx4_en: remove redundant code (bug#919382 FATE#317529). - remove init of dev->perm_addr in drivers (bug#919382 FATE#317529). - commit 640feac - Refresh patches.drivers/mlx5-0070-net-IB-mlx-Bump-all-Mellanox-driver-versions.patch. Remove mlx4 changes from that series. - commit f01ded0 ++++ kiwi: - v5.05.85 released Fixed recovery of EFI bootdata + restore EFI module provided by the rpm package. The one kiwi created is specific to the uuid of the root filesystem which changes on factory restore. + make sure correct linux/linuxefi and initrd/initrdefi commands are used in recovery grub config by checking against grub_platform to allow recovery in BIOS and EFI mode + make sure mkfs.fat exists in the initrd to allow recovery of EFI fat partition, actually implement recovery of EFI fat partition Related to (bnc #921970) Increase the EFI/vboot fat partition Instead of 32MB use 200MB to allow holding a little more data like firmware and/or loaders (bnc #921017) Update elilo compat mode Support copy of vendor specific EFI boot config In addition use the oem boot title as title for the elilo configuration too (bnc #921852) ++++ ofed: - Add ofed-openibd_mellanox.patch to make init script load and unload mlx5_ib and mlx5_core (bnc#922018). - Exclude s390(x) for the time being as code doesn't compile. - License for sdp driver is GPL-2.0, 'GPL-2.0 or BSD-2-Clause' for ofed package and SUSE-Firmware for the cxgb3 firmware.. ++++ postgresql94-libs: - Upgrade to PostgreSQL 9.4.1. (FATE#316970, bsc#907651) - Re-enable the uuid module and use the implementation of util-linux instead of ossp-uuid. - Major enhancements in PostgreSQL 9.4 include: * Add jsonb, a more capable and efficient data type for storing JSON data. * Add new SQL command ALTER SYSTEM for changing postgresql.conf configuration file entries. * Reduce lock strength for some ALTER TABLE commands. * Allow materialized views to be refreshed without blocking concurrent reads. * Add support for logical decoding of WAL data, to allow database changes to be streamed out in a customizable format. * Allow background worker processes to be dynamically registered, started and terminated. - For more details, see the full release notes: http://www.postgresql.org/docs/9.4/static/release-9-4.html http://www.postgresql.org/docs/9.4/static/release-9-4-1.html ++++ xen: - bnc#919341 - SLES 11 SP4 Beta 1- Fully virtualized guest install from network source fails with 'cannot find guest domain' in XEN update xen.spec to --disable-debug to ./configure ------------------------------------------------------------------ ------------------ 2015-3-12 - Mar 12 2015 ------------------- ------------------------------------------------------------------ ++++ gdb: - Update to SLE-12 GA version (gdb 7.7 based) [fate #318495] ++++ iprutils: - fix dvd hotplug issue (bsc#921947) - added patches: iprutils.bug-921947_dvd_hotplug1.patch iprutils.bug-921947_dvd_hotplug2.patch ++++ kernel-docs: - Refresh patches.fixes/0003-locking-Update-atomic-rmw-flags.patch. - Refresh patches.suse/0015-x86-enable-have_arch_seccomp_filter.patch. - commit 96b034e - locking: Update atomic rmw flags. - Refresh patches.arch/000-apei_fixes.patch. - Refresh patches.suse/0015-x86-enable-have_arch_seccomp_filter.patch. - commit 0b02fd6 - Update Xen patches to c/s 1283. - x86, tls, ldt: Stop checking lm in LDT_empty (bsc#920250). - x86: irq: Check for valid irq descriptor incheck_irq_vectors_for_cpu_disable (bnc#914726). - x86_64, switch_to(): Load TLS descriptors before switching DS and ES (bsc#911326, CVE-2014-9419). - commit 91a88ba - kexec: fix build error when hugetlbfs is disabled (bsc#921741). - kexec: export free_huge_page to VMCOREINFO (bsc#921741). - Refresh patches.fixes/kexec-add-the-values-related-to-buddy-system-for-filtering-free-pages.patch. - Refresh patches.suse/0008_V3_kexec_Disable_at_runtime_if_the_kernel_enforces_module_loading_restrictions.patch. - commit 87648d5 - Delete patches.suse/kdump-save-PG_compound. - kexec: save PG_head_mask in VMCOREINFO (bsc#921741). - Refresh patches.fixes/kexec-add-the-values-related-to-buddy-system-for-filtering-free-pages.patch. - commit ebec3b1 - Btrfs support for EXTENT_SAME ioctl (FATE#308234) - Btrfs: batch the extent state operation when reading pages (FATE#308234). - btrfs: Introduce extent_read_full_page_nolock() (FATE#308234). - btrfs: offline dedupe (FATE#308234). - Refresh patches.suse/btrfs-8014-add-new-ioctl-to-determine-size-of-compressed-.patch. - Refresh patches.suse/btrfs-8283-replace-error-code-from-btrfs_drop_extents.patch. - commit c526df4 ++++ kiwi: Mount EFI partition only if not already mounted Check via mountpoint and mount /boot/efi only if not already a mountpoint (bnc #921970) ++++ libzypp: - Allow to set allowselfconflicts in libzypp (bnc#921997) - version 9.38.4 (8) ++++ openmpi: - Sync SLE12 and SLE11SP4. - Update to 1.8.4. The list of fixes is far too long so please see the file NEWS in /usr/share/packages/openmpi for the complete list. (fate#314835) - Only run autogen.sh if autotools are new enough. ++++ yast2-storage: - added support for NVMe devices (see fate#317591) ------------------------------------------------------------------ ------------------ 2015-3-11 - Mar 11 2015 ------------------- ------------------------------------------------------------------ ++++ OpenIPMI: - Fix segmentation fault in solterm(1) when using option -bitrate (bsc#854693) ++++ kernel-docs: - locking/mcs: Add some needed ACCESS_ONCE calls. - locking/mutex: Disable optimistic spinning on some architectures (bcn#919884). - Refresh patches.arch/000-apei_fixes.patch. - commit 2709045 - Btrfs fixes from 3.18 - Btrfs: set error return value in btrfs_get_blocks_direct. - Btrfs: fix off-by-one in cow_file_range_inline(). - btrfs: wake up transaction thread from SYNC_FS ioctl. - Btrfs: fix wrong fsid check of scrub. - Btrfs: try not to ENOSPC on log replay. - Btrfs: fix build_backref_tree issue with multiple shared blocks. - Btrfs: add missing end_page_writeback on submit_extent_page failure. - Btrfs: fix crash of btrfs_release_extent_buffer_page. - Btrfs: fix race in WAIT_SYNC ioctl. - Btrfs: fix kfree on list_head in btrfs_lookup_csums_range error cleanup. - Refresh patches.suse/btrfs-8252-fix-corruption-after-write-fsync-failure-fsync.patch. - commit a2057fb - scsi: storvsc: Enable clustering (fate#317533). - scsi: storvsc: Set the tablesize based on the information given by the host (fate#317533). - scsi: storvsc: Retrieve information about the capability of the target (fate#317533). - scsi: storvsc: Always send on the selected outgoing channel (fate#317533). - scsi: storvsc: Size the queue depth based on the ringbuffer size (fate#317533). - scsi: storvsc: Increase the ring buffer size (fate#317533). - commit dd6c76e - hyperv: fix sparse warnings (fate#317533). - hyperv: Fix the error processing in netvsc_send() (fate#317533). - hyperv: match wait_for_completion_timeout return type (fate#317533). - hyperv: netvsc.c: match wait_for_completion_timeout return type (fate#317533). - HID: hyperv: match wait_for_completion_timeout return type (fate#317533). - Drivers: hv: vmbus: hv_process_timer_expiration() can be static (fate#317533). - Drivers: hv: vmbus: serialize Offer and Rescind offer (fate#317533). - Drivers: hv: rename sc_lock to the more generic lock (fate#317533). - Drivers: hv: check vmbus_device_create() return value in vmbus_process_offer() (fate#317533). - hv: hv_fcopy: drop the obsolete message on transfer failure (fate#317533). - Drivers: hv: vmbus: Support a vmbus API for efficiently sending page arrays (fate#317533). - Drivers: hv: vmbus: Fix a bug in vmbus_establish_gpadl() (fate#317533). - Drivers: hv: vmbus: Implement a clockevent device (fate#317533). - Drivers: hv: hv_balloon: Don't post pressure status from interrupt context (fate#317533). - Drivers: hv: hv_balloon: Fix a locking bug in the balloon driver (fate#317533). - Drivers: hv: hv_balloon: Make adjustments in computing the floor (fate#317533). - Tools: hv: do not add redundant '/' in hv_start_fcopy() (fate#317533). - Tools: hv: address compiler warnings for hv_fcopy_daemon.c (fate#317533). - Tools: hv: address compiler warnings for hv_kvp_daemon.c (fate#317533). - Tools: hv: remove unused bytes_written from kvp_update_file() (fate#317533). - x86, hyperv: Mark the Hyper-V clocksource as being continuous (fate#317533). - tools: hv: kvp_daemon: make IPv6-only-injection work (fate#317533). - Drivers: hv: vmbus: Use get_cpu() to get the current CPU (fate#317533). - storvsc: force SPC-3 compliance on win8 and win8 r2 hosts (fate#317533). - storvsc: fix a bug in storvsc limits (fate#317533). - storvsc: force discovery of LUNs that may have been removed (fate#317533). - storvsc: in responce to a scan event, scan the host (fate#317533). - commit 5563d7c - KEYS: close race between key lookup and freeing (bnc#912202, CVE-2014-9529). - commit cb8fe1d ++++ wireshark: - Wireshark 1.10.13 - The following security issues were fixed: * The WCP dissector could crash. wnpa-sec-2015-07 CVE-2015-2188 [bnc#920696] * The pcapng file parser could crash. wnpa-sec-2015-08 CVE-2015-2189 [bnc#920697] * The TNEF dissector could go into an infinite loop. wnpa-sec-2015-10 CVE-2015-2191 [bnc#920699] - Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.10.13.html ------------------------------------------------------------------ ------------------ 2015-3-10 - Mar 10 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - clockevents: export clockevents_config_and_register for module use (fate#317533). - commit ee9254e - net/mlx5_core: Fix configuration of log_uar_page_sz (bnc#921121). - commit 25b820c - scsifront: don't use bitfields for indicators modified under different locks. - MSI: also reject resource with flags all clear. - pvscsi: support suspend/resume (bsc#902286). - x86: irq: Check for valid irq descriptor incheck_irq_vectors_for_cpu_disable (bnc#914726). - x86_64, switch_to(): Load TLS descriptors before switching DS and ES (bsc#911326, CVE-2014-9419). - Refresh other Xen patches. - commit df9f1d8 - usbback: copy only filled buffers to guest (bsc#917830 CVE-2015-0777). - commit af80480 - xen-pciback: limit guest control of command register (bsc#919463 CVE-2015-2150 XSA-120). - commit 7f2ab0b - sched: replace INIT_COMPLETION with reinit_completion (fate#317533). - commit 2633cc3 - Rename a hv_storvsc patch to get proper patch ordering - commit 03e148e - mpt2sas, mpt3sas: Fail the host reset initiated due to discovery (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: fix upper bound for the module parameter (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: Update attribution language to Avago (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: log exceeded temperature thresholds (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: set cpu affinity for each MSIX vectors (bnc#909785,FATE#317519). - Refresh patches.drivers/mpt2sas-0093-log-exceeded-temperature-thresholds.patch. - Refresh patches.drivers/mpt2sas-0094-Fail-the-host-reset-initiated-due-to.patch. - Refresh patches.drivers/mpt2sas-0097-Fix-upper-bound-for-the-module-param.patch. - Refresh patches.drivers/mpt2sas-0099-Update-attribution-language-to-Avago.patch. - Refresh patches.drivers/mpt2sas-0100-set-cpu-affinity-for-each-MSIX-vecto.patch. - commit 56cff2b ++++ util-linux: - add utmpdump.1 [bnc#901549] ++++ libibcommon: - Fix license - Package COPYING. ++++ libibmad: - Fix License. - Package COPYING. ++++ libibumad: - Fix license. - Package COPYING. ++++ libvirt: - Fix security driver default settings in /etc/libvirt/qemu.conf Modified suse-qemu-conf.patch bsc#921586 ++++ rubygem-bundler: - Remove CA files. Latest commit included some Certificate Authority files. For security reasons we don't want to distribute them, otherwise if the CA gets compromised, revoking it can be difficult if CA pem files are distributed in different RPMs. ------------------------------------------------------------------ ------------------ 2015-3-9 - Mar 9 2015 ------------------- ------------------------------------------------------------------ ++++ dapl: - Fix change log. - Replace dapl-add_s390x_platform_support.patch with dapl-add_s390x_platform_support_v2.patch. ++++ ibutils: - Add connectx_port_config script from the ofed source package (bnc#822659, fate#318208). ++++ kernel-docs: - mpt3sas : Bump mpt3sas driver version to 9.100.00.00 (bnc#909784,FATE#317520). - mpt3sas: When device is blocked followed by unblock fails, unfreeze the I/Os (bnc#909784,FATE#317520). - mpt3sas: Call dma_mapping_error() API after mapping an address with dma_map_single() API (bnc#909784,FATE#317520). - mpt3sas: Use alloc_ordered_workqueue() API instead of create_singlethread_workqueue() API (bnc#909784,FATE#317520). - mpt3sas: Added support for customer specific branding (bnc#909784,FATE#317520). - mpt3sas: Return host busy error status to SML when DMA mapping of scatter gather list fails for a SCSI command (bnc#909784,FATE#317520). - mpt2sas: Complete the SCSI command with DID_RESET status for log_info value 0x0x32010081 (bnc#909784,FATE#317520). - mpt3sas: MPI 2.5 Rev JK (2.5.6) specifications (bnc#909784,FATE#317520). - mpt3sas: Bump mpt3sas driver version to v6.100.00.00 (bnc#909784,FATE#317520). - mpt3sas: Add branding string support for OEM custom HBA (bnc#909784,FATE#317520). - mpt3sas: Add branding string support for OEM's HBA (bnc#909784,FATE#317520). - mpt3sas: MPI 2.5 Rev J (2.5.5) specification and 2.00.34 header files (bnc#909784,FATE#317520). - mpt3sas: Update MPI2 strings to MPI2.5 (bnc#909784,FATE#317520). - mpt2sas, mpt3sas: fix upper bound for the module parameter (bnc#909784,FATE#317520). - mpt3sas: Provides the physical location of sas drives (bnc#909784,FATE#317520). - mpt3sas: MPI 2.5 Rev I (2.5.4) specifications (bnc#909784,FATE#317520). - mpt2sas, mpt3sas: Remove redundancy code while freeing the controller resources (bnc#909784,FATE#317520). - mpt3sas: Added module parameter 'unblock_io' to unblock IO's during disk addition (bnc#909784,FATE#317520). - mpt3sas: Get IOC_FACTS information using handshake protocol only after HBA card gets into READY or Operational state (bnc#909784,FATE#317520). - mpt3sas: Added Combined Reply Queue feature to extend up-to 96 MSIX vector support (bnc#909784,FATE#317520). - commit 467edcb - mpt2sas: Bump driver version to 20.100.00.00 (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: set cpu affinity for each MSIX vectors (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: Update attribution language to Avago (bnc#909785,FATE#317519). - mpt2sas: map log_info value 0x0x32010081 to DID_RESET (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: fix upper bound for the module parameter (bnc#909785,FATE#317519). - mpt2sas: MPI2 Rev BB (2.00.20) specification and 2.00.35 header files (bnc#909785,FATE#317519). - mpt2sas: Bump driver version to 19.100.00.00 (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: Fail the host reset initiated due to discovery (bnc#909785,FATE#317519). - mpt2sas, mpt3sas: log exceeded temperature thresholds (bnc#909785,FATE#317519). - mpt2sas: MPI2 Rev AA (2.00.19) specifications (bnc#909785,FATE#317519). - mpt2sas: issue_reset is uninitialized (bnc#909785,FATE#317519). - commit a774ef9 - Delete patches.drivers/0002-xHCI-store-ring-s-last-segment-and-segment-numbers.patch. - Delete patches.drivers/0003-xHCI-count-free-TRBs-on-transfer-ring.patch. - Delete patches.drivers/0004-xHCI-factor-out-segments-allocation-and-free-functio.patch. - Delete patches.drivers/0005-xHCI-set-cycle-state-when-allocate-rings.patch. - Delete patches.drivers/0006-xHCI-dynamic-ring-expansion.patch. - Delete patches.drivers/0007-xhci-Don-t-warn-on-empty-ring-for-suspended-devices.patch. - Delete patches.drivers/0008-xhci-Fix-hang-on-back-to-back-Set-TR-Deq-Ptr-command.patch. - Delete patches.drivers/0009-xHCI-check-enqueue-pointer-advance-into-dequeue-seg.patch. - Delete patches.drivers/0010-xHCI-Allocate-2-segments-for-transfer-ring.patch. - Delete patches.drivers/0011-xHCI-update-sg-tablesize.patch. - commit 8da6550 - Refresh patches.drivers/0001-uvc-work-on-XHCI-controllers-without-ring-expansion.patch. - commit a852d55 ++++ libqt4: - Added fix-a-division-by-zero.patch (bnc#921999, CVE-2015-0295) ++++ ding-libs: - Introduce a patch from upstream to fix a memory corruption bug in the implementation of dynamic hash table. This is required for SSSD's LDAP features to function properly in a large organisation. Bug reports: bsc#903259 bsc#901737 ++++ cryptsetup: - upgrade to 1.1.3 (fate#315107) * LUKS now uses 256 bit key size by default * LUKS iteration count minimum is now 1000 * LUKS hash algorithms are configurable * LUKS header is aligned to an optimal value for LVM/MD * libcryptsetup SONAME changed to libcryptsetup.so.1 * for all changes see the following urls: https://code.google.com/p/cryptsetup/wiki/Cryptsetup110 https://code.google.com/p/cryptsetup/wiki/Cryptsetup111 https://code.google.com/p/cryptsetup/wiki/Cryptsetup112 https://code.google.com/p/cryptsetup/wiki/Cryptsetup113 ++++ libibcommon: - Enable build for s390(s) (bnc#910676, fate#318095). - Tag baselibs.conf as source. ++++ libibmad: - Clean up spec file. - Enable build for s390(x) (bnc#910676, fate#318095) ++++ libibumad: - Enable build on s390(x) (bnc#910676, fate#318095). - Clean up spec file. - Tag baselibs.conf as source. ++++ libqb: - ipc_setup: yield to scheduler during new connection auth processing - kqueue: The udata member of the kevent struct is a void * - Upstream version cs: 83552692aa5425e50049b130eb2e17ea7b31217d ++++ libqt4-devel-doc: - Added fix-a-division-by-zero.patch (bnc#921999, CVE-2015-0295) ++++ libqt4-devel-doc-data: - Added fix-a-division-by-zero.patch (bnc#921999, CVE-2015-0295) ++++ libqt4-sql-plugins: - Added fix-a-division-by-zero.patch (bnc#921999, CVE-2015-0295) ++++ libssh2_org: - fix for CVE-2015-1782 (bnc#921070) * unbounded read when negotiating a new session * added CVE-2015-1782.patch ++++ libvirt: - Fixed a number of QEMU apparmor abstraction problems. bsc#921355 apparmor-fixes.patch ++++ linuxrc: - don't set a default keymap too eagerly (bnc #857194) - 3.3.103 ++++ lprng: - LPRng-3.8.28-tmpdir.diff: Refresh to avoid fuzz ++++ rubygem-bundler: - Update to 1.7.0 in order to fix CVE-2013-0334: installing gems from an unexpected source (bnc#898205) The patch for this security issue couldn't be applied to 1.0.21 thus we needed to update to 1.7.0 to have this fix. Upstream has assured 1.7.0 is backwards compatible with 1.0.21. Updating to 1.7.0 has introduced more than the security fix. For a detailed list see https://github.com/bundler/bundler/blob/1-7-stable/CHANGELOG.md This update has been aproved by all third parties involved (PM, PrjM, Team leaders, etc.). See FATE#318165 ------------------------------------------------------------------ ------------------ 2015-3-6 - Mar 6 2015 ------------------- ------------------------------------------------------------------ ++++ compat-dapl: - Add compat-dapl-add_s390x_platform_support_v2.patch from IBM that adds support for the s390(x) platform (bnc#910676, fate#318095). - Modify the patch so that the changes are also used for s390. - Remove the ExcludeArch for s390 and s390x - Tag baselibs.conf as source. - Licence is CPL-1.0 or BSD-3-Clause or GPL-2.0. - Package all documents concerning the licenses. - Add compat-dapl-add_s390x_platform_support_v2.patch to enable building for s390(x) (bnc#910676). ++++ kernel-docs: - Do not switch internal CDC device on IBM NeXtScale nx360 M5 (bnc#913598). - commit 6d479e8 ++++ rpm: - allow noscripts and notriggers on verify again [bnc#803669] new patch: noscriptsverify.diff ++++ xen: - bnc#919098 - L3: XEN blktap device intermittently fails to connect blktap-control-socket-race.patch ------------------------------------------------------------------ ------------------ 2015-3-5 - Mar 5 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - xen: x86, tls: Interpret an all-zero struct user_desc as "no segment" (bsc#920250): provide LDT_zero() for Xen - commit 7d96a60 - udp: only allow UFO for packets from SOCK_DGRAM sockets (bnc#909309). - commit c4ee9ab - x86, tls: Interpret an all-zero struct user_desc as "no segment" (bsc#920250). - x86, tls, ldt: Stop checking lm in LDT_empty (bsc#920250). - x86, tls: Interpret an all-zero struct user_desc as "no segment" (bsc#920250). - x86, tls, ldt: Stop checking lm in LDT_empty (bsc#920250). - commit 4724938 - xHCI: store ring's last segment and segment numbers (bnc#920620). - xHCI: count free TRBs on transfer ring (bnc#920620). - xHCI: factor out segments allocation and free function (bnc#920620). - xHCI: set cycle state when allocate rings (bnc#920620). - xHCI: dynamic ring expansion (bnc#920620). - xhci: Don't warn on empty ring for suspended devices (bnc#920620). - xhci: Fix hang on back-to-back Set TR Deq Ptr commands (bnc#920620). - xHCI: check enqueue pointer advance into dequeue seg (bnc#920620). - xHCI: Allocate 2 segments for transfer ring. - xHCI: update sg tablesize (bnc#920620). - USB: xhci-hcd: print URB's expected length in decimal, not hex (bnc#920620). - xhci: Rate-limit XHCI_TRUST_TX_LENGTH quirk warning (bnc#920620). - xhci: Fix bug after deq ptr set to link TRB (bnc#920620). - driver core: Add dev_*_ratelimited() family (bnc#920620). - drivers/usb/host/xhci-ring.c: removes unnecessary semicolon (bnc#920620). - usb: host: xhci: remove unused trb var in xhci_irq() (bnc#920620). - usb: xhci: fix build warning (bnc#920620). - xhci: Remove BUG_ON in xhci_get_input_control_ctx (bnc#920620). - xhci: Ensure a command structure points to the correct trb on the command ring (bnc#920620). - xhci: refactor TRB_ENABLE_SLOT case into function (bnc#920620). - xhci: refactor TRB_DISABLE_SLOT case into function (bnc#920620). - xhci: refactor TRB_ADDR_DEV case into function (bnc#920620). - xhci: use completion event's slot id rather than dig it out of command (bnc#920620). - xhci: refactor TRB_RESET_DEV case into function (bnc#920620). - xhci: refactor TRB_EVAL_CONTEXT case into function (bnc#920620). - xhci: remove unused 'ep_ring' variable in handle_cmd_completion() (bnc#920620). - xhci: add variable 'cmd_comp_code' in handle_cmd_completion() (bnc#920620). - xhci: add variable 'cmd_trb' in handle_cmd_completion() (bnc#920620). - xhci: add variable 'cmd_type' in handle_cmd_completion() (bnc#920620). - xhci: replace 'xhci->cmd_ring->dequeue' with 'trb' in stop_ep cmd handler (bnc#920620). - xhci: add argument 'slot_id' in stop_ep, set_deq and reset_ep cmd handlers (bnc#920620). - usb: xhci: kill a conditional when toggling cycle (bnc#920620). - usb: xhci: Link TRB must not occur within a USB payload burst (bnc#920620). - xhci: convert TRB_CYCLE to le32 before using it to set Link TRB's cycle bit (bnc#920620). - xhci: Avoid infinite loop when sg urb requires too many trbs (bnc#920620). - xhci: Set scatter-gather limit to avoid failed block writes (bnc#920620). - usbdevfs: Add a USBDEVFS_GET_CAPABILITIES ioctl (bnc#920620). - USB: introduce usb_device_no_sg_constraint() helper (bnc#920620). - xhci 1.0: Limit arbitrarily-aligned scatter gather (bnc#920620). - Revert "xhci: Set scatter-gather limit to avoid failed block writes." (bnc#920620). - Revert "xhci: Avoid infinite loop when sg urb requires too many trbs" (bnc#920620). - Revert "usb: xhci: Link TRB must not occur within a USB payload burst" (bnc#920620). - xhci: Rename SEGMENT_SIZE and SEGMENT_SHIFT as the former is used in a.out.h (bnc#920620). - xhci: fix usb3 streams (bnc#920620). - xhci: Remove segments from radix tree on failed insert (bnc#920620). - xhci: xhci_mem_cleanup: make sure cmd_ring_reserved_trbs really is 0 (bnc#920620). - xhci: The trb_address_map radix tree expects 1KB segment memory aligment (bnc#920620). - Revert "xhci 1.0: Limit arbitrarily-aligned scatter gather." (bnc#920620). - xhci: Use correct SLOT ID when handling a reset device command (bnc#920620). - xhci: xhci_ring_device: Ring stream ring bells for endpoints with streams (bnc#920620). - Update patches.drivers/0001-xHCI-store-ring-s-type.patch (bnc#920620). - commit d3b8712 ++++ udev: - udevadm: info - fix info --root --query=name --path= for device without a device node (bnc#920182). add: udev-147-udevadm-info-fix-info-root-query-name-path-for-devic.patch - rules: drivers - always call kmod, even when a driver is bound to the device (bnc#919257). add: udev-147-rules-drivers-always-call-kmod-even-when-a-driver-is.patch ++++ libzypp: - Easy.h: Use __typeof__ rather than typeof (g++ extension) in header. - version 9.38.3 (8) ++++ linuxrc: - make sure WORDS_BIGENDIAN is defined correctly where needed (bnc #755861) - 3.3.102 ------------------------------------------------------------------ ------------------ 2015-3-4 - Mar 4 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - cxgb4vf: FL Starvation Threshold needs to be larger than the SGE's Egress Congestion Threshold (bsc#909580 FATE#317556). - cxgb4/cxgb4vf: For T5 use Packing and Padding Boundaries for SGE DMA transfers (bsc#909580 FATE#317556). - cxgb4vf: Move fl_starv_thres into adapter->sge data structure (bsc#909580 FATE#317556). - cxgb4vf: Replace repetitive pci device ID's with right ones (bsc#909580 FATE#317556). - cxgb4vf: Add 40G support for cxgb4vf driver (bsc#909580 FATE#317556). - cxgb4/cxgb4vf: Updated the LSO transfer length in CPL_TX_PKT_LSO for T5 (bsc#909580 FATE#317556). - cxgb4/cxgb4vf: Add Devicde ID for two more adapter (bsc#909580 FATE#317556). - cxgb4vf: Remove superfluous "idx" parameter of CH_DEVICE() macro (bsc#909580 FATE#317556). - cxgb4/cxgb4vf: Add device ID for new adapter and remove for dbg adapter (bsc#909580 FATE#317556). - cxgb4: Free completed tx skbs promptly (bsc#909580 FATE#317556). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909580 FATE#317556). - cxgb4vf: Turn off SGE RX/TX Callback Timers and interrupts in PCI shutdown routine (bsc#909580 FATE#317556). - cxgb4vf: Adds device ID for few more Chelsio T4 Adapters (bsc#909580 FATE#317556). - net: get rid of SET_ETHTOOL_OPS (bsc#909580 FATE#317556). - cxgb4vf: Check if rx checksum offload is enabled, while reading hardware calculated checksum (bsc#909580 FATE#317556). - cxgb4vf: Adds device Id for few more Chelsio adapters (bsc#909580 FATE#317556). - cxfb4vf: Call dev_kfree/consume_skb_any instead of [dev_]kfree_skb (bsc#909580 FATE#317556). - cxgb4vf: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909580 FATE#317556). - cxgb4vf: Remove superfluous call to pci_disable_msix() (bsc#909580 FATE#317556). - cxgb4: make functions static and remove dead code (bsc#909580 FATE#317556). - cxgb4vf: added much cleaner implementation of is_t4() (bsc#909580 FATE#317556). - net: cxgb4vf: use DEFINE_PCI_DEVICE_TABLE (bsc#909580 FATE#317556). - net: cxgb4vf: remove unnecessary pci_set_drvdata() (bsc#909580 FATE#317556). - net: cxgb4vf: Staticize local symbols (bsc#909580 FATE#317556). - cxgb4vf: Support CPL_SGE_EGR_UPDATEs encapsulated in a CPL_FW4_MSG (bsc#909580 FATE#317556). - cxgb4vf: Add support for Chelsio T5 adapter (bsc#909580 FATE#317556). - cxgb4vf: Fix VLAN extraction counter increment (bsc#909580 FATE#317556). - remove init of dev->perm_addr in drivers (bsc#909580 FATE#317556). - chelsio: Use netdev_ and pr_ (bsc#909580 FATE#317556). - drivers/net: fix up function prototypes after __dev* removals (bsc#909580 FATE#317556). - cxgb4vf: remove __dev* attributes (bsc#909580 FATE#317556). - [SCSI] cxgb4/cxgb4vf: Chelsio FCoE offload driver submission (common header updates) (bsc#909580 FATE#317556). - commit c1286d4 - md: don't wait for plug_cnt to go to zero (bnc#891641). - commit 6f3420e - xfs: introduce xfs_bmapi_read() (bnc#891641). - xfs: factor extent map manipulations out of xfs_bmapi (bnc#891641). - commit c0dfccb - dm: optimize use SRCU and RCU (bnc#910517). - commit a8f24b5 ++++ btrfsprogs: - mkfs defaults: turn off skinny-metadata and set nodesize to 4k Added patch: mkfs-defaults-sle11.patch ++++ python-setuptools: - Submit 0.6c12 to SLE 11-SP3 (bsc#915840, FATE#318459) ++++ yast2-storage: - allow BootMount to be on RAID1 for PowerPC (bsc#919980) - 2.17.152 ------------------------------------------------------------------ ------------------ 2015-3-3 - Mar 3 2015 ------------------- ------------------------------------------------------------------ ++++ asciidoc: - readd python-xml build dependency ++++ kernel-docs: - Removed creation of export.h and instead used module.h - Refresh patches.drivers/mlx5-0003-mlx5-Add-driver-for-Mellanox-Connect-IB-adapters.patch. - Refresh patches.drivers/mlx5-0034-IB-mlx5-Multithreaded-create-MR.patch. - Refresh patches.drivers/mlx5-0124-IB-mlx5-Enhance-UMR-support-to-allow-partial-page-ta.patch. - Refresh patches.suse/0001_V3_Add_secure_modules_call.patch. - Delete patches.drivers/mlx5-0002-module.h-split-out-the-EXPORT_SYMBOL-into-export.h.patch. - commit 02b678d - cxgb4: Fill in supported link mode for SFP modules (bsc#909577 FATE#317550). - cxgb4 : Fix DCB priority groups being returned in wrong order (bsc#909577 FATE#317550). - cxgb4 : dcb open-lldp interop fixes (bsc#909577 FATE#317550). - cxgb4 : Fix bug in DCB app deletion (bsc#909577 FATE#317550). - cxgb4/cxgb4vf: For T5 use Packing and Padding Boundaries for SGE DMA transfers (bsc#909577 FATE#317550). - cxgb4 : Fix missing initialization of win0_lock (bsc#909577 FATE#317550). - cxgb4 : Handle dcb enable correctly (bsc#909577 FATE#317550). - cxgb4 : Improve handling of DCB negotiation or loss thereof (bsc#909577 FATE#317550). - cxgb4 : Fix build failure in cxgb4 when ipv6 is disabled/not in-built (bsc#909577 FATE#317550). - cxgb4: Update Kconfig to include Chelsio T5 adapter (bsc#909577 FATE#317550). - cxgb4: Fix FW flash logic using ethtool (bsc#909577 FATE#317550). - RDMA/cxgb4: Make c4iw_wr_log_size_order static (bsc#909577 FATE#317550). - cxgb4: Wait for device to get ready before reading any register (bsc#909577 FATE#317550). - cxgb4/cxgb4vf: Updated the LSO transfer length in CPL_TX_PKT_LSO for T5 (bsc#909577 FATE#317550). - cxgb4: clean up a type issue (bsc#909577 FATE#317550). - cxgb4: potential shift wrapping bug (bsc#909577 FATE#317550). - cxgb4: Add support for adaptive rx (bsc#909577 FATE#317550). - cxgb4/cxgb4vf: Add Devicde ID for two more adapter (bsc#909577 FATE#317550). - cxgb4: Use BAR2 Going To Sleep (GTS) for T5 and later (bsc#909577 FATE#317550). - cxgb4: Don't allocate adapter structure for all PF's (bsc#909577 FATE#317550). - cxgb4/cxgb4vf: Add device ID for new adapter and remove for dbg adapter (bsc#909577 FATE#317550). - cxgb4: Add warning msg when attaching to adapters which have FLASHes smaller than 2Mb (bsc#909577 FATE#317550). - cxgb4: Fix t4_flash_erase_sectors() to throw an error when requested to erase sectors which aren't in the FLASH (bsc#909577 FATE#317550). - cxgb4: Add support to S25FL032P flash (bsc#909577 FATE#317550). - cxgb4: Allow T4/T5 firmware sizes up to 1MB (bsc#909577 FATE#317550). - cxgb4: remove bond->lock (bsc#909577 FATE#317550). - cxgb4: Issue mbox commands on correct mbox (bsc#909577 FATE#317550). - cxgb4: Avoid dumping Write-only registers in register dump (bsc#909577 FATE#317550). - cxgb4: Detect and display firmware reported errors (bsc#909577 FATE#317550). - cxgb4: Fix T5 adapter accessing T4 adapter registers (bsc#909577 FATE#317550). - cxgb4: Fixed the code to use correct length for part number (bsc#909577 FATE#317550). - cxgb4: Fix for handling 1Gb/s SFP+ Transceiver Modules (bsc#909577 FATE#317550). - cxgb4: Free completed tx skbs promptly (bsc#909577 FATE#317550). - cxgb4: Fix race condition in cleanup (bsc#909577 FATE#317550). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909577 FATE#317550). - cxgb4: IEEE fixes for DCBx state machine (bsc#909577 FATE#317550). - cxgb4: Update FW version string to match FW binary version (bsc#909577 FATE#317550). - cxgb4: Fix for SR-IOV VF initialization (bsc#909577 FATE#317550). - cxgb4 : Disable recursive mailbox commands when enabling vi (bsc#909577 FATE#317550). - cxgb4: only free allocated fls (bsc#909577 FATE#317550). - RDMA/cxgb4: Only call CQ completion handler if it is armed (bsc#909577 FATE#317550). - cxgb4: Fixed incorrect check for memory operation in t4_memory_rw (bsc#909577 FATE#317550). - iw_cxgb4: Don't limit TPTE count to 32KB (bsc#909577 FATE#317550). - iw_cxgb4: advertise the correct device max attributes (bsc#909577 FATE#317550). - iw_cxgb4: Support query_qp() verb (bsc#909577 FATE#317550). - iw_cxgb4: log detailed warnings for negative advice (bsc#909577 FATE#317550). - cxgb4: Add the MC1 registers to read in the interrupt handler (bsc#909577 FATE#317550). - include/linux/math64.h: add div64_ul() (bsc#909577 FATE#317550). - iw_cxgb4: fix for 64-bit integer division (bsc#909577 FATE#317550). - cxgb4: Export symbols required by cxgb4i for ipv6 support and required defines (bsc#909577 FATE#317550). - cxgb4/iw_cxgb4: Move common defines to cxgb4 (bsc#909577 FATE#317550). - cxgb4/iw_cxgb4: work request logging feature (bsc#909577 FATE#317550). - cxgb4/iw_cxgb4: display TPTE on errors (bsc#909577 FATE#317550). - cxgb4/iw_cxgb4: use firmware ord/ird resource limits (bsc#909577 FATE#317550). - iw_cxgb4: Detect Ing. Padding Boundary at run-time (bsc#909577 FATE#317550). - RDMA/cxgb4: Initialize the device status page (bsc#909577 FATE#317550). - RDMA/cxgb4: Clean up connection on ARP error (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix skb_leak in reject_cr() (bsc#909577 FATE#317550). - drivers/net/ethernet/chelsio/cxgb4/cxgb4_main.c: remove unnecessary null test before debugfs_remove_recursive (bsc#909577 FATE#317550). - cxgb4: Adds device ID for few more Chelsio T4 Adapters (bsc#909577 FATE#317550). - cxgb4: Replaced the backdoor mechanism to access the HW memory with PCIe Window method (bsc#909577 FATE#317550). - cxgb4: Use FW interface to get BAR0 value (bsc#909577 FATE#317550). - rdma/cxgb4: Fixes cxgb4 probe failure in VM when PF is exposed through PCI Passthrough (bsc#909577 FATE#317550). - cxgb4: use dev_port to identify ports (bsc#909577 FATE#317550). - net: Add sysfs file for port number (bsc#909577 FATE#317550). - cxgb4: Not need to hold the adap_rcu_lock lock when read adap_rcu_list (bsc#909577 FATE#317550). - cxgb4: Fix endian bug introduced in cxgb4 dcb patchset (bsc#909577 FATE#317550). - cxgb4 : Update copyright year on all cxgb4 files (bsc#909577 FATE#317550). - cxgb4 : Makefile & Kconfig changes for DCBx support (bsc#909577 FATE#317550). Update config files. Add support Data Center Bridging (DCB) Support for Chelsio T4/T5 cards (CHELSIO_T4_DCB). - cxgb4 : Integrate DCBx support into cxgb4 module. Register dbcnl_ops to give access to DCBx functions (bsc#909577 FATE#317550). - cxgb4 : Add DCBx support codebase and dcbnl_ops (bsc#909577 FATE#317550). - cxgb4 : Update fw interface file for DCBx support. Adds all the required fields to fw interface to communicate DCBx info (bsc#909577 FATE#317550). - cxgb4: Change default Interrupt Holdoff Packet Count Threshold (bsc#909577 FATE#317550). - iw_cxgb4: Allocate and use IQs specifically for indirect interrupts (bsc#909577 FATE#317550). - RDMA/cxgb4: add missing padding at end of struct c4iw_alloc_ucontext_resp (bsc#909577 FATE#317550). - RDMA/cxgb4: Add missing padding at end of struct c4iw_create_cq_resp (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix memory leaks in c4iw_alloc() error paths (bsc#909577 FATE#317550). - net: get rid of SET_ETHTOOL_OPS (bsc#909577 FATE#317550). - cxgb4: Check if rx checksum offload is enabled, while reading hardware calculated checksum (bsc#909577 FATE#317550). - cxgb4: Decode the firmware port and module type a bit more for ethtool (bsc#909577 FATE#317550). - cxgb4: Decode PCIe Gen3 link speed (bsc#909577 FATE#317550). - RDMA/cxgb4: Update Kconfig to include Chelsio T5 adapter (bsc#909577 FATE#317550). - RDMA/cxgb4: Only allow kernel db ringing for T4 devs (bsc#909577 FATE#317550). - RDMA/cxgb4: Force T5 connections to use TAHOE congestion control (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix endpoint mutex deadlocks (bsc#909577 FATE#317550). - cxgb4: use the correct max size for firmware flash (bsc#909577 FATE#317550). - cxgb4: Save the correct mac addr for hw-loopback connections in the L2T (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix over-dereference when terminating (bsc#909577 FATE#317550). - RDMA/cxgb4: Use uninitialized_var() (bsc#909577 FATE#317550). - RDMA/cxgb4: Add missing debug stats (bsc#909577 FATE#317550). - RDMA/cxgb4: Initialize reserved fields in a FW work request (bsc#909577 FATE#317550). - RDMA/cxgb4: Use pr_warn_ratelimited (bsc#909577 FATE#317550). - RDMA/cxgb4: Max fastreg depth depends on DSGL support (bsc#909577 FATE#317550). - RDMA/cxgb4: SQ flush fix (bsc#909577 FATE#317550). - RDMA/cxgb4: rmb() after reading valid gen bit (bsc#909577 FATE#317550). - RDMA/cxgb4: Endpoint timeout fixes (bsc#909577 FATE#317550). - RDMA/cxgb4: Use the BAR2/WC path for kernel QPs and T5 devices (bsc#909577 FATE#317550). - RDMA/cxgb4: Disable DSGL use by default (bsc#909577 FATE#317550). - RDMA/cxgb4: rx_data() needs to hold the ep mutex (bsc#909577 FATE#317550). - RDMA/cxgb4: Drop RX_DATA packets if the endpoint is gone (bsc#909577 FATE#317550). - RDMA/cxgb4: Lock around accept/reject downcalls (bsc#909577 FATE#317550). - cxgb4: Adds device ID for few more Chelsio Adapters (bsc#909577 FATE#317550). - RDMA/cxgb4: set error code on kmalloc() failure (bsc#909577 FATE#317550). - chelsio: Remove addressof casts to same type (bsc#909577 FATE#317550). - cxgb4: Call dev_kfree/consume_skb_any instead of [dev_]kfree_skb (bsc#909577 FATE#317550). - RDMA/cxgb4: Update snd_seq when sending MPA messages (bsc#909577 FATE#317550). - RDMA/cxgb4: Connect_request_upcall fixes (bsc#909577 FATE#317550). - RDMA/cxgb4: Ignore read reponse type 1 CQEs (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix possible memory leak in RX_PKT processing (bsc#909577 FATE#317550). - RDMA/cxgb4: Don't leak skb in c4iw_uld_rx_handler() (bsc#909577 FATE#317550). - RDMA/cxgb4: Save the correct map length for fast_reg_page_lists (bsc#909577 FATE#317550). - RDMA/cxgb4: Default peer2peer mode to 1 (bsc#909577 FATE#317550). - RDMA/cxgb4: Mind the sq_sig_all/sq_sig_type QP attributes (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix incorrect BUG_ON conditions (bsc#909577 FATE#317550). - RDMA/cxgb4: Always release neigh entry (bsc#909577 FATE#317550). - RDMA/cxgb4: Cap CQ size at T4_MAX_IQ_SIZE (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix four byte info leak in c4iw_create_cq() (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix underflows in c4iw_create_qp() (bsc#909577 FATE#317550). - cxgb4/iw_cxgb4: Doorbell Drop Avoidance Bug Fixes (bsc#909577 FATE#317550). - cxgb4/iw_cxgb4: Treat CPL_ERR_KEEPALV_NEG_ADVICE as negative advice (bsc#909577 FATE#317550). - cxgb4: Calculate len properly for LSO path (bsc#909577 FATE#317550). - cxgb4: Updates for T5 SGE's Egress Congestion Threshold (bsc#909577 FATE#317550). - cxgb4: Rectify emitting messages about SGE Ingress DMA channels being potentially stuck (bsc#909577 FATE#317550). - cxgb4: Add code to dump SGE registers when hitting idma hangs (bsc#909577 FATE#317550). - cxgb4: Fix some small bugs in t4_sge_init_soft() when our Page Size is 64KB (bsc#909577 FATE#317550). - net/cxgb4: use remove handler as shutdown handler (bsc#909577 FATE#317550). - cgxb4: Stop using ethtool SPEED_* constants (bsc#909577 FATE#317550). - cxgb4: Add more PCI device ids (bsc#909577 FATE#317550). - cxgb4: Don't assume LSO only uses SGL path in t4_eth_xmit() (bsc#909577 FATE#317550). - cxgb4: Remove unused registers and add missing ones (bsc#909577 FATE#317550). - cxgb4: Query firmware for T5 ULPTX MEMWRITE DSGL capabilities (bsc#909577 FATE#317550). - cxgb4: LE-Workaround is not atomic in firmware (bsc#909577 FATE#317550). - cxgb4: Allow >10G ports to have multiple queues (bsc#909577 FATE#317550). - cxgb4: Print adapter VPD Part Number instead of Engineering Change field (bsc#909577 FATE#317550). - cxgb4: Add support to recognize 40G links (bsc#909577 FATE#317550). - cxgb4: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909577 FATE#317550). - RDMA/cxgb4: Add missing neigh_release in LE-Workaround path (bsc#909577 FATE#317550). - net/cxgb4: Fix referencing freed adapter (bsc#909577 FATE#317550). - net/cxgb4: Don't retrieve stats during recovery (bsc#909577 FATE#317550). - net/cxgb4: Avoid disabling PCI device for towice (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix gcc warning on 32-bit arch (bsc#909577 FATE#317550). - drivers/net: delete non-required instances of include (bsc#909577 FATE#317550). - cxgb4: silence shift wrapping static checker warning (bsc#909577 FATE#317550). - cxgb4: Changed FW check version to match FW binary version (bsc#909577 FATE#317550). - cxgb4: allow large buffer size to have page size (bsc#909577 FATE#317550). - cxgb4: make functions static and remove dead code (bsc#909577 FATE#317550). - RDMA/cxgb4: Calculate the filter server TID properly (bsc#909577 FATE#317550). - cxgb4: Add API to correctly calculate tuple fields (bsc#909577 FATE#317550). - cxgb4: Account for stid entries properly in case of IPv6 (bsc#909577 FATE#317550). - cxgb4: Assign filter server TIDs properly (bsc#909577 FATE#317550). - cxgb4: Include TCP as protocol when creating server filters (bsc#909577 FATE#317550). - cxgb4: Reserve stid 0 for T4/T5 adapters (bsc#909577 FATE#317550). - net: cxgb4 calls skb_set_hash (bsc#909577 FATE#317550). - RDMA/cxgb4: Make _c4iw_write_mem_dma() static (bsc#909577 FATE#317550). - cxgb4: Add new scheme to update T4/T5 firmware (bsc#909577 FATE#317550). - cxgb4vf: added much cleaner implementation of is_t4() (bsc#909577 FATE#317550). - cxgb4: Much cleaner implementation of is_t4()/is_t5() (bsc#909577 FATE#317550). - IB/cxgb4: Fix formatting of physical address (bsc#909577 FATE#317550). - cgxb4: remove duplicate include in cxgb4.h (bsc#909577 FATE#317550). - net: cxgb4: remove unnecessary pci_set_drvdata() (bsc#909577 FATE#317550). - cxgb4: remove workqueue when driver registration fails (bsc#909577 FATE#317550). - treewide: Add __GFP_NOWARN to k.alloc calls with v.alloc fallbacks (bsc#909577 FATE#317550). - RDMA/cxgb4: Issue RI.FINI before closing when entering TERM (bsc#909577 FATE#317550). - RDMA/cxgb4: Advertise ~0ULL as max MR size (bsc#909577 FATE#317550). - RDMA/cxgb4: Always do GTS write if cidx_inc == CIDXINC_MASK (bsc#909577 FATE#317550). - RDMA/cxgb4: Set arp error handler for PASS_ACCEPT_RPL messages (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix accounting for unsignaled SQ WRs to deal with wrap (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix QP flush logic (bsc#909577 FATE#317550). - RDMA/cxgb4: Handle newer firmware changes (bsc#909577 FATE#317550). - RDMA/cxgb4: Use correct bit shift macros for vlan filter tuples (bsc#909577 FATE#317550). - cxgb4: Add CLIP support to store compressed IPv6 address (bsc#909577 FATE#317550). - cxgb4: Add routines to create and remove listening IPv6 servers (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix stack info leak in c4iw_create_qp() (bsc#909577 FATE#317550). - cxgb4: Do not set net_device::dev_id to VI index (bsc#909577 FATE#317550). - cxgb3: Correct comparisons and calculations using skb->tail and skb-transport_header (bsc#909577 FATE#317550). - cxgb4: Force uninitialized state if FW_ON_ADAPTER is < FW_VERSION and we're the MASTER_PF (bsc#909577 FATE#317550). - cxgb4vf: Support CPL_SGE_EGR_UPDATEs encapsulated in a CPL_FW4_MSG (bsc#909577 FATE#317550). - cxgb4: Support CPL_SGE_EGR_UPDATEs encapsulated in a CPL_FW4_MSG (bsc#909577 FATE#317550). - cxgb4: Fix pci_device_id structure initialization with correct PF number (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix error return code in create_qp() (bsc#909577 FATE#317550). - Fix dst_neigh_lookup/dst_neigh_lookup_skb return value handling bug (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix onchip queue support for T5 (bsc#909577 FATE#317550). - RDMA/cxgb4: Bump tcam_full stat and WR reply timeout (bsc#909577 FATE#317550). - RDMA/cxgb4: Map pbl buffers for dma if using DSGL (bsc#909577 FATE#317550). - RDMA/cxgb4: Use DSGLs for fastreg and adapter memory writes for T5 (bsc#909577 FATE#317550). - RDMA/cxgb4: Add module_params to enable DB FC & Coalescing on T5 (bsc#909577 FATE#317550). - RDMA/cxgb4: Turn off db coalescing when RDMA QPs are in use (bsc#909577 FATE#317550). - RDMA/cxgb4: Add Support for Chelsio T5 adapter (bsc#909577 FATE#317550). - cxgb4: Disable SR-IOV support for PF4-7 for T5 (bsc#909577 FATE#317550). - cxgb4: Update driver version and description (bsc#909577 FATE#317550). - cxgb4: Add T5 PCI ids (bsc#909577 FATE#317550). - cxgb4: Add T5 debugfs support (bsc#909577 FATE#317550). - cxgb4: Enable doorbell drop recovery only for T4 adapter (bsc#909577 FATE#317550). - cxgb4: Add T5 write combining support (bsc#909577 FATE#317550). - cxgb4: Dump T5 registers (bsc#909577 FATE#317550). - cxgb4: Initialize T5 (bsc#909577 FATE#317550). - cxgb4: Add macros, structures and inline functions for T5 (bsc#909577 FATE#317550). - cxgb4: Add register definations for T5 (bsc#909577 FATE#317550). - cxgb4: Allow for backward compatibility with new VPD scheme (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix cast warning (bsc#909577 FATE#317550). - RDMA/cxgb4: "cookie" can stay in host endianness (bsc#909577 FATE#317550). - RDMA/cxgb4: Address sparse warnings (bsc#909577 FATE#317550). - RDMA/cxgb4: Insert hwtid in pass_accept_req instead in pass_establish (bsc#909577 FATE#317550). - RDMA/cxgb4: Don't wakeup threads for MPAv2 (bsc#909577 FATE#317550). - RDMA/cxgb4: Don't reconnect on abort for mpa_rev 1 (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix endpoint timeout race condition (bsc#909577 FATE#317550). - RDMA/cxgb4: Only log rx_data warnings if cpl status is non-zero (bsc#909577 FATE#317550). - RDMA/cxgb4: Always log async errors (bsc#909577 FATE#317550). - RDMA/cxgb4: Keep QP referenced until TID released (bsc#909577 FATE#317550). - RDMA/cxgb4: Display streaming mode error only if detected in RTS (bsc#909577 FATE#317550). - RDMA/cxgb4: Abort connections when moving to ERROR state (bsc#909577 FATE#317550). - RDMA/cxgb4: Abort connections that receive unexpected streaming mode data (bsc#909577 FATE#317550). - remove init of dev->perm_addr in drivers (bsc#909577 FATE#317550). - chelsio: Use netdev_ and pr_ (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix bug for active and passive LE hash collision path (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix LE hash collision bug for passive open connection (bsc#909577 FATE#317550). - RDMA/cxgb4: Fix LE hash collision bug for active open connection (bsc#909577 FATE#317550). - cxgb4: Add LE hash collision bug fix path in LLD driver (bsc#909577 FATE#317550). - cxgb4: Add T4 filter support (bsc#909577 FATE#317550). - drivers/net: fix up function prototypes after __dev* removals (bsc#909577 FATE#317550). - cxgb4: remove __dev* attributes (bsc#909577 FATE#317550). - cxgb4/cxgb4vf: Chelsio FCoE offload driver submission (common header updates) (bsc#909577 FATE#317550). - RDMA/cxgb4: use WARN (bsc#909577 FATE#317550). - commit d4e37e3 ++++ postgresql94-libs: - Make building of the uuid module conditional and temporarily disable it by default. ------------------------------------------------------------------ ------------------ 2015-3-2 - Mar 2 2015 ------------------- ------------------------------------------------------------------ ++++ iprutils: - update patch (see bsc#915109) - modified patches: iprutils.bug-915109_add_disk_to_array.patch ++++ kde4-l10n: - added kwalletd-new-messages.diff to translate the new messages included in kwallet due to the fix to bnc#857200. The translated messages have been taken from upstream for all languages. - added fix-ark-manpages.diff to fix a dereferenced entity in ark manpages in several languages - added a _constraint file to allow ppc/ppc64 builds to compile in obs ++++ kernel-docs: - uvc: work on XHCI controllers without ring expansion (bnc#915045). - commit 3db142b - powerpc: Make chip-id information available to userspace (bsc#919682). - commit 100143c - powerpc: Make chip-id information available to userspace (bsc#919682). - commit 98a2333 ++++ linuxrc: - don't rely on nfs server error code - more network activation on s390x (bnc #915571) - 3.3.101 ++++ xen: - bnc#882089 - Windows 2012 R2 fails to boot up with greater than 60 vcpus 541ad3ca-x86-HVM-batch-vCPU-wakeups.patch - Upstream patch from Jan 54ef188e-honor-MEMF_no_refcount-in-alloc_heap_pages.patch ++++ yast2-storage: - fixed syntax error in last commit - 2.17.151 ------------------------------------------------------------------ ------------------ 2015-2-27 - Feb 27 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - megaraid_sas: Add back driver information (bsc#909789). - commit 3355ce4 - Refresh patches.drivers/bnx2fc-Remove-NetXtreme-II-from-source-files.patch. - commit 3a3ab6e - patches.drivers/Add-MODULE_ALIAS-for-autoloading-ipmi-driver-on-ACPI.patch: add upstream references - commit c7cb1a9 - Add MODULE_ALIAS for autoloading ipmi driver on ACPI systems (FATE#317646). - commit fea7449 - qla2xxx: Do not crash system for sp ref count zero (bnc#891212,bsc#917684). - commit 09bafbc - qla2xxx: Do not crash system for sp ref count zero (bnc#891212,bsc#917684). - commit 1be44bc - supported.conf: Added mlx5_in and mlx5_core - commit 33a8560 - Update config files. - commit 7a30cc8 - Refresh patches.suse/0001_V3_Add_secure_modules_call.patch. - commit 64076b7 - net: Mellanox: Delete unnecessary checks before the function call "vunmap" (bnc#905015 fate#317531). - net/mlx5_core: Move to use hex PCI device IDs (bnc#905015 fate#317531). - infiniband: mlx5: avoid a compile-time warning (bnc#905015 fate#317531). - mlx5: avoid build warnings on 32-bit (bnc#905015 fate#317531). - mlx5_core: Re-add MLX5_DEV_CAP_FLAG_ON_DMND_PG flag (bnc#905015 fate#317531). - IB/mlx5: Enhance UMR support to allow partial page table update (bnc#905015 fate#317531). - mlx5: Fix error flow in add_keys (bnc#905015 fate#317531). - mlx5: Fix sparse warnings (bnc#905015 fate#317531). - net/mlx5_core: Add more supported devices (bnc#905015 fate#317531). - net/mlx5_core: Clear outbox of dealloc uar (bnc#905015 fate#317531). - net/mlx5_core: Print resource number on QP/SRQ async events (bnc#905015 fate#317531). - net/mlx5_core: Remove unused dev cap enum fields (bnc#905015 fate#317531). - net/mlx5_core: Fix command queue size enforcement (bnc#905015 fate#317531). - net/mlx5_core: Fix min vectors value in mlx5_enable_msix (bnc#905015 fate#317531). - net/mlx5_core: Request the mlx5 IB module on driver load (bnc#905015 fate#317531). - net/mlx5_core: Fix race on driver load (bnc#905015 fate#317531). - net/mlx5_core: Fix race in create EQ (bnc#905015 fate#317531). - net/mlx5_core: Call synchronize_irq() before freeing EQ buffer (bnc#905015 fate#317531). - IB/mlx5: Use extended internal signature layout (bnc#905015 fate#317531). - IB/mlx5: Use enumerations for PI copy mask (bnc#905015 fate#317531). - IB/mlx5: Modify to work with arbitrary page size (bnc#905015 fate#317531). - IB/mlx5: Remove duplicate code from mlx5_set_path (bnc#905015 fate#317531). - IB/mlx5: Fix possible array overflow (bnc#905015 fate#317531). - IB/mlx5: Improve debug prints in mlx5_ib_reg_user_mr (bnc#905015 fate#317531). - IB/mlx5: Clear umr resources after ib_unregister_device (bnc#905015 fate#317531). - net/mlx5_core: Add ConnectX-4 to list of supported devices (bnc#905015 fate#317531). - net/mlx5_core: Identify resources by their type (bnc#905015 fate#317531). - net/mlx5_core: use set/get macros in device caps (bnc#905015 fate#317531). - net/mlx5_core: Use hardware registers description header file (bnc#905015 fate#317531). - net/mlx5_core: Update device capabilities handling (bnc#905015 fate#317531). - IB/mlx5: Use ARRAY_SIZE instead of sizeof/sizeof[0] (bnc#905015 fate#317531). - mlx5: Adjust events to use unsigned long param instead of void * (bnc#905015 fate#317531). - mlx5: minor fixes (mainly avoidance of hidden casts) (bnc#905015 fate#317531). - mlx5: Move pci device handling from mlx5_ib to mlx5_core (bnc#905015 fate#317531). - IB/mlx5: Enable "block multicast loopback" for kernel consumers (bnc#905015 fate#317531). - mlx5_core: Fix possible race between mr tree insert/delete (bnc#905015 fate#317531). - IB/mlx5: Fix warning about cast of wr_id back to pointer on 32 bits (bnc#905015 fate#317531). - IB/mlx5: add missing padding at end of struct mlx5_ib_create_srq (bnc#905015 fate#317531). - IB/mlx5: add missing padding at end of struct mlx5_ib_create_cq (bnc#905015 fate#317531). - IB/mlx5: Refactor UMR to have its own context struct (bnc#905015 fate#317531). - IB/mlx5: Set QP offsets and parameters for user QPs and not just for kernel QPs (bnc#905015 fate#317531). - mlx5_core: Store MR attributes in mlx5_mr_core during creation and after UMR (bnc#905015 fate#317531). - IB/mlx5: Add MR to radix tree in reg_mr_callback (bnc#905015 fate#317531). - IB/mlx5: Fix error handling in reg_umr (bnc#905015 fate#317531). - mlx5_core: Copy DIF fields only when input and output space values match (bnc#905015 fate#317531). - mlx5_core: Simplify signature handover wqe for interleaved buffers (bnc#905015 fate#317531). - mlx5_core: Fix signature handover operation for interleaved buffers (bnc#905015 fate#317531). - IB/mlx5: Add block multicast loopback support (bnc#905015 fate#317531). - IB/mlx5_core: remove unreachable function call in module init (bnc#905015 fate#317531). - IB/mlx5: Expose support for signature MR feature (bnc#905015 fate#317531). - IB/mlx5: Collect signature error completion (bnc#905015 fate#317531). - IB/mlx5: Support IB_WR_REG_SIG_MR (bnc#905015 fate#317531). - IB/mlx5: Keep mlx5 MRs in a radix tree under device (bnc#905015 fate#317531). - IB/mlx5: Remove MTT access mode from umr flags helper function (bnc#905015 fate#317531). - IB/mlx5: Break up wqe handling into begin & finish routines (bnc#905015 fate#317531). - IB/mlx5: Initialize mlx5_ib_qp signature-related members (bnc#905015 fate#317531). - mlx5: Implement create_mr and destroy_mr (bnc#905015 fate#317531). - IB/core: Introduce signature verbs API (bnc#905015 fate#317531). - IB/core: Introduce protected memory regions (bnc#905015 fate#317531). - net,IB/mlx: Bump all Mellanox driver versions (bnc#905015 fate#317531). - mlx5: Use pci_enable_msix_range() instead of pci_enable_msix() (bnc#905015 fate#317531). - IB/mlx5: Remove dependency on X86 (bnc#905015 fate#317531). - mlx5: Add include of because of kzalloc()/kfree() use (bnc#905015 fate#317531). - IB/mlx5: Don't set "block multicast loopback" capability (bnc#905015 fate#317531). - IB/mlx5: Fix binary compatibility with libmlx5 (bnc#905015 fate#317531). - IB/mlx5: Fix RC transport send queue overhead computation (bnc#905015 fate#317531). - IB/mlx5: Verify reserved fields are cleared (bnc#905015 fate#317531). - IB/mlx5: Remove old field for create mkey mailbox (bnc#905015 fate#317531). - IB/mlx5: Abort driver cleanup if teardown hca fails (bnc#905015 fate#317531). - IB/mlx5: Allow creation of QPs with zero-length work queues (bnc#905015 fate#317531). - mlx5_core: Fix PowerPC support (bnc#905015 fate#317531). - mlx5_core: Improve debugfs readability (bnc#905015 fate#317531). - IB/mlx5: Add support for resize CQ (bnc#905015 fate#317531). - IB/mlx5: Implement modify CQ (bnc#905015 fate#317531). - IB/mlx5: Make sure doorbell record is visible before doorbell (bnc#905015 fate#317531). - mlx5_core: Use mlx5 core style warning (bnc#905015 fate#317531). - IB/mlx5: Clear out struct before create QP command (bnc#905015 fate#317531). - mlx5_core: Fix out arg size in access_register command (bnc#905015 fate#317531). - IB/mlx5: Fix micro UAR allocator (bnc#905015 fate#317531). - mlx5_core: Remove dead code (bnc#905015 fate#317531). - IB/mlx5: Remove unused code in mr.c (bnc#905015 fate#317531). - IB/mlx5: Fix page shift in create CQ for userspace (bnc#905015 fate#317531). - IB/mlx5: Fix list_del of empty list (bnc#905015 fate#317531). - IB/mlx5: Remove dead code (bnc#905015 fate#317531). - mlx5: Use enum to indicate adapter page size (bnc#905015 fate#317531). - IB/mlx5: Update opt param mask for RTS2RTS (bnc#905015 fate#317531). - IB/mlx5: Remove "Always false" comparison (bnc#905015 fate#317531). - IB/mlx5: Remove dead code in mr.c (bnc#905015 fate#317531). - mlx5_core: Change optimal_reclaimed_pages for better performance (bnc#905015 fate#317531). - mlx5: Clear reserved area in set_hca_cap() (bnc#905015 fate#317531). - mlx5: Support communicating arbitrary host page size to firmware (bnc#905015 fate#317531). - mlx5: Fix cleanup flow when DMA mapping fails (bnc#905015 fate#317531). - IB/mlx5: Fix srq free in destroy qp (bnc#905015 fate#317531). - IB/mlx5: Simplify mlx5_ib_destroy_srq (bnc#905015 fate#317531). - IB/mlx5: Fix overflow check in IB_WR_FAST_REG_MR (bnc#905015 fate#317531). - IB/mlx5: Multithreaded create MR (bnc#905015 fate#317531). - IB/mlx5: Fix check of number of entries in create CQ (bnc#905015 fate#317531). - IB/mlx5: Ensure proper synchronization accessing memory (bnc#905015 fate#317531). - IB/mlx5: Fix alignment of reg umr gather buffers (bnc#905015 fate#317531). - IB/mlx5: Fix eq names to display nicely in /proc/interrupts (bnc#905015 fate#317531). - mlx5: Fix error code translation from firmware to driver (bnc#905015 fate#317531). - IB/mlx5: Fix opt param mask according to firmware spec (bnc#905015 fate#317531). - mlx5: Fix opt param mask for sq err to rts transition (bnc#905015 fate#317531). - IB/mlx5: Disable atomic operations (bnc#905015 fate#317531). - mlx5: Fix layout of struct mlx5_init_seg (bnc#905015 fate#317531). - mlx5: Keep polling to reclaim pages while any returned (bnc#905015 fate#317531). - IB/mlx5: Avoid async events on invalid port number (bnc#905015 fate#317531). - IB/mlx5: Decrease memory consumption of mr caches (bnc#905015 fate#317531). - mlx5: Remove checksum on command interface commands (bnc#905015 fate#317531). - IB/mlx5: Fix memory leak in mlx5_ib_create_srq (bnc#905015 fate#317531). - IB/mlx5: Flush cache workqueue before destroying it (bnc#905015 fate#317531). - IB/mlx5: Fix send work queue size calculation (bnc#905015 fate#317531). - mlx5: remove unused MLX5_DEBUG param in Kconfig (bnc#905015 fate#317531). - net/mlx5_core: Support MANAGE_PAGES and QUERY_PAGES firmware command changes (bnc#905015 fate#317531). - mlx5: remove health handler plugin (bnc#905015 fate#317531). - mlx5_core: Implement new initialization sequence (bnc#905015 fate#317531). - IB/mlx5: Fix stack info leak in mlx5_ib_alloc_ucontext() (bnc#905015 fate#317531). - IB/mlx5: Fix error return code in init_one() (bnc#905015 fate#317531). - mlx5: fix error return code in mlx5_alloc_uuars() (bnc#905015 fate#317531). - mlx5: use after free in mlx5_cmd_comp_handler() (bnc#905015 fate#317531). - mlx5 core: Fix __udivdi3 when compiling for 32 bit arches (bnc#905015 fate#317531). - mlx5: Return -EFAULT instead of -EPERM (bnc#905015 fate#317531). - mlx5_core: Adjust hca_cap.uar_page_sz to conform to Connect-IB spec (bnc#905015 fate#317531). - mlx5_core: Fixes for sparse warnings (bnc#905015 fate#317531). - IB/mlx5: Make profile[] static in main.c (bnc#905015 fate#317531). - mlx5: Fix parameter type of health_handler_t (bnc#905015 fate#317531). - mlx5: Add driver for Mellanox Connect-IB adapters (bnc#905015 fate#317531). - module.h: split out the EXPORT_SYMBOL into export.h (bnc#905015 fate#317531). - IB/core: Add reserved values to enums for low-level driver use (bnc#905015 fate#317531). - commit 0694c8e ++++ btrfsprogs: - update to upstream 3.18.2 (FATE#318414) - enhanced documentation - filesystem: new command usage - df: unit bases - df: print GlobalReserve info - device: new command usage - subvol: commit modes for create - convert: option show progress - mkfs: misc updates - check: misc updates - restore: misc updates - library version definitions in headers - more details at https://btrfs.wiki.kernel.org/index.php/Changelog - spec updates - Removed patches: * 0010-btrfs-progs-Check-metadata-mirrors-in-find-root.patch * 0012-restore-Add-regex-matching-of-paths-and-files-to-be-.patch * 0013-btrfs-progs-In-find-root-dump-bytenr-for-every-slot.patch * 0015-btrfs-progs-Add-the-ability-to-use-the-earliest-supe.patch * 0016-btrfs-progs-Use-oldest-super-for-btrfs-select-super..patch * 0018-btrfs-progs-fix-regexec-to-only-work-if-we-actually-.patch * 0019-Btrfs-progs-fix-restore-to-fall-back-to-the-broken-o.patch * 0020-Btrfs-progs-don-t-bug-out-if-we-can-t-find-the-last-.patch * 0021-Btrfs-progs-make-find_and_setup_root-return-an-error.patch * 0024-Btrfs-progs-make-find-root-spit-out-the-size-of-the-.patch * 0025-Revert-btrfs-progs-update-options-in-find-root.c.patch * 0026-Btrfs-progs-add-some-verbose-output-to-find-root.patch * 0028-Btrfs-progs-remove-the-physical-disk-size-check-from.patch * 0031-Btrfs-progs-make-specifying-root-objectid-work-if-th.patch * 0035-btrfs-progs-convert-set-label-or-copy-from-origin.patch * 0036-btrfs-progs-use-IEEE1541-suffixes-for-sizes.patch * 0037-btrfs-progs-add-man-page-for-btrfs-convert.patch * 0038-btrfs-progs-tweak-order-of-devices-in-fi-show.patch * 0039-btrfs-progs-fsck-fix-segfault.patch * 0040-btrfs-progs-fix-loop-device-mount-checks.patch * 0046-Revert-btrfs-progs-mkfs-support-for-extended-inode-r.patch * 0100-btrfs-progs-convert-access-name_len-and-file_type-th.patch * 0101-Btrfs-progs-fix-segfault-when-using-tools-fs-with-tr.patch * 0102-btrfs-progs-defrag-return-zero-on-success.patch * 0103-Btrfs-progs-fix-memory-leaks-on-cleanup.patch * 0104-Makefile-allow-user-set-LDFLAGS-for-libbtrfs.so-as-w.patch * 0105-Removing-btrfsctl-btrfs-vol-btrfs-show.patch * 0106-btrfs-progs-makefile-clean-static-targets.patch * 0107-Btrfs-progs-make-scrub-IO-priority-configurable.patch * 0108-Btrfs-progs-tool-to-visualize-fragmentation.patch * 0109-Btrfs-progs-cleanup-error-handling-in-btrfs-image.patch * 0110-Btrfs-progs-make-btrfs-image-copy-the-tree-logs-if-t.patch * 0111-Btrfs-progs-make-btrfs-image-grab-the-free-space-cac.patch * 0112-Btrfs-progs-make-btrfs-image-restore-with-a-valid-ch.patch * 0113-btrfs-progs-fix-one-bracket-issue-in-mkfs.btrfs-manp.patch * 0114-btrfs-progs-add-missing-qgroup-synopsis-in-btrfs.patch * 0152-Btrfs-progs-Use-proc-mounts-instead-of-etc-mtab.patch * 0153-btrfs-progs-fix-btrfs-scrub-start-help.patch * 0154-btrfs-progs-add-quota-related-info-to-usage-messages.patch * 0155-Btrfs-progs-ignore-subvols-above-BTRFS_LAST_FREE_OBJ.patch * 0156-Btrfs-progs-close-file-descriptor-in-cmds-send.c.patch * 0157-Btrfs-progs-fix-a-small-memory-leak-in-btrfs-list.c.patch * 0158-Btrfs-progs-fix-bug-in-find_root_gen.patch * 0159-Btrfs-progs-Fix-that-BTRFS_FSID_SIZE-is-used-instead.patch * 0160-Btrfs-progs-remove-some-unused-code.patch * 0161-Btrfs-progs-allow-to-receive-to-relative-directories.patch * 0162-Btrfs-progs-fix-segfault-in-fsck-if-the-chunk-tree-i.patch * 0163-Btrfs-progs-record-errno-for-ioctl-DEFRAG_RANGE.patch * 0164-btrfs-progs-set-generation_v2-any-time-we-write-a-ne.patch * 0165-btrfs-progs-update-generation_v2-in-btrfs_update_roo.patch * 0166-btrfs-progs-mkfs-seg-fault-for-wrong-free.patch * 0167-Btrfs-progs-fix-array-bound-checking.patch * 0168-Btrfs-progs-pass-properly-formated-key-to-read_fs_ro.patch * 0171-btrfs-progs-fix-typecast-when-printing-csum-value.patch * 0172-Btrfs-progs-sanity-check-the-number-of-items-in-a-le.patch * btrfs-duplicate-typedef-workaround.patch * btrfs-image-handle-superblocks-correctly-on-fs-with-.patch * fix-devstats-getopt-type * libbtrfs-Set-SONAME-to-libbtrfs.so.0-instead-of-libb.patch * use-proper-accessors-for-otime.patch * use-reentrant-localtime.patch - Added patches: * 0163-btrfs-progs-fsck-fix-segfault.patch * 0167-Btrfs-progs-make-find_and_setup_root-return-an-error.patch * 0168-Btrfs-progs-don-t-bug-out-if-we-can-t-find-the-last-.patch * 0169-btrfs-progs-Check-metadata-mirrors-in-find-root.patch ++++ libmspack: - Replace problematic libmspack-qtmd_decompress-loop.patch from clamav by the mainline fix (bnc#912214#c10). - Fix License to LGPL-2.1. ++++ libtirpc: - fix-write-retry-loop-for-nonblocking-mode.patch Make non-blocking reads work reliably. (bnc#901628) - libtirpc-getnetconfig-races.patch Fix race conditions in getnetconfig (bsc#899576, bsc#882973) ++++ makedumpfile: - makedumpfile-initialize_mmap-use-file-offset.patch: Use file offset in initialize_mmap() (FATE#317317). ++++ xen: - bnc#919464 - VUL-0: xen: XSA-123: Hypervisor memory corruption due to x86 emulator flaw xsa123.patch - bnc#918998 - VUL-0: CVE-2015-2045: xen: XSA-122: Information leak through version information hypercall xsa122.patch - bnc#918995 - VUL-0: CVE-2015-2044: xen: XSA-121: Information leak via internal x86 system device emulation xsa121.patch - bnc#919663 - VUL-0: xen: XSA-119: HVM qemu unexpectedly enabling emulated VGA graphics backends xsa119.patch ------------------------------------------------------------------ ------------------ 2015-2-26 - Feb 26 2015 ------------------- ------------------------------------------------------------------ ++++ asciidoc: - updated to version 8.6.8 (2012-07-17) (FATE#318414) * Added full complement of styles to Open Blocks and Normal Paragraphs —  those with a minimalist bent could construct virtually any document using just Title, Normal Paragraph and Open Block syntaxes. * See details in http://www.methods.co.nz/asciidoc/CHANGELOG.html - version 8.6.7 (2012-03-17): * No major enhancements but quite a few bug fixes which, among other things, fixes Jython compatibility and improves Windows compatibility. - version 8.6.6: * New html5 backend. * Enhanced plugin system. - updated to version 8.4.5: * multiple manpage names are now handled correctly when generating DocBook output * The article and book document header can now include a revision remark * French, German, Hungarian and Russian language file contributions - updated to version 8.3.3 * The broken and confusing numeration and numeration2 numbered list attributes have been dropped, use the style attribute instead. * SidebarBlock element can be rendered with an abstract style. - SPEC file: * Require libxslt for xsltproc. * Added url as source. Please see http://en.opensuse.org/SourceUrls * Regenerated asciidoc-vim-fix.diff * Add missing dependency on python-xml. * Removed patches: * asciidoc-8.2.6-no-safe-check.diff * asciidoc-a2x-fop-fix.diff * asciidoc-fix-manpage-references.diff * asciidoc-ignore-deprecation.diff ++++ kernel-docs: - Move patches.drivers/0012-skbuff-update-struct-sk_buff-members-comments.patch higher in series.conf - commit 701190e - net: sched: shrink struct qdisc_skb_cb to 28 bytes (bnc#919482). - commit ac19475 - netfilter: push reasm skb through instead of original frag skbs (bnc#780216 bnc#861980 bnc#907611). - ip6_output: fragment outgoing reassembled skb properly (bnc#861980 bnc#907611). - ipvs: SIP fragment handling (bnc#861980 bnc#907611). - netfilter: nf_conntrack_ipv6: fix tracking of ICMPv6 error messages containing fragments (bnc#779750 bnc#861980 bnc#907611). - netfilter: nf_conntrack_ipv6: improve fragmentation handling (bnc#861980 bnc#907611). - ipvs: IPv6 MTU checking cleanup and bugfix (bnc#861980 bnc#907611). - ipv4: fix path MTU discovery with connection tracking (bnc#861980 bnc#907611). - ipv6: Add fragment reporting to ipv6_skip_exthdr() (bnc#861980 bnc#907611). - commit f699cf6 - Delete (obsoleted by a follow-up patch) patches.fixes/ipv6-xfrm-use-conntrack-reassembled-packet-for-policy-lookup.patch. - Delete (obsoleted by a follow-up patch) patches.fixes/netfilter-do-not-drop-packet-on-insert-collision.patch. - Delete (replaced by a clean cherry-pick) patches.fixes/nf_conntrack_ipv6-fix-tracking-of-ICMPv6-error-messages-containing-fragments.patch. - commit bf8ece4 - s390/vmcore: implement remap_oldmem_pfn_range for s390 (FATE#317317). - commit 4149c94 - vmcore: introduce remap_oldmem_pfn_range() (FATE#317317). - commit 32e52b4 - s390/vmcore: use ELF header in new memory feature (FATE#317317). - commit a940613 - vmcore: introduce ELF header in new memory feature (FATE#317317). - commit d49e498 - sfc: don't BUG_ON efx->max_channels == 0 in probe (bsc#909618 FATE#317521). - sfc: remove incorrect EFX_BUG_ON_PARANOID check (bsc#909618 FATE#317521). - sfc: fix addr_list_lock spinlock use before init (bsc#909618 FATE#317521). - sfc: Convert the normal transmit complete path to dev_consume_skb_any() (bsc#909618 FATE#317521). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909618 FATE#317521). - sfc: Use __iowrite64_copy instead of a slightly different local function (bsc#909618 FATE#317521). - sfc: Add per-queue statistics in ethtool (bsc#909618 FATE#317521). - sfc: add extra RX drop counters for nodesc_trunc and noskb_drop (bsc#909618 FATE#317521). - sfc: Add 40G link capability decoding (bsc#909618 FATE#317521). - sfc: Adding PCI ID for Solarflare 7000 series 40G network adapter (bsc#909618 FATE#317521). - sfc: PIO:Restrict to 64bit arch and use 64-bit writes (bsc#909618 FATE#317521). - net: get rid of SET_ETHTOOL_OPS (bsc#909618 FATE#317521). - sfc: fix calling of free_irq with already free vector (bsc#909618 FATE#317521). - sfc:On MCDI timeout, issue an FLR (and mark MCDI to fail-fast) (bsc#909618 FATE#317521). - Call efx_set_channels() before efx->type->dimension_resources() (bsc#909618 FATE#317521). - sfc: Don't receive packets when the napi budget == 0 (bsc#909618 FATE#317521). - sfc: Use ether_addr_copy and eth_broadcast_addr (bsc#909618 FATE#317521). - sfc: check for NULL efx->ptp_data in efx_ptp_event (bsc#909618 FATE#317521). - sfc: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909618 FATE#317521). - sfc: Add/remove blank lines to taste (bsc#909618 FATE#317521). - sfc: Fail self-test with -EBUSY, not -EIO, if the device is busy (bsc#909618 FATE#317521). - sfc: Cosmetic changes to self-test from the out-of-tree driver (bsc#909618 FATE#317521). - sfc: Update product naming (bsc#909618 FATE#317521). - sfc: Use canonical pointer type for MAC address in efx_set_mac_address() (bsc#909618 FATE#317521). - sfc: Rename 'use_options' variable in tso_start() to clearer 'use_opt_desc' (bsc#909618 FATE#317521). - sfc: Preserve rx_frm_trunc counters when resizing DMA rings (bsc#909618 FATE#317521). - sfc: Correct comment about number of TX queues used on EF10 (bsc#909618 FATE#317521). - sfc: Remove unused definitions of EF10 user-mode DMA descriptors (bsc#909618 FATE#317521). - sfc: Replace TSOH_OFFSET with the equivalent NET_IP_ALIGN (bsc#909618 FATE#317521). - sfc: Rewrite adjustment of PPS event in a clearer way (bsc#909618 FATE#317521). - sfc: Cache skb->data in local variable in efx_ptp_rx() (bsc#909618 FATE#317521). - sfc: Removed adhoc scheme to rate limit PTP event queue overflow message (bsc#909618 FATE#317521). - drivers/net: fix build warning in ethernet/sfc/tx.c (bsc#909618 FATE#317521). - sfc: Use the correct maximum TX DMA ring size for SFC9100 (bsc#909618 FATE#317521). - sfc: Fix transposed ptp_{under, over}size_sync_windows statistics (bsc#909618 FATE#317521). - sfc: Change efx_mcdi_reset_port to use ENTITY_RESET MC command (bsc#909618 FATE#317521). - sfc: fix sparse non static symbol warning (bsc#909618 FATE#317521). - net: sfc calls skb_set_hash (bsc#909618 FATE#317521). - sfc: Fix RX drop filters for EF10 (bsc#909618 FATE#317521). - sfc: Add PTP counters to ethtool stats (bsc#909618 FATE#317521). - sfc: Changed the statistic name emerg_{fetch,wait} to hlb_{fetch,wait} (bsc#909618 FATE#317521). - sfc: remove unused 'enum efx_rx_alloc_method' (bsc#909618 FATE#317521). - sfc: remove unused 'refcnt' from efx_rx_page_state (bsc#909618 FATE#317521). - sfc: Implement efx_nic_type::filter_clear_rx operation for EF10 (bsc#909618 FATE#317521). - sfc: Allow filter removal only with exactly matching priority (bsc#909618 FATE#317521). - sfc: Don't refer to 'stack' in filter implementation (bsc#909618 FATE#317521). - sfc: Change priority and flags for automatic MAC filters (bsc#909618 FATE#317521). - sfc: Change efx_nic_type::rx_push_indir_table to push hash key as well (bsc#909618 FATE#317521). - sfc: Add more information to many warnings using WARN() and netdev_WARN() (bsc#909618 FATE#317521). - sfc: Remove unnecessary condition for processing the TX timestamp queue (bsc#909618 FATE#317521). - sfc: Don't clear timestamps in efx_ptp_rx() (bsc#909618 FATE#317521). - sfc: Enable PTP clock and timestamping for all functions on EF10 (bsc#909618 FATE#317521). - sfc: Associate primary and secondary functions of controller (bsc#909618 FATE#317521). - sfc: Store VPD serial number at probe time (bsc#909618 FATE#317521). - sfc: Add RX packet timestamping for EF10 (bsc#909618 FATE#317521). - sfc: Copy RX prefix into skb head area in efx_rx_mk_skb() (bsc#909618 FATE#317521). - sfc: split setup of hardware timestamping into NIC-type operation (bsc#909618 FATE#317521). - sfc: Add support for SFC9100 timestamp format (bsc#909618 FATE#317521). - sfc: Tidy up PTP synchronization code (bsc#909618 FATE#317521). - sfc: PTP - tidy up unused/useless variables (bsc#909618 FATE#317521). - sfc: Remove kernel-doc for efx_ptp_data fields not present in this version (bsc#909618 FATE#317521). - sfc: Initialise efx_ptp_data::phc_clock_info from a static template (bsc#909618 FATE#317521). - sfc: Do not use MAC address as clock name (bsc#909618 FATE#317521). - sfc: Store flags from MC_CMD_DRV_ATTACH for later use (bsc#909618 FATE#317521). - sfc: Remove dependency of PTP on having a dedicated channel (bsc#909618 FATE#317521). - sfc: Split PTP multicast filter insertion/removal out of efx_ptp_{start,stop}() (bsc#909618 FATE#317521). - sfc: Return EBUSY for filter insertion on EF10, matching Falcon/Siena (bsc#909618 FATE#317521). - sfc: Expose NVRAM_PARTITION_TYPE_LICENSE on EF10 (bsc#909618 FATE#317521). - sfc: Fold efx_flush_all() into efx_stop_port() and update comments (bsc#909618 FATE#317521). - sfc: Map MCDI error MC_CMD_ERR_ENOTSUP to Linux EOPNOTSUPP (bsc#909618 FATE#317521). - sfc: Log all unexpected MCDI errors (bsc#909618 FATE#317521). - sfc: Add new sensor names (bsc#909618 FATE#317521). - sfc: Revise sensor names to be more understandable and consistent (bsc#909618 FATE#317521). - sfc: Report units in sensor warnings (bsc#909618 FATE#317521). - sfc: Correct RX dropped count for drops while interface is down (bsc#909618 FATE#317521). - sfc: Make initial fill of RX descriptors synchronous (bsc#909618 FATE#317521). - sfc: Tighten the check for RX merged completion events (bsc#909618 FATE#317521). - sfc: Add MC BISTs to ethtool offline self test on EF10 (bsc#909618 FATE#317521). - net: sfc: remove unnecessary pci_set_drvdata() (bsc#909618 FATE#317521). - sfc: Update MCDI protocol definitions (bsc#909618 FATE#317521). - sfc: Demote "MC Scheduler error" messages (bsc#909618 FATE#317521). - sfc: Poll for MCDI completion once before timeout occurs (bsc#909618 FATE#317521). - sfc: Refactor efx_mcdi_poll() by introducing efx_mcdi_poll_once() (bsc#909618 FATE#317521). - sfc: RX buffer allocation takes prefix size into account in IP header alignment (bsc#909618 FATE#317521). - sfc: Maintain current frequency adjustment when applying a time offset (bsc#909618 FATE#317521). - sfc: Stop/re-start PTP when stopping/starting the datapath (bsc#909618 FATE#317521). - sfc: Rate-limit log message for PTP packets without a matching timestamp event (bsc#909618 FATE#317521). - sfc: PTP: Moderate log message on event queue overflow (bsc#909618 FATE#317521). - sfc: Add length checks to efx_xmit_with_hwtstamp() and efx_ptp_is_ptp_tx() (bsc#909618 FATE#317521). - net: introduce skb_transport_header_was_set() (bsc#909618 FATE#317521). - sfc: Implement the SIOCGHWTSTAMP ioctl (bsc#909618 FATE#317521). - sfc: Fix DMA unmapping issue with firmware assisted TSO (bsc#909618 FATE#317521). - sfc: Only bind to EF10 functions with the LinkCtrl and Trusted flags (bsc#909618 FATE#317521). - sfc: Add PM and RXDP drop counters to ethtool stats (bsc#909618 FATE#317521). - sfc: Add definitions for new stats counters and capability flag (bsc#909618 FATE#317521). - sfc: Refactor EF10 stat mask code to allow for more conditional stats (bsc#909618 FATE#317521). - sfc: Fix internal indices of ethtool stats for EF10 (bsc#909618 FATE#317521). - sfc: Add rmb() between reading stats and generation count to ensure consistency (bsc#909618 FATE#317521). - sfc: Remove extern from function prototypes (bsc#909618 FATE#317521). - DMA-API: net: sfc/efx.c: replace dma_set_mask()+dma_set_coherent_mask() with new helper (bsc#909618 FATE#317521). - sfc: Support ARFS for IPv6 flows (bsc#909618 FATE#317521). - sfc: Use TX PIO for sufficiently small packets (bsc#909618 FATE#317521). - sfc: Introduce inline functions to simplify TX insertion (bsc#909618 FATE#317521). - sfc: Separate out queue-empty check from efx_nic_may_push_tx_desc() (bsc#909618 FATE#317521). - sfc: Allocate and link PIO buffers; map them with write-combining (bsc#909618 FATE#317521). - sfc: Implement firmware-assisted TSO for EF10 (bsc#909618 FATE#317521). - sfc: Fold tso_get_head_fragment() into tso_start() (bsc#909618 FATE#317521). - sfc: Add EF10 registers to register dump (bsc#909618 FATE#317521). - sfc: efx_ef10_filter_update_rx_scatter() can be static (bsc#909618 FATE#317521). - sfc: efx_ethtool_get_ts_info() can be static (bsc#909618 FATE#317521). - sfc: Increase MCDI status timeout to 250ms (bsc#909618 FATE#317521). - sfc: Wait for MC reboot to complete before scheduling driver reset (bsc#909618 FATE#317521). - sfc: Reinitialise and re-validate datapath caps after MC reboot (bsc#909618 FATE#317521). - sfc: Clean up validation of datapath capabilities (bsc#909618 FATE#317521). - sfc: Reset derived rx_bad_bytes statistic when EF10 MC is rebooted (bsc#909618 FATE#317521). - sfc: Disable PTP on EF10 until we're ready to handle inline RX timestamps (bsc#909618 FATE#317521). - sfc: Minimal support for 40G link speed (bsc#909618 FATE#317521). - sfc: check for allocation failure (bsc#909618 FATE#317521). - drivers:net: Convert dma_alloc_coherent(...__GFP_ZERO) to dma_zalloc_coherent (bsc#909618 FATE#317521). - sfc: Update copyright banners (bsc#909618 FATE#317521). - sfc: Add support for Solarflare SFC9100 family (bsc#909618 FATE#317521). - etherdevice: introduce eth_broadcast_addr (bsc#909618 FATE#317521). - sfc: Rename implementation of ndo_set_rx_mode (bsc#909618 FATE#317521). - sfc: Make efx_mcdi_{init,fini}() call efx_mcdi_drv_attach() (bsc#909618 FATE#317521). - sfc: Allocate NVRAM partition ID range for PHY images (bsc#909618 FATE#317521). - sfc: Add EF10 register and structure definitions (bsc#909618 FATE#317521). - sfc: Extend struct efx_tx_buffer to allow pushing option descriptors (bsc#909618 FATE#317521). - sfc: Use a global count of active queues instead of pending drains (bsc#909618 FATE#317521). - sfc: Prepare for RX scatter on EF10 (bsc#909618 FATE#317521). - sfc: Initialise IRQ moderation for all NIC types from efx_init_eventq() (bsc#909618 FATE#317521). - sfc: Allow efx_nic_type::dimension_resources to fail (bsc#909618 FATE#317521). - sfc: Allow event queue initialisation to fail (bsc#909618 FATE#317521). - sfc: Document conditions for multicast replication vs filter replacement (bsc#909618 FATE#317521). - sfc: Implement asynchronous MCDI requests (bsc#909618 FATE#317521). - sfc: Remove unnecessary use of atomic_t (bsc#909618 FATE#317521). - sfc: Refactor efx_mcdi_rpc_start() and efx_mcdi_copyin() (bsc#909618 FATE#317521). - sfc: Add support for new board sensors (bsc#909618 FATE#317521). - sfc: Use extended MC_CMD_SENSOR_INFO and MC_CMD_READ_SENSORS (bsc#909618 FATE#317521). - sfc: Return an error code when a sensor is busy (bsc#909618 FATE#317521). - sfc: Add support for reading packet length from prefix (bsc#909618 FATE#317521). - sfc: Generalise packet hash lookup to support EF10 RX prefix (bsc#909618 FATE#317521). - sfc: Rename EFX_PAGE_BLOCK_SIZE to EFX_VI_PAGE_SIZE and adjust comments (bsc#909618 FATE#317521). - sfc: Remove early call to efx_nic_type::reconfigure_mac in efx_reset_up() (bsc#909618 FATE#317521). - sfc: use MCDI epoch flag to improve MC reboot detection in the driver (bsc#909618 FATE#317521). - sfc: Add EF10 support for TX/RX DMA error events handling (bsc#909618 FATE#317521). - sfc: Add a function pointer to abstract write of host time into NIC shared memory (bsc#909618 FATE#317521). - sfc: PTP MCDI requests need to initialise periph ID field (bsc#909618 FATE#317521). - sfc: Delegate MAC/NIC statistic description to efx_nic_type (bsc#909618 FATE#317521). - sfc: Remove driver-local struct ethtool_string (bsc#909618 FATE#317521). - sfc: Remove more left-overs from Falcon GMAC support (bsc#909618 FATE#317521). - sfc: Move MTD operations into efx_nic_type (bsc#909618 FATE#317521). - sfc: Move NIC-type-specific MTD partition date into separate structures (bsc#909618 FATE#317521). - sfc: Eliminate struct efx_mtd (bsc#909618 FATE#317521). - sfc: Rename SPI stuff to show that it is Falcon-specific (bsc#909618 FATE#317521). - sfc: Cleanup Falcon-arch simple MAC filter state (bsc#909618 FATE#317521). - sfc: Define and use MCDI_POPULATE_DWORD_{1,2,3,4,5,6,7} (bsc#909618 FATE#317521). - sfc: Add flag for stack-owned RX MAC filters (bsc#909618 FATE#317521). - sfc: Refactor Falcon-arch filter removal (bsc#909618 FATE#317521). - sfc: Make most filter operations NIC-type-specific (bsc#909618 FATE#317521). - sfc: Refactor Falcon-arch search limit reset (bsc#909618 FATE#317521). - sfc: Split Falcon-arch-specific and common filter state (bsc#909618 FATE#317521). - sfc: Extend and abstract efx_filter_spec to cover Huntington/EF10 (bsc#909618 FATE#317521). - sfc: Name the RX drop queue ID (bsc#909618 FATE#317521). - sfc: Rename Falcon-arch filter implementation types and functions (bsc#909618 FATE#317521). - sfc: Remove unused filter_flags variables and efx_farch_filter_id_flags() (bsc#909618 FATE#317521). - sfc: Do not assume efx_nic_type::ev_fini is idempotent (bsc#909618 FATE#317521). - sfc: EFX_WORKAROUND_ALWAYS is really specific to Falcon-architecture (bsc#909618 FATE#317521). - sfc: Get rid of per-NIC-type phys_addr_channels and mem_map_size (bsc#909618 FATE#317521). - sfc: Update and improve kernel-doc for efx_mcdi_state & efx_mcdi_iface (bsc#909618 FATE#317521). - sfc: Fix race in completion handling (bsc#909618 FATE#317521). - sfc: Add support for MCDI v2 (bsc#909618 FATE#317521). - sfc: Update MCDI protocol definitions for EF10 (bsc#909618 FATE#317521). - sfc: Translate MCDI error numbers received in events (bsc#909618 FATE#317521). - sfc: Move and rename Falcon/Siena common NIC operations (bsc#909618 FATE#317521). - sfc: Refactor queue teardown sequence to allow for EF10 flush behaviour (bsc#909618 FATE#317521). - sfc: Remove bogus call to efx_release_tx_buffers() (bsc#909618 FATE#317521). - sfc: Stop RX refill before flushing RX queues (bsc#909618 FATE#317521). - sfc: Limit scope of a Falcon A1 IRQ workaround (bsc#909618 FATE#317521). - sfc: Rework IRQ enable/disable (bsc#909618 FATE#317521). - sfc: Remove efx_process_channel_now() (bsc#909618 FATE#317521). - sfc: Rename Falcon-architecture register definitions (bsc#909618 FATE#317521). - sfc: Make struct efx_special_buffer less special (bsc#909618 FATE#317521). - sfc: Add GFP flags to efx_nic_alloc_buffer() and make most callers allow blocking (bsc#909618 FATE#317521). - sfc: Make MCDI independent of Siena (bsc#909618 FATE#317521). - sfc: Make efx_mcdi_init() call efx_mcdi_handle_assertion() (bsc#909618 FATE#317521). - sfc: Collect all MCDI port functions into mcdi_port.c (bsc#909618 FATE#317521). - sfc: Move efx_mcdi_mac_reconfigure() to siena.c and rename (bsc#909618 FATE#317521). - sfc: Move siena_reset_hw() and siena_map_reset_reason() into MCDI module (bsc#909618 FATE#317521). - sfc: Add and use MCDI_SET_QWORD() and MCDI_SET_ARRAY_QWORD() (bsc#909618 FATE#317521). - sfc: Ensure MCDI buffers, but not lengths, are dword aligned (bsc#909618 FATE#317521). - sfc: Use proper macros to declare and access MCDI arrays (bsc#909618 FATE#317521). - sfc: Introduce and use MCDI_CTL_SDU_LEN_MAX_V1 macro for Siena-specific code (bsc#909618 FATE#317521). - sfc: Fill out the set of MCDI accessors (bsc#909618 FATE#317521). - sfc: Rationalise MCDI buffer accessors (bsc#909618 FATE#317521). - sfc: Introduce and use MCDI_DECLARE_BUF macro (bsc#909618 FATE#317521). - sfc: Move more Falcon-specific code and definitions into falcon.c (bsc#909618 FATE#317521). - sfc: Move details of a Falcon bug workaround out of ethtool.c (bsc#909618 FATE#317521). - sfc: Use efx_mcdi_mon() to find efx_mcdi_mon structure from efx_nic (bsc#909618 FATE#317521). - sfc: const-qualify source pointers for MMIO write functions (bsc#909618 FATE#317521). - sfc: Fix lookup of default RX MAC filters when steered using ethtool (bsc#909618 FATE#317521). - sfc: Enable RX scatter for flows steered by RFS (bsc#909618 FATE#317521). - sfc: Fix memory leak when discarding scattered packets (bsc#909618 FATE#317521). - sfc: Fix IRQ cleanup in case of a probe failure (bsc#909618 FATE#317521). - sfc: Do not pass non-TCP packets into GRO code (bsc#909618 FATE#317521). - sfc: Define and set RX buffer flag for packets parsed as TCP (bsc#909618 FATE#317521). - sfc: Enable accelerated RFS on vlans (bsc#909618 FATE#317521). - sfc: Report software timestamping capabilities (bsc#909618 FATE#317521). - sfc: Increase size of RX SKB header area (bsc#909618 FATE#317521). - sfc: Enable RX checksum offload for packets not handled by GRO (bsc#909618 FATE#317521). - sfc: Fix EEH with legacy interrupts (bsc#909618 FATE#317521). - sfc: Remove write permission from phy_type attribute (bsc#909618 FATE#317521). - sfc: Store port number in private data, not net_device::dev_id (bsc#909618 FATE#317521). - sfc: Reduce RX scatter buffer size, and reduce alignment if appropriate (bsc#909618 FATE#317521). - sfc: Delete EFX_PAGE_IP_ALIGN, equivalent to NET_IP_ALIGN (bsc#909618 FATE#317521). - sfc: fix return value check in efx_ptp_probe_channel() (bsc#909618 FATE#317521). - sfc: Fix Kconfig typo "----help---" (bsc#909618 FATE#317521). - sfc: make local functions static (bsc#909618 FATE#317521). - drivers:net: dma_alloc_coherent: use __GFP_ZERO instead of memset(, 0) (bsc#909618 FATE#317521). - sfc: remove duplicated include from efx.c (bsc#909618 FATE#317521). - sfc: allocate more RX buffers per page (bsc#909618 FATE#317521). - sfc: Replace efx_rx_is_last_buffer() with a flag (bsc#909618 FATE#317521). - sfc: reuse pages to avoid DMA mapping/unmapping costs (bsc#909618 FATE#317521). - drivers/net: Add moduleparam.h to drivers as required (bsc#909618 FATE#317521). - sfc: Enable RX DMA scattering where possible (bsc#909618 FATE#317521). - sfc: Update RX buffer address together with length (bsc#909618 FATE#317521). - sfc: Explicitly prefetch RX hash prefix, not just Ethernet heade (bsc#909618 FATE#317521). - sfc: Replace efx_rx_buf_eh() with simpler efx_rx_buf_va() (bsc#909618 FATE#317521). - sfc: Wrap __efx_rx_packet() with efx_rx_flush_packet() (bsc#909618 FATE#317521). - sfc: Make RX queue descriptor counts unsigned for consistency (bsc#909618 FATE#317521). - sfc: Properly distinguish RX buffer and DMA lengths (bsc#909618 FATE#317521). - sfc: Document current usage of efx_rx_buffer::len and efx_nic::rx_buffer_len (bsc#909618 FATE#317521). - sfc: Add AER and EEH support for Siena (bsc#909618 FATE#317521). - sfc: Disable RSS when using SR-IOV and only 1 RX queue on the PF (bsc#909618 FATE#317521). - sfc: Fix replacement detection in efx_filter_insert_filter() (bsc#909618 FATE#317521). - sfc: Merge efx_filter_search() into efx_filter_insert() (bsc#909618 FATE#317521). - sfc: Don't use efx_filter_{build,hash,increment}() for default MAC filters (bsc#909618 FATE#317521). - sfc: Remove redundant parameter to efx_filter_search() (bsc#909618 FATE#317521). - sfc: More sensible semantics for efx_filter_insert_filter() replace flag (bsc#909618 FATE#317521). - sfc: Remove rx_alloc_method SKB (bsc#909618 FATE#317521). - sfc: tidy up PTP synchronize function efx_ptp_process_times() (bsc#909618 FATE#317521). - sfc: PTP changes to support improved UUID filtering mode (bsc#909618 FATE#317521). - sfc: Allow efx_channel_type::receive_skb() to reject a packet (bsc#909618 FATE#317521). - sfc: remove __dev* attributes (bsc#909618 FATE#317521). - drivers/net/ethernet/sfc: use standard __{clear,set}_bit_le() functions (bsc#909618 FATE#317521). - commit a113674 - i40e/i40evf: Bump i40e/i40evf versions (bsc#909486 FATE#317393). - i40e/i40evf: Ignore a driver perceived Tx hang if the number of desc pending < 4 (bsc#909486 FATE#317393). - i40e/i40evf: add max buf len to aq debug print helper (bsc#909486 FATE#317393). - i40evf: Fix TSO and hw checksums for non-accelerated vlan packets (bsc#909486 FATE#317393). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909486 FATE#317393). - i40evf: Fixed guest OS panic when removing vf driver (bsc#909486 FATE#317393). - i40evf: fix memory leak on unused interfaces (bsc#909486 FATE#317393). - i40evf: don't leak queue vectors (bsc#909486 FATE#317393). - i40evf: do not re-arm watchdog after remove (bsc#909486 FATE#317393). - i40evf: future-proof vfr_stat state check (bsc#909486 FATE#317393). - i40evf: fix scan warning on sprintf (bsc#909486 FATE#317393). - i40e: always print aqtx answer (bsc#909486 FATE#317393). - i40e/i40evf: ARQ copy desc data even for failed commands (bsc#909486 FATE#317393). - i40evf: don't wait so long (bsc#909486 FATE#317393). - i40e/i40evf: fix extension header csum logic (bsc#909486 FATE#317393). - i40e/i40evf: Add nvmupdate support (bsc#909486 FATE#317393). - i40e/i40evf: Clean up code (bsc#909486 FATE#317393). - i40evf: remove unnecessary break after goto (bsc#909486 FATE#317393). - i40e/i40evf: Add set_fc and init of FC settings (bsc#909486 FATE#317393). - i40e/i40evf: Add new HW link info variable an_enabled and function update_link_info (bsc#909486 FATE#317393). - i40evf: invite vector 0 to the interrupt party (bsc#909486 FATE#317393). - i40e/i40evf: Force a shifted '1' to be unsigned (bsc#909486 FATE#317393). - i40evf: don't violate scope (bsc#909486 FATE#317393). - i40e/i40evf: Do not free the dummy packet buffer synchronously (bsc#909486 FATE#317393). - i40evf: change branding string (bsc#909486 FATE#317393). - i40e/i40evf: initialize context descriptor (bsc#909486 FATE#317393). - i40e/i40evf: add ASQ write back timeout variable to AQ structure (bsc#909486 FATE#317393). - i40evf: set flags before sending message (bsc#909486 FATE#317393). - i40e/i40evf: clear aq bah-bal on shutdown (bsc#909486 FATE#317393). - i40e/i40evf: Add base address registers to aq struct (bsc#909486 FATE#317393). - i40evf: resend FW request if no response (bsc#909486 FATE#317393). - i40evf: fix typo (bsc#909486 FATE#317393). - i40evf: return more useful error information (bsc#909486 FATE#317393). - i40evf: don't stop watchdog if it hasn't started (bsc#909486 FATE#317393). - i40e/i40evf: Big endian fixes for handling HMC (bsc#909486 FATE#317393). - i40e/i40evf: remove reserved type (bsc#909486 FATE#317393). - i40e/i40evf: modify debug prints to avoid seg faults (bsc#909486 FATE#317393). - i40e/i40evf: Update RSS configuration (bsc#909486 FATE#317393). - i40evf: fix off-by-one (bsc#909486 FATE#317393). - i40e/i40evf: Reset Head and Tail on AQ initialization (bsc#909486 FATE#317393). - i40e/i40evf: i40e_register.h update (bsc#909486 FATE#317393). - i40e/i40evf: Add Flow director stats to PF stats (bsc#909486 FATE#317393). - i40e/i40evf: remove FTYPE (bsc#909486 FATE#317393). - i40evf: check admin queue error bits (bsc#909486 FATE#317393). - i40e/i40evf: User ether_addr_copy instead of memcpy (bsc#909486 FATE#317393). - i40evf: don't go further down (bsc#909486 FATE#317393). - i40e/i40evf: AdminQ API update for new FW (bsc#909486 FATE#317393). - i40e/i40evf: set headwb Tx context flags and use them (bsc#909486 FATE#317393). - i40e/i40evf: add PPRS bit to error bits and fix bug in Rx checksum (bsc#909486 FATE#317393). - i40evf: Fix function header (bsc#909486 FATE#317393). - i40e/i40evf: remove deprecated device IDs (bsc#909486 FATE#317393). - i40e/i40evf: fix poll weight (bsc#909486 FATE#317393). - i40e/i40evf: fix TSO accounting (bsc#909486 FATE#317393). - i40e/i40evf: remove chatty reset messages (bsc#909486 FATE#317393). - i40evf: use correct format for printing MAC addresses (bsc#909486 FATE#317393). - i40evf: clean up log message formatting (bsc#909486 FATE#317393). - i40evf: remove bogus comment (bsc#909486 FATE#317393). - i40evf: remove unnecessary log messages (bsc#909486 FATE#317393). - i40e/i40evf: Clean up a few things (bsc#909486 FATE#317393). - i40e/i40evf: Fix code to accommodate i40e_register.h changes (bsc#909486 FATE#317393). - i40e/i40evf: fix rx descriptor status (bsc#909486 FATE#317393). - i40e/i40evf: add Tx pre queue disable function (bsc#909486 FATE#317393). - i40e/i40evf: check AQ register for valid data (bsc#909486 FATE#317393). - i40evf: make messages less dire (bsc#909486 FATE#317393). - i40e/i40evf: remove rx_errors and rx_missed (bsc#909486 FATE#317393). - i40e/i40evf: VEB structure added, GTIME macro update (bsc#909486 FATE#317393). - i40evf: fix crash when changing ring sizes (bsc#909486 FATE#317393). - i40evf: set descriptor multiple to 32 (bsc#909486 FATE#317393). - i40e/i40evf: remove unused RX_LRO define (bsc#909486 FATE#317393). - i40evf: don't use RESETTING state during reinit (bsc#909486 FATE#317393). - i40e/i40evf: Change type to u32 to avoid sparse error (bsc#909486 FATE#317393). - i40e/i40evf: remove storm control (bsc#909486 FATE#317393). - i40e/i40evf: Remove reserved PCTYPE defines (bsc#909486 FATE#317393). - i40e/i40evf: Update check for AQ aliveness (bsc#909486 FATE#317393). - i40evf: Use is_multicast_ether_addr helper (bsc#909486 FATE#317393). - i40e,igb,ixgbe: remove usless return statements (bsc#909486 FATE#317393). - i40evf: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909486 FATE#317393). - i40e/i40evf: control auto ITR through ethtool (bsc#909486 FATE#317393). - i40e/i40evf: set proper default for ITR registers (bsc#909486 FATE#317393). - i40evf: make ethtool_ops const (bsc#909486 FATE#317393). - i40evf: don't lie to ethtool (bsc#909486 FATE#317393). - i40evf: Use macro param for ethtool stats (bsc#909486 FATE#317393). - i40evf: Fix the headers and update copyright year (bsc#909486 FATE#317393). - i40evf: Remove unused defines (bsc#909486 FATE#317393). - i40evf: Update AdminQ interface (bsc#909486 FATE#317393). - net: get rid of SET_ETHTOOL_OPS (bsc#909486 FATE#317393). - i40e/i40evf: Retrieve and store missing link config information (bsc#909486 FATE#317393). - i40evf: remove debugging message (bsc#909486 FATE#317393). - i40evf: fix panic on PF driver fail (bsc#909486 FATE#317393). - i40e/i40evf: add driver version string to driver version command (bsc#909486 FATE#317393). - i40evf: support ethtool RSS options (bsc#909486 FATE#317393). - i40e/i40evf: update AdminQ API (bsc#909486 FATE#317393). - i40e/i40evf: add tracking to NVM busy state (bsc#909486 FATE#317393). - i40e/i40evf: unhide and enable to one prefena field (bsc#909486 FATE#317393). - i40evf: program RSS LUT correctly (bsc#909486 FATE#317393). - i40evf: remove open-coded skb_cow_head (bsc#909486 FATE#317393). - i40e/i40evf: Remove addressof casts to same type (bsc#909486 FATE#317393). - i40e/i40evf: fix error checking path (bsc#909486 FATE#317393). - i40e/i40evf: Add an FD message level (bsc#909486 FATE#317393). - i40evf: remove double space after return (bsc#909486 FATE#317393). - i40evf: fix oops in watchdog handler (bsc#909486 FATE#317393). - i40evf: clean up init error messages (bsc#909486 FATE#317393). - i40evf: don't shut down admin queue on error (bsc#909486 FATE#317393). - i40e/i40evf: Add EEE LPI stats (bsc#909486 FATE#317393). - i40e/i40evf: reduce context descriptors (bsc#909486 FATE#317393). - i40e/i40evf: enable hardware feature head write back (bsc#909486 FATE#317393). - i40evf: use min_t (bsc#909486 FATE#317393). - i40evf: correctly program RSS HLUT table (bsc#909486 FATE#317393). - i40evf: Rename i40e_ptype_lookup i40evf_ptype_lookup (bsc#909486 FATE#317393). - i40e/i40evf: Use dma_set_mask_and_coherent (bsc#909486 FATE#317393). - i40e/i40evf: Use correct number of VF vectors (bsc#909486 FATE#317393). - i40e/i40evf: Some flow director HW definition fixes (bsc#909486 FATE#317393). - i40e/i40evf: carefully fill tx ring (bsc#909486 FATE#317393). - i40e/i40evf: i40e implementation for skb_set_hash (bsc#909486 FATE#317393). - i40evf: Enable the ndo_set_features netdev op (bsc#909486 FATE#317393). - i40e: Change MSIX to MSI-X (bsc#909486 FATE#317393). - i40evf: remove errant space (bsc#909486 FATE#317393). - i40evf: update version and copyright date (bsc#909486 FATE#317393). - i40evf: store ring size in ring structs (bsc#909486 FATE#317393). - i40evf: don't guess device name (bsc#909486 FATE#317393). - i40evf: remove bogus comment (bsc#909486 FATE#317393). - i40evf: fix up strings in init task (bsc#909486 FATE#317393). - i40evf: get rid of pci_using_dac (bsc#909486 FATE#317393). - i40evf: fix multiple crashes on remove (bsc#909486 FATE#317393). - i40evf: remove VLAN filters on close (bsc#909486 FATE#317393). - i40evf: request reset on tx hang (bsc#909486 FATE#317393). - net: i40evf: Remove duplicate include (bsc#909486 FATE#317393). - i40evf: refactor reset handling (bsc#909486 FATE#317393). - i40evf: change type of flags variable (bsc#909486 FATE#317393). - i40evf: don't store unnecessary array of strings (bsc#909486 FATE#317393). - i40evf: fix bogus comment (bsc#909486 FATE#317393). - i40evf: clean up adapter struct (bsc#909486 FATE#317393). - i40evf: trivial fixes (bsc#909486 FATE#317393). - i40e: spelling error (bsc#909486 FATE#317393). - i40e: Fix device ID define names to align to standard (bsc#909486 FATE#317393). - i40evf: fix s390 build failure due to implicit prefetch.h (bsc#909486 FATE#317393). - i40evf: A0 silicon specific (bsc#909486 FATE#317393). - i40evf: add driver to kernel build system (bsc#909486 FATE#317393). Update config files. Add support Intel(R) XL710 X710 Virtual Function Ethernet support (I40EVF). - i40evf: init code and hardware support (bsc#909486 FATE#317393). - i40evf: driver core headers (bsc#909486 FATE#317393). - i40evf: virtual channel interface (bsc#909486 FATE#317393). - i40evf: core ethtool functionality (bsc#909486 FATE#317393). - i40evf: transmit and receive functionality (bsc#909486 FATE#317393). - i40evf: main driver core (bsc#909486 FATE#317393). - commit 79a1eef ++++ release-notes-sdk: 11.4.1: - Update SP4 release notes from FATE. ++++ xmlto: - update to 0.0.25 (FATE#318414) * configure.in: detect grep location * xmlto.in: use (fop/fop1).extensions parameter based on real fop version * format/docbook/epub: initial experimental support for docbook to epub conversion * configure.in: detect zip location * xmlto.in: provide detected zip location to epub convertor * README: Improve the readme file, create online manual pages on project wiki * xmlto.in: use backend extensions by default, provide - -noextensions to disable this * doc/xmlto.xml: mention --noextensions option in documentation * format/{docbook,xhtml}/txt: show the text-web-browser converting command in verbose mode * format/fo/{ps,dvi,pdf}: workaround passivetex limitation for chapters titles starting with L (rhbz#526273) - Add xmlto-lynx-empty-file.patch to fix problems with lynx on empty files, upstream commit 57 - Install missing %doc files such as COPYING; bnc#695072. - spec updates * New patches: * xmlto-codecleanup.patch * xmlto-lynx-empty-file.patch * Refreshed patches: * xmlto-overflow.patch * xmlto-xsltopts.patch * Removed patch: xmlto-find-cmd.diff ------------------------------------------------------------------ ------------------ 2015-2-25 - Feb 25 2015 ------------------- ------------------------------------------------------------------ ++++ binutils: - Update to SLE12 version of binutils (2.24 based). [fate #318494, bnc #901332] - Add binutils-revert-ppc64-objdump-output.diff for compatible output. ++++ cross-ppc-binutils: - Update to SLE12 version of binutils (2.24 based). [fate #318494, bnc #901332] - Add binutils-revert-ppc64-objdump-output.diff for compatible output. ++++ cross-spu-binutils: - Update to SLE12 version of binutils (2.24 based). [fate #318494, bnc #901332] - Add binutils-revert-ppc64-objdump-output.diff for compatible output. ++++ kernel-docs: - Refresh patches.suse/rps-Add-flag-to-skb-to-indicate-rxhash-is-based-on-L.patch Refresh patches.drivers/netdev-FCoE-Add-new-ndo_get_fcoe_hbainfo-call.patch - commit e01f2ff - i40e: _MASK vs _SHIFT typo in i40e_handle_mdd_event() (bsc#909484 FATE#317397). - i40e/igb: Convert to dev_consume_skb_any() (bsc#909484 FATE#317397). - i40e: use global pci_vfs_assigned() to replace local i40e_vfs_are_assigned() (bsc#909484 FATE#317397). - i40e/i40evf: Bump i40e/i40evf versions (bsc#909484 FATE#317397). - i40e: fix panic due to too-early Tx queue enable (bsc#909484 FATE#317397). - i40e: Fix an issue when PF reset fails (bsc#909484 FATE#317397). - i40e: make warning less verbose (bsc#909484 FATE#317397). - i40e: Tell OS link is going down when calling set_phy_config (bsc#909484 FATE#317397). - i40e: Remove unnecessary assignment (bsc#909484 FATE#317397). - i40e: Change wording to be more consistent (bsc#909484 FATE#317397). - i40e: Allow user to change link settings if link is down (bsc#909484 FATE#317397). - i40e: Add dual speed module support (bsc#909484 FATE#317397). - i40e/i40evf: Bump i40e & i40evf version (bsc#909484 FATE#317397). - i40e/i40evf: Ignore a driver perceived Tx hang if the number of desc pending < 4 (bsc#909484 FATE#317397). - i40e: quiet complaints when removing default MAC VLAN filter and make set_mac reversible (bsc#909484 FATE#317397). - i40e/i40evf: add max buf len to aq debug print helper (bsc#909484 FATE#317397). - i40e: Add checks and message for Qualified Module info (bsc#909484 FATE#317397). - i40e: set num_queue_pairs to num configured by VF (bsc#909484 FATE#317397). - i40e: Enable l2tsel bit for VLAN tag control (bsc#909484 FATE#317397). - i40e: Add a FD flush counter to ethtool (bsc#909484 FATE#317397). - i40e: ATR policy change to flush the table to clean stale ATR rules (bsc#909484 FATE#317397). - i40e: Some FD message fixes (bsc#909484 FATE#317397). - i40e: Update flow director error messages to reduce user confusion (bsc#909484 FATE#317397). - i40e: Fix TSO and hw checksums for non-accelerated vlan packets (bsc#909484 FATE#317397). - i40e: fix PTP bug (bsc#909484 FATE#317397). - i40e: Fix a few potential VF dereferences (bsc#909484 FATE#317397). - i40e: Fix for recent kernel panic (bsc#909484 FATE#317397). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909484 FATE#317397). - i40e: Cleaning up missing null-terminate in conjunction with strncpy (bsc#909484 FATE#317397). - i40e: use correct structure type name in sizeof (bsc#909484 FATE#317397). - i40e: fix sparse non static symbol warning (bsc#909484 FATE#317397). - i40e: Fix missing uapi/linux/dcbnl.h include in i40e_fcoe.c (bsc#909484 FATE#317397). - i40e: remove support for vf unicast promiscuous mode (bsc#909484 FATE#317397). - i40e: Minor comment changes (bsc#909484 FATE#317397). - i40e: disable local loopback on vmdq vsi (bsc#909484 FATE#317397). - i40e: use correct vf_id offset for virtchnl message (bsc#909484 FATE#317397). - i40e: expose debug_write_register request (bsc#909484 FATE#317397). - i40e: adds FCoE to build and updates its documentation (bsc#909484 FATE#317397). - i40e: Adds FCoE related code to i40e core driver (bsc#909484 FATE#317397). - i40e: adds FCoE code to the i40e driver (bsc#909484 FATE#317397). - i40e: always print aqtx answer (bsc#909484 FATE#317397). - i40e: Give link more time after setting flow control (bsc#909484 FATE#317397). - i40e: Fix firmware API version errors (bsc#909484 FATE#317397). - i40e/i40evf: ARQ copy desc data even for failed commands (bsc#909484 FATE#317397). - i40e/i40evf: fix extension header csum logic (bsc#909484 FATE#317397). - i40e/i40evf: Add nvmupdate support (bsc#909484 FATE#317397). - i40e: fix format mismatch in drivers/net/ethernet/intel/i40e/i40e_debugfs.c (bsc#909484 FATE#317397). - i40e: (ptp) warn when PF_ID does not match in PRTTSYN_CTL0 (bsc#909484 FATE#317397). - i40e/i40evf: Clean up code (bsc#909484 FATE#317397). - i40e: fix race conditions on queuing skb for HW time stamp (bsc#909484 FATE#317397). - i40e: never generate both software and hardware timestamps (bsc#909484 FATE#317397). - i40e: Add ndo_get_phys_port_id() callback support (bsc#909484 FATE#317397). - net: add ndo to get id of physical port of the device (bsc#909484 FATE#317397). - i40e: remove unnecessary break after goto (bsc#909484 FATE#317397). - i40e: Implement set_settings for ethtool (bsc#909484 FATE#317397). - i40e: Add set_pauseparam to ethtool (bsc#909484 FATE#317397). - i40e/i40evf: Add set_fc and init of FC settings (bsc#909484 FATE#317397). - i40e: move nway reset (bsc#909484 FATE#317397). - i40e/i40evf: Add new HW link info variable an_enabled and function update_link_info (bsc#909484 FATE#317397). - i40e: Finish implementation of ethtool get settings (bsc#909484 FATE#317397). - i40e: disable TPH (bsc#909484 FATE#317397). - i40e: Fix a boundary condition and turning off of ntuple (bsc#909484 FATE#317397). - i40e: tolerate lost interrupts (bsc#909484 FATE#317397). - i40e/i40evf: Force a shifted '1' to be unsigned (bsc#909484 FATE#317397). - i40e/i40evf: Do not free the dummy packet buffer synchronously (bsc#909484 FATE#317397). - i40e: limit GLLAN_TXPRE_QDIS to QINDX 0-127 (bsc#909484 FATE#317397). - i40e/i40evf: initialize context descriptor (bsc#909484 FATE#317397). - i40e: FD filter replay logic bug fix (bsc#909484 FATE#317397). - i40e/i40evf: add ASQ write back timeout variable to AQ structure (bsc#909484 FATE#317397). - i40e: Correct mask assignment value (bsc#909484 FATE#317397). - i40e: clear all queues and interrupts (bsc#909484 FATE#317397). - i40e/i40evf: clear aq bah-bal on shutdown (bsc#909484 FATE#317397). - i40e/i40evf: Add base address registers to aq struct (bsc#909484 FATE#317397). - i40e: fix fdir programming (bsc#909484 FATE#317397). - i40e: Add debugfs hooks to print current total FD filter count (bsc#909484 FATE#317397). - i40e: Fix the FD sideband logic to detect a FD table full condition (bsc#909484 FATE#317397). - i40e: Avoid adding the TCP-IPv4 filter twice (bsc#909484 FATE#317397). - i40e: only create PTP device node once (bsc#909484 FATE#317397). - i40e: don't store user requested mode until we've validated it (bsc#909484 FATE#317397). - i40e: break PTP hardware control from ioctl command for timestamp mode (bsc#909484 FATE#317397). - i40e: rename i40e_ptp_enable to i40e_ptp_feature_enable (bsc#909484 FATE#317397). - i40e/i40evf: Big endian fixes for handling HMC (bsc#909484 FATE#317397). - i40e: do not take NVM ownership for SR read (bsc#909484 FATE#317397). - i40e: Bypass timeout recovery level 0 so as to not cause MDD (bsc#909484 FATE#317397). - i40e: no pf reset at pci remove (bsc#909484 FATE#317397). - i40e: reapply LAA after reset (bsc#909484 FATE#317397). - i40e: allow user to set LAA again (bsc#909484 FATE#317397). - i40e: use WoL flag when setting LAA (bsc#909484 FATE#317397). - i40e: Add ablitity to enable/disable link from set_link_restart_an (bsc#909484 FATE#317397). - i40e/i40evf: remove reserved type (bsc#909484 FATE#317397). - i40e: Fix ethtool coalesce settings (bsc#909484 FATE#317397). - i40e: fix a stray print message (bsc#909484 FATE#317397). - i40e: warn on newer/older firmware API rev (bsc#909484 FATE#317397). - i40e: Add PF reset when Malicious driver event for PF (bsc#909484 FATE#317397). - i40e: make prep_for_reset void (bsc#909484 FATE#317397). - i40e: Stop the VF device after setting its MAC address (bsc#909484 FATE#317397). - i40e/i40evf: modify debug prints to avoid seg faults (bsc#909484 FATE#317397). - i40e/i40evf: Update RSS configuration (bsc#909484 FATE#317397). - i40e: keep service tasks out of reset process (bsc#909484 FATE#317397). - i40e: clear VEB stats when pf stats are cleared (bsc#909484 FATE#317397). - i40e: Fix scheduling while atomic bug during NAPI (bsc#909484 FATE#317397). - i40e: debugfs fix to dump remote LLDPDU (bsc#909484 FATE#317397). - i40e: Helper routine for Rx/Tx queue enable/disable wait (bsc#909484 FATE#317397). - i40e: Fix dangling ring pointers upon driver removal (bsc#909484 FATE#317397). - i40e/i40evf: Reset Head and Tail on AQ initialization (bsc#909484 FATE#317397). - i40e: workaround NVM GLQF_HKEY (bsc#909484 FATE#317397). - i40e/i40evf: i40e_register.h update (bsc#909484 FATE#317397). - i40e: use stored base_queue value (bsc#909484 FATE#317397). - i40e: Fix a bug in ethtool for FD drop packet filter action (bsc#909484 FATE#317397). - i40e/i40evf: Add Flow director stats to PF stats (bsc#909484 FATE#317397). - i40e/i40evf: remove FTYPE (bsc#909484 FATE#317397). - i40e/i40evf: User ether_addr_copy instead of memcpy (bsc#909484 FATE#317397). - i40e: Do not accept tagged packets by default (bsc#909484 FATE#317397). - i40e: Separate out DCB capability and enabled flags (bsc#909484 FATE#317397). - i40e: Change the notion of src and dst for FD_SB in ethtool (bsc#909484 FATE#317397). - i40e/i40evf: AdminQ API update for new FW (bsc#909484 FATE#317397). - i40e/i40evf: set headwb Tx context flags and use them (bsc#909484 FATE#317397). - i40e: Allow RSS table entry range and GPS to be any number, not necessarily power of 2 (bsc#909484 FATE#317397). - i40e: Delete stale MAC filters after change (bsc#909484 FATE#317397). - i40e: Do not fall back to one queue model if the only feature enabled is ATR (bsc#909484 FATE#317397). - i40e/i40evf: add PPRS bit to error bits and fix bug in Rx checksum (bsc#909484 FATE#317397). - i40e: keep SR-IOV enabled in the case that RSS, VMDQ, FD_SB and DCB are disabled (bsc#909484 FATE#317397). - i40e: Changes to Interrupt distribution policy (bsc#909484 FATE#317397). - i40e: implement anti-spoofing for VFs (bsc#909484 FATE#317397). - i40e: don't complain about removing non-existent addresses (bsc#909484 FATE#317397). - i40e: remove unused variable and memory allocation (bsc#909484 FATE#317397). - i40e: allow for more VSIs (bsc#909484 FATE#317397). - i40e: add checks for AQ error status bits (bsc#909484 FATE#317397). - i40e/i40evf: remove deprecated device IDs (bsc#909484 FATE#317397). - i40e/i40evf: fix poll weight (bsc#909484 FATE#317397). - i40e/i40evf: fix TSO accounting (bsc#909484 FATE#317397). - i40e/i40evf: remove chatty reset messages (bsc#909484 FATE#317397). - i40e: not all VSIs have rings (bsc#909484 FATE#317397). - i40e: clear pxe after adminq is rebuilt (bsc#909484 FATE#317397). - i40e: Fix incorrect feature configuration status (bsc#909484 FATE#317397). - i40e/i40evf: Clean up a few things (bsc#909484 FATE#317397). - i40e/i40evf: Fix code to accommodate i40e_register.h changes (bsc#909484 FATE#317397). - i40e/i40evf: fix rx descriptor status (bsc#909484 FATE#317397). - i40e: remove irqs only when they are set up (bsc#909484 FATE#317397). - i40e: don't remove HMC that doesn't exist (bsc#909484 FATE#317397). - i40e: print full link message (bsc#909484 FATE#317397). - i40e: add xcast stats for port (bsc#909484 FATE#317397). - i40e: add vsi x-cast stats (bsc#909484 FATE#317397). - i40e: increase reset wait time (bsc#909484 FATE#317397). - i40e/i40evf: add Tx pre queue disable function (bsc#909484 FATE#317397). - i40e/i40evf: check AQ register for valid data (bsc#909484 FATE#317397). - i40e: print message for pre-production hardware (bsc#909484 FATE#317397). - i40e: add VEB stats to ethtool (bsc#909484 FATE#317397). - i40e: set lan_veb index (bsc#909484 FATE#317397). - i40e: add missing VSI statistics (bsc#909484 FATE#317397). - i40e/i40evf: remove rx_errors and rx_missed (bsc#909484 FATE#317397). - i40e: refactor stats collection (bsc#909484 FATE#317397). - i40e: refactor send version (bsc#909484 FATE#317397). - i40e/i40evf: VEB structure added, GTIME macro update (bsc#909484 FATE#317397). - i40e: notify VF of all types of resets (bsc#909484 FATE#317397). - i40e: clamp jumbo frame size (bsc#909484 FATE#317397). - i40e/i40evf: remove unused RX_LRO define (bsc#909484 FATE#317397). - i40e: remove check for large buffer (bsc#909484 FATE#317397). - i40e: Rework register diagnostic (bsc#909484 FATE#317397). - i40e: don't use OR to check a value (bsc#909484 FATE#317397). - i40e: relax the firmware API version check (bsc#909484 FATE#317397). - i40: disable FCoE for MFP modes (bsc#909484 FATE#317397). - i40e: add clear_pxe AdminQ request (bsc#909484 FATE#317397). - i40e: Clear recovery pending, if reset failed (bsc#909484 FATE#317397). - i40e/i40evf: Change type to u32 to avoid sparse error (bsc#909484 FATE#317397). - i40e/i40evf: remove storm control (bsc#909484 FATE#317397). - i40e: Use the new i40e_get_fd_cnt_all function in other places (bsc#909484 FATE#317397). - i40e: Report cmd->data in ETHTOOL_GRXCLSRLCNT instead of ETHTOOL_GRXCLSRULE (bsc#909484 FATE#317397). - i40e/i40evf: Remove reserved PCTYPE defines (bsc#909484 FATE#317397). - i40e: Tx/Rx rings declaration (bsc#909484 FATE#317397). - i40e: enable descriptor prefetch for VFs (bsc#909484 FATE#317397). - i40e/i40evf: Update check for AQ aliveness (bsc#909484 FATE#317397). - i40e,igb,ixgbe: remove usless return statements (bsc#909484 FATE#317397). - i40e: fix passing wrong error code to i40e_open() (bsc#909484 FATE#317397). - i40e: Check PCI_IOV config to avoid compile error (bsc#909484 FATE#317397). - i40e: remove Tx work for ptp (bsc#909484 FATE#317397). - i40e: Don't disable SR-IOV when VFs are assigned (bsc#909484 FATE#317397). - i40e: remove hardcode of stats struct size in ethtool (bsc#909484 FATE#317397). - i40e/i40evf: control auto ITR through ethtool (bsc#909484 FATE#317397). - i40e/i40evf: set proper default for ITR registers (bsc#909484 FATE#317397). - i40e: add required include (bsc#909484 FATE#317397). - net: get rid of SET_ETHTOOL_OPS (bsc#909484 FATE#317397). - i40e/i40evf: Retrieve and store missing link config information (bsc#909484 FATE#317397). - i40e: Update function formal parameters (bsc#909484 FATE#317397). - i40e: Do not expose fd-sb commands from debugfs (bsc#909484 FATE#317397). - i40e: Do not enable NTUPLE feature control in MFP mode (bsc#909484 FATE#317397). - i40e: Change variable type to avoid typecheck failure (bsc#909484 FATE#317397). - i40e: Don't stop driver probe when querying DCB config fails (bsc#909484 FATE#317397). - i40e: Redistribute queue vectors after DCB reconfiguration (bsc#909484 FATE#317397). - i40e/i40evf: add driver version string to driver version command (bsc#909484 FATE#317397). - i40e: Use port VLAN in MAC/VLAN filter configuration (bsc#909484 FATE#317397). - i40e: Retain MAC filters when changing port VLAN (bsc#909484 FATE#317397). - i40e: remove ptp_tx_work timestamp work item (bsc#909484 FATE#317397). - i40e: fix Timesync Tx interrupt handler code (bsc#909484 FATE#317397). - i40e: report VF link state correctly (bsc#909484 FATE#317397). - i40e: Tweak for-loop in i40e_ethtool.c (bsc#909484 FATE#317397). - i40e: Cleanup if/else statements (bsc#909484 FATE#317397). - i40e: rework fdir setup and teardown (bsc#909484 FATE#317397). - i40e: use generic vsi_open to unquiesce vsi (bsc#909484 FATE#317397). - i40e: abstract the close path for better netdev vsis (bsc#909484 FATE#317397). - i40e: prep vsi_open logic for non-netdev cases (bsc#909484 FATE#317397). - i40e/i40evf: update AdminQ API (bsc#909484 FATE#317397). - i40e/i40evf: add tracking to NVM busy state (bsc#909484 FATE#317397). - i40e: Fix an issue with displaying IPv4 FD filters (bsc#909484 FATE#317397). - i40e: Remove a FW workaround (bsc#909484 FATE#317397). - i40e: Enable VF Tx bandwidth setting (bsc#909484 FATE#317397). - i40e: Reset the VF upon conflicting VLAN configuration (bsc#909484 FATE#317397). - i40e/i40evf: Bump build versions (bsc#909484 FATE#317397). - i40e/i40evf: unhide and enable to one prefena field (bsc#909484 FATE#317397). - i40e: Add bridge FDB add/del/dump ops (bsc#909484 FATE#317397). - e1000e/igb/ixgbe/i40e: fix message terminations (bsc#909484 FATE#317397). - i40e: fix TCP flag replication for hardware offload (bsc#909484 FATE#317397). - i40e: remove open-coded skb_cow_head (bsc#909484 FATE#317397). - i40e: Remove casts of pointer to same type (bsc#909484 FATE#317397). - i40e/i40evf: Remove addressof casts to same type (bsc#909484 FATE#317397). - i40e/i40evf: fix error checking path (bsc#909484 FATE#317397). - i40e: fix function kernel doc description (bsc#909484 FATE#317397). - i40e: Use DEBUG_FD message level for an FD message (bsc#909484 FATE#317397). - i40e/i40evf: Add an FD message level (bsc#909484 FATE#317397). - i40e: check for netdev before debugfs use (bsc#909484 FATE#317397). - i40e: Add functionality for FD SB to drop packets (bsc#909484 FATE#317397). - i40e: Cleanup in FDIR SB ethtool code (bsc#909484 FATE#317397). - i40e: eeprom integrity check on load and empr (bsc#909484 FATE#317397). - i40e: Make the alloc and free queue vector calls orthogonal (bsc#909484 FATE#317397). - i40e: Delete ATR filter on RST (bsc#909484 FATE#317397). - i40e: Fix a message string (bsc#909484 FATE#317397). - i40e/i40evf: Add EEE LPI stats (bsc#909484 FATE#317397). - i40e: potential array underflow in i40e_vc_process_vf_msg() (bsc#909484 FATE#317397). - i40e/i40evf: reduce context descriptors (bsc#909484 FATE#317397). - i40e/i40evf: enable hardware feature head write back (bsc#909484 FATE#317397). - i40e: Refactor and cleanup i40e_open(), adding i40e_vsi_open() (bsc#909484 FATE#317397). - i40e: Patch to enable Ethtool/netdev feature flag for NTUPLE control (bsc#909484 FATE#317397). - i40e: support VF link state ndo (bsc#909484 FATE#317397). - net/core: Add VF link state control (bsc#909484 FATE#317397). - net/i40e: Avoid double setting of NETIF_F_SG for the HW encapsulation feature mask (bsc#909484 FATE#317397). - i40e: Don't receive packets when the napi budget == 0 (bsc#909484 FATE#317397). - net: Replace u64_stats_fetch_begin_bh to u64_stats_fetch_begin_irq (bsc#909484 FATE#317397). - i40e/i40evf: Use dma_set_mask_and_coherent (bsc#909484 FATE#317397). - i40e/i40evf: Use correct number of VF vectors (bsc#909484 FATE#317397). - i40e: Let MDD events be handled by MDD handler (bsc#909484 FATE#317397). - i40e: Bug fix for FDIR replay logic (bsc#909484 FATE#317397). - i40e: Add code to handle FD table full condition (bsc#909484 FATE#317397). - i40e: Define a new state variable to keep track of feature auto disable (bsc#909484 FATE#317397). - i40e: Fix function comments (bsc#909484 FATE#317397). - i40e: simplified init string (bsc#909484 FATE#317397). - i40e: cleanup strings (bsc#909484 FATE#317397). - i40e: make string references to q be queue (bsc#909484 FATE#317397). - i40e/i40evf: Some flow director HW definition fixes (bsc#909484 FATE#317397). - i40e: Fix a bug in the update logic for FDIR SB filter (bsc#909484 FATE#317397). - i40e: delete netdev after deleting napi and vectors (bsc#909484 FATE#317397). - i40e/i40evf: carefully fill tx ring (bsc#909484 FATE#317397). - i40e: fix nvm version and remove firmware report (bsc#909484 FATE#317397). - i40e: Fix static checker warning (bsc#909484 FATE#317397). - i40e: Remove a redundant filter addition (bsc#909484 FATE#317397). - i40e: count timeout events (bsc#909484 FATE#317397). - i40e: Remove a FW workaround for Number of MSIX vectors (bsc#909484 FATE#317397). - i40e: clean up comment style (bsc#909484 FATE#317397). - i40e/i40evf: i40e implementation for skb_set_hash (bsc#909484 FATE#317397). - i40e: Prevent overflow due to kzalloc (bsc#909484 FATE#317397). - i40e: Flow Director sideband accounting (bsc#909484 FATE#317397). - i40e: Change MSIX to MSI-X (bsc#909484 FATE#317397). - i40e: tighten up ring enable/disable flow (bsc#909484 FATE#317397). - i40e: remove unnecessary delay (bsc#909484 FATE#317397). - i40e: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909484 FATE#317397). - i40e: don't handle VF reset on unload (bsc#909484 FATE#317397). - i40e: enable extant VFs (bsc#909484 FATE#317397). - i40e: reset VFs after PF reset (bsc#909484 FATE#317397). - i40e: set VF state to active when reset is complete (bsc#909484 FATE#317397). - i40e: remove dead code (bsc#909484 FATE#317397). - i40e: Setting i40e_down bit for tx_timeout (bsc#909484 FATE#317397). - i40evf: clean up memsets (bsc#909484 FATE#317397). - i40e: Add missing braces to i40e_dcb_need_reconfig() (bsc#909484 FATE#317397). - i40e: Fix device ID define names to align to standard (bsc#909484 FATE#317397). - i40e: add DCB option to Kconfig (bsc#909484 FATE#317397). Update config files. Add support Data Center Bridging (DCB) Support (I40E_DCB). - i40e: add DCB and DCBNL support (bsc#909484 FATE#317397). - i40e: implement DCB support infastructure (bsc#909484 FATE#317397). - i40e: refactor flow director (bsc#909484 FATE#317397). - i40e: rename defines (bsc#909484 FATE#317397). - i40e: whitespace fixes (bsc#909484 FATE#317397). - i40e: Change firmware workaround (bsc#909484 FATE#317397). - i40e: fix compile warning on checksum_local (bsc#909484 FATE#317397). - i40e: updates to AdminQ interface (bsc#909484 FATE#317397). - i40e: check desc pointer before printing (bsc#909484 FATE#317397). - drivers/net: delete non-required instances of include (bsc#909484 FATE#317397). - i40e: Retain MAC filters on port VLAN deletion (bsc#909484 FATE#317397). - i40e: Warn admin to reload VF driver on port VLAN configuration (bsc#909484 FATE#317397). - i40e: whitespace fixes (bsc#909484 FATE#317397). - i40e: make message meaningful (bsc#909484 FATE#317397). - i40e: associate VMDq queue with VM type (bsc#909484 FATE#317397). - i40e: remove extra register write (bsc#909484 FATE#317397). - i40e: fix log message wording (bsc#909484 FATE#317397). - i40e: remove linux/export.h header from i40e_ptp.c (bsc#909484 FATE#317397). - i40e: enable PTP (bsc#909484 FATE#317397). - i40e: call clear_pxe after adminq is initialized (bsc#909484 FATE#317397). - i40e: clear qtx_head before enabling Tx queue (bsc#909484 FATE#317397). - i40e: adjust ITR max and min values (bsc#909484 FATE#317397). - i40e: check for possible incorrect ipv6 checksum (bsc#909484 FATE#317397). - i40e: allow VF to remove any MAC filter (bsc#909484 FATE#317397). - i40e: do not bail when disabling if Tx queue disable fails (bsc#909484 FATE#317397). - i40e: Setting queue count to 1 using ethtool is valid (bsc#909484 FATE#317397). - i40e: Cleanup Doxygen warnings (bsc#909484 FATE#317397). - i40e: fix long lines (bsc#909484 FATE#317397). - i40e: Update the Current NVM version Low value (bsc#909484 FATE#317397). - i40e: drop unused macros (bsc#909484 FATE#317397). - i40e: use assignment instead of memcpy (bsc#909484 FATE#317397). - i40e: Turn flow director off in MFP mode (bsc#909484 FATE#317397). - i40e: Add a dummy packet template (bsc#909484 FATE#317397). - i40e: trivial: formatting and checkpatch fixes (bsc#909484 FATE#317397). - i40e: shorten wordy fields (bsc#909484 FATE#317397). - i40e: accept pf to pf adminq messages (bsc#909484 FATE#317397). - i40e: remove interrupt on AQ error (bsc#909484 FATE#317397). - i40e: release NVM resource reservation on startup (bsc#909484 FATE#317397). - i40e: Cleanup reconfig rss path (bsc#909484 FATE#317397). - i40e: disable packet split (bsc#909484 FATE#317397). - i40e: add a comment on barrier and fix panic on reset (bsc#909484 FATE#317397). - i40e: Fix MAC format in Write MAC address AQ cmd (bsc#909484 FATE#317397). - i40e: Fix GPL header (bsc#909484 FATE#317397). - i40e: use kernel specific defines (bsc#909484 FATE#317397). - i40e: Re-enable interrupt on ICR0 (bsc#909484 FATE#317397). - i40e: correctly setup ARQ descriptors (bsc#909484 FATE#317397). - i40e: remove redundant AQ enable (bsc#909484 FATE#317397). - i40e: Enable/Disable PF switch LB on SR-IOV configure changes (bsc#909484 FATE#317397). - i40e: whitespace paren and comment tweaks (bsc#909484 FATE#317397). - i40e: rework shadow ram read functions (bsc#909484 FATE#317397). - i40e: check MAC type before any REG access (bsc#909484 FATE#317397). - i40e: move PF ID init from PF reset to SC init (bsc#909484 FATE#317397). - i40e: Reduce range of interrupt reg in reg test (bsc#909484 FATE#317397). - i40e: update firmware api to 1.1 (bsc#909484 FATE#317397). - i40e: Add code to wait for FW to complete in reset path (bsc#909484 FATE#317397). - i40e: Allow VF to set already assigned MAC address (bsc#909484 FATE#317397). - i40e: Stop accepting any VLAN tag on VLAN 0 filter set (bsc#909484 FATE#317397). - i40e: Do not enable broadcast promiscuous by default (bsc#909484 FATE#317397). - i40e: Expose AQ debugfs hooks (bsc#909484 FATE#317397). - i40e: Do not allow AQ calls from ndo-ops (bsc#909484 FATE#317397). - i40e: check asq alive before notify (bsc#909484 FATE#317397). - i40e: Admin queue shutdown fixes (bsc#909484 FATE#317397). - i40e: Hide the Port VLAN VLAN ID (bsc#909484 FATE#317397). - i40e: use correct struct for get and update vsi params (bsc#909484 FATE#317397). - i40e: Fix VF driver MAC address configuration (bsc#909484 FATE#317397). - i40e: support VFs on PFs other than 0 (bsc#909484 FATE#317397). - i40e: acknowledge VFLR when disabling SR-IOV (bsc#909484 FATE#317397). - i40e: don't allocate zero size (bsc#909484 FATE#317397). - i40e: use struct assign instead of memcpy (bsc#909484 FATE#317397). - i40e: Do not enable default port on the VEB (bsc#909484 FATE#317397). - i40e: avoid unnecessary register read (bsc#909484 FATE#317397). - i40e: Fix SR-IOV VF port VLAN (bsc#909484 FATE#317397). - i40e: Record dma buffer info for dummy packets (bsc#909484 FATE#317397). - i40e: remove un-necessary io-write (bsc#909484 FATE#317397). - i40e: Remove unnecessary prototypes (bsc#909484 FATE#317397). - i40e: I40E_FLAG_MQ_ENABLED is not used (bsc#909484 FATE#317397). - i40e: Fix ring allocation (bsc#909484 FATE#317397). - i40e: catch unset q_vector (bsc#909484 FATE#317397). - i40e: keep allocated memory in structs (bsc#909484 FATE#317397). - i40e: fix error handling when alloc of vsi array fails (bsc#909484 FATE#317397). - i40e: reinit buffer size each time (bsc#909484 FATE#317397). - i40e: use functions to enable and disable icr 0 (bsc#909484 FATE#317397). - i40e: add header file flag _I40E_TXRX_H_ (bsc#909484 FATE#317397). - i40e: guard against vf message races (bsc#909484 FATE#317397). - i40e: fix constant cast issues (bsc#909484 FATE#317397). - i40e: Change the ethtool NVM read method to use AQ (bsc#909484 FATE#317397). - i40e: fix mac address checking (bsc#909484 FATE#317397). - i40e: Dump the whole NVM, not half (bsc#909484 FATE#317397). - i40e: report VF MAC addresses correctly (bsc#909484 FATE#317397). - i40e: update led set args (bsc#909484 FATE#317397). - i40e: make a define from a large constant (bsc#909484 FATE#317397). - i40e: be more informative (bsc#909484 FATE#317397). - i40e: fix error return (bsc#909484 FATE#317397). - i40e: remove chatty log messages (bsc#909484 FATE#317397). - i40e: remove redundant code (bsc#909484 FATE#317397). - i40e: refactor VF reset flow (bsc#909484 FATE#317397). - i40e: move i40e_reset_vf (bsc#909484 FATE#317397). - i40e: Rx checksum offload for VXLAN (bsc#909484 FATE#317397). - net: add 802.1ad / 802.1ah / QinQ ethertypes (bsc#909484 FATE#317397). - i40e: Implementation of VXLAN ndo's (bsc#909484 FATE#317397). - i40e: fix curly brace use and return type (bsc#909484 FATE#317397). - i40e: add wake-on-lan support (bsc#909484 FATE#317397). - i40e: Populate and check pci bus speed and width (bsc#909484 FATE#317397). - pci_regs.h: Add PCI bus link speed and width defines (bsc#909484 FATE#317397). - i40e: Suppress HMC error to Interrupt message level (bsc#909484 FATE#317397). - i40e: using for_each_set_bit to simplify the code (bsc#909484 FATE#317397). - i40e: make functions static and remove dead code (bsc#909484 FATE#317397). - i40e: Fix off by one in i40e_dbg_command_write (bsc#909484 FATE#317397). - i40e: Fix wrong mask bits being used in misc interrupt (bsc#909484 FATE#317397). - i40e: more print_hex_dump use (bsc#909484 FATE#317397). - i40e: fix up scanf decoders (bsc#909484 FATE#317397). - i40e: simplify error messages for dump descriptor (bsc#909484 FATE#317397). - i40e: prevent null pointer exception in dump descriptor (bsc#909484 FATE#317397). - i40e: Fix dump output from debugfs calls (bsc#909484 FATE#317397). - i40e: Remove FCoE in i40e_virtchnl_pf.c code (bsc#909484 FATE#317397). - i40e: support for suspend and resume (bsc#909484 FATE#317397). - i40e: rtnl_lock in reset path fixes (bsc#909484 FATE#317397). - i40e: Add basic support for get/set channels for RSS (bsc#909484 FATE#317397). - i40e: function to reconfigure RSS queues and rebuild (bsc#909484 FATE#317397). - i40e: reinit flow for the main VSI (bsc#909484 FATE#317397). - i40e: use same number of queues as CPUs (bsc#909484 FATE#317397). - i40e: trivial fixes (bsc#909484 FATE#317397). - i40e: init flow control settings to disabled (bsc#909484 FATE#317397). - i40e: Tell the stack about our actual number of queues (bsc#909484 FATE#317397). - i40e: fix pf reset after offline test (bsc#909484 FATE#317397). - i40e: fix up some of the ethtool connection reporting (bsc#909484 FATE#317397). - i40e: fix null dereference (bsc#909484 FATE#317397). - i40e: remove and fix confusing define name (bsc#909484 FATE#317397). - i40e: complain about out-of-range descriptor request (bsc#909484 FATE#317397). - i40e: loopback info and set loopback fix (bsc#909484 FATE#317397). - i40e: restrict diag test messages (bsc#909484 FATE#317397). - i40e: Add a new variable to track number of pf instances (bsc#909484 FATE#317397). - i40e: add num_VFs message (bsc#909484 FATE#317397). - i40e: refactor ethtool tests (bsc#909484 FATE#317397). - i40e: clear test state bit after all ethtool tests (bsc#909484 FATE#317397). - i40e: only set up the rings to be used (bsc#909484 FATE#317397). - i40e: Enable all PCTYPEs except FCOE for RSS (bsc#909484 FATE#317397). - i40e: refactor reset code (bsc#909484 FATE#317397). - i40e: enable early hardware support (bsc#909484 FATE#317397). - i40e: Add flag for L2 VEB filtering (bsc#909484 FATE#317397). - i40e: get media type during link info (bsc#909484 FATE#317397). - i40e: check multi-bit state correctly (bsc#909484 FATE#317397). - i40e: separate TSYNVALID and TSYNINDX fields in Rx descriptor (bsc#909484 FATE#317397). - i40e: sync header files with hardware (bsc#909484 FATE#317397). - i40e: restrict diag test length (bsc#909484 FATE#317397). - i40e: add support for triggering EMPR (bsc#909484 FATE#317397). - i40e: add interrupt test (bsc#909484 FATE#317397). - i40e: default debug mask setting (bsc#909484 FATE#317397). - i40e: fix debugging messages (bsc#909484 FATE#317397). - i40e: properly add VF MAC addresses (bsc#909484 FATE#317397). - i40e: retry call on timeout (bsc#909484 FATE#317397). - i40e: select reset counters correctly (bsc#909484 FATE#317397). - i40e: allow one more vector for VFs (bsc#909484 FATE#317397). - i40e: firmware version fields offsets update (bsc#909484 FATE#317397). - i40e: simplify aq head-tail-len setups (bsc#909484 FATE#317397). - i40e: clear AQ head and tail registers (bsc#909484 FATE#317397). - i40e: register file updates (bsc#909484 FATE#317397). - i40e: set pf_id based on device and function numbers (bsc#909484 FATE#317397). - i40e: fix error return code in i40e_probe() (bsc#909484 FATE#317397). - i40e: remove unused including (bsc#909484 FATE#317397). - i40e: use pf_id for pf function id in qtx_ctl (bsc#909484 FATE#317397). - i40e: check vsi ptrs before dumping them (bsc#909484 FATE#317397). - i40e: reorder block declarations in debugfs (bsc#909484 FATE#317397). - i40e: tweaking icr0 handling for legacy irq (bsc#909484 FATE#317397). - i40e: refactor fdir setup function (bsc#909484 FATE#317397). - i40e: fix sign extension issue (bsc#909484 FATE#317397). - i40e: fix use of untrusted scalar value warning (bsc#909484 FATE#317397). - i40e: clamp debugfs nvm read command (bsc#909484 FATE#317397). - i40e: debugfs fixups (bsc#909484 FATE#317397). - i40e: fixup legacy interrupt handling (bsc#909484 FATE#317397). - i40e: assign correct vector to VF (bsc#909484 FATE#317397). - i40e: don't free nonexistent rings (bsc#909484 FATE#317397). - i40e: do not flush after re-enabling interrupts (bsc#909484 FATE#317397). - i40e: Add support for 64 bit netstats (bsc#909484 FATE#317397). - i40e: Move rings from pointer to array to array of pointers (bsc#909484 FATE#317397). - i40e: Replace ring container array with linked list (bsc#909484 FATE#317397). - i40e: Move q_vectors from pointer to array to array of pointers (bsc#909484 FATE#317397). - i40e: Split bytes and packets from Rx/Tx stats (bsc#909484 FATE#317397). - i40e: Add support for Tx byte queue limits (bsc#909484 FATE#317397). - i40e: Drop dead code and flags from Tx hotpath (bsc#909484 FATE#317397). - i40e: clean up Tx fast path (bsc#909484 FATE#317397). - i40e: Do not directly increment Tx next_to_use (bsc#909484 FATE#317397). - i40e: Cleanup Tx buffer info layout (bsc#909484 FATE#317397). - i40e: Drop unused completed stat (bsc#909484 FATE#317397). - i40e: Link code updates (bsc#909484 FATE#317397). - i40e: clean up coccicheck reported errors (bsc#909484 FATE#317397). - i40e: better return values (bsc#909484 FATE#317397). - i40e: convert ret to aq_ret (bsc#909484 FATE#317397). - i40e: small clean ups from review (bsc#909484 FATE#317397). - i40e: use common failure flow (bsc#909484 FATE#317397). - net: Add support for hardware-offloaded encapsulation (bsc#909484 FATE#317397). - list: introduce list_first_entry_or_null (bsc#909484 FATE#317397). - i40e: include i40e in kernel proper (bsc#909484 FATE#317397). Update config files. Add support Intel(R) Ethernet Controller XL710 Family support (I40E). - i40e: debugfs interface (bsc#909484 FATE#317397). - i40e: init code and hardware support (bsc#909484 FATE#317397). - i40e: implement virtual device interface (bsc#909484 FATE#317397). - i40e: driver core headers (bsc#909484 FATE#317397). - i40e: driver ethtool core (bsc#909484 FATE#317397). - i40e: transmit, receive, and NAPI (bsc#909484 FATE#317397). - i40e: main driver core (bsc#909484 FATE#317397). - commit b37f104 - patches.fixes/random-04-Fix-add_timer_randomness-throttling Add commit ID of superseding patch. - commit ae2fa67 - patches.fixes/random-04-Fix-add_timer_randomness-throttling Add commit ID of superseding patch. - commit a115ca9 - Fix add_timer_randomness throttling (bsc#904883,bsc#904901,FATE#317374). - commit 7fa157e - fsnotify: Fix handling of renames in audit (bnc#915200). - commit 8d60f2f - Refresh patches.fixes/random-04-Fix-add_timer_randomness-throttling. - commit bebc954 - Fix add_timer_randomness throttling (bsc#904883,bsc#904901,FATE#317374). - random: account for entropy loss due to overwrites (FATE#317374). - random: allow fractional bits to be tracked (FATE#317374). - random: statically compute poolbitshift, poolbytes, poolbits (FATE#317374). - commit ead4ca8 - mm: vmscan: count only dirty pages as congested (VM Performance, bnc#910517). - Don't trigger congestion wait on dirty-but-not-writeout pages (VM Performance, bnc#909093, bnc#910517). - commit 2e91246 - Refresh patches.drivers/mlx4-0190-NET-IB-mlx4-Add-device-managed-flow-steering-firmwar.patch. Result moves away from what non-upstream patches.drivers/mlx4_0080_profile_parm.patch did - Refresh patches.drivers/mlx4-0205-mlx4-Put-physical-GID-and-P_Key-table-sizes-in-mlx4_.patch. Result differs from upstream merge resolution in 5dedb9f - Refresh patches.drivers/mlx4-0285-mlx4_core-Adjustments-to-Flow-Steering-activation-lo.patch. - commit d387130 - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (fate#317398, bsc#909493). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (fate#317398, bsc#909493). - i40e,igb,ixgbe: remove usless return statements (fate#317398, bsc#909493). - net: get rid of SET_ETHTOOL_OPS (fate#317398, bsc#909493). - igbvf: remove open-coded skb_cow_head (fate#317398, bsc#909493). - igbvf: Convert uses of __constant_ to (fate#317398, bsc#909493). - igbvf: Use pci_enable_msix_range() instead of pci_enable_msix() (fate#317398, bsc#909493). - net: igbvf: slight optimization of addr compare (fate#317398, bsc#909493). - igbvf: add missing iounmap() on error in igbvf_probe() (fate#317398, bsc#909493). - igbvf: integer wrapping bug setting the mtu (fate#317398, bsc#909493). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (fate#317398, bsc#909493). - intel: Remove extern from function prototypes (fate#317398, bsc#909493). - DMA-API: net: intel/igbvf: fix 32-bit DMA mask handling (fate#317398, bsc#909493). - drivers:net: dma_alloc_coherent: use __GFP_ZERO instead of memset(, 0) (fate#317398, bsc#909493). - igbvf: Make next_to_watch a pointer and adjust memory barriers to avoid races (fate#317398, bsc#909493). - ethernet: Remove unnecessary alloc/OOM messages, alloc cleanups (fate#317398). - igbvf: be sane about random MAC addresses (fate#317398, bsc#909493). - remove init of dev->perm_addr in drivers (fate#317398, bsc#909493). - net: remove unnecessary NET_ADDR_RANDOM "bitclean" (fate#317398, bsc#909493). - net: add address assign type "SET" (fate#317398). - net: call add_device_randomness() only after successful mac change (fate#317398). - commit 9f6d2fe - Delete patches.drivers/mlx4_en-fix-allocation-of-CPU-affinity-reverse-map.patch. - Delete patches.drivers/mlx4_en-fix-allocation-of-device-tx_cq.patch. - Delete patches.drivers/mlx4_en-fix-blueflame-race. - Delete patches.drivers/net-mlx4_core-load-higher-level-modules-according-to-ports.patch. - Delete patches.drivers/net-mlx4_core-load-the-ib-driver-when-the-device-supports.patch. - Delete patches.drivers/net-mlx4_en-Disable-RFS-when-running-in-SRIOV-mode.patch. - Delete patches.fixes/mlx4-allow-order-0-memory-allocations-in-RX-path.patch. - Delete patches.fixes/mlx4_core-fix-endianess-bug-in-set_param_l.patch. - Delete patches.fixes/net-mlx4-use-one-page-fragment-per-incoming-frame.patch. - Delete patches.fixes/net-mlx4_en-Fix-a-race-between-napi-poll-function-an.patch. - Delete patches.fixes/net-mlx4_en-Fix-pages-never-dma-unmapped-on-rx.patch. - Delete patches.fixes/net-mlx4_en-Fix-selftest-failing-on-non-10G-link-speed. They will be re-added as part of the mlx4 SP4 update. - commit 481f2a1 ++++ makedumpfile: - upgrade to makedumpfile-1.5.6 (FATE#317317, FATE#317592) o support kernels up to 3.13 o makedumpfile header to show LZO/snappy/zlib o speed improvements with mmap(2) o Add --non-mmap option to disable mmap() manually o include sample eppic scripts o many bugfixes - Dropped patches included in 1.5.6: o makedumpfile-eppic-01-initialize.patch o makedumpfile-eppic-02-interface.patch o makedumpfile-eppic-03-callbacks.patch o makedumpfile-eppic-04-apigetctype.patch o makedumpfile-eppic-05-apimember-apigetrtype.patch o makedumpfile-eppic-06-memset.patch o makedumpfile-eppic-07-fully-typed.patch o makedumpfile-eppic-08-static.patch o makedumpfile-eppic-09-doc.patch o makedumpfile-close-dwfl-handle.patch o makedumpfile-eppic-module-support.patch o makedumpfile-scrub-in-writer.patch o makedumpfile-cache.patch o makedumpfile-fix-readpage-overlap.patch o makedumpfile-no-readmem-recursion.patch o makedumpfile-copy-erase_ch.patch o makedumpfile-smp-cyclic-buffer-size.patch o makedumpfile-dmesg-Xen.patch o makedumpfile-alt-dom0_mapnr.patch o makedumpfile-dom0_mapnr-early.patch o makedumpfile-raise-44bit-physaddr-limit.patch - Replace makedumpfile-filter-hugepage.patch with upstream patch: makedumpfile-exclude-unnecessary-hugepages.patch - makedumpfile-generic-multi-page-excl.patch: Generic handling of multi-page exclusions (bnc#873232). - makedumpfile-remove-overrun-adj.patch: Get rid of overrun adjustments (bnc#873232). - makedumpfile-fix-free-bitmap_buffer_cyclic.patch: Fix free bitmap_buffer_cyclic error. - Switch to dynamic linking: Since most libraries are no longer available for static link, the remaining space savings are no longer worth the effort. ++++ php53: - security update: * CVE-2015-0273 [bnc#918768] + php-CVE-2015-0273.patch * CVE-2014-9652 [bnc#917150] + php-CVE-2014-9652.patch ++++ xen: - bnc#895528 - VUL-1: CVE-2014-3615: xen,kvm,qemu: information leakage when guest sets high resolution CVE-2014-3615-qemu-54a85d46.patch CVE-2014-3615-qemu-c1b886c4.patch CVE-2014-3615-qemu-ab9509cc.patch ------------------------------------------------------------------ ------------------ 2015-2-24 - Feb 24 2015 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 31.5.0 ESR (bsc#917597) * MFSA 2015-11/CVE-2015-0835/CVE-2015-0836 (bmo#1072760, bmo#1092947, bmo#1114058, bmo#1114569, bmo#1118894, bmo#1119019, bmo#1122387, bmo#1125734, bmo#1127206, bmo#1127246, bmo#1096138, bmo#1107009, bmo#1111243, bmo#1111248, bmo#1115776, bmo#1117406, bmo#1119579, bmo#1123882, bmo#1124018, bmo#1128196) Miscellaneous memory safety hazards (rv:36.0 / rv:31.5) * MFSA 2015-16/CVE-2015-0831 (bmo#1130541) Use-after-free in IndexedDB * MFSA 2015-19/CVE-2015-0827 (bmo#1117304) Out-of-bounds read and write while rendering SVG content * MFSA 2015-24/CVE-2015-0822 (bmo#1110557) Reading of local files through manipulation of form autocomplete - revert desktop file name bask to MozillaFirefox.desktop (bsc#916196) - obsolete subpackages of firefox-gcc47 from SLE11-SP1/2, that cause problems when upgrading to SLE11-SP3 (bsc#917300) ++++ kernel-docs: - removing series.conf comment left in by mistake - commit 9fb7b6d - e1000e: Fix TSO with non-accelerated vlans (bug#909495 FATE#317394). - e1000e: delete excessive space character in debug message (bug#909495 FATE#317394). - e1000e: fix trivial kernel doc typos (bug#909495 FATE#317394). - e1000e: Fix Runtime PM blocks EEE link negotiation in S5 (bug#909495 FATE#317394). - e1000e: Fix EEE in S5 w/ Runtime PM enabled (bug#909495 FATE#317394). - e1000e: Add support for EEE in Sx states (bug#909495 FATE#317394). - e1000e: Add code to check return values on NVM accesses (bug#909495 FATE#317394). - e1000e: Fix CRC errors with jumbo traffic (bug#909495 FATE#317394). - e1000e: remove unnecessary break after return (bug#909495 FATE#317394). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bug#909495 FATE#317394). - e1000e: Out of line __ew32_prepare/__ew32 (bug#909495 FATE#317394). - e1000e: Fix expand setting EEE link info to all affected parts (bug#909495 FATE#317394). - e1000e: Cleanup parenthesis around return value (bug#909495 FATE#317394). - e1000e: 82574/82583 TimeSync errata for SYSTIM read (bug#909495 FATE#317394). - net: get rid of SET_ETHTOOL_OPS (bug#909495 FATE#317394). - e1000e: Restrict MDIO Slow Mode workaround to relevant parts (bug#909495 FATE#317394). - e1000e: Fix issue with link flap on 82579 (bug#909495 FATE#317394). - e1000e: Expand workaround for 10Mb HD throughput bug (bug#909495 FATE#317394). - e1000e: Workaround for dropped packets in Gig/100 speeds on 82579 (bug#909495 FATE#317394). - e1000e: Cleanup use of deprecated DEFINE_PCI_DEVICE_TABLE (bug#909495 FATE#317394). - e1000e: Cleanup checkpatch extra space (bug#909495 FATE#317394). - e1000e: Cleanup to fix checkpatch missing blank lines (bug#909495 FATE#317394). - e1000e: Cleanup return values in ethtool (bug#909495 FATE#317394). - e1000e/igb/ixgbe/i40e: fix message terminations (bug#909495 FATE#317394). - e1000e: Enclose e1000e_pm_thaw() with CONFIG_PM_SLEEP (bug#909495 FATE#317394). - e1000e: Correctly include VLAN_HLEN when changing interface MTU (bug#909495 FATE#317394). - e1000e: remove open-coded skb_cow_head (bug#909495 FATE#317394). - e1000e: Fix no connectivity when driver loaded with cable out (bug#909495 FATE#317394). - e1000e: remove redundant if clause from PTP work (bug#909495 FATE#317394). - e1000e: add timeout for TX HW time stamping work (bug#909495 FATE#317394). - e1000e: Fix Explicitly set Transmit Control Register (bug#909495 FATE#317394). - e1000e: Fix Hardware Unit Hang (bug#909495 FATE#317394). - e1000e: fix the build error when PM is disabled (bug#909495 FATE#317394). - net: e1000e calls skb_set_hash (bug#909495 FATE#317394). - e1000e: Fix SHRA register access for 82579 (bug#909495 FATE#317394). - e1000e: Fix ethtool offline tests for 82579 parts (bug#909495 FATE#317394). - e1000e: Fix not generating an error on invalid load parameter (bug#909495 FATE#317394). - e1000e: Feature Enable PHY Ultra Low Power Mode (ULP) (bug#909495 FATE#317394). - e1000e Refactor of Runtime Power Management (bug#909495 FATE#317394). - e1000e: Refactor PM flows (bug#909495 FATE#317394). - e1000e: Add missing branding strings in ich8lan.c (bug#909495 FATE#317394). - e1000e: Cleanup - Update GPL header and Copyright (bug#909495 FATE#317394). - e1000e: Fix 82579 sets LPI too early (bug#909495 FATE#317394). - e1000e: Resolve issues with Management Engine (ME) briefly blocking PHY resets (bug#909495 FATE#317394). - e1000e: Cleanup unecessary references (bug#909495 FATE#317394). - e1000e: PTP lock in e1000e_phc_adjustfreq (bug#909495 FATE#317394). - e1000e: Use pci_enable_msix_range() instead of pci_enable_msix() (bug#909495 FATE#317394). - e1000e: Fix compilation warning when !CONFIG_PM_SLEEP (bug#909495 FATE#317394). - e1000e: Fix a compile flag mis-match for suspend/resume (bug#909495 FATE#317394). - e1000e: fix compiler warning (maybe-unitialized variable) (bug#909495 FATE#317394). - e1000e: fix compiler warnings (bug#909495 FATE#317394). - e1000e: Implement the SIOCGHWTSTAMP ioctl (bug#909495 FATE#317394). - e1000e: Validate hwtstamp_config completely before applying it (bug#909495 FATE#317394). - intel: Remove extern from function prototypes (bug#909495 FATE#317394). - DMA-API: net: intel/e1000e: fix 32-bit DMA mask handling (bug#909495 FATE#317394). - e1000e: fix overrun of PHY RAR array (bug#909495 FATE#317394). - e1000e: cleanup boolean comparison to true (bug#909495 FATE#317394). - e1000e: balance semaphore put/get for 82573 (bug#909495 FATE#317394). - e1000e: resolve checkpatch JIFFIES_COMPARISON warning (bug#909495 FATE#317394). - e1000e: Avoid kernel crash during shutdown (bug#909495 FATE#317394). - e1000e: Add code to check for failure of pci_disable_link_state call (bug#909495 FATE#317394). - e1000e: cleanup whitespace in recent commit (bug#909495 FATE#317394). - e1000e: fix I217/I218 PHY initialization flow (bug#909495 FATE#317394). - e1000e: do not resume device from RPM suspend to read PHY status registers (bug#909495 FATE#317394). - e1000e: enable support for new device IDs (bug#909495 FATE#317394). - e1000e: ethtool unnecessarily takes device out of RPM suspend (bug#909495 FATE#317394). - e1000e: Tx hang on I218 when linked at 100Half and slow response at 10Mbps (bug#909495 FATE#317394). - e1000e: low throughput using 4K jumbos on I218 (bug#909495 FATE#317394). - e1000e: iAMT connections drop on driver unload when jumbo frames enabled (bug#909495 FATE#317394). - e1000e: disable ASPM L1 on 82583 (bug#909495 FATE#317394). - e1000e: Use marco instead of digit for defining e1000_rx_desc_packet_split (bug#909495 FATE#317394). - e1000e: Remove duplicate assignment of default rx/tx ring size (bug#909495 FATE#317394). - e1000e: Release mutex lock only if it has been initially acquired (bug#909495 FATE#317394). - e1000e: cleanup whitespace (bug#909495 FATE#317394). - e1000e: fix scheduling while atomic bug (bug#909495 FATE#317394). - e1000e: panic caused by Rx traffic arriving while interface going down (bug#909495 FATE#317394). - e1000e: fix numeric overflow in phc settime method (bug#909495 FATE#317394). - e1000e: fix scheduling while atomic bugs (bug#909495 FATE#317394). - e1000e: increase driver version number (bug#909495 FATE#317394). - e1000e: cleanup unused defines (bug#909495 FATE#317394). - e1000e: add support for LTR on I217/I218 (bug#909495 FATE#317394). - e1000e: EEE capability advertisement not set/disabled as required (bug#909495 FATE#317394). - e1000e: long access timeouts when I217/I218 MAC and PHY are out of sync (bug#909495 FATE#317394). - e1000e: fix LED blink logic for designs with LEDs driven by cathode (bug#909495 FATE#317394). - e1000e: slow performance between two 82579 connected via 10Mbit hub (bug#909495 FATE#317394). - e1000e: additional error handling on PHY register accesses (bug#909495 FATE#317394). - e1000e: Add missing dma_mapping_error-call in e1000_alloc_jumbo_rx_buffers (bug#909495 FATE#317394). - e1000e: cleanup - move defines to appropriate header file (bug#909495 FATE#317394). - e1000e: cleanup format of struct e1000_opt_list struct (bug#909495 FATE#317394). - e1000e: cleanup USLEEP_RANGE checkpatch checks (bug#909495 FATE#317394). - e1000e: cleanup unnecessary line breaks (bug#909495 FATE#317394). - e1000e: cleanup formatting of static structs (bug#909495 FATE#317394). - e1000e: cleanup unusually placed comments (bug#909495 FATE#317394). - e1000e: cleanup (add/remove) blank lines where appropriate (bug#909495 FATE#317394). - e1000e: cleanup SPACING checkpatch checks (bug#909495 FATE#317394). - e1000e: cleanup PARENTHESIS_ALIGNMENT checkpatch checks (bug#909495 FATE#317394). - e1000e: cleanup LEADING_SPACE checkpatch warnings (bug#909495 FATE#317394). - e1000e: cleanup LONG_LINE checkpatch warnings (bug#909495 FATE#317394). - e1000e: cleanup SPACING checkpatch errors and warnings (bug#909495 FATE#317394). - e1000e: cleanup CODE_INDENT checkpatch errors (bug#909495 FATE#317394). - e1000e: fix accessing to suspended device (bug#909495 FATE#317394). - e1000e: fix runtime power management transitions (bug#909495 FATE#317394). - e1000e: workaround DMA unit hang on I218 (bug#909495 FATE#317394). - e1000e: display a warning message when SmartSpeed works (bug#909495 FATE#317394). - e1000e: cleanup checkpatch braces checks (bug#909495 FATE#317394). - e1000e: convert enums of register offsets and move #defines to regs.h (bug#909495 FATE#317394). - e1000e: cosmetic move of #defines and prototypes to the new manage.h (bug#909495 FATE#317394). - e1000e: cosmetic move of #defines and function prototypes to the new nvm.h (bug#909495 FATE#317394). - e1000e: cosmetic move of #defines and function prototypes to the new phy.h (bug#909495 FATE#317394). - e1000e: cosmetic move of function prototypes to the new mac.h (bug#909495 FATE#317394). - e1000e: cosmetic move of #defines and prototypes to the new ich8lan.h (bug#909495 FATE#317394). - e1000e: cosmetic move of #defines to the new 80003es2lan.h (bug#909495 FATE#317394). - e1000e: cosmetic move of #defines and prototypes to the new 82571.h (bug#909495 FATE#317394). - e1000e: use generic IEEE MII definitions (bug#909495 FATE#317394). - e1000e: resolve -Wunused-parameter compile warnings (bug#909495 FATE#317394). - e1000e: update driver version string (bug#909495 FATE#317394). - e1000e: cleanup some whitespace and indentation issues (bug#909495 FATE#317394). - e1000e: cleanup: group OR'ed bit settings with parens (bug#909495 FATE#317394). - e1000e: cleanup defines.h (bug#909495 FATE#317394). - e1000e: cleanup: remove comments which are no longer applicable (bug#909495 FATE#317394). - e1000e: cleanup hw.h (bug#909495 FATE#317394). - e1000e: cleanup: remove unused #define (bug#909495 FATE#317394). - e1000e: adjust PM QoS request (bug#909495 FATE#317394). - e1000e: correct maximum frame size on 82579 (bug#909495 FATE#317394). - e1000e: cleanup: remove e1000e_commit_phy() (bug#909495 FATE#317394). - e1000e: cleanup: remove e1000_get_cable_length() (bug#909495 FATE#317394). - e1000e: cleanup: remove e1000_get_phy_cfg_done() (bug#909495 FATE#317394). - e1000e: cleanup: rename e1000_get_cfg_done() (bug#909495 FATE#317394). - e1000e: cleanup: remove e1000_force_speed_duplex() (bug#909495 FATE#317394). - e1000e: cleanup: remove e1000_set_d0_lplu_state() (bug#909495 FATE#317394). - e1000e: cleanup: do not assign a variable a value when not necessary (bug#909495 FATE#317394). - e1000e: do not ignore variables which get set a value (bug#909495 FATE#317394). - e1000e: cleanup: remove unnecessary function prototypes (bug#909495 FATE#317394). - e1000e: add comment to spinlock_t definition (bug#909495 FATE#317394). - e1000e: remove definition of struct which is no longer used (bug#909495 FATE#317394). - e1000e: fix PHY init workarounds for i217/i218 (bug#909495 FATE#317394). - e1000e: correct maximum frame size on i217/i218 (bug#909495 FATE#317394). - e1000e: update copyright date (bug#909495 FATE#317394). - e1000e: remove prototype of non-existent function (bug#909495 FATE#317394). - e1000e: prevent hardware from automatically configuring PHY on I217/I218 (bug#909495 FATE#317394). - e1000e: enable ECC on I217/I218 to catch packet buffer memory errors (bug#909495 FATE#317394). - e1000e: add support for IEEE-1588 PTP (bug#909495 FATE#317394). - e1000e: fix flow-control thresholds for jumbo frames on 82579/I217/I218 (bug#909495 FATE#317394). - e1000e: fix ethtool offline register test for I217 (bug#909495 FATE#317394). - e1000e: add support for hardware timestamping on some devices (bug#909495 FATE#317394). - e1000e: Use standard #defines for PCIe Capability ASPM fields (bug#909495 FATE#317394). - e1000e: merge multiple conditional statements into one (bug#909495 FATE#317394). - e1000e: cleanup code duplication (bug#909495 FATE#317394). - e1000e: cleanup magic number (bug#909495 FATE#317394). - e1000e: cleanup unnecessary line wrap (bug#909495 FATE#317394). - e1000e: cleanup unusual comment placement (bug#909495 FATE#317394). - e1000e: cleanup redundant statistics counter (bug#909495 FATE#317394). - e1000e: resolve checkpatch PREFER_PR_LEVEL warning (bug#909495 FATE#317394). - e1000e: add missing bailout on error (bug#909495 FATE#317394). - e1000e: unexpected "Reset adapter" message when cable pulled (bug#909495 FATE#317394). - e1000e: fix enabling of EEE on 82579 and I217 (bug#909495 FATE#317394). - e1000e: 82577: workaround for link drop issue (bug#909495 FATE#317394). - e1000e: helper functions for accessing EMI registers (bug#909495 FATE#317394). - e1000e: Invalid Image CSUM bit changed for I217 (bug#909495 FATE#317394). - e1000e: Acquire/release semaphore when writing each EEPROM page (bug#909495 FATE#317394). - e1000e: SerDes autoneg flow control (bug#909495 FATE#317394). - remove init of dev->perm_addr in drivers (bug#909495 FATE#317394). - commit c807046 - Delete patches.drivers/e1000e-82577-workaround-for-link-drop-issue.patch. - Delete patches.drivers/e1000e-helper-functions-for-accessing-EMI-registers.patch. - Delete patches.drivers/e1000e-unexpected-Reset-adapter-message-when-cable-p.patch. - Delete patches.drivers/e1000e-workaround-DMA-unit-hang-on-I218.patch. - Delete patches.fixes/e1000e-enable-support-for-new-device-IDs.patch. They will be re-added as part of the e1000e SP4 update. - commit 153f274 - enic: reconfigure resources for kdump crash kernel (bsc#911105 FATE#317501). - crash_dump: Make is_kdump_kernel() accessible from modules (bsc#911105 FATE#317501). - net: ethernet: cisco: enic: enic_dev: Remove some unused functions (bsc#911105 FATE#317501). - enic: add stats for dma mapping error (bsc#911105 FATE#317501). - enic: check dma_mapping_error (bsc#911105 FATE#317501). - net: Add net_ratelimited_function and net__ratelimited macros (bsc#911105 FATE#317501). - net: add skb frag size accessors (bsc#911105 FATE#317501). - net: use DMA_x_DEVICE and dma_mapping_error with skb_frag_dma_map (bsc#911105 FATE#317501). - enic: make vnic_wq_buf doubly linked (bsc#911105 FATE#317501). - enic: free all rq buffs when allocation fails (bsc#911105 FATE#317501). - enic: fix rx skb checksum (bsc#911105 FATE#317501). - enic: use spin_lock(wq_lock) instead of spin_lock_irqsave(wq_lock) (bsc#911105 FATE#317501). - enic: use napi_schedule_irqoff() (bsc#911105 FATE#317501). - net: introduce napi_schedule_irqoff() (bsc#911105 FATE#317501). - enic: update desc properly in rx_copybreak (bsc#911105 FATE#317501). - enic: handle error condition properly in enic_rq_indicate_buf (bsc#911105 FATE#317501). - enic: fix possible deadlock in enic_stop/ enic_rfs_flw_tbl_free (bsc#911105 FATE#317501). - drivers/net: Convert remaining uses of pr_warning to pr_warn (bsc#911105 FATE#317501). - enic: implement rx_copybreak (bsc#911105 FATE#317501). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#911105 FATE#317501). - enic: use pci_zalloc_consistent (bsc#911105 FATE#317501). - enic: Add ethtool support to show classifier filters added by the driver (bsc#911105 FATE#317501). - enic: remove #ifdef CONFIG_RFS_ACCEL around filter structures (bsc#911105 FATE#317501). - enic: fix return values in enic_set_coalesce (bsc#911105 FATE#317501). - enic: Make dummy rfs functions inline to fix !CONFIG_RFS_ACCEL build (bsc#911105 FATE#317501). - enic: Kill unused variable in enic_rfs_flw_tbl_init() (bsc#911105 FATE#317501). - enic: do tx cleanup in napi poll (bsc#911105 FATE#317501). - enic: fix lockdep around devcmd_lock (bsc#911105 FATE#317501). - enic: Add Accelerated RFS support (bsc#911105 FATE#317501). - enic: alloc/free rx_cpu_rmap (bsc#911105 FATE#317501). - enic: devcmd for adding IP 5 tuple hardware filters (bsc#911105 FATE#317501). - enic: fix return value in _vnic_dev_cmd (bsc#911105 FATE#317501). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bsc#911105 FATE#317501). - enic: Update driver to use __dev_uc/mc_sync/unsync calls (bsc#911105 FATE#317501). - net: Add support for device specific address syncing (bsc#911105 FATE#317501). - net: add dev_uc_sync_multiple() and dev_mc_sync_multiple() api (bsc#911105 FATE#317501). - net: introduce netif_addr_lock_nested() and call if when appropriate (bsc#911105 FATE#317501). - enic: Fix 64 bit divide on 32bit system (bsc#911105 FATE#317501). - enic: Add support for adaptive interrupt coalescing (bsc#911105 FATE#317501). - net: get rid of SET_ETHTOOL_OPS (bsc#911105 FATE#317501). - net: enic: include irq.h for irqreturn_t definitions (bsc#911105 FATE#317501). - enic: Call dev_kfree_skb_any instead of dev_kfree_skb (bsc#911105 FATE#317501). - enic: Don't receive packets when the napi budget == 0 (bsc#911105 FATE#317501). - enic: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#911105 FATE#317501). - net: enic: slight optimization of addr compare (bsc#911105 FATE#317501). - net: cisco-enic calls skb_set_hash (bsc#911105 FATE#317501). - net: enic: remove unnecessary pci_set_drvdata() (bsc#911105 FATE#317501). - driver/net: enic: update enic maintainers and driver (bsc#911105 FATE#317501). - driver/net: enic: Exposing symbols for Cisco's low latency driver (bsc#911105 FATE#317501). - driver/net: enic: Try DMA 64 first, then failover to DMA (bsc#911105 FATE#317501). - driver/net: enic: record q_number and rss_hash for skb (bsc#911105 FATE#317501). - driver/net: enic: Add multi tx support for enic (bsc#911105 FATE#317501). - drivers/net: enic: Generate notification of hardware crash (bsc#911105 FATE#317501). - drivers/net: enic: Add an interface for USNIC to interact with firmware (bsc#911105 FATE#317501). - drivers/net: enic: Adding support for Cisco Low Latency NIC (bsc#911105 FATE#317501). - drivers/net: enic: Move ethtool code to a separate file (bsc#911105 FATE#317501). - drivers/net: enic: release rtnl_lock on error-path (bsc#911105 FATE#317501). - enic: be less verbose about non-critical firmware errors (bsc#911105 FATE#317501). - enic: change sprintf() to snprintf() (bsc#911105 FATE#317501). - drivers/net: fix up function prototypes after __dev* removals (bsc#911105 FATE#317501). - enic: remove __dev* attributes (bsc#911105 FATE#317501). - net: Remove bogus dependencies on INET (bsc#911105 FATE#317501). - commit 2a46a0a - libceph: do not hard code max auth ticket len (FATE#318328 bsc#917884). - libceph: add process_one_ticket() helper (FATE#318328 bsc#917884). - libceph: gracefully handle large reply messages from the mon (FATE#318328 bsc#917884). - libceph: take map_sem for read in handle_reply() (FATE#318328 bsc#917884). - libceph: factor out logic from ceph_osdc_start_request() (FATE#318328 bsc#917884). - libceph: fix error handling in ceph_osdc_init() (FATE#318328 bsc#917884). - libceph: follow redirect replies from osds (FATE#318328 bsc#917884). - libceph: rename ceph_osd_request::r_{oloc,oid} to r_base_{oloc,oid} (FATE#318328 bsc#917884). - libceph: follow {read,write}_tier fields on osd request submission (FATE#318328 bsc#917884). - libceph: add ceph_pg_pool_by_id() (FATE#318328 bsc#917884). - libceph: replace ceph_calc_ceph_pg() with ceph_oloc_oid_to_pg() (FATE#318328 bsc#917884). - libceph: introduce and start using oid abstraction (FATE#318328 bsc#917884). - libceph: rename MAX_OBJ_NAME_SIZE to CEPH_MAX_OID_NAME_LEN (FATE#318328 bsc#917884). - libceph: start using oloc abstraction (FATE#318328 bsc#917884). - libceph: dout() is missing a newline (FATE#318328 bsc#917884). - libceph: add ceph_kv{malloc,free}() and switch to them (FATE#318328 bsc#917884). - libceph: fix preallocation check in get_reply() (FATE#318328 bsc#917884). - libceph: rename front to front_len in get_reply() (FATE#318328 bsc#917884). - libceph: rename ceph_msg::front_max to front_alloc_len (FATE#318328 bsc#917884). - libceph: use CEPH_MON_PORT when the specified port is 0 (FATE#318328 bsc#917884). - crush: fix crush_choose_firstn comment (FATE#318328 bsc#917884). - crush: attempts -> tries (FATE#318328 bsc#917884). - crush: add set_choose_local_[fallback_]tries steps (FATE#318328 bsc#917884). - crush: generalize descend_once (FATE#318328 bsc#917884). - crush: CHOOSE_LEAF -> CHOOSELEAF throughout (FATE#318328 bsc#917884). - crush: add SET_CHOOSE_TRIES rule step (FATE#318328 bsc#917884). - crush: apply chooseleaf_tries to firstn mode too (FATE#318328 bsc#917884). - crush: new SET_CHOOSE_LEAF_TRIES command (FATE#318328 bsc#917884). - crush: pass parent r value for indep call (FATE#318328 bsc#917884). - crush: clarify numrep vs endpos (FATE#318328 bsc#917884). - crush: strip firstn conditionals out of crush_choose, rename (FATE#318328 bsc#917884). - crush: add note about r in recursive choose (FATE#318328 bsc#917884). - crush: use breadth-first search for indep mode (FATE#318328 bsc#917884). - crush: return CRUSH_ITEM_UNDEF for failed placements with indep (FATE#318328 bsc#917884). - crush: eliminate CRUSH_MAX_SET result size limitation (FATE#318328 bsc#917884). - crush: fix some comments (FATE#318328 bsc#917884). - crush: reduce scope of some local variables (FATE#318328 bsc#917884). - crush: factor out (trivial) crush_destroy_rule() (FATE#318328 bsc#917884). - crush: pass weight vector size to map function (FATE#318328 bsc#917884). - libceph: update ceph_features.h (FATE#318328 bsc#917884). - libceph: all features fields must be u64 (FATE#318328 bsc#917884). - rbd: tear down watch request if rbd_dev_device_setup() fails (FATE#318328 bsc#917884). - rbd: introduce rbd_dev_header_unwatch_sync() and switch to it (FATE#318328 bsc#917884). - rbd: enable extended devt in single-major mode (FATE#318328 bsc#917884). - rbd: add support for single-major device number allocation scheme (FATE#318328 bsc#917884). - rbd: add 'minor' sysfs rbd device attribute (FATE#318328 bsc#917884). - rbd: switch to ida for rbd id assignments (FATE#318328 bsc#917884). - rbd: refactor rbd_init() a bit (FATE#318328 bsc#917884). - rbd: tweak "loaded" message and module description (FATE#318328 bsc#917884). - rbd: rbd_device::dev_id is an int, format it as such (FATE#318328 bsc#917884). - libceph: resend all writes after the osdmap loses the full flag (FATE#318328 bsc#917884). - libceph: block I/O when PAUSE or FULL osd map flags are set (FATE#318328 bsc#917884). - ceph: Add necessary clean up if invalid reply received in handle_reply() (FATE#318328 bsc#917884). - net: 8021q/bluetooth/bridge/can/ceph: Remove extern from function prototypes (FATE#318328 bsc#917884). - libceph: CEPH_OSD_FLAG_* enum update (FATE#318328 bsc#917884). - libceph: create_singlethread_workqueue() doesn't return ERR_PTRs (FATE#318328 bsc#917884). - libceph: call r_unsafe_callback when unsafe reply is received (FATE#318328 bsc#917884). - libceph: fix safe completion (FATE#318328 bsc#917884). - commit 092fe9b - Setting rbd and libceph as supported drivers (bsc#917884) - commit f9c8689 ++++ openCryptoki: - Added new patch fix-implicit-declaration-build-errors.patch: - Adds unistd.h to correct implicit declarations - Made /usr/sbin/pkcsep11_migrate and /usr/sbin/pkcsicsf s390 specific - Moved bison and flex build requirement from s390 specific to all builds ++++ postgresql94-libs: - Provide PostgreSQL 9.3 for SLE11-SP3 based on the postgresql91 package (bsc#907651, fate#316970). ------------------------------------------------------------------ ------------------ 2015-2-23 - Feb 23 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - x86, mm/ASLR: Fix stack randomization on 64-bit systems (bsc#917839, CVE-2015-1593). - commit 12c730a - Refresh patches.arch/powerpc-fate317580-free_kmem.patch. - commit 076929c ++++ pam: - fate#312643: Add enforce_for_root parameter to pam_cracklib. pam_cracklib-enforce_for_root.patch ------------------------------------------------------------------ ------------------ 2015-2-20 - Feb 20 2015 ------------------- ------------------------------------------------------------------ ++++ freetype2: - fixed vulnerabilities (bnc#916856, bnc#916857, bnc#916858, bnc#916859, bnc#916861, bnc#916863, bnc#916864, bnc#916865, bnc#916870, bnc#916871, bnc#916872, bnc#916873, bnc#916874, bnc#916879, bnc#916881) - CVE-2014-9657.patch - CVE-2014-9658.patch - CVE-2014-9660.patch - CVE-2014-9661.patch - CVE-2014-9663.patch - CVE-2014-9664.patch - CVE-2014-9665.patch - CVE-2014-9667.patch - CVE-2014-9669.patch - CVE-2014-9670.patch - CVE-2014-9671.patch - CVE-2014-9672.patch - CVE-2014-9673.patch - CVE-2014-9674.patch - CVE-2014-9675.patch - bnc916858.patch ++++ kernel-docs: - IPoIB: Use a private hash table for path lookup in xmit path (bsc#907196). - ipoib: Need to do dst_neigh_lookup_skb() outside of priv->lock (bsc#907196). - ipoib: Convert over to dev_lookup_neigh_skb() (bsc#907196). - infiniband: ipoib: Sanitize neighbour handling in ipoib_main.c (bsc#907196). - commit 0932e14 ++++ util-linux: - Recognize Unisys s-Par as hypervisor (FATE#318231) ++++ sssd: - bsc#918677 libsss_idmap-devel unsolvable dependency on libsss_idmap: require libsss_idmap0 instead. ------------------------------------------------------------------ ------------------ 2015-2-19 - Feb 19 2015 ------------------- ------------------------------------------------------------------ ++++ kiwi: - v5.05.84 released Added support for s390 emulated DASD devices An emulated DASD device is a disk with 512byte blocksize configured with the standard dasd_configure routine. In order to allow zipl to boot from the device kiwi assume the disk mode to be 'LDL' for 4k disks and 'SCSI' for 512b disks. In case of emulated dasd devices the mode must be 'FBA' and there are also CDL 4k DASD disks. This means the assumption of the later target could be wrong which is the reason why this patch also add the zipl_targettype="CDL | LDL | FBA | SCSI" attribute to the kiwi XML configuration. This fix is related to the bugzilla reports (bnc #912199), (bnc #902424) and (bnc #898249) ------------------------------------------------------------------ ------------------ 2015-2-18 - Feb 18 2015 ------------------- ------------------------------------------------------------------ ++++ openCryptoki: - Update to openCryptoki v3.2 (FATE#317596) - Update patches - Added new utils - /usr/sbin/pkcscca - /usr/sbin/pkcsep11_migrate - /usr/sbin/pkcsicsf - Removed utils - /usr/sbin/pkcs11_startup - /usr/sbin/pkcs_slot - Changed licenses to CPL-1.0 ++++ python-base: - python-2.6.9-popen-poll.patch - fix race condition when spawning multiple short-lived processes through multiprocessing (bnc#916255) ++++ xen: - Upstream patches from Jan 54d0a331-x86-VPMU-disable-when-NMI-watchdog-is-on.patch 54db8052-x86-traps-export-exception_table-to-C.patch 54db80d3-x86-nmi-shootdown-pcpus-in-VMX-non-root-mode.patch - bnc#903680 - Problems with detecting free loop devices on Xen guest startup hotplug-Linux-block-find-free-loop-fix.patch ------------------------------------------------------------------ ------------------ 2015-2-17 - Feb 17 2015 ------------------- ------------------------------------------------------------------ ++++ cups: - str4551.CVE-2014-9679.CUPS-1.3.9.patch fixes a possible buffer overflow in filter/raster.c (CUPS STR#4551 CVE-2014-9679 bugzilla.suse.com bsc#917799). ++++ kernel-docs: - NFSv4: Fix another reboot recovery race (bnc#916982). - commit 7283b0d - don't do blind d_drop() in nfs_prime_dcache() (bnc#908069 bnc#896484). - nfs_prime_dcache needs fh to be set (bnc#908069 bnc#896484). - commit 7c48bf0 - Refresh patches.fixes/kvm-iommu-add-cond_resched-to-legacy-device-assignment-code.patch. Add upstream commit id and revision. - commit de8924a - be2net: avoid flashing SH-B0 UFI image on SH-P2 chip (bnc#908322 FATE#317535). - be2net: refactor code that checks flash file compatibility (bnc#908322 FATE#317535). - commit 7d06ef2 ++++ libvirt: - Replace install-apparmor-profiles.patch with upstream patches 30c6aecc-apparmor-profile-lib64.patch, b61fb8e8-apparmor-xen-fixup.patch, 338b07af-apparmor-allow-helpers.patch, and c0273cd6-apparmor-tck-raw-packets.patch ------------------------------------------------------------------ ------------------ 2015-2-16 - Feb 16 2015 ------------------- ------------------------------------------------------------------ ++++ glibc: - getaddrinfo-ipv6-only.patch: Don't return IPv4 addresses when looking for IPv6 addresses only (bsc#904461) - wordexp-wrde-nocmd.patch: wordexp fails to honour WRDE_NOCMD (CVE-2014-7817, bsc#906371, BZ #17625) - res-send-fd-reuse.patch: Fix invalid file descriptor reuse while sending DNS query (CVE-2013-7423, bsc#915526, BZ #15946) - wscanf-buffer-overflow.patch: Fix buffer overflow in wscanf (CVE-2015-1472, bsc#916222, BZ #16618) - Remove inaccurate assembler implementations of ceill, floorl, nearbyintl, roundl, truncl for PowerPC64 (bsc#917072) ++++ kernel-docs: - Update patches.fixes/ipv6-fix-leaking-uninitialized-port-number-of-offender-sockaddr.patch (bsc#853040, CVE-2013-7263). - commit 190dfda - Update patches.fixes/ipv6-fix-leaking-uninitialized-port-number-of-offender-sockaddr.patch (bsc#853040, CVE-2013-7263). - commit 04cb79e ++++ util-linux: - util-linux-2.19.1-mount-dont-stop-on-eacces.patch: don't stop trying filesystem when mounting fails with EACCESS (bnc#918041) - script: Backport new implementation to fix all known hangs (bsc#888678). - script.1: Document consequences of script misuse. ++++ libmlx4-rdmav2: - Buildrequire linux-kernel-headers for PCI read/write syscall numbers. ------------------------------------------------------------------ ------------------ 2015-2-13 - Feb 13 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - rbd: drop an unsafe assertion (FATE#318328 bsc#917884). - rbd: Fix error recovery in rbd_obj_read_sync() (FATE#318328 bsc#917884). - rbd: use reference counts for image requests (FATE#318328 bsc#917884). - rbd: fix error paths in rbd_img_request_fill() (FATE#318328 bsc#917884). - block: replace strict_strtoul() with kstrtoul() (FATE#318328 bsc#917884). - rbd: fix error handling from rbd_snap_name() (FATE#318328 bsc#917884). - rbd: ignore unmapped snapshots that no longer exist (FATE#318328 bsc#917884). - rbd: fix use-after free of rbd_dev->disk (FATE#318328 bsc#917884). - rbd: make rbd_obj_notify_ack() synchronous (FATE#318328 bsc#917884). - rbd: complete notifies before cleaning up osd_client and rbd_dev (FATE#318328 bsc#917884). - ceph: remove bogus extern (FATE#318328 bsc#917884). - libceph: add function to ensure notifies are complete (FATE#318328 bsc#917884). - rbd: fix null dereference in dout (FATE#318328 bsc#917884). - rbd: fix buffer size for writes to images with snapshots (FATE#318328 bsc#917884). - rbd: fix I/O error propagation for reads (FATE#318328 bsc#917884). - block: rbd: use NULL instead of 0 (FATE#318328 bsc#917884). - rbd: fix a couple warnings (FATE#318328 bsc#917884). - rbd: take a little credit (FATE#318328 bsc#917884). - rbd: use rwsem to protect header updates (FATE#318328 bsc#917884). - rbd: don't hold ctl_mutex to get/put device (FATE#318328 bsc#917884). - rbd: protect against concurrent unmaps (FATE#318328 bsc#917884). - rbd: set removing flag while holding list lock (FATE#318328 bsc#917884). - rbd: protect against duplicate client creation (FATE#318328 bsc#917884). - rbd: clean up a few things in the refresh path (FATE#318328 bsc#917884). - rbd: flush dcache after zeroing page data (FATE#318328 bsc#917884). - rbd: drop original request earlier for existence check (FATE#318328 bsc#917884). - rbd: Use min_t() to fix comparison of distinct pointer types warning (FATE#318328 bsc#917884). - rbd: send snapshot context with writes (FATE#318328 bsc#917884). - rbd: fetch object order before using it (FATE#318328 bsc#917884). - rbd: use the correct length for format 2 object names (FATE#318328 bsc#917884). - rbd: fix cleanup in rbd_add() (FATE#318328 bsc#917884). - rbd: don't destroy ceph_opts in rbd_add() (FATE#318328 bsc#917884). - commit 55c70a5 - mm/vmalloc.c: unbreak __vunmap() (bsc#916365). - commit 226f003 - Update patches.fixes/dm-optimize-use-SRCU-and-RCU.patch (bnc#917646). - commit a35cadb - dm: optimize use SRCU and RCU (bnc#917701). - commit 600a33a ++++ elfutils: - CVE-2014-9447: elfutils: Directory traversal vulnerability (bnc#911662) Add patch: elfutils-fix-dir-traversal-vuln-in-ar-extraction.patch ++++ util-linux: - findmnt: Fix possible loop (bsc#917164). ------------------------------------------------------------------ ------------------ 2015-2-12 - Feb 12 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - crypto: add missing crypto module aliases (bsc#914423). - crypto: include crypto- module prefix in template (bsc#914423). - crypto: prefix module autoloading with "crypto-" (bsc#914423). - commit 65ff327 - crypto: add missing crypto module aliases (bsc#914423). - crypto: include crypto- module prefix in template (bsc#914423). - crypto: prefix module autoloading with "crypto-" (bsc#914423). - commit 3f48ad8 - x86: irq: Check for valid irq descriptor in check_irq_vectors_for_cpu_disable (bnc#914726). - commit a32a321 - netfilter: do not drop packet on insert collision (bnc#907611). - commit eca4deb - Refresh patches.drivers/ixgbe-0016-ixgbe-Implement-PCI-SR-IOV-sysfs-callback-operation.patch. - commit 2151539 - supported.conf: mark nvme as supported (bsc#916936) - commit 7117881 - ixgbevf: remove useless bd_number from struct ixgbevf_adapter (bug#909488 FATE#317387). - ixgbevf: Resolve missing-field-initializers warnings (bug#909488 FATE#317387). - ixgbevf: introduce delay for checking VFLINKS on 82599 (bug#909488 FATE#317387). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bug#909488 FATE#317387). - ixgbevf: Remove unused get_supported_physical_layer pointer (bug#909488 FATE#317387). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bug#909488 FATE#317387). - net: get rid of SET_ETHTOOL_OPS (bug#909488 FATE#317387). - ixgbevf: remove 82599 from the module description (bug#909488 FATE#317387). - ixgbevf: remove open-coded skb_cow_head (bug#909488 FATE#317387). - ixgbevf: Add bit to mark work queue initialization (bug#909488 FATE#317387). - ixgbevf: Fix rcu warnings induced by LER (bug#909488 FATE#317387). - ixgbevf: Change ixgbe_read_reg to ixgbevf_read_reg (bug#909488 FATE#317387). - ixgbevf: Additional adapter removal checks (bug#909488 FATE#317387). - ixgbevf: Check for adapter removal on register writes (bug#909488 FATE#317387). - ixgbevf: Check register reads for adapter removal (bug#909488 FATE#317387). - ixgbevf: Make the ethtool register test use accessors (bug#909488 FATE#317387). - ixgbevf: Use static inlines instead of macros (bug#909488 FATE#317387). - ixgbevf: Convert uses of __constant_ to (bug#909488 FATE#317387). - ixgbevf: Protect ixgbevf_down with __IXGBEVF_DOWN bit (bug#909488 FATE#317387). - ixgbevf: Indicate removal state explicitly (bug#909488 FATE#317387). - net: Replace u64_stats_fetch_begin_bh to u64_stats_fetch_begin_irq (bug#909488 FATE#317387). - ixgbevf: delete unneeded call to pci_set_power_state (bug#909488 FATE#317387). - ixgbevf: fix skb->pkt_type checks (bug#909488 FATE#317387). - ixgbevf: add check for CHECKSUM_PARTIAL when doing TSO (bug#909488 FATE#317387). - ixgbevf: fix handling of tx checksumming (bug#909488 FATE#317387). - ixgbevf: Use pci_enable_msix_range() instead of pci_enable_msix() (bug#909488 FATE#317387). - ixgbevf: merge ixgbevf_tx_map and ixgbevf_tx_queue into a single function (bug#909488 FATE#317387). - ixgbevf: redo dma mapping using the tx buffer info (bug#909488 FATE#317387). - ixgbevf: make the first tx_buffer a repository for most of the skb info (bug#909488 FATE#317387). - ixgbevf: add tx counters (bug#909488 FATE#317387). - ixgbevf: remove counters for Tx/Rx checksum offload (bug#909488 FATE#317387). - ixgbevf: move ring specific stats into ring specific structure (bug#909488 FATE#317387). - ixgbevf: make use of the dev pointer in the ixgbevf_ring struct (bug#909488 FATE#317387). - ixgbevf: bump version (bug#909488 FATE#317387). - ixgbevf: create function for all of ring init (bug#909488 FATE#317387). - ixgbevf: Convert ring storage form pointer to an array to array of pointers (bug#909488 FATE#317387). - ixgbevf: use pci drvdata correctly in ixgbevf_suspend() (bug#909488 FATE#317387). - ixgbevf: set the disable state when ixgbevf_qv_disable is called (bug#909488 FATE#317387). - ixgbevf: add DCB configuration into queue setup (bug#909488 FATE#317387). - ixgbe: Focus config of head, tail ntc, and ntu all into a single function (bug#909488 FATE#317387). - ixgbe: cleanup IXGBE_DESC_UNUSED (bug#909488 FATE#317387). - ixgbevf: remove redundant workaround (bug#909488 FATE#317387). - ixgbevf: Add zero_base handler to network statistics (bug#909488 FATE#317387). - ixgbevf: add BP_EXTENDED_STATS for CONFIG_NET_RX_BUSY_POLL (bug#909488 FATE#317387). - ixgbevf: implement CONFIG_NET_RX_BUSY_POLL (bug#909488 FATE#317387). - ixgbevf: have clean_rx_irq return total_rx_packets cleaned (bug#909488 FATE#317387). - ixgbevf: add ixgbevf_rx_skb (bug#909488 FATE#317387). - ixgbevf: bump driver version (bug#909488 FATE#317387). - ixgbevf: implement ethtool get/set coalesce (bug#909488 FATE#317387). - ixgbevf: Adds function to set PSRTYPE register (bug#909488 FATE#317387). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (bug#909488 FATE#317387). - ixgbevf: move API neg to reset path (bug#909488 FATE#317387). - ixgbevf: add wait for Rx queue disable (bug#909488 FATE#317387). - ixgbevf: cleanup redundant mailbox read failure check (bug#909488 FATE#317387). - ixgbevf: do not print registers to dmesg in ixgbevf_get_regs (bug#909488 FATE#317387). - intel: Remove extern from function prototypes (bug#909488 FATE#317387). - DMA-API: net: intel/ixgbevf: fix 32-bit DMA mask handling (bug#909488 FATE#317387). - drivers/net: Convert uses of compare_ether_addr to ether_addr_equal (bug#909488 FATE#317387). - ixgbevf: Adjust to handle unassigned MAC address from PF (bug#909488 FATE#317387). - ixgbevf: don't release the soft entries (bug#909488 FATE#317387). - drivers:net: Remove dma_alloc_coherent OOM messages (bug#909488 FATE#317387). - ixgbevf: use PCI_DEVICE_TABLE macro (bug#909488 FATE#317387). - ixgbevf: Make next_to_watch a pointer and adjust memory barriers to avoid races (bug#909488 FATE#317387). - ixgbevf: Make sure link status and speed are fetched (bug#909488 FATE#317387). - ixgbevf: Fix link speed message to support 100Mbps (bug#909488 FATE#317387). - ixgbevf: Fix statistics corruption (bug#909488 FATE#317387). - ixgbevf: Fix link up messages (bug#909488 FATE#317387). - ixgbevf: Synch out of tree and in tree mailbox interrupt handlers (bug#909488 FATE#317387). - remove init of dev->perm_addr in drivers (bug#909488 FATE#317387). - net: Check for presence of IFLA_AF_SPEC (bug#908398 FATE#317382). - net: Validate IFLA_BRIDGE_MODE attribute length (bug#908398 FATE#317382). - ixgbe: fix use after free adapter->state test in ixgbe_remove/ixgbe_probe (bug#908398 FATE#317382). - ixgbe: Correctly disable VLAN filter in promiscuous mode (bug#908398 FATE#317382). - ixgbe: phy: fix uninitialized status in ixgbe_setup_phy_link_tnx (bug#908398 FATE#317382). - ixgbe: fix race when setting advertised speed (bug#908398 FATE#317382). - ixgbe: check for vfs outside of sriov_num_vfs before dereference (bug#908398 FATE#317382). - ixgbe: fix race accessing page->_count (bug#908398 FATE#317382). - ixgbe: fix setting of TXDCTL.WTRHESH when ITR is set to 0 and no BQL (bug#908398 FATE#317382). - ixgbe: remove wait loop on autoneg for copper devices (bug#908398 FATE#317382). - ixgbe: Convert the normal transmit complete path to dev_consume_skb_any() (bug#908398 FATE#317382). - ixgbe: remove IXGBE_FLAG_MSI(X)_CAPABLE flags (bug#908398 FATE#317382). - ixgbe: add warnings for other disabled features without MSI-X support (bug#908398 FATE#317382). - ixgbe: use e_dev_warn instead of netif_printk (bug#908398 FATE#317382). - ixgbe: use e_dev_warn instead of e_err for displaying warning (bug#908398 FATE#317382). - ixgbe: determine vector count inside ixgbe_acquire_msix_vectors (bug#908398 FATE#317382). - ixgbe: move msix_entries allocation into ixgbe_acquire_msix_vectors (bug#908398 FATE#317382). - ixgbe: return integer from ixgbe_acquire_msix_vectors (bug#908398 FATE#317382). - ixgbe: use e_dev_warn instead of netif_printk (bug#908398 FATE#317382). - ixgbe: Do not schedule an uninitialized workqueue entry (bug#908398 FATE#317382). - ixgbe: remove useless bd_number from adapter struct (bug#908398 FATE#317382). - ixgbe: Drop Rx alloc at end of Rx cleanup (bug#908398 FATE#317382). - ixgbe: Resolve warnings produced in W=2 builds (bug#908398 FATE#317382). - ixgbe: add comment noting recalculation of queues (bug#908398 FATE#317382). - ixgbe: reset interface on link loss with pending Tx work from the VF (bug#908398 FATE#317382). - ixgbe: Cleanup FDB handling code (bug#908398 FATE#317382). - ixgbe: flush when in xmit_more mode and under descriptor pressure (bug#908398 FATE#317382). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bug#908398 FATE#317382). - ixgbe: Make return values more direct (bug#908398 FATE#317382). - ixgbe: Delete a bunch of dead code (bug#908398 FATE#317382). - ixgbe: Fix ixgbe_write_mbx error result (bug#908398 FATE#317382). - ixgbe: Correct X540 semaphore error (bug#908398 FATE#317382). - ixgbe: Fix spurious release of semaphore in EEPROM access (bug#908398 FATE#317382). - ixgbe: Convert some udelays to usleep_range (bug#908398 FATE#317382). - ixgbe: don't check minimum link when direct assigned to virtual machine (bug#908398 FATE#317382). - ixgbe: fix use of list_for_each in ixgbe_enumerate_functions (bug#908398 FATE#317382). - ixgbe: Change some uses of strncpy to strlcpy (bug#908398 FATE#317382). - ixgbe: Fix possible null-dereference in error path (bug#908398 FATE#317382). - ixgbe: remove unnecessary break after return (bug#908398 FATE#317382). - ixgbe: remove unnecessary break after goto (bug#908398 FATE#317382). - ixgbe: change PTP NSECS_PER_SEC to IXGBE_PTP_PPS_HALF_SECOND (bug#908398 FATE#317382). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bug#908398 FATE#317382). - ixgbe: fix detection of SFP+ capable interfaces (bug#908398 FATE#317382). - ixgbe: avoid duplicate code in suspend and stop paths (bug#908398 FATE#317382). - ixgbe: separate the PTP suspend and stop actions (bug#908398 FATE#317382). - ixgbe: extract PTP clock device from ptp_init (bug#908398 FATE#317382). - ixgbe: allow ixgbe_ptp_reset to maintain current hwtstamp config (bug#908398 FATE#317382). - ixgbe: extract the hardware setup from the ixgbe_ptp_set_ts_config (bug#908398 FATE#317382). - ixgbe: rename ixgbe_ptp_enable to ixgbe_ptp_feature_enable (bug#908398 FATE#317382). - ixgbe: fix linking at 100Mbps on copper devices with MNG FW enabled (bug#908398 FATE#317382). - igb/ixgbe: remove return statements for void functions (bug#908398 FATE#317382). - ixgbe: add /* fallthrough */ comment to case statements (bug#908398 FATE#317382). - ixgbe: add space between operands to & (bug#908398 FATE#317382). - ixgbe: don't check NULL for debugfs_remove_recursive (bug#908398 FATE#317382). - ixgbe: add braces around else block (bug#908398 FATE#317382). - ixgbe: fix several concatenated strings to single line (bug#908398 FATE#317382). - ixgbe: fix checkpatch style of blank line after declaration (bug#908398 FATE#317382). - ixgbe: fix function-like macro, remove semicolon (bug#908398 FATE#317382). - ixgbe: clean up checkpatch warnings about CODE_INDENT and LEADING_SPACE (bug#908398 FATE#317382). - net: get rid of SET_ETHTOOL_OPS (bug#908398 FATE#317382). - ixgbe: improve mac filter handling (bug#908398 FATE#317382). - ixgbe: change handling of multicast filters (bug#908398 FATE#317382). - ixgbe: remove vlan_filter_disable and enable functions (bug#908398 FATE#317382). - ixgbe: Use out-of-line function for register reads (bug#908398 FATE#317382). - ixgbe: convert low_water into an array (bug#908398 FATE#317382). - e1000e/igb/ixgbe/i40e: fix message terminations (bug#908398 FATE#317382). - ixgbe: clean up Rx time stamping code (bug#908398 FATE#317382). - ixgbe: remove open-coded skb_cow_head (bug#908398 FATE#317382). - ixgbe: Add bit to mark service task initialization (bug#908398 FATE#317382). - ixgbe: Fix rcu warnings induced by LER (bug#908398 FATE#317382). - ixgbe: fix ixgbe_check_reset_blocked() declaration (bug#908398 FATE#317382). - ixgbe: fix race conditions on queuing skb for HW time stamp (bug#908398 FATE#317382). - ixgbe: never generate both software and hardware timestamps (bug#908398 FATE#317382). - ixgbe: remove redundant if clause from PTP work (bug#908398 FATE#317382). - ixgbe: Break recursion in case of removal (bug#908398 FATE#317382). - ixgbe: enable tx queues after link up (bug#908398 FATE#317382). - ixgbe: Stop cacheing if the MNG FW enabled (bug#908398 FATE#317382). - ixgbe: clean up ixgbe_atr_compute_perfect_hash_82599 (bug#908398 FATE#317382). - ixgbe: use ixgbe_read_pci_cfg_word (bug#908398 FATE#317382). - ixgbe: remove unused media type (bug#908398 FATE#317382). - ixgbe: fix ixgbe_setup_mac_link_82599 autoc variables (bug#908398 FATE#317382). - ixgbe: fix ixgbe_stop_mac_link_on_d3_82599 to check mng correctly (bug#908398 FATE#317382). - ixgbe: check Core Clock Disable bit (bug#908398 FATE#317382). - ixgbe: fix errors related to protected AUTOC calls (bug#908398 FATE#317382). - ixgbe: Convert uses of __constant_ to (bug#908398 FATE#317382). - ixgbe: add ixgbe_write_pci_cfg_word with ixgbe_removed check (bug#908398 FATE#317382). - ixgbe: Don't receive packets when the napi budget == 0 (bug#908398 FATE#317382). - net: Replace u64_stats_fetch_begin_bh to u64_stats_fetch_begin_irq (bug#908398 FATE#317382). - ixgbe: fix some multiline hw_dbg prints (bug#908398 FATE#317382). - ixgbe: fixup header for ixgbe_set_rxpba_82598 (bug#908398 FATE#317382). - ixgbe: add Linux NICS mailing list to contact info (bug#908398 FATE#317382). - ixgbe: move setting rx_pb_size into get_invariants (bug#908398 FATE#317382). - ixgbe: Fix format string in ixgbe_fcoe.c (bug#908398 FATE#317382). - net: ixgbe calls skb_set_hash (bug#908398 FATE#317382). - ixgbe: implement SIOCGHWTSTAMP ioctl (bug#908398 FATE#317382). - ixgbe: Check config reads for removal (bug#908398 FATE#317382). - ixgbe: Fix up some ethtool results when adapter is removed (bug#908398 FATE#317382). - ixgbe: Restore hw_addr in LER recovery paths (bug#908398 FATE#317382). - ixgbe: Add check for FW veto bit (bug#908398 FATE#317382). - ixgbe: fix bit toggled for 82599 reset fix (bug#908398 FATE#317382). - ixgbe: collect all 82599 AUTOC code in one function (bug#908398 FATE#317382). - ixgbe: fix to use correct timeout interval for memory read completion (bug#908398 FATE#317382). - ixgbe: Add WoL support for a new device (bug#908398 FATE#317382). - ixgbe: don't use magic size number to assign ptp_caps.name (bug#908398 FATE#317382). - ixgbe: modify behavior on receiving a HW ECC error (bug#908398 FATE#317382). - ixgbe: Use pci_enable_msix_range() instead of pci_enable_msix() (bug#908398 FATE#317382). - ixgbe: bump version number (bug#908398 FATE#317382). - ixgbe: set driver_max_VFs should be done before enabling SRIOV (bug#908398 FATE#317382). - ixgbe: define IXGBE_MAX_VFS_DRV_LIMIT macro and cleanup const 63 (bug#908398 FATE#317382). - ixgbe: Fix incorrect logic for fixed fiber eeprom write (bug#908398 FATE#317382). - ixgbe: reinit_locked() should be called with rtnl_lock (bug#908398 FATE#317382). - ixgbe: Clear head write-back registers on VF reset (bug#908398 FATE#317382). - ixgbe: Force QDE via PFQDE for VFs during reset (bug#908398 FATE#317382). - ixgbe: Additional adapter removal checks (bug#908398 FATE#317382). - ixgbe: Check for adapter removal on register writes (bug#908398 FATE#317382). - ixgbe: Check register reads for adapter removal (bug#908398 FATE#317382). - ixgbe: Make ethtool register test use accessors (bug#908398 FATE#317382). - ixgbe: Use static inlines instead of macros (bug#908398 FATE#317382). - ixbge: Protect ixgbe_down with __IXGBE_DOWN bit (bug#908398 FATE#317382). - ixgbe: Indicate removal state explicitly (bug#908398 FATE#317382). - net: ixgbe: slight optimization of addr compare (bug#908398 FATE#317382). - ixgbe: fix for unused variable warning with certain config (bug#908398 FATE#317382). - ixgbe: Start temperature sensor attribute index with 1 (bug#908398 FATE#317382). - ixgbe: Make ixgbe_identify_qsfp_module_generic static (bug#908398 FATE#317382). - ixgbe: add warning when max_vfs is out of range (bug#908398 FATE#317382). - net: Explicitly initialize u64_stats_sync structures for lockdep (bug#908398 FATE#317382). - ixgbe: fix inconsistent clearing of the multicast table (bug#908398 FATE#317382). - ixgbe: Reduce memory consumption with larger page sizes (bug#908398 FATE#317382). - ixgbe: remove unnecessary duplication of PCIe bandwidth display (bug#908398 FATE#317382). - ixgbe: show <2% for encoding loss on PCIe Gen3 (bug#908398 FATE#317382). - ixgbe: fix rx-usecs range checks for BQL (bug#908398 FATE#317382). - ixgbe: use pcie_capability_read_word() to simplify code (bug#908398 FATE#317382). - ixgbe: cleanup ixgbe_enumerate_functions (bug#908398 FATE#317382). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (bug#908398 FATE#317382). - ixgbe: Cleanup the use of tabs and spaces (bug#908398 FATE#317382). - ixgbe: ethtool DCB registers dump for 82599 and x540 (bug#908398 FATE#317382). - intel: Remove extern from function prototypes (bug#908398 FATE#317382). - DMA-API: net: intel/ixgbe: fix 32-bit DMA mask handling (bug#908398 FATE#317382). - ixgbe: fix ethtool reporting of supported links for SFP modules (bug#908398 FATE#317382). - ixgbe: limit setting speed to only one at a time for QSFP modules (bug#908398 FATE#317382). - ixgbe: fix ethtool loopback diagnostic with DCB enabled (bug#908398 FATE#317382). - ixgbe: fully disable hardware RSC logic when disabling RSC (bug#908398 FATE#317382). - ixgbe: add support for older QSFP active DA cables (bug#908398 FATE#317382). - ixgbe: include QSFP PHY types in ixgbe_is_sfp() (bug#908398 FATE#317382). - ixgbe: add 1Gbps support for QSFP+ (bug#908398 FATE#317382). - ixgbe: cleanup some log messages (bug#908398 FATE#317382). - ixgbe: zero out mailbox buffer on init (bug#908398 FATE#317382). - ixgbe: fix link test when connected to 1Gbps link partner (bug#908398 FATE#317382). - ixgbe: fix incorrect limit value in ring transverse (bug#908398 FATE#317382). - ixgbe: Check return value on eeprom reads (bug#908398 FATE#317382). - ixgbe: disable link when adapter goes down (bug#908398 FATE#317382). - ixgbe: add support for quad-port x520 adapter (bug#908398 FATE#317382). - ixgbe: clear semaphore bits on timeouts (bug#908398 FATE#317382). - ixgbe: fix lockdep annotation issue for ptp's work item (bug#908398 FATE#317382). - ixgbe: call pcie_get_mimimum_link to check if device has enough bandwidth (bug#908398 FATE#317382). - PCI: Add function to obtain minimum link width and speed (bug#908398 FATE#317382). - PCI: move enum pcie_link_width into pci.h (bug#908398 FATE#317382). - PCI: expose pcie_link_speed and pcix_bus_speed arrays (bug#908398 FATE#317382). - ixgbe: fix semaphore lock for I2C read/writes on 82598 (bug#908398 FATE#317382). - ixgbe: bump version number (bug#908398 FATE#317382). - ixgbe: add new media type (bug#908398 FATE#317382). - ixgbe: fix fc autoneg ethtool reporting (bug#908398 FATE#317382). - ixgbe: Use pci_vfs_assigned instead of ixgbe_vfs_are_assigned (bug#908398 FATE#317382). - ixgbe: Retain VLAN filtering in promiscuous + VT mode (bug#908398 FATE#317382). - ixgbe: Fix Tx Hang issue with lldpad on 82598EB (bug#908398 FATE#317382). - IXGBE: Set the SW prio_tc values at initialization to the HW setting (bug#908398 FATE#317382). - ixgbe: add mac type to the version in ethtool_regs (bug#908398 FATE#317382). - ixgbe: add support for disabling link at boot time on 82599 (bug#908398 FATE#317382). - ixgbe: cache AUTOC reads (bug#908398 FATE#317382). - ixgbe: fix register access during ethtool loopback test (bug#908398 FATE#317382). - ixgbe: fix EICR write in ixgbe_msix_other (bug#908398 FATE#317382). - ixgbe: add WOL support for new subdevice ID (bug#908398 FATE#317382). - ixgbe: add SFP+ LX module support (bug#908398 FATE#317382). - ixgbe: rename wol_supported to more fitting wol_enabled (bug#908398 FATE#317382). - ixgbe: add driver support for x520 OCP adapter (bug#908398 FATE#317382). - ixgbe: fix possible divide by zero in ixgbe_update_itr (bug#908398 FATE#317382). - ixgbe: Remove unnecessary #ifdef CONFIG_DEBUG_FS tests (bug#908398 FATE#317382). - ixgbe: Add support for WoL on 82599 SFP+ LOM (bug#908398 FATE#317382). - ixgbe: in shutdown, do netif_running() under rtnl_lock (bug#908398 FATE#317382). - ixgbe: Fix a bug in setting VF VLAN via PF (bug#908398 FATE#317382). - ixgbe: bump version number (bug#908398 FATE#317382). - ixgbe: Fix 1G link WoL (bug#908398 FATE#317382). - ixgbe: fix MNG FW support when adapter not up (bug#908398 FATE#317382). - ixgbe: enable devices with internal switch to read pci parent (bug#908398 FATE#317382). - ixgbe: create conversion functions from link_status to bus/speed (bug#908398 FATE#317382). - ixgbe: Enable support for recognizing PCI-e Gen3 link speed (bug#908398 FATE#317382). - ixgbe: Drop check for PAGE_SIZE from ixgbe_xmit_frame_ring (bug#908398 FATE#317382). - ixgbe: don't do arithmetic operations on bitmasks (bug#908398 FATE#317382). - ixgbe: Mask off check of frag_off as we only want fragment offset (bug#908398 FATE#317382). - ixgbe: fix registration order of driver and DCA nofitication (bug#908398 FATE#317382). - ixgbe: Don't give VFs random MAC addresses (bug#908398 FATE#317382). - ixgbe: Make use of the default fdb handlers (bug#908398 FATE#317382). - net: generic fdb support for drivers without ndo_fdb_ (bug#908398 FATE#317382). - ixgbe: Update DESC_NEEDED define to adjust for changes to MAX_SKB_FRAGS (bug#908398 FATE#317382). - ixgbe: fix Tx timeouts with BQL (bug#908398 FATE#317382). - ixgbe: cleanup error checking in ixgbe_identify_sfp_module_generic() (bug#908398 FATE#317382). - ixgbe: fix possible data corruption in read_i2c_byte (bug#908398 FATE#317382). - ixgbe: Add support for set_channels ethtool operation (bug#908398 FATE#317382). - ixgbe: Add support for displaying the number of Tx/Rx channels (bug#908398 FATE#317382). - ixgbe: Make ixgbe_setup_tc usable even when DCB is not enabled (bug#908398 FATE#317382). - ixgbe: Update ixgbe driver to use __netdev_pick_tx in ixgbe_select_queue (bug#908398 FATE#317382). - net: Export __netdev_pick_tx so that it can be used in modules (bug#908398 FATE#317382). - net: Split core bits of netdev_pick_tx into __netdev_pick_tx (bug#908398 FATE#317382). - ixgbe: Add function for setting XPS queue mapping (bug#908398 FATE#317382). - ixgbe: Define FCoE and Flow director limits much sooner to allow for changes (bug#908398 FATE#317382). - ixgbe: refactor initialization of feature flags (bug#908398 FATE#317382). - ixgbe: Only set gso_type to SKB_GSO_TCPV4 as RSC does not support IPv6 (bug#908398 FATE#317382). - ixgbe: fix gso type (bug#908398 FATE#317382). - drivers: net: Remove remaining alloc/OOM messages (bug#908398 FATE#317382). - ixgbe: Fix SR-IOV MTU warning (bug#908398 FATE#317382). - ixgbe: Replace rmb in Tx cleanup with read_barrier_depends (bug#908398 FATE#317382). - ixgbe: update date to 2013 (bug#908398 FATE#317382). - ixgbe: fix return values and memcpy parameters to eliminate Smatch warnings (bug#908398 FATE#317382). - ixgbe: fix potential null dereference (bug#908398 FATE#317382). - ixgbe: allow reading of SFF-8472 data over i2c (bug#908398 FATE#317382). - ixgbe: autoneg variable refactoring (bug#908398 FATE#317382). - ixgbe: removed unused variable from setup_link_speed (bug#908398 FATE#317382). - ixgbe: rename autoneg variables (bug#908398 FATE#317382). - ixgbe: Fix device ref count bug (bug#908398 FATE#317382). - ixgbe: Reset the NIC if up2tc has changed (bug#908398 FATE#317382). - ixgbe: Limit number of reported VFs to device specific value (bug#908398 FATE#317382). - ixgbe: Implement PCI SR-IOV sysfs callback operation (bug#908398 FATE#317382). - ixgbe: Modularize SR-IOV enablement code (bug#908398 FATE#317382). - ixgbe: Make mailbox ops initialization unconditional (bug#908398 FATE#317382). - ixgbe: Inline Rx PTP descriptor handling (bug#908398 FATE#317382). - ixgbe: add warning when scheduling reset (bug#908398 FATE#317382). - ixgbe: Add ptp work item to poll for the Tx timestamp (bug#908398 FATE#317382). - ixgbe: Use watchdog check in favor of BPF for detecting latched timestamp (bug#908398 FATE#317382). - ixgbe: Update ptp_overflow check comment and jiffies (bug#908398 FATE#317382). - ixgbe: add missing supported filters to get_ts_info (bug#908398 FATE#317382). - ixgbe: ethtool ixgbe_diag_test cleanup (bug#908398 FATE#317382). - ixgbe: Improve performance and reduce size of ixgbe_tx_map (bug#908398 FATE#317382). - ixgbe: Update ixgbe Tx flags to improve code efficiency (bug#908398 FATE#317382). - ixgbe: Always use context 0, even for FCoE and TSO (bug#908398 FATE#317382). - ixgbe: Make TSO check for CHECKSUM_PARTIAL to avoid skb_is_gso check (bug#908398 FATE#317382). - ixgbe: SR-IOV: dynamic IEEE DCBx default priority changes (bug#908398 FATE#317382). - remove init of dev->perm_addr in drivers (bug#908398 FATE#317382). - commit 4331983 - dasd: Missing partition after online processing (bnc#917121, LTC#120565). - commit c97d874 ++++ samba: - Ensure we don't call talloc_free on an uninitialized pointer; CVE-2015-0240; (bso#11077); (bnc#917376). ------------------------------------------------------------------ ------------------ 2015-2-11 - Feb 11 2015 ------------------- ------------------------------------------------------------------ ++++ xen: - bnc#861318 - xentop reports "Found interface vif101.0 but domain 101 does not exist." 538c7df7-libxenstat-handle-renamed-vifs.patch ------------------------------------------------------------------ ------------------ 2015-2-10 - Feb 10 2015 ------------------- ------------------------------------------------------------------ ++++ java-1_7_1-ibm: - Update to 7.1.2.10 for sec issues bnc#916266 and bnc#916265 CVE-2014-8892 CVE-2014-8891 - javad binary seems to be no more, so remove ++++ samba: - Add test subpackage with smbtorture and other binaries; (fate#317094). ++++ yast2-storage: - Treat GPT PReP as a valid boot device (bsc#916935) - 2.17.150 ------------------------------------------------------------------ ------------------ 2015-2-9 - Feb 9 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - IB/qib: Correct reference counting in debugfs qp_stats (bnc#904858). - IB/qib: Fix port in pkey change event (bnc#904858). - IB/qib: Fix memory leak of recv context when driver fails to initialize (bnc#904858). - IB/qib: Add qp_stats debug file (bnc#904858). - IB/qib: Add per-context stats interface (bnc#904858). - IB/qib: Modify software pma counters to use percpu variables (bnc#904858). - IB/qib: Remove ib_sg_dma_address() and ib_sg_dma_len() overloads (bnc#904858). - IB/qib: Fix debugfs ordering issue with multiple HCAs (bnc#904858). - IB/qib: Add percpu counter replacing qib_devdata int_counter (bnc#904858). - IB/qib: Fix potential buffer overrun in sending diag packet routine (bnc#904858). - IB/qib: Add missing serdes init sequence (bnc#904858). - IB/qib: Fix txselect regression (bnc#904858). - IB/qib: Fix QP check when looping back to/from QP1 (bnc#904858). - IB/qib: Fix checkpatch __packed warnings (bnc#904858). - IB/qib: Convert qib_user_sdma_pin_pages() to use get_user_pages_fast() (bnc#904858). - IB/qib: Improve SDMA performance (bnc#904858). - IB/qib: Convert opcode counters to per-context (bnc#904858). - IB/qib: Add optional NUMA affinity (bnc#904858). - commit 151310b - splice: add generic_write_checks() (bnc#915322 CVE-2014-7822). - commit c1d91c3 ++++ xorg-x11-server: - U_xkb-check-strings-length-against-request-size.patch * Check string lenghts in XkbSetGeometry request. (bnc#915810, CVE-2015-0255) ++++ yast2-storage: - Don't create gpt_sync_mbr on Power8, machine is capable to boot from GPT (bsc#916935) - 2.17.149 ------------------------------------------------------------------ ------------------ 2015-2-7 - Feb 7 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - x86_64, switch_to(): Load TLS descriptors before switching DS and ES (bsc#911326, CVE-2014-9419). - commit 9cf4cf7 ------------------------------------------------------------------ ------------------ 2015-2-6 - Feb 6 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - fuse: clear FUSE_I_CTIME_DIRTY flag on setattr (FATE#317677). - fuse: trust kernel i_ctime only (FATE#317677). - fuse: remove .update_time (FATE#317677). - fuse: allow ctime flushing to userspace (FATE#317677). - fuse: fuse: add time_gran to INIT_OUT (FATE#317677). - fuse: add .write_inode (FATE#317677). - fuse: clean up fsync (FATE#317677). - fuse: update mtime on open(O_TRUNC) in atomic_o_trunc mode (FATE#317677). - fuse: update mtime on truncate(2) (FATE#317677). - fuse: do not use uninitialized i_mode (FATE#317677). - fuse: fix mtime update error in fsync (FATE#317677). - fuse: Turn writeback cache on (FATE#317677). - fuse: Fix O_DIRECT operations vs cached writeback misorder (FATE#317677). - fuse: fuse_flush() should wait on writeback (FATE#317677). - fuse: Implement write_begin/write_end callbacks (FATE#317677). - fuse: restructure fuse_readpage() (FATE#317677). - fuse: Flush files on wb close (FATE#317677). - fuse: Trust kernel i_mtime only (FATE#317677). - fuse: Trust kernel i_size only (FATE#317677). - fuse: Connection bit for enabling writeback (FATE#317677). - fuse: Prepare to handle short reads (FATE#317677). - fuse: Linking file to inode helper (FATE#317677). - fuse: don't invalidate attrs when not using atime (FATE#317677). - fuse: writepages: protect secondary requests from fuse file release (FATE#317677). - fuse: writepages: update bdi writeout when deleting secondary request (FATE#317677). - fuse: writepages: crop secondary requests (FATE#317677). - fuse: writepages: roll back changes if request not found (FATE#317677). - fuse: writepage: skip already in flight (FATE#317677). - fuse: writepages: handle same page rewrites (FATE#317677). - fuse: writepages: fix aggregation (FATE#317677). - fuse: fix race in fuse_writepages() (FATE#317677). - fuse: Implement writepages callback (FATE#317677). - fuse: don't BUG on no write file (FATE#317677). - fuse: lock page in mkwrite (FATE#317677). - fuse: Prepare to handle multiple pages in writeback (FATE#317677). - fuse: Getting file for writeback helper (FATE#317677). - fuse: hotfix truncate_pagecache() issue (FATE#317677). - fuse: fix alignment in short read optimization for async_dio (FATE#317677). - fuse: return -EIOCBQUEUED from fuse_direct_IO() for all async requests (FATE#317677). - fuse: allocate for_background dio requests based on io->async state (FATE#317677). - fuse: add flag to turn on async direct IO (FATE#317677). - fuse: truncate file if async dio failed (FATE#317677). - fuse: optimize short direct reads (FATE#317677). - fuse: enable asynchronous processing direct IO (FATE#317677). - fuse: make fuse_direct_io() aware about AIO (FATE#317677). - fuse: add support of async IO (FATE#317677). - fuse: move fuse_release_user_pages() up (FATE#317677). - fuse: optimize wake_up (FATE#317677). - fuse: implement exclusive wakeup for blocked_waitq (FATE#317677). - fuse: skip blocking on allocations of synchronous requests (FATE#317677). - fuse: add flag fc->initialized (FATE#317677). - fuse: make request allocations for background processing explicit (FATE#317677). - fuse: cleanup fuse_direct_io() (FATE#317677). - fuse: optimize __fuse_direct_io() (FATE#317677). - fuse: optimize fuse_get_user_pages() (FATE#317677). - fuse: pass iov to fuse_get_user_pages() (FATE#317677). - fuse: use req->page_descs for argpages cases (FATE#317677). - fuse: add per-page descriptor to fuse_req (FATE#317677). - fuse: rework fuse_do_ioctl() (FATE#317677). - fuse: rework fuse_perform_write() (FATE#317677). - fuse: rework fuse_readpages() (FATE#317677). - fuse: rework fuse_retrieve() (FATE#317677). - fuse: categorize fuse_get_req() (FATE#317677). - fuse: general infrastructure for pages of variable size (FATE#317677). - fuse: fix blksize calculation (FATE#317677). - fuse: fix nlink after unlink (FATE#317677). - fuse: O_DIRECT support for files (FATE#317677). - fuse: delete dead .write_begin and .write_end aops (FATE#317677). - mm: minor cleanup of iov_iter_single_seg_count() (FATE#317677). - mm/page-writeback.c: add strictlimit feature (FATE#317677). - commit 30f2845 - kABI: protect console include in consolemap. - commit c0003a1 - vt: push the tty_lock down into the map handling (bnc#915826). - tty: Fix memory leak in virtual console when enable unicode translation (bnc#916515). - vt: push the tty_lock down into the map handling (bnc#915826). - tty: Fix memory leak in virtual console when enable unicode translation (bnc#916515). - commit 4e7a262 - dm raid: add region_size parameter (bnc#895841). - commit e9d247b - KVM: x86: Remove return code from enable_irq/nmi_window (bnc#916472). - KVM: nVMX: Do not inject NMI vmexits when L2 has a pending interrupt (bnc#916472). - KVM: nVMX: Rework interception of IRQs and NMIs (bnc#916472). - kvm, vmx: Really fix lazy FPU on nested guest (bnc#916472). - KVM: nVMX: Update guest activity state field on L2 exits (bnc#916472). - KVM: nVMX: Fix nested_run_pending on activity state HLT (bnc#916472). - KVM: nVMX: Add tracepoints for nested_vmexit and nested_vmexit_inject (bnc#916472). - KVM: nVMX: Pass vmexit parameters to nested_vmx_vmexit (bnc#916472). - KVM: nVMX: Add support for activity state HLT (bnc#916472). - kvm, vmx: Fix lazy FPU on nested guest (bnc#916472). - nVMX: Report CPU_BASED_VIRTUAL_NMI_PENDING as supported (bnc#916472). - nVMX: Fix pick-up of uninjected NMIs (bnc#916472). - KVM: nVMX: Amend nested_run_pending logic (bnc#916472). - KVM: nVMX: Fix conditions for NMI injection (bnc#916472). - KVM: VMX: Move vmx_nmi_allowed after vmx_set_nmi_mask (bnc#916472). - KVM: Record instruction set in all vmexit tracepoints (bnc#916472). - commit a3ca4f6 ------------------------------------------------------------------ ------------------ 2015-2-5 - Feb 5 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.xen/xen-x86-EFI. - commit 14ca117 - Refresh patches.drivers/0001-x86-efi-Add-EFI-framebuffer-earlyprintk-support.patch. - commit 53d025f - Fix bug number in patches.fixes/lzo-check-for-length-overrun-in-variable-length-enco - commit b16e03c - Update Xen patches to c/s 1279. - x86/efi: Add EFI framebuffer earlyprintk support (FATE#317449). - PCI: Cache MSI/MSI-X capability offsets in struct pci_dev (bnc#909623,FATE#317523). - Delete patches.xen/xen-pciback-release-VFs. - Update Xen config files. - commit 42f553a - mm, vmscan: prevent kswapd livelock due to pfmemalloc-throttled process being killed (VM Functionality bnc#910150). - commit 1c8173e - igb: Fixes needed for surprise removal support (fate#317388, bsc#909491). - igb: fix race accessing page->_count (fate#317388, bsc#909491). - igb: don't reuse pages with pfmemalloc flag (fate#317388, bsc#909491). - igb: bump version to 5.2.15 (fate#317388, bsc#909491). - i40e/igb: Convert to dev_consume_skb_any() (fate#317388, bsc#909491). - igb: remove blocking phy read from inside spinlock (fate#317388, bsc#909491). - igb: bump igb version to 5.2.13 (fate#317388, bsc#909491). - igb: Add message when malformed packets detected by hw (fate#317388, bsc#909491). - igb: remove unnecessary break after return (fate#317388, bsc#909491). - igb: remove unnecessary break after goto (fate#317388, bsc#909491). - igb: Workaround for i210 Errata 25: Slow System Clock (fate#317388, bsc#909491). - igb: bring link up when PHY is powered up (fate#317388, bsc#909491). - igb: separate hardware setting from the set_ts_config ioctl (fate#317388, bsc#909491). - igb: unhide invariant returns (fate#317388, bsc#909491). - net: use ethtool_cmd_speed_set helper to set ethtool speed value (fate#317388, bsc#909491). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (fate#317388, bsc#909491). - igb: add defaults for i210 TX/RX PBSIZE (fate#317388, bsc#909491). - igb: use mac loopback for i354 backplane (fate#317388, bsc#909491). - igb: rename igb_ptp_enable to igb_ptp_feature_enable (fate#317388, bsc#909491). - igb: remove redundant PHY power down register write (fate#317388, bsc#909491). - i40e,igb,ixgbe: remove usless return statements (fate#317388, bsc#909491). - igb/ixgbe: remove return statements for void functions (fate#317388, bsc#909491). - net: get rid of SET_ETHTOOL_OPS (fate#317388, bsc#909491). - igb: Change memcpy to struct assignment (fate#317388, bsc#909491). - igb: Replace 1/0 return values with true/false (fate#317388, bsc#909491). - igb: Cleanups to remove unneeded extern declaration (fate#317388, bsc#909491). - igb: Cleanups to replace deprecated DEFINE_PCI_DEVICE_TABLE (fate#317388, bsc#909491). - igb: Cleanups to fix static initialization (fate#317388, bsc#909491). - igb: Cleanups to fix msleep warnings (fate#317388, bsc#909491). - igb: Cleanups to fix line length warnings (fate#317388, bsc#909491). - igb: Cleanups to remove return parentheses (fate#317388, bsc#909491). - igb: Cleanups to fix missing break in switch statements (fate#317388, bsc#909491). - igb: Cleanups to fix assignment in if error (fate#317388, bsc#909491). - igb: Cleanups to change comment style on license headers (fate#317388, bsc#909491). - igb: Cleanups to fix for trailing statement (fate#317388, bsc#909491). - igb: Cleanups to fix pointer location error (fate#317388, bsc#909491). - igb: Cleanups to fix incorrect indentation (fate#317388, bsc#909491). - igb: Cleanups to fix braces location warnings (fate#317388, bsc#909491). - igb: Cleanups for messaging (fate#317388, bsc#909491). - e1000e/igb/ixgbe/i40e: fix message terminations (fate#317388, bsc#909491). - igb: fix stats for i210 rx_fifo_errors (fate#317388, bsc#909491). - igb: fix last_rx_timestamp usage (fate#317388, bsc#909491). - igb: remove open-coded skb_cow_head (fate#317388, bsc#909491). - INTEL-IGB: Convert iounmap to pci_iounmap (fate#317388, bsc#909491). - igb: fix race conditions on queuing skb for HW time stamp (fate#317388, bsc#909491). - igb: never generate both software and hardware timestamps (fate#317388, bsc#909491). - igb: Unset IGB_FLAG_HAS_MSIX-flag when falling back to msi-only (fate#317388, bsc#909491). - igb: Fix Null-pointer dereference in igb_reset_q_vector (fate#317388, bsc#909491). - igb: specify phc_index of 82575 for get_ts_info (fate#317388, bsc#909491). - igb: add register rd/wr for surprise removal (fate#317388, bsc#909491). - igb: implement SIOCGHWTSTAMP ioctl (fate#317388, bsc#909491). - igb: Convert uses of __constant_ to (fate#317388, bsc#909491). - igb: enable VLAN stripping for VMs with i350 (fate#317388, bsc#909491). - igb: Add register defines needed for time sync functions (fate#317388, bsc#909491). - igb: remove references to long gone command line parameters (fate#317388, bsc#909491). - igb: Don't receive packets when the napi budget == 0 (fate#317388, bsc#909491). - net: Replace u64_stats_fetch_begin_bh to u64_stats_fetch_begin_irq (fate#317388, bsc#909491). - net: igb calls skb_set_hash (fate#317388, bsc#909491). - igb: fix warning if !CONFIG_IGB_HWMON (fate#317388, bsc#909491). - igb: fix array size calculation (fate#317388, bsc#909491). - igb: Update license text to remove FSF address and update copyright (fate#317388, bsc#909491). - igb: make local functions static and remove dead code (fate#317388, bsc#909491). - igb: Use pci_enable_msix_range() instead of pci_enable_msix() (fate#317388, bsc#909491). - igb: Change to use statically allocated array for MSIx entries (fate#317388, bsc#909491). - igb: Fix queue allocation method to accommodate changing during runtime (fate#317388, bsc#909491). - igb: Fix for issue where values could be too high for udelay function (fate#317388, bsc#909491). - igb: Start temperature sensor attribute index with 1 (fate#317388, bsc#909491). - igb: Add new feature Media Auto Sense for 82580 devices only (fate#317388, bsc#909491). - igb: Support ports mapped in 64-bit PCI space (fate#317388, bsc#909491). - igb: Add media switching feature for i354 PHY's (fate#317388, bsc#909491). - igb: Fixed Wake On LAN support (fate#317388, bsc#909491). - igb: Update link modes display in ethtool (fate#317388, bsc#909491). - net: Explicitly initialize u64_stats_sync structures for lockdep (fate#317388, bsc#909491). - igb: Don't let ethtool try to write to iNVM in i210/i211 (fate#317388, bsc#909491). - igb: Fix master/slave mode for all m88 i354 PHY's (fate#317388, bsc#909491). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (fate#317388, bsc#909491). - igb: Add ethtool support to configure number of channels (fate#317388, bsc#909491). - igb: Add ethtool offline tests for i354 (fate#317388, bsc#909491). - igb: Fix ethtool loopback test for 82580 copper (fate#317388, bsc#909491). - intel: Remove extern from function prototypes (fate#317388, bsc#909491). - DMA-API: net: intel/igb: fix 32-bit DMA mask handling (fate#317388, bsc#909491). - igb: Read flow control for i350 from correct EEPROM section (fate#317388, bsc#909491). - igb: Add additional get_phy_id call for i354 devices (fate#317388, bsc#909491). - igb: Update version number (fate#317388, bsc#909491). - igb: Implementation to report advertised/supported link on i354 devices (fate#317388, bsc#909491). - igb: Get speed and duplex for 1G non_copper devices (fate#317388, bsc#909491). - igb: Support to get 2_5G link status for appropriate media type (fate#317388, bsc#909491). - igb: No PHPM support in i354 devices (fate#317388, bsc#909491). - igb: M88E1543 PHY downshift implementation (fate#317388, bsc#909491). - igb: New PHY_ID for i354 device (fate#317388, bsc#909491). - igb: Implementation of 1-sec delay for i210 devices (fate#317388, bsc#909491). - igb: Don't look for a PBA in the iNVM when flashless (fate#317388, bsc#909491). - igb: Expose RSS indirection table for ethtool (fate#317388, bsc#909491). - igb: Add macro for size of RETA indirection table (fate#317388, bsc#909491). - igb: Add device support for flashless SKU of i210 device (fate#317388, bsc#909491). - igb: Refactor NVM read functions to accommodate devices with no flash (fate#317388, bsc#909491). - igb: Refactor of init_nvm_params (fate#317388, bsc#909491). - igb: Update MTU so that it is always at least a standard frame size (fate#317388, bsc#909491). - igb: don't allow SR-IOV without MSI-X (fate#317388, bsc#909491). - igb: Added rcu_lock to avoid race (fate#317388, bsc#909491). - igb: Read register for latch_on without return value (fate#317388, bsc#909491). - igb: fix vlan filtering in promisc mode when not in VT mode (fate#317388, bsc#909491). - treewide: relase -> release (fate#317388, bsc#909491). - igb: Removed unused i2c function (fate#317388, bsc#909491). - igb: Implementation of i210/i211 LED support (fate#317388, bsc#909491). - igb: Fix possible panic caused by Rx traffic arrival while interface is down (fate#317388, bsc#909491). - igb: Fix set_ethtool function to call update nvm for entire image (fate#317388, bsc#909491). - igb: SerDes flow control setting (fate#317388, bsc#909491). - igb: Support for SFP modules discovery (fate#317388, bsc#909491). - igb: Add update to last_rx_timestamp in Rx rings (fate#317388, bsc#909491). - igb: Changed LEDs blink mechanism to include designs using cathode (fate#317388, bsc#909491). - igb: limit udelay for phy changes to 10000us (fate#317388, bsc#909491). - igb: Bump version of driver (fate#317388, bsc#909491). - igb: Remove id's that will not be productized for Linux (fate#317388, bsc#909491). - igb: Remove dead code path (fate#317388, bsc#909491). - igb: Retain HW VLAN filtering while in promiscuous + VT mode (fate#317388, bsc#909491). - igb: display a warning message when SmartSpeed works (fate#317388, bsc#909491). - igb: Use pci_vfs_assigned instead of igb_vfs_are_assigned (fate#317388, bsc#909491). - igb: Add SMBI semaphore to I210/I211 (fate#317388, bsc#909491). - igb: SERDES loopback sigdetect bit on i210 devices (fate#317388, bsc#909491). - igb: Add support for i354 devices (fate#317388, bsc#909491). - igb: add support for spoofchk config (fate#317388, bsc#909491). - igb: Enable EEE LP advertisement (fate#317388, bsc#909491). - igb: Fix code comments and whitespace (fate#317388, bsc#909491). - igb: Fix sparse warnings on function pointers (fate#317388, bsc#909491). - igb: Use rx/tx_itr_setting when setting up initial value of itr (fate#317388, bsc#909491). - igb: Pull adapter out of main path in igb_xmit_frame_ring (fate#317388, bsc#909491). - igb: Mask off check of frag_off as we only want fragment offset (fate#317388, bsc#909491). - igb: random code and comments fix (fate#317388, bsc#909491). - igb: Implement support to power sfp cage and turn on I2C (fate#317388, bsc#909491). - igb: Support for 100base-fx SFP (fate#317388, bsc#909491). - igb: make sensor info static (fate#317388, bsc#909491). - igb: Fix null pointer dereference (fate#317388, bsc#909491). - igb: fix i350 anti spoofing config (fate#317388, bsc#909491). - igb: Fix for lockdep issue in igb_get_i2c_client (fate#317388, bsc#909491). - igb: Fix link setup for I210 devices (fate#317388, bsc#909491). - igb: increase timeout for ethtool offline self-test (fate#317388, bsc#909491). - igb: Refractoring function pointers in igb_get_invariants function (fate#317388, bsc#909491). - igb: Intialize MAC function pointers (fate#317388, bsc#909491). - igb: Initialize NVM function pointers (fate#317388, bsc#909491). - igb: Initialize PHY function pointers (fate#317388, bsc#909491). - igb: Update igb to use a path similar to ixgbe to determine when to stop Tx (fate#317388, bsc#909491). - igb: Refix sparse warning in igb_get_i2c_client (fate#317388, bsc#909491). - igb: Fix for improper allocation flag in igb_get_i2c_client (fate#317388, bsc#909491). - igb: Fix for improper exit in igb_get_i2c_client (fate#317388, bsc#909491). - igb: Support using build_skb in the case that jumbo frames are disabled (fate#317388, bsc#909491). - ethernet: Remove unnecessary alloc/OOM messages, alloc cleanups (fate#317388, bsc#909491). - igb: Don't give VFs random MAC addresses (fate#317388, bsc#909491). - igb: Copyright string update to year 2013 (fate#317388, bsc#909491). - igb: Replace rmb in Tx cleanup with read_barrier_depends (fate#317388, bsc#909491). - igb: Use in-kernel PTP_EV_PORT #define (fate#317388, bsc#909491). - igb: Free any held skb that should have been timestamped on remove (fate#317388, bsc#909491). - igb: Add mechanism for detecting latched hardware Rx timestamp (fate#317388, bsc#909491). - igb: Add timeout for PTP Tx work item (fate#317388, bsc#909491). - igb: Add support for SW timestamping (fate#317388, bsc#909491). - igb: Enable hwmon data output for thermal sensors via I2C (fate#317388, bsc#909491). - igb: Add support functions to access thermal data (fate#317388, bsc#909491). - igb: Add i2c interface to igb (fate#317388, bsc#909491). - remove init of dev->perm_addr in drivers (fate#317388, bsc#909491). - net_tstamp: Add SIOCGHWTSTAMP ioctl to match SIOCSHWTSTAMP (fate#317388, bsc#909491). - net_tstamp: Improve kernel-doc for struct hwtstamp_config (fate#317388). - net/compat: Merge multiple implementations of ifreq::ifr_data conversion (fate#317388, bsc#909491). - etherdevice: introduce help function eth_zero_addr() (fate#317388, bsc#909491). - ethernet: Use eth_random_addr (fate#317388, bsc#909491). - commit 9cba9d2 - Update config files. Set CONFIG_IGB_HWMON=y to following config: i386/pae i386/xen i386/trace i386/debug i386/default ia64/trace ia64/debug ia64/default ppc64/ppc64 ppc64/trace ppc64/debug ppc64/default x86_64/xen x86_64/trace x86_64/debug x86_64/default x86_64/bigsmp - commit bccafa5 ++++ krb5: - bnc#872912 winbind process hangs indefinitely without DC - bnc#906557 hanging winbind processes - added patches: * 0001-Clean-up-k5_locate_server-error-handling.patch * bug-898262-fix-loop-in-service_fds.diff ++++ linuxrc: - Backported the following commits from SLE12 to fix bnc #909528 - virtio-net device not given as an option in YaST when installing an s390x guest on SLES 11 SP4 - 66bba1b3734fd20ef747ab7b06afa7e652d29b72 Introduce detection of z/VM or LPAR hypervisors. If running on z/VM always try to modprobe the netiucv kernel module - Add #if/#endif to last change to net.c - Added util_umount('/sys/hypervisor/s390'); to lxrc_end. - simplify s390x hypervisor detection code - Fix for bnc #843438. Add KVM detection on s390x. If running under KVM on s390x, only offer a virtio network device. - 3.3.100 ------------------------------------------------------------------ ------------------ 2015-2-4 - Feb 4 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.arch/kvm-vmx-disable-apic-virtualization-in-nested-guests.patch. - commit 70cbc97 - Refresh patches.arch/kvm-add-reset-restore-rtc_status-support.patch. - Refresh patches.arch/kvm-add-vcpu-info-to-ioapic_update_eoi.patch. - Refresh patches.arch/kvm-call-common-update-function-when-ioapic-entry-changed.patch. - Refresh patches.arch/kvm-call-kvm_apic_match_dest-to-check-destination-vcpu.patch. - Refresh patches.arch/kvm-force-vmexit-with-virtual-interrupt-delivery.patch. - Refresh patches.arch/kvm-inject-extint-interrupt-before-apic-interrupts.patch. - Refresh patches.arch/kvm-introduce-struct-rtc_status.patch. - Refresh patches.arch/kvm-let-ioapic-know-the-irq-line-status.patch. - Refresh patches.arch/kvm-remove-unused-variable.patch. - Refresh patches.arch/kvm-return-destination-vcpu-on-interrupt-injection.patch. - Refresh patches.arch/kvm-set-tmr-when-programming-ioapic-entry.patch. - Refresh patches.arch/kvm-use-eoi-to-track-rtc-interrupt-delivery-status.patch. - Refresh patches.arch/kvm-vmx-add-the-deliver-posted-interrupt-algorithm.patch. - Refresh patches.arch/kvm-vmx-check-the-posted-interrupt-capability.patch. - Refresh patches.arch/kvm-vmx-disable-apicv-by-default.patch. - Refresh patches.arch/kvm-vmx-enable-acknowledge-interupt-on-vmexit.patch. - Refresh patches.arch/kvm-vmx-register-a-new-ipi-for-posted-interrupt.patch. - Refresh patches.arch/kvm-vmx-use-posted-interrupt-to-deliver-virtual-interrupt.patch. - Refresh patches.arch/x86-apicv-add-apicv-register-virtualization-support.patch. - Refresh patches.arch/x86-apicv-add-virtual-interrupt-delivery-support.patch. - Refresh patches.arch/x86-apicv-add-virtual-x2apic-support.patch. - commit e2f527b - Refresh patches.arch/kvm-nvmx-clean-up-and-fix-pin-based-execution-controls.patch. - commit 478c6d2 - writeback: consolidate variable names in balance_dirty_pages(). - Refresh patches.fixes/mm-properly-reflect-task-dirty-limits-in-dirty_excee.patch. - commit 6ac9fdc - random: account for entropy loss due to overwrites (FATE#317374). - random: allow fractional bits to be tracked (FATE#317374). - random: statically compute poolbitshift, poolbytes, poolbits (FATE#317374). - commit b088e65 ++++ libcgroup1: - initd_cgred.patch: - initd_cgconfig.patch: Do not auto-start from runlevel 4 (bnc#883476) - cgconfig-Do-not-overwrite-defaultcgroup-configuratio.patch: cgconfig: Do not overwrite defaultcgroup configuration (bnc#912487) ++++ openssl: - fix a memory leak in ssl_lib.c (CVE-2009-5146) (bnc#915976) * added openssl-CVE-2009-5146.patch ++++ linuxrc: - accept any value for displayip (bnc #913888) - 3.3.99 ++++ yast2-installation: - support custom display number in "display_ip" boot option (bnc#913888) - 2.17.112 - add VNCSize boot option and use usual theme for VNC install (bnc #913888) - 2.17.111 ------------------------------------------------------------------ ------------------ 2015-2-3 - Feb 3 2015 ------------------- ------------------------------------------------------------------ ++++ apache2: - add httpd-2.2.x-bnc907339-fix_segfault_SSLProxyMachineCertificateFile.patch to fix segfault at startup if the certs are shared across > 1 server_rec (fixed by unsetting pkp->certs pointer after freeing the array) [bnc#907339]. ++++ infinipath-psm: - bring up-to-date to the latest released version in IFS7.2.2 (FATE#317367, bsc#904855) - added patches: * infinipath-psm-update_to_IFS722.patch - removed patches: * infinipath-psm-edata_build_fail.patch * infinipath-psm-license.patch ++++ kernel-docs: - nfsd: fix EXDEV checking in rename (bnc#915791). - commit 5852e68 - zcrypt: Number of supported ap domains is not retrievable (bnc#915209, LTC#120788). - kernel: incorrect clock_gettime result (bnc#915209, LTC#121184). - kernel: 3215 tty close crash (bnc#915209, LTC#120873). - commit ac7be48 - intel_idle: fine-tune IVT residency targets (FATE#317686). - commit 019a1d4 ++++ krb5: - bnc#912002 VUL-0: CVE-2014-5352 CVE-2014-9421 CVE-2014-9422 CVE-2014-9423: krb5: Vulnerabilities in kadmind, libgssrpc, gss_process_context_token - added patches: * bnc#912002.diff ------------------------------------------------------------------ ------------------ 2015-2-2 - Feb 2 2015 ------------------- ------------------------------------------------------------------ ++++ ant-contrib: - Make it build on stock sle11sp3 ++++ dapl: - Enable build for s390(x). ++++ gnu-efi: - Complete refresh (gnu-efi-use-OPTFLAGS.patch). ++++ kernel-docs: - Refresh patches.drivers/tg3-0080-PCI-tg3-Give-up-chip-reset-and-carrier-loss-handling.patch. - Refresh patches.xen/xen3-patch-2.6.25. - commit c1e8c28 ++++ linuxrc: - improve git2log to work with sub-branches - activate network in time on s390x (bnc #915571) - 3.3.98 ++++ ltrace: - Update to 0.7.2 (fate#317735) * * Bugfixes * ** (Again) detect VDSO entry in r_debug linkmap with non-empty name * ** Fix building with libunwind 1.1 * ** Fix prototype lookup for -x symbols from shared libraries * Version 0.7.1 * * Bugfixes * ** ltrace.conf.5 is now installed to man5 as it should be * ** [PowerPC] A header file necessary for building is now shipped * ** [MIPS] Work around duplicate symbol request bug * ** Detect VDSO entry in r_debug linkmap with non-empty name * ** Temporary files are wiped properly after the test suite has been run * ** Parsing typedefs with common prefix now works as it should * * Cofiguration Files * ** The following prototypes in ltrace.conf were added or updated * ** Duplicate typedefs are now guarded against * ** It's now possible to define recursive structures * ** New lens "bitvec" is available * ** Octal lens renamed to "oct" * ** The hex lens can now format floating point arguments * Version 0.7.0 * * Tracing * ** Full support for tracing multi-threaded processes * ** Support for tracing inter-library calls * ** Better support for parameter passing ("fetch backend") * ** Awareness of deny_ptrace SELinux boolean * ** Limited support for tracing returns from tail call functions * ** -e, -x and -l selectors now allow using globs and regular expressions * ** -g command line option dropped * ** Test suite can now be run under valgrind * ** [ppc] Support both BSS and secure PLTs for 32-bit processes * ** [mips] Implement software singlestepping * ** [mips] Add support for CPIC main programs * ** Support tracing PIE binaries * * Configuration Files * ** New abstraction: parameter pack * ** New expression: zero * ** Lenses: change the way that underlying type is rendered * ** Misspelling of "int" as "itn" temporarily accepted, but deprecated * ** Using void as top-level function argument now deprecated * ** Using void to hide one argument is now obsolete * * Documentation * ** New manual page ltrace.conf(5) * ** README, INSTALL brought up to date * ** New file CREDITS with a list of contributors * * Bugfixes * ** Fix detaching from a process * ** Argument to -n is now checked for validity * ** Fix tracing across exec in a stripped binary * ** [x86] ORIG_RAX/ORIG_EAX may not contain original syscall number * ** [ppc] Fix races in tracing -e events in 64-bit processes * ** [ppc] Allow stepping over lwarx instruction * * Known bugs * ** [arm] Tracing is not supported at all on ARM * Version 0.6.0 * * General Features * ** Use autotools for building * ** New option -b: disables output of signals received by the tracee * ** New option -w: print stack trace of events * ** Support tracing of symbols from libraries opened with dlopen * * Architecture-specific Changes * ** Various fixes for MIPS and PowerPC * ** Support for ARM Thumb mode * ** Implement fetching of 5th and further function arguments on s390 * ** Support fork/exec syscalls on 31-bit s390 * ** Support for float and double arguments on x86_64 * ** Fixes for return arguments (after '+') in nested calls on x86_64 ------------------------------------------------------------------ ------------------ 2015-2-1 - Feb 1 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - netfilter: conntrack: disable generic tracking for known protocols (bsc#913059, CVE-2014-8160). - commit 873fddf ------------------------------------------------------------------ ------------------ 2015-1-31 - Jan 31 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - KVM: nVMX: Skip PF interception check when queuing during nested run (FATE#317460). - KVM: x86: Rework request for immediate exit (FATE#317460). - commit 9e2f76e - Delete patches.kabi/* workarounds - commit 04dabc0 ++++ timezone-java: - update to 2015a (bsc#915693): * New positive leap second 2015-06-30 23:59:60 UTC as per IERS Bulletin C 49 (bsc#912415) * Mexico state Quintana Roo (America/Cancun) shift from Central Time with DST to Eastern Time without DST on 2015-02-01 02:00. (bsc#915422) * Chile (America/Santiago) will retain old DST as standard time from April, also Pacific/Easter, and Antarctica/Palmer * This release also includes changes affecting past time stamps, documentation and some minor bug fixes. ------------------------------------------------------------------ ------------------ 2015-1-30 - Jan 30 2015 ------------------- ------------------------------------------------------------------ ++++ crash: - Update to 7.0.9 (FATE#317898). - Add the gcore extension as a subpackage for i386 and x86_64. This extension can be used to create a core dump file of a user-space task that was running in a kernel dumpfile. - crash_enable_snappy_support.patch: enable snappy support. - eppic-switch-to-system-lib.patch: Implementation of EPPIC via system library rather than retrieve and include in build. - Dropped the following patches applied upstream: * crash-rl_digit_loop-return.patch * crash-fix-runq-cfs-priority-array.patch * crash-fix-runq-with-cfs-scheduler.patch * crash-fix-runq-with-CONFIG_RT_GROUP_SCHED.patch * crash-xen-Always-calculate-max_cpus-value.patch * crash-xen-Read-only-crash-notes-for-onlined-CPUs.patch * crash-xen-Dynamically-allocated-per_cpu-data.patch * crash-xen-Get-idle-data-from-alternative-source.patch * crash-xen-Dynamically-allocated-console-ring.patch * crash-xen-Add-support-for-3-level-P2M-tree.patch * crash-xen-Fix-page-tables-caching.patch * crash-xen-Use-init_tss-array-or-per_cpu__init_tss.patch * crash-xen-Use-per_cpu__crash_notes-or-crash_notes-array.patch * crash-xen-Try-hard-to-get-max_cpus-value.patch * crash-xen-Use-cpu_present_map-instead-of-cpu_online_map.patch * crash-raise-44bit-physaddr-limit.patch * crash-x86_64-nested-nmi.patch - Dropped the following patches NOT applied upstream: * crash-crosscrash-hint.diff: outdated. * crash-Use-cpu-count-to-limit-cpu-id.patch: solved differently. - Rename rpmlintrc to %{name}-rpmlintrc. Follow the packaging guidelines. - Build the crash memory driver kernel module as a KMP. - Add Requires: kernel-$flavor to new-style KMP packages. - Provide old-styl crash-kmp (for SLES9). - crash-patch-gdb.patch: allow applying custom gdb patches ++++ gnu-efi: - Refresh for SLE11SP4. ++++ iprutils: - fix disk array (bsc#915109) - added patches: iprutils.bug-915109_add_disk_to_array.patch ++++ kernel-docs: - Update config files. - commit fdfceb0 - Refresh patches.xen/xen-x86-EFI. - commit ebc23ae - Refresh patches.xen/xen-x86-EFI. - commit eb20a24 - Update config files. - commit 604da81 - x86/efi: Add EFI framebuffer earlyprintk support (FATE#317449). - x86/efi: Fix earlyprintk off-by-one bug (FATE#317449). - x86/efi: earlyprintk=efi,keep fix (FATE#317449). - Refresh patches.xen/xen-x86-EFI. - Refresh patches.xen/xen-x86_64-unmapped-initrd. - commit 5ff4cd3 - Refresh patches.suse/vmcore-allocate-ELF-note-segment-in-kdump-kernel. - commit bfdca43 - vmcore: support mmap() on /proc/vmcore (FATE#317317). - commit a7ccbb4 - vmcore: calculate vmcore file size from buffer size and total size of vmcore objects (FATE#317317). - commit 3ea1174 - vmcore: allow user process to remap ELF note segment buffer (FATE#317317). - commit ae60763 - vmcore: allocate ELF note segment in the 2nd kernel vmalloc memory (FATE#317317). - commit 8c0cb9e - vmalloc: introduce remap_vmalloc_range_partial (FATE#317317). - commit 3f440e5 - vmalloc: make find_vm_area check in range (FATE#317317). - commit e34e7be - vmcore: treat memory chunks referenced by PT_LOAD program header entries in page-size boundary in vmcore_list (FATE#317317). - commit ed5ad89 - vmcore: allocate buffer for ELF headers on page-size alignment (FATE#317317). - commit 9c3da93 - vmcore: clean up read_vmcore() (FATE#317317). - commit ae880b0 - include/linux/mm.h: add PAGE_ALIGNED() helper (FATE#317317). - commit b6a9951 - Add CONFIG_NET_VENDOR_MARVELL to config files for s390/s390x (bsc#909566 FATE#314306) - commit 6afd31a - KVM: vmx: disable APIC virtualization in nested guests (FATE#317460). - KVM: nVMX: Set success rflags when emulate VMXON/VMXOFF in nested virt (FATE#317460). - KVM: nVMX: Change location of 3 functions in vmx.c (FATE#317460). - KVM: nVMX: Enable and disable shadow vmcs functionality (FATE#317460). - KVM: nVMX: Synchronize VMCS12 content with the shadow vmcs (FATE#317460). - KVM: nVMX: Copy VMCS12 to processor-specific shadow vmcs (FATE#317460). - KVM: nVMX: Copy processor-specific shadow-vmcs to VMCS12 (FATE#317460). - KVM: nVMX: Release shadow vmcs (FATE#317460). - KVM: nVMX: Allocate shadow vmcs (FATE#317460). - KVM: nVMX: Fix VMXON emulation (FATE#317460). - KVM: nVMX: Refactor handle_vmwrite (FATE#317460). - KVM: nVMX: Introduce vmread and vmwrite bitmaps (FATE#317460). - KVM: nVMX: Detect shadow-vmcs capability (FATE#317460). - KVM: nVMX: Shadow-vmcs control fields/bits (FATE#317460). - KVM: VMX: Fix check guest state validity if a guest is in VM86 mode (FATE#317460). - KVM: nVMX: check vmcs12 for valid activity state (FATE#317460). - KVM: nVMX: Rework event injection and recovery (FATE#317460). - KVM: nVMX: Fix injection of PENDING_INTERRUPT and NMI_WINDOW exits to L1 (FATE#317460). - KVM: x86: fix memory leak in vmx_init (FATE#317460). - KVM: nVMX: Check exit control for VM_EXIT_SAVE_IA32_PAT, not entry controls (FATE#317460). - KVM: nVMX: Provide EFER.LMA saving support (FATE#317460). - KVM: nVMX: Fix setting of CR0 and CR4 in guest mode (FATE#317460). - KVM: nVMX: Fix content of MSR_IA32_VMX_ENTRY/EXIT_CTLS (FATE#317460). - KVM: nVMX: Reset RFLAGS on VM-exit (FATE#317460). - KVM: nVMX: Fix switching of debug state (FATE#317460). - KVM: nVMX: Clear segment cache after switching between L1 and L2 (FATE#317460). - KVM: nVMX: Fix erroneous exception bitmap check (FATE#317460). - KVM: nVMX: Fix warning-causing idt-vectoring-info behavior (FATE#317460). - KVM: nVMX: Add KVM_REQ_IMMEDIATE_EXIT (FATE#317460). - commit 06ead11 ++++ libvirt: - spec: only enable rbd storage backend for x86_64 - Enable rbd storage backend in libvirt (FATE#318330) ++++ xen: - Upstream patches from Jan 54b3dd08-x86emul-tighten-CLFLUSH-emulation.patch 54bce379-common-memory-fix-an-XSM-error-path.patch 54be2302-xsm-evtchn-never-pretend-to-have-successfully-created.patch 54c0e36c-x86-don-t-expose-XSAVES-capability-to-PV-guests.patch 54c0e398-x86-correctly-check-for-sub-leaf-zero-of-leaf-7-in-pv_cpuid.patch 54c62a2d-x86-vcpu_destroy_pagetables-must-not-return-EINTR.patch 54c90530-bunzip2-off-by-one-in-get_next_block.patch ------------------------------------------------------------------ ------------------ 2015-1-29 - Jan 29 2015 ------------------- ------------------------------------------------------------------ ++++ audit: - Teach ausearch to filter AppArmor events (Fate#317726) new patch: audit-ausearch-filter-apparmor-events.patch - Do not require tclass field to be present when searching for AVC records (bnc#878687) new patch: audit-ausearch-do-not-require-tclass.patch ++++ glibc: - cpuid-leaf4-cache.patch: Add missing hunks ++++ kernel-docs: - The bug number in patches.fixes/timekeeping-avoid-possible-deadlock-from-clock_was_set.patch changed from bsc#771619 to bsc#915335. - commit 37d10ec - Refresh for cnic SP4 update (bsc#909368 FATE#317537) - Refresh patches.drivers/bnx2x-cnic-bnx2i-bnx2fc-fix-bnx2i-and-bnx2fc-regressions. - Refresh patches.drivers/cnic-bnx2i-bnx2fc-fix-inconsistent-use-of-page-size. - Refresh patches.drivers/cnic-update-tcp-options-setup-for-iscsi - commit 3730073 - cnic: Update the rcu_access_pointer() usages (bsc#909368 FATE#317537). - cnic: Replace rcu_dereference() with rcu_access_pointer() (bsc#909368 FATE#317537). - net: treewide use of RCU_INIT_POINTER (bsc#909368 FATE#317537). - cnic: Rebranding cnic driver (bsc#909368 FATE#317537). - cnic: Fix missing ISCSI_KEVENT_IF_DOWN message (bsc#909368 FATE#317537). - cnic: Don't take cnic_dev_lock in cnic_alloc_uio_rings() (bsc#909368 FATE#317537). - cnic: Don't take rcu_read_lock in cnic_rcv_netevent() (bsc#909368 FATE#317537). - cnic: Update version to 2.5.20 and copyright year (bsc#909368 FATE#317537). - cnic: Use proper ulp_ops for per device operations (bsc#909368 FATE#317537). - cnic: Add a signature to indicate valid doorbell offset. - net:drivers/net: Miscellaneous conversions to ETH_ALEN (bsc#909368 FATE#317537). - broadcom: Remove extern from function prototypes (bsc#909368 FATE#317537). - cnic: Fix crash in cnic_bnx2x_service_kcq() (bsc#909368 FATE#317537). - cnic: Update version to 2.5.18 (bsc#909368 FATE#317537). - cnic: Eliminate local copy of pfid. - cnic: Eliminate CNIC_PORT macro and port_mode in local struct (bsc#909368 FATE#317537). - cnic: Redefine BNX2X_HW_CID using existing bnx2x macros (bsc#909368 FATE#317537). - cnic: Use CHIP_NUM macros from bnx2x.h (bsc#909368 FATE#317537). - ethernet: Convert mac address uses of 6 to ETH_ALEN (bsc#909368 FATE#317537). - cnic: Update version to 2.5.17 and copyright year (bsc#909368 FATE#317537). - cnic: Add missing error checking for RAMROD_CMD_ID_CLOSE (bsc#909368 FATE#317537). - cnic: Reset tcp_flags during cnic_cm_create() (bsc#909368 FATE#317537). - cnic: Simplify cnic_release() (bsc#909368 FATE#317537). - cnic: Simplify netdev events handling (bsc#909368 FATE#317537). - bnx2x, bnx2fc: Use per port max exchange resources (bsc#909368 FATE#317537). - net/broadcom: remove __dev* attributes (bsc#909368 FATE#317537). - commit 1aaa49c - drivers/net: Convert remaining uses of pr_warning to pr_warn (bsc#909566 FATE#314306). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909566 FATE#314306). - sky2: use pci_zalloc_consistent (bsc#909566 FATE#314306). - net: get rid of SET_ETHTOOL_OPS (bsc#909566 FATE#314306). - sky2: Call dev_kfree_skb_any instead of dev_kfree_skb (bsc#909566 FATE#314306). - sky2: Don't receive packets when the napi budget == 0 (bsc#909566 FATE#314306). - net: Replace u64_stats_fetch_begin_bh to u64_stats_fetch_begin_irq (bsc#909566 FATE#314306). - sky2: allow mac to come from dt (bsc#909566 FATE#314306). - sky2: initialize napi before registering device (bsc#909566 FATE#314306). - net: sky2 calls skb_set_hash (bsc#909566 FATE#314306). - net: Explicitly initialize u64_stats_sync structures for lockdep (bsc#909566 FATE#314306). - net: sky2: remove unnecessary pci_set_drvdata() (bsc#909566 FATE#314306). - ethernet: Remove unnecessary alloc/OOM messages, alloc cleanups (bsc#909566 FATE#314306). - remove init of dev->perm_addr in drivers (bsc#909566 FATE#314306). - drivers/net: fix up function prototypes after __dev* removals (bsc#909566 FATE#314306). - skge: remove __dev* attributes (bsc#909566 FATE#314306). - sky2: fix cleanup sequence in probe() function (bsc#909566 FATE#314306). - drivers/net/ethernet/marvell/sky2.c: fix error return code (bsc#909566 FATE#314306). - sky2: Added support for Optima EEE (bsc#909566 FATE#314306). - sky2: copy received packets on inefficient unaligned architecture (bsc#909566 FATE#314306). - sky2: fix missing register reset on error path in sky2_test_msi() (bsc#909566 FATE#314306). - sky2: dont overwrite settings for PHY Quick link (bsc#909566 FATE#314306). - drivers/net: Remove alloc_etherdev error messages (bsc#909566 FATE#314306). - sky2: add bql support (bsc#909566 FATE#314306). - Sweep away N/A fw_version dustbunnies from the .get_drvinfo routine of a number of drivers (bsc#909566 FATE#314306). - sky2: fix hang in napi_disable (bsc#909566 FATE#314306). - sky2: enforce minimum ring size (bsc#909566 FATE#314306). - sky2: version 1.30 (bsc#909566 FATE#314306). - sky2: used fixed RSS key (bsc#909566 FATE#314306). - sky2: reduce default Tx ring size (bsc#909566 FATE#314306). - sky2: rename up/down functions (bsc#909566 FATE#314306). - sky2: pci posting issues (bsc#909566 FATE#314306). - sky2: fix hang on shutdown (and other irq issues) (bsc#909566 FATE#314306). - sweep the floors and convert some .get_drvinfo routines to strlcpy (bsc#909566 FATE#314306). - sky2: fix regression on Yukon Optima (bsc#909566 FATE#314306). - net: add skb frag size accessors (bsc#909566 FATE#314306). - sky2: fix skb truesize underestimation (bsc#909566 FATE#314306). - net: Remove unnecessary driver assignments of ethtool_ringparam fields to zero (bsc#909566 FATE#314306). - net: use DMA_x_DEVICE and dma_mapping_error with skb_frag_dma_map (bsc#909566 FATE#314306). - sky2: manage irq better on single port card (bsc#909566 FATE#314306). - sky2: convert to SKB paged frag API (bsc#909566 FATE#314306). - skge/sky2/mv643xx/pxa168: Move the Marvell Ethernet drivers (bsc#909566 FATE#314306). - sky2: version 1.29 (bsc#909566 FATE#314306). - sky2: support for new Optima chipsets (EXPERIMENTAL) (bsc#909566 FATE#314306). - sky2: use correct Inter Packet Gap at 10/100mbit (bsc#909566 FATE#314306). - sky2: force receive checksum when using RSS on some hardware (v2) (bsc#909566 FATE#314306). - sky2: use GFP_KERNEL allocations at device setup (bsc#909566 FATE#314306). - sky2: remove unnecessary reads of PCI_CAP_ID_EXP (bsc#909566 FATE#314306). - net: remove interrupt.h inclusion from netdevice.h (bsc#909566 FATE#314306). - of_net.h: Provide empty functions if OF_NET is not configured (bsc#909566 FATE#314306). - commit 9d90f49 - tg3: fix ring init when there are more TX than RX channels (bsc#908458 FATE#317507). - tg3: prevent ifup/ifdown during PCI error recovery (bsc#908458 FATE#317507). - tg3: fix return value in tg3_get_stats64 (bsc#908458 FATE#317507). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#908458 FATE#317507). - tg3: Modify tg3_tso_bug() to handle multiple TX rings (bsc#908458 FATE#317507). - tg3: Clear NETIF_F_TSO6 flag before doing software GSO (bsc#908458 FATE#317507). - tg3: Update copyright and version to 3.137 (bsc#908458 FATE#317507). - tg3: Prevent page allocation failure during TSO workaround (bsc#908458 FATE#317507). - tg3: Don't modify ip header fields when doing GSO (bsc#908458 FATE#317507). - tg3: update rx_jumbo_pending ring param only when jumbo frames are enabled (bsc#908458 FATE#317507). - tg3: remove open-coded skb_cow_head (bsc#908458 FATE#317507). - tg3: remove empty MDIO bus reset function (bsc#908458 FATE#317507). - tg3: Call dev_kfree_skby_any instead of dev_kfree_skb (bsc#908458 FATE#317507). - tg3: Support for byte queue limits (bsc#908458 FATE#317507). - tg3: Don't check undefined error bits in RXBD (bsc#908458 FATE#317507). - tg3: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#908458 FATE#317507). - tg3: Fix deadlock in tg3_change_mtu() (bsc#908458 FATE#317507). - tg3: cleanup an error path in tg3_phy_reset_5703_4_5() (bsc#908458 FATE#317507). - drivers/net: delete non-required instances of include (bsc#908458 FATE#317507). - tg3: Update version to 3.136 (bsc#908458 FATE#317507). - tg3: Refactor __tg3_set_mac_addr() (bsc#908458 FATE#317507). - tg3: Expand 4g_overflow_test workaround to skb fragments of any size (bsc#908458 FATE#317507). - tg3: Initialize REG_BASE_ADDR at PCI config offset 120 to 0 (bsc#908458 FATE#317507). - tg3: Update version to 3.135 (bsc#908458 FATE#317507). - tg3: Expand multicast drop counter miscounting fix to 5762 (bsc#908458 FATE#317507). - tg3: Fix bit definition for the nvram Auto Power Down setting (bsc#908458 FATE#317507). - tg3: Add flag to disable 1G Half Duplex advertisement (bsc#908458 FATE#317507). - tg3: Don't add rxbds_empty to rx_over_errors (bsc#908458 FATE#317507). - PCI / tg3: Give up chip reset and carrier loss handling if PCI device is not present (bsc#908458 FATE#317507). - tg3: Validate hwtstamp_config completely before applying it (bsc#908458 FATE#317507). - net: tg3: remove unnecessary pci_set_drvdata() (bsc#908458 FATE#317507). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (bsc#908458 FATE#317507). - remove init of dev->perm_addr in drivers (bsc#908458 FATE#317507). - tg3: use phylib when robo switch is in use (bsc#908458 FATE#317507). - ssb: provide phy address for Gigabit Ethernet driver (bsc#908458 FATE#317507). - tg3: add support a phy at an address different than 01 (bsc#908458 FATE#317507). - tg3: Update version to 3.134 (bsc#908458 FATE#317507). - tg3: Remove unnecessary spinlock (bsc#908458 FATE#317507). - tg3: Appropriately classify interrupts during request_irq (bsc#908458 FATE#317507). - tg3: Remove redundant if check (bsc#908458 FATE#317507). - tg3: Remove if 0'd code (bsc#908458 FATE#317507). - tg3: LED in shared mode does not blink during traffic (bsc#908458 FATE#317507). - tg3: Add support for new 577xx device ids (bsc#908458 FATE#317507). - tg3: Add function tg3_phy_shdw_write() (bsc#908458 FATE#317507). - tg3: Use pci_dev pm_cap (bsc#908458 FATE#317507). - tg3: Expand led off fix to include 5720 (bsc#908458 FATE#317507). - tg3: Don't turn off led on 5719 serdes port 0 (bsc#908458 FATE#317507). - drivers:net: Convert dma_alloc_coherent(...__GFP_ZERO) to dma_zalloc_coherent (bsc#908458 FATE#317507). - net: tg3: fix NULL pointer dereference in tg3_io_error_detected and tg3_io_slot_reset (bsc#908458 FATE#317507). - tg3: clean up unnecessary MSI/MSI-X capability find (bsc#908458 FATE#317507). - tg3: Update version to 3.133 (bsc#908458 FATE#317507). - tg3: Fix UDP fragments treated as RMCP (bsc#908458 FATE#317507). - tg3: Enable support for timesync gpio output (bsc#908458 FATE#317507). - tg3: Implement the shutdown handler (bsc#908458 FATE#317507). - tg3: Allow NVRAM programming when interface is down (bsc#908458 FATE#317507). - tg3: Remove incorrect switch to aux power (bsc#908458 FATE#317507). - net/tg3: Fix warning from pci_disable_device() (bsc#908458 FATE#317507). - net/tg3: Fix kernel crash (bsc#908458 FATE#317507). - net/tg3: Avoid delay during MMIO access (bsc#908458 FATE#317507). - tg3: Wait for boot code to finish after power on (bsc#908458 FATE#317507). - tg3: Add read dma workaround for 5720 (bsc#908458 FATE#317507). - tg3: remove redundant pm init code (bsc#908458 FATE#317507). - tg3: Remove unnecessary lock around tg3_flag_set (bsc#908458 FATE#317507). - tg3: Fix misplaced empty line (bsc#908458 FATE#317507). - tg3: Use descriptive label names in tg3_start (bsc#908458 FATE#317507). - tg3: Make tg3_rings_reset() more concise (bsc#908458 FATE#317507). - tg3: Simplify ring control block setup (bsc#908458 FATE#317507). - tg3: Split APE driver state change out of boot reset signature update (bsc#908458 FATE#317507). - tg3: Update version to 3.132 (bsc#908458 FATE#317507). - tg3: Ensure boot code has completed initialization before accessing hardware (bsc#908458 FATE#317507). - tg3: Fix data corruption on 5725 with TSO (bsc#908458 FATE#317507). - tg3: Skip powering down function 0 on certain serdes devices (bsc#908458 FATE#317507). - tg3: fix to append hardware time stamping flags (bsc#908458 FATE#317507). - tg3: shows HW time stamping support only if ptp_capable is present (bsc#908458 FATE#317507). - tg3: Remove unneeded PM_OPS definitions (bsc#908458 FATE#317507). - tg3: Use bool not int (bsc#908458 FATE#317507). - tg3: Update version to 3.131 (bsc#908458 FATE#317507). - tg3: Reset the phy to allow modified EEE settings to take effect (bsc#908458 FATE#317507). - tg3: Pull the phy advertised speed and flow control settings on driver load (bsc#908458 FATE#317507). - tg3: Add support for link flap avoidance (bsc#908458 FATE#317507). - tg3: Add SGMII phy support for 5719/5718 serdes (bsc#908458 FATE#317507). - tg3: Add tg3_clear_mac_status() common function (bsc#908458 FATE#317507). - tg3: Add a warning during link settings change if mgmt enabled (bsc#908458 FATE#317507). - tg3: Remove unnecessary phy reset during ethtool commands (bsc#908458 FATE#317507). - tg3: Fix NVRAM size detection for the STM45PE20 pinstrap on 5762 devices (bsc#908458 FATE#317507). - tg3: Fix flow control settings not propagated to hardware (bsc#908458 FATE#317507). - drivers:net: dma_alloc_coherent: use __GFP_ZERO instead of memset(, 0) (bsc#908458 FATE#317507). - tg3: 5715 does not link up when autoneg off (bsc#908458 FATE#317507). - tg3: Update link_up flag for phylib devices (bsc#908458 FATE#317507). - tg3: Download 57766 EEE service patch firmware (bsc#908458 FATE#317507). - tg3: Enhance firmware download code to support fragmented firmware (bsc#908458 FATE#317507). - tg3: Cleanup firmware parsing code (bsc#908458 FATE#317507). - tg3: Refactor the 2nd type of cpu pause (bsc#908458 FATE#317507). - tg3: Refactor cpu pause/resume code (bsc#908458 FATE#317507). - tg3: Add new FW_TSO flag (bsc#908458 FATE#317507). - tg3: Use different macros for pci_chip_rev_id accesses (bsc#908458 FATE#317507). - tg3: Remove define and single use of GET_CHIP_REV_ID (bsc#908458 FATE#317507). - tg3: Update version to 3.130 (bsc#908458 FATE#317507). - tg3: Set initial carrier state to off (bsc#908458 FATE#317507). - tg3: Fix 5762 NVRAM sizing (bsc#908458 FATE#317507). - tg3: Expand EEE support for all 5717 B0 (bsc#908458 FATE#317507). - tg3: add support for Ethernet core in bcm4785 (bsc#908458 FATE#317507). - ssb: get mac address from sprom struct for gige driver (bsc#908458 FATE#317507). - tg3: make it possible to provide phy_id in ioctl (bsc#908458 FATE#317507). - ethernet: Remove unnecessary alloc/OOM messages, alloc cleanups (bsc#908458 FATE#317507). - tg3: missing break statement in tg3_get_5720_nvram_info() (bsc#908458 FATE#317507). - drivers/net: fix up function prototypes after __dev* removals (bsc#908458 FATE#317507). - tg3: remove __dev* attributes (bsc#908458 FATE#317507). - commit e02d5c7 - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#908686 FATE#317538). - bnx2: Rebranding bnx2 driver (bsc#908686 FATE#317538). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bsc#908686 FATE#317538). - bnx2: Don't build unused suspend/resume functions not enabled (bsc#908686 FATE#317538). - bnx2: Don't receive packets when the napi budget == 0 (bsc#908686 FATE#317538). - bnx2: Call dev_kfree_skby_any instead of dev_kfree_skb (bsc#908686 FATE#317538). - bnx2: Fix shutdown sequence (bsc#908686 FATE#317538). - bnx2: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#908686 FATE#317538). - bnx2[x]: Make module parameters readable (bsc#908686 FATE#317538). - drivers/net: delete non-required instances of include (bsc#908686 FATE#317538). - bnx2: Update version to 2.2.5 (bsc#908686 FATE#317538). - bnx2: Report MDI/MDIX status to ethtool (bsc#908686 FATE#317538). - bnx2: Enable auto-mdix when autoneg is disabled (bsc#908686 FATE#317538). - bnx2: Advertise nothing when speed is forced (bsc#908686 FATE#317538). - net: bnx2 calls skb_set_hash (bsc#908686 FATE#317538). - net: bnx2: remove unnecessary pci_set_drvdata() (bsc#908686 FATE#317538). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (bsc#908686 FATE#317538). - drivers:net: Convert dma_alloc_coherent(...__GFP_ZERO) to dma_zalloc_coherent (bsc#908686 FATE#317538). - bnx2: clean up unnecessary MSI/MSI-X capability find (bsc#908686 FATE#317538). - bnx2: Update version to 2.2.4 (bsc#908686 FATE#317538). - bnx2: Add pci shutdown handler (bsc#908686 FATE#317538). - bnx2: Use SIMPLE_DEV_PM_OPS (bsc#908686 FATE#317538). - bnx2: Refactor WoL setup into a separate function (bsc#908686 FATE#317538). - bnx2: Use kernel APIs for WoL and power state changes (bsc#908686 FATE#317538). - bnx2: Handle error condition in ->slot_reset() (bsc#908686 FATE#317538). - bnx2: use pdev->pm_cap instead of pci_find_capability(.., PCI_CAP_ID_PM) (bsc#908686 FATE#317538). - net/ethernet/broadcom/bnx2: Use module_pci_driver to register driver (bsc#908686 FATE#317538). - bnx2: make cnic_probe static (bsc#908686 FATE#317538). - bnx2: remove __dev* attributes (bsc#908686 FATE#317538). - drivers:net: dma_alloc_coherent: use __GFP_ZERO instead of memset(, 0) (bsc#908686 FATE#317538). - remove init of dev->perm_addr in drivers (bsc#908686 FATE#317538). - commit f4201b3 - bna: fix skb->truesize underestimation (bsc#909364 FATE#317497). - bna: allow transmit tagged frames (bsc#909364 FATE#317497). - bna: use container_of to resolve bufdesc_ex from bufdesc (bsc#909364 FATE#317497). - bna: Support TSO and partial checksum with non-accelerated vlans (bsc#909364 FATE#317497). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909364 FATE#317497). - bna: fix performance regression (bsc#909364 FATE#317497). - bna: fill the magic in bnad_get_eeprom() instead of validating (bsc#909364 FATE#317497). - bna: remove unnecessary break after return (bsc#909364 FATE#317497). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bsc#909364 FATE#317497). - net: get rid of SET_ETHTOOL_OPS (bsc#909364 FATE#317497). - bna: remove open-coded skb_cow_head (bsc#909364 FATE#317497). - bnad: Call dev_kfree_skb_any instead of dev_kfree_skb (bsc#909364 FATE#317497). - brocade: Convert uses of __constant_ to (bsc#909364 FATE#317497). - bna: Replace large udelay() with mdelay() (bsc#909364 FATE#317497). - bna: fix vlan tag stripping and implement its toggling (bsc#909364 FATE#317497). - bna: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909364 FATE#317497). - bnad: code cleanup (bsc#909364 FATE#317497). - bna: Fix build due to missing use of dma_unmap_len_set() (bsc#909364 FATE#317497). - bna: Update the Driver Version to 3.2.23.0 (bsc#909364 FATE#317497). - bna: Firmware Patch Simplification (bsc#909364 FATE#317497). - bna: Embed SKB Length in TX Vector (bsc#909364 FATE#317497). - bna: Handle the TX Setup Failures (bsc#909364 FATE#317497). - bna: Add NULL Check Before Dereferencing TCB (bsc#909364 FATE#317497). - bna: CQ Read Fix (bsc#909364 FATE#317497). - bna: RX Processing and Config Changes (bsc#909364 FATE#317497). - bna: Enable Multi Buffer RX (bsc#909364 FATE#317497). - bnad: do vlan cleanup (bsc#909364 FATE#317497). - bna: RX Filter Enhancements (bsc#909364 FATE#317497). - bna: Fix Filter Add Del (bsc#909364 FATE#317497). - bna: Set Get IOC fw State (bsc#909364 FATE#317497). - bna: Add software timestamping support (bsc#909364 FATE#317497). - bnad: make local variable static (bsc#909364 FATE#317497). - net: bna: remove unnecessary pci_set_drvdata() (bsc#909364 FATE#317497). - brocade: Remove extern from function prototypes (bsc#909364 FATE#317497). - DMA-API: net: brocade/bna/bnad.c: fix 32-bit DMA mask handling (bsc#909364 FATE#317497). - bna: firmware update to 3.2.1.1 (bsc#909364 FATE#317497). - bna: Staticize local functions (bsc#909364 FATE#317497). - lseek(fd, n, SEEK_END) does *not* go to eof - n (bsc#909364 FATE#317497). - bna: Driver and Firmware Updated (bsc#909364 FATE#317497). - bna: Enahncement to Identify Default IOC Function (bsc#909364 FATE#317497). - bna: Fix Ucast Failure Handling (bsc#909364 FATE#317497). - bna: Clear Driver Config Flags When HW Resets (bsc#909364 FATE#317497). - bna: add missing iounmap() on error in bnad_init() (bsc#909364 FATE#317497). - drivers:net: dma_alloc_coherent: use __GFP_ZERO instead of memset(, 0) (bsc#909364 FATE#317497). - bna: fix declaration mismatch (bsc#909364 FATE#317497). - commit 761a737 ++++ kiwi: - v5.05.83 released Fixed creation of .report meta files When building product installation media the created .report files are used by the buildservice to setup the _channel files. This patch fixes the creation of the .report files in order to allow the buildservice to work with it ------------------------------------------------------------------ ------------------ 2015-1-28 - Jan 28 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (FATE#317396). - net: get rid of SET_ETHTOOL_OPS (FATE#317396). - e100: Convert uses of __constant_ to (FATE#317396). - e100: Fix "disabling already-disabled device" warning (FATE#317396). - net: e100: remove unnecessary pci_set_drvdata() (FATE#317396). - e100: dump small buffers via %*ph (FATE#317396). - e100: Add dma mapping error check (FATE#317396). - remove init of dev->perm_addr in drivers (FATE#317396). - commit 07c9cb6 - Add the missing config QLCNIC_DCB also drop the updates for setapp/getapp - Update config files. - Refresh patches.drivers/qlcnic-0110-qlcnic-dcb-Query-adapter-DCB-capabilities.patch. - Refresh patches.drivers/qlcnic-0228-qlcnic-Add-hwmon-interface-to-export-board-temperatu.patch. - Delete patches.drivers/qlcnic-0250-Update-setapp-getapp-prototypes-in-dcbnl_rtnl_ops-to.patch. - commit 5242af7 ++++ bash: - Add backported upstream patch bash-3.2-debug-trap.patch bash hangs if DEBUG trap is enabled (bsc#913701) ++++ libvirt: - CVE-2015-0236: libvirt: access control bypass 03c3c0c8-CVE-2015-0236.patch, b347c0c2-CVE-2015-0236.patch bsc#914693 - Drop workarounds for missing netlink defines, since linux-kernel-headers has been updated in SP4 (bnc#834498, bnc#770103) Deleted: macvtap-hack.patch, sriov-vf-info-build-hack.patch. ++++ xen: - Update seabios to rel-1.7.3.1 which is the correct version for Xen 4.4 ++++ yast2-http-server: - do not stop reading settings when new configuration file got confirmed by user (bsc#770331) - 2.17.17 ++++ yast2-installation: - SLES control files: display the generic network settings also on PPC and S390 (bnc#914288) (patch by Dinar) - 2.17.110 ------------------------------------------------------------------ ------------------ 2015-1-27 - Jan 27 2015 ------------------- ------------------------------------------------------------------ ++++ glibc: - nss-dns-infinite-loop.patch: Avoid infinite loop in nss_dns getnetbyname (CVE-2014-9402, bsc#910599, BZ #17630) ++++ kernel-docs: - fix dcache exit scaling (bnc#876594). - commit 080ce84 - Refresh forgot quilt refresh -> should build again now... patches.arch/mce-amd-check-for-userspace-agent-before-decoding.patch. - commit 6773e08 - MCE, AMD: Check for userspace agent before decoding (bnc#871881). - commit b2a380f - Add CVE reference to patches.fixes/isofs-Fix-unchecked-printing-of-ER-records.patch (CVE-2014-9584). - commit 0aaf2e0 - v2 of be2net sp4 backport following bug#908322c7 - be2net: add FW cmds needed for VxLAN offloads (bnc#908322 FATE#317535). - be2net: create optimal number of queues on SR-IOV config (bnc#908322 FATE#317535). - be2net: avoid SRIOV config for BE2 chip (bnc#908322 FATE#317535). - be2net: ignore get/set profile FW cmd failures (bnc#908322 FATE#317535). - Refresh patches.drivers/be2net-0001-be2net-fix-be_close-to-ensure-all-events-are-ack-ed.patch. - Refresh patches.drivers/be2net-0002-be2net-fix-wrong-frag_idx-reported-by-RX-CQ.patch. - Refresh patches.drivers/be2net-0003-ethtool-fix-drvinfo-strings-set-in-drivers.patch. - Refresh patches.drivers/be2net-0004-be2net-fix-unconditionally-returning-IRQ_HANDLED-in-.patch. - Refresh patches.drivers/be2net-0006-be2net-fix-re-loaded-PF-driver-to-re-gain-control-of.patch. - Refresh patches.drivers/be2net-0008-be2net-remove-BUG_ON-in-be_mcc_compl_is_new.patch. - Refresh patches.drivers/be2net-0009-benet-Wait-f-w-POST-until-timeout.patch. - Refresh patches.drivers/be2net-0010-be2net-use-CSR-BAR-SEMAPHORE-reg-for-BE2-BE3.patch. - Refresh patches.drivers/be2net-0012-be2net-enable-interrupts-in-be_probe-RoCE-and-other-.patch. - Refresh patches.drivers/be2net-0013-be2net-Use-new-F-W-mailbox-cmd-to-manipulate-interru.patch. - Refresh patches.drivers/be2net-0014-drivers-net-Remove-dma_alloc_coherent-OOM-messages.patch. - Refresh patches.drivers/be2net-0015-drivers-net-dma_alloc_coherent-use-__GFP_ZERO-instea.patch. - Refresh patches.drivers/be2net-0016-be2net-remove-unused-variable-sge.patch. - Refresh patches.drivers/be2net-0017-be2net-take-care-of-__vlan_put_tag-return-value.patch. - Refresh patches.drivers/be2net-0018-be2net-Use-TXQ_CREATE_V2-cmd.patch. - Refresh patches.drivers/be2net-0019-be2net-Don-t-log-Out-of-MCCQ-wrbs-error.patch. - Refresh patches.drivers/be2net-0020-be2net-Avoid-flashing-BE3-UFI-on-BE3-R-chip.patch. - Refresh patches.drivers/be2net-0021-be2net-Use-GET_PROFILE_CONFIG-V1-cmd-for-BE3-R.patch. - Refresh patches.drivers/be2net-0022-be2net-enable-IOMMU-pass-through-for-be2net.patch. - Refresh patches.drivers/be2net-0023-be2net-Remove-an-incorrect-pvid-check-in-Tx.patch. - Refresh patches.drivers/be2net-0024-be2net-fix-a-Tx-stall-bug-caused-by-a-specific-ipv6-.patch. - Refresh patches.drivers/be2net-0025-be2net-Fix-PVID-tag-offload-for-packets-with-inline-.patch. - Refresh patches.drivers/be2net-0026-be2net-Add-support-for-setting-and-getting-rx-flow-h.patch. - Refresh patches.drivers/be2net-0027-be2net-Renamed-rx_address_mismatch_errors-to-rx_addr.patch. - Refresh patches.drivers/be2net-0028-be2net-Avoid-diagnostic-test-in-certain-versions-of-.patch. - Refresh patches.drivers/be2net-0029-be2net-Fixed-memory-leak.patch. - Refresh patches.drivers/be2net-0030-be2net-Fix-to-show-wol-disabled-enabled-state-correc.patch. - Refresh patches.drivers/be2net-0031-be2net-Use-GET_FUNCTION_CONFIG-V1-cmd.patch. - Refresh patches.drivers/be2net-0032-be2net-FLR-must-be-first-cmd-issued-to-Lancer-FW.patch. - Refresh patches.drivers/be2net-0033-be2net-Fix-to-use-version-2-of-cq_create-for-SkyHawk.patch. - Refresh patches.drivers/be2net-0034-be2net-Fix-to-use-32-bit-stats-to-report-rx_drops_no.patch. - Refresh patches.drivers/be2net-0035-be2net-Fix-to-show-tx-priority-pause-counter-in-etht.patch. - Refresh patches.drivers/be2net-0036-be2net-Fix-to-receive-Multicast-Packets-when-Promisc.patch. - Refresh patches.drivers/be2net-0037-be2net-Fix-firmware-download-for-Lancer.patch. - Refresh patches.drivers/be2net-0038-be2net-avoid-napi_disable-when-it-has-not-been-enabl.patch. - Refresh patches.drivers/be2net-0039-be2net-Fix-to-fail-probe-if-MSI-X-enable-fails-for-a.patch. - Refresh patches.drivers/be2net-0040-be2net-provision-VF-resources-before-enabling-SR-IOV.patch. - Refresh patches.drivers/be2net-0041-be2net-fix-payload_len-value-for-GET_MAC_LIST-cmd-re.patch. - Refresh patches.drivers/be2net-0042-be2net-fix-EQ-from-getting-full-while-cleaning-RX-CQ.patch. - Refresh patches.drivers/be2net-0043-be2net-disable-TX-in-be_close.patch. - Refresh patches.drivers/be2net-0044-be2net-Avoid-double-insertion-of-vlan-tags.patch. - Refresh patches.drivers/be2net-0045-be2net-bug-fix-on-returning-an-invalid-nic-descripto.patch. - Refresh patches.drivers/be2net-0046-be2net-refactor-HW-workarounds-in-be_xmit.patch. - Refresh patches.drivers/be2net-0047-be2net-cleanup-be_get_drvinfo.patch. - Refresh patches.drivers/be2net-0048-be2net-Pad-skb-to-meet-min-Tx-pkt-size-in-lancer.patch. - Refresh patches.drivers/be2net-0049-be2net-Trim-padded-packets-for-Lancer.patch. - Refresh patches.drivers/be2net-0050-be2net-Mark-checksum-fail-for-IP-fragmented-packets.patch. - Refresh patches.drivers/be2net-0051-be2net-Fix-crash-on-2nd-invocation-of-PCI-AER-EEH-er.patch. - Refresh patches.drivers/be2net-0052-be2net-Implement-initiate-FW-dump-feature-for-Lancer.patch. - Refresh patches.drivers/be2net-0053-be2net-Fix-32-bit-DMA-Mask-handling.patch. - Refresh patches.drivers/be2net-0054-be2net-use-pci_vfs_assigned-pci_num_vf-instead-of-be.patch. - Refresh patches.drivers/be2net-0055-net-trivial-replace-numeric-with-standard-PM-state-m.patch. - Refresh patches.drivers/be2net-0056-be2net-Fix-to-avoid-hardware-workaround-when-not-nee.patch. - Refresh patches.drivers/be2net-0057-be2net-fix-MAC-address-modification-for-VF.patch. - Refresh patches.drivers/be2net-0058-be2net-allow-VFs-to-program-MAC-and-VLAN-filters.patch. - Refresh patches.drivers/be2net-0059-be2net-fix-pmac_id-for-BE3-VFs.patch. - Refresh patches.drivers/be2net-0060-be2net-refactor-MAC-addr-setup-code.patch. - Refresh patches.drivers/be2net-0061-be2net-use-SET-GET_MAC_LIST-for-SH-R.patch. - Refresh patches.drivers/be2net-0062-be2net-delete-primary-MAC-address-while-unloading.patch. - Refresh patches.drivers/be2net-0063-be2net-don-t-use-dev_err-when-AER-enabling-fails.patch. - Refresh patches.drivers/be2net-0064-be2net-Staticize-local-functions.patch. - Refresh patches.drivers/be2net-0065-be2net-Adding-more-speeds-reported-by-get_settings.patch. - Refresh patches.drivers/be2net-0066-be2net-Do-not-call-get_die_temperature-cmd-for-VF.patch. - Refresh patches.drivers/be2net-0067-be2net-don-t-limit-max-MAC-and-VLAN-counts.patch. - Refresh patches.drivers/be2net-0068-be2net-Fix-displaying-supported-speeds-for-BE2.patch. - Refresh patches.drivers/be2net-0069-be2net-fixup-log-msgs-for-async-events.patch. - Refresh patches.drivers/be2net-0070-be2net-Initialize-status-in-be_cmd_get_die_temperatu.patch. - Refresh patches.drivers/be2net-0072-be2net-Clear-any-capability-flags-that-driver-is-not.patch. - Refresh patches.drivers/be2net-0073-be2net-fix-disabling-TX-in-be_close.patch. - Refresh patches.drivers/be2net-0074-be2net-Check-for-POST-state-in-suspend-resume-sequen.patch. - Refresh patches.drivers/be2net-0075-be2net-use-EQ_CREATEv2-for-SH-R.patch. - Refresh patches.drivers/be2net-0076-be2net-Fixup-profile-management-routines.patch. - Refresh patches.drivers/be2net-0077-be2net-refactor-be_get_resources-code.patch. - Refresh patches.drivers/be2net-0078-be2net-Fix-be_cmd_if_create-to-use-MBOX-if-MCCQ-is-n.patch. - Refresh patches.drivers/be2net-0079-be2net-refactor-be_setup-to-consolidate-queue-creati.patch. - Refresh patches.drivers/be2net-0080-be2net-implement-ethtool-set-get_channel-hooks.patch. - Refresh patches.drivers/be2net-0081-drivers-net-Convert-dma_alloc_coherent-.__GFP_ZERO-t.patch. - Refresh patches.drivers/be2net-0082-be2net-set-and-query-VEB-VEPA-mode-of-the-PF-interfa.patch. - Refresh patches.drivers/be2net-0083-be2net-missing-variable-initialization.patch. - Refresh patches.drivers/be2net-0084-DMA-API-net-emulex-benet-replace-dma_set_mask-dma_se.patch. - Refresh patches.drivers/be2net-0085-emulex-Remove-extern-from-function-prototypes.patch. - Refresh patches.drivers/be2net-0086-be2net-Fix-to-prevent-Tx-stall-on-SH-R-when-packet-s.patch. - Refresh patches.drivers/be2net-0087-be2net-Fix-the-size-of-be_nic_res_desc-structure.patch. - Refresh patches.drivers/be2net-0088-be2net-Fix-VLAN-promiscuous-mode-programming.patch. - Refresh patches.drivers/be2net-0089-be2net-Fix-number-of-VLANs-supported-in-UMC-mode-for.patch. - Refresh patches.drivers/be2net-0090-be2net-Fix-to-allow-VLAN-configuration-on-VF-interfa.patch. - Refresh patches.drivers/be2net-0091-be2net-Fix-to-configure-VLAN-priority-for-a-VF-inter.patch. - Refresh patches.drivers/be2net-0092-be2net-Fix-to-display-the-VLAN-priority-for-a-VF.patch. - Refresh patches.drivers/be2net-0093-be2net-Call-be_vf_setup-even-when-VFs-are-enbaled-fr.patch. - Refresh patches.drivers/be2net-0094-be2net-pass-if_id-for-v1-and-V2-versions-of-TX_CREAT.patch. - Refresh patches.drivers/be2net-0095-be2net-Create-single-TXQ-on-BE3-R-1G-ports.patch. - Refresh patches.drivers/be2net-0096-be2net-call-ENABLE_VF-cmd-for-Skyhawk-R-too.patch. - Refresh patches.drivers/be2net-0097-be2net-fix-adaptive-interrupt-coalescing.patch. - Refresh patches.drivers/be2net-0098-be2net-add-a-counter-for-pkts-dropped-in-xmit-path.patch. - Refresh patches.drivers/be2net-0099-be2net-Call-version-2-of-GET_STATS-ioctl-for-Skyhawk.patch. - Refresh patches.drivers/be2net-0100-be2net-Display-RoCE-specific-counters-in-ethtool-S.patch. - Refresh patches.drivers/be2net-0102-be2net-Rework-PCIe-error-report-log-messaging.patch. - Refresh patches.drivers/be2net-0103-net-be2net-remove-unnecessary-pci_set_drvdata.patch. - Refresh patches.drivers/be2net-0104-be2net-Warn-users-of-possible-broken-functionality-o.patch. - Refresh patches.drivers/be2net-0105-net-benet-Remove-interface-type.patch. - Refresh patches.drivers/be2net-0106-net-benet-Make-lancer_wait_ready-static.patch. - Refresh patches.drivers/be2net-0107-net-Explicitly-initialize-u64_stats_sync-structures-.patch. - Refresh patches.drivers/be2net-0108-be2net-Fix-unconditional-enabling-of-Rx-interface-op.patch. - Refresh patches.drivers/be2net-0109-be2net-Delete-secondary-unicast-MAC-addresses-during.patch. - Refresh patches.drivers/be2net-0110-be2net-Disabling-and-enabling-interrupts-in-suspend-.patch. - Refresh patches.drivers/be2net-0111-be2net-set-coalesce-wm-in-CQ_CREATE_V2-cmd.patch. - Refresh patches.drivers/be2net-0112-be2net-Avoid-programming-permenant-MAC-by-BE3-R-VFs.patch. - Refresh patches.drivers/be2net-0113-be2net-Fix-Lancer-error-recovery-to-distinguish-FW-d.patch. - Refresh patches.drivers/be2net-0114-be2net-Free-delete-pmacs-in-be_clear-only-if-they-ex.patch. - Refresh patches.drivers/be2net-0115-net-emulex-benet-calls-skb_set_hash.patch. - Refresh patches.drivers/be2net-0116-net-benet-slight-optimization-of-addr-compare.patch. - Refresh patches.drivers/be2net-0117-be2net-disable-RSS-when-number-of-RXQs-is-reduced-to.patch. - Refresh patches.drivers/be2net-0118-be2net-increase-the-timeout-value-for-loopback-test-.patch. - Refresh patches.drivers/be2net-0119-be2net-fix-max_evt_qs-calculation-for-BE3-in-SR-IOV-.patch. - Refresh patches.drivers/be2net-0120-be2net-Use-MCC_CREATE_EXT_V1-cmd-for-Skyhawk-R.patch. - Refresh patches.drivers/be2net-0121-be2net-don-t-set-pport-field-when-querying-pvid.patch. - Refresh patches.drivers/be2net-0122-be2net-Log-the-profile-id-used-by-FW-during-driver-i.patch. - Refresh patches.drivers/be2net-0123-be2net-do-not-call-be_set-get_fw_log_level-on-Skyhaw.patch. - Refresh patches.drivers/be2net-0124-be2net-ignore-mac-addr-set-call-for-an-already-progr.patch. - Refresh patches.drivers/be2net-0125-be2net-fix-incorrect-setting-of-cmd_privileges-for-V.patch. - Refresh patches.drivers/be2net-0127-be2net-do-not-use-frag-index-in-the-RX-compl-entry.patch. - Refresh patches.drivers/be2net-0128-be2net-use-GET_MAC_LIST-cmd-to-query-mac-address-fro.patch. - Refresh patches.drivers/be2net-0129-be2net-cleanup-wake-on-lan-code.patch. - Refresh patches.drivers/be2net-0131-be2net-add-dma_mapping_error-check-for-dma_map_page.patch. - Refresh patches.drivers/be2net-0132-be2net-Fix-be_vlan_add-rem_vid-routines.patch. - Refresh patches.drivers/be2net-0133-be2net-Log-a-kernel-message-when-UE-is-detected-in-B.patch. - Refresh patches.drivers/be2net-0135-be2net-refactor-multi-channel-config-code-for-Skyhaw.patch. - Refresh patches.drivers/be2net-0136-benet-Use-pci_enable_msix_range-instead-of-pci_enabl.patch. - Refresh patches.drivers/be2net-0137-be2net-Fix-to-reset-transparent-vlan-tagging.patch. - Refresh patches.drivers/be2net-0138-be2net-clear-promiscuous-bits-in-adapter-flags-while.patch. - Refresh patches.drivers/be2net-0139-be2net-Fix-skb-double-free-in-be_xmit_wrokarounds-fa.patch. - Refresh patches.drivers/be2net-0140-be2net-isolate-TX-workarounds-not-applicable-to-Skyh.patch. - Refresh patches.drivers/be2net-0141-be2net-dma_sync-each-RX-frag-before-passing-it-to-th.patch. - Refresh patches.drivers/be2net-0142-be2net-do-external-loopback-test-only-when-it-is-req.patch. - Refresh patches.drivers/be2net-0143-be2net-Use-GET_PROFILE_CONFIG-cmd-for-BE3-R-to-query.patch. - Refresh patches.drivers/be2net-0144-be2net-log-LPVID-used-in-multi-channel-configs.patch. - Refresh patches.drivers/be2net-0145-be2net-fix-pmac_id-allocation-size.patch. - Refresh patches.drivers/be2net-0146-be2net-Create-multiple-TXQs-on-RSS-capable-multi-cha.patch. - Refresh patches.drivers/be2net-0147-be2net-Fix-vlans_added-counter.patch. - Refresh patches.drivers/be2net-0149-benet-Call-dev_kfree_skby_any-instead-of-kfree_skb.patch. - Refresh patches.drivers/be2net-0150-net-Replace-u64_stats_fetch_begin_bh-to-u64_stats_fe.patch. - commit 10bf758 - NFS: don't use STABLE writes during writeback (bnc#816099). - commit 939cfc4 ++++ libmlx4-rdmav2: - Add libmlx4-fix_type_punning.patch to fix warnings from build. ++++ rpmlint-Factory: - removed fatal checks for percentages in dependency, provides, obsoletes and conflicts, getting to parity with CODE 12 and allowing FATE#300591#c74 to be implemented ++++ yast2-installation: - use oom_score_adj instead of oom_adj (bnc#913950) - 2.17.109.1 ------------------------------------------------------------------ ------------------ 2015-1-26 - Jan 26 2015 ------------------- ------------------------------------------------------------------ ++++ kiwi: - v5.05.82 released Handle stop of udev daemon correctly Killing the udevd is done in two steps. First we issue an udevadm call to exit udevd the documented way. According to the man page the call waits until udevd is stopped. After the call we check against the process ID(s) of udev daemons we know about and if they are not stopped we kill them. ++++ mvapich2: - Compile with support for PSM (fate#317367). ++++ perftest: - Add fixes for the atomic tests from Mellanox (bnc#820688). ++++ timezone-java: - update to 2014j (bsc#904824): * Turks & Caicos' switch from US eastern time to UTC-4 year-round moved from 2014-11-02 at 02:00 to 2015-11-01 at 02:00. * This release also includes changes affecint past time stamps. - update to 2014i (bsc#902276): * Pacific/Fiji will observe DST from 2014-11-02 02:00 to 2015-01-18 03:00. * A new Zone Pacific/Bougainville, for the part of Papua New Guinea that plans to switch from UTC+10 to UTC+11 on 2014-12-28 at 02:00. * This release also includes changes affecting past time stamps, documentation and some minor bug fixes. - update to 2014h (bnc#898747): * zdump -V and -v now output gmtoff= values on all platforms, not merely on platforms defining TM_GMTOFF. * This release also includes changes affecting past time stamps, documentation and the build procedure. ------------------------------------------------------------------ ------------------ 2015-1-23 - Jan 23 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/cirrus: use drm_set_preferred_mode (bsc#909846). - drm: add drm_set_preferred_mode (bsc#909846). - commit 30a49b9 - rpm/kernel-binary.spec.in: Own the modules directory in the devel package (bnc#910322) - commit 140bb08 - audit: efficiency fix 2: request exclusive wait since all need same resource (bnc#908393). - audit: efficiency fix 1: only wake up if queue shorter than backlog limit (bnc#908393). - audit: make use of remaining sleep time from wait_for_auditd (bnc#908393). - audit: reset audit backlog wait time after error recovery (bnc#908393). - audit: fix endless wait in audit_log_start() (bnc#908393). - audit: wait_for_auditd() should use TASK_UNINTERRUPTIBLE (bnc#908393). - audit: refactor hold queue flush (bnc#908393). - kernel/audit.c: avoid negative sleep durations (bnc#908393). - commit 4526f80 - Revert "libiscsi: Added new boot entries in the session sysfs" This reverts commit 9125c8ebf08ec8d407eab0a9fd3838fb26606964, which violated kABI. - commit f91a2ee ++++ iproute2: - upgrade to version 3.0.0 also fixes bnc#899062 and bnc#874536 ------------------------------------------------------------------ ------------------ 2015-1-22 - Jan 22 2015 ------------------- ------------------------------------------------------------------ ++++ glibc: - fork-io-user-lock.patch: Don't touch user-controlled stdio locks in forked child (bsc#864081, BZ #12847) - futex-wait-requeue-pi.patch: Unlock mutex before going back to waiting for PI mutexes (bsc#891843, BZ #14417) - iconv-ibm-sentinel-check.patch: Fix crashes on invalid input in IBM gconv modules (CVE-2014-6040, CVE-2012-6656, bsc#894553, bsc#894556, BZ [#17325], BZ #14134) - cpuid-leaf4-cache.patch: Implement x86 cpuid handling of leaf4 for cache information (bsc#903288, BZ #12587) - make-request-loop.patch: Fix infinite loop in check_pf (bsc#909053, BZ [#12926]) ++++ kernel-docs: - libiscsi: Added new boot entries in the session sysfs (FATE#316723 bsc#914355) - commit 9125c8e - drm/cirrus: Fix cirrus drm driver for fbdev + qemu (bsc#909846,bnc#856760). - commit 10f5efb - Fix POWER8 support patch set: - powerpc/cputable: Fix oprofile_cpu_type on power8 (bsc#912129, FATE#317619). - powerpc/power8: Fix oprofile and perf (bsc#912129, FATE#317619). - Refresh patches.arch/powerpc-Add-POWER8-setup-code. - Refresh patches.arch/powerpc-Add-support-for-context-switching-the-TAR-register. - Refresh patches.arch/powerpc-Fix-context-switch-DSCR-on-POWER8. - Refresh patches.arch/powerpc-Move-initial-mfspr-LPCR-out-of-__init_LPCR. - Refresh patches.arch/powerpc-POWER8-cputable-entry. - Refresh patches.arch/powerpc-Replace-CPU_FTR_BCTAR-with-CPU_FTR_ARCH_207S. - Refresh patches.arch/powerpc-cputable-Advertise-support-for-ISEL-HTM-DSCR-TAR-on-POWER8. - Refresh patches.arch/powerpc-make-POWER7-setup-code-name-generic. - Refresh patches.arch/powerpc-perf-Add-basic-assembly-code-to-read-BHRB-entries-on-POWER8. - Refresh patches.arch/ppc-ppr-02-enable-save-restore. - Refresh patches.arch/ppc-ppr-04-thread_struct-add. - Refresh patches.arch/ppc-ppr-05-save-restore-macros. - Refresh patches.suse/powerpc-p8-facility-interrupt. - commit d6b0c96 - timekeeping: Avoid possible deadlock from clock_was_set_delayed (bsc#771619). - commit 21296ff - Refresh patches.arch/powerpc-317607-fix_sparse_error.patch. A missing context line at the end caused patch to fail when invoking sequence-patch.sh --fast: patch: **** malformed patch at line 3069787: Subject: [SCSI] ipr: possible irq lock inversion dependency detected with GNU patch 2.7.1 - commit 2ddc695 - qlcnic: Fix number of arguments in destroy tx context command (bsc#909350 FATE#317546). - qlcnic: Fix programming number of arguments in a command (bsc#909350 FATE#317546). - qlcnic: Fix ordering of stats in stats buffer (bsc#909350 FATE#317546). - qlcnic: Remove __QLCNIC_DEV_UP bit check to read TX queues statistics (bsc#909350 FATE#317546). - qlcnic: Fix memory corruption while reading stats using ethtool (bsc#909350 FATE#317546). - qlcnic: Use qlcnic_83xx_flash_read32() API instead of lockless version of the API (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.62 (bsc#909350 FATE#317546). - qlcnic: Add support to run firmware POST (bsc#909350 FATE#317546). - qlcnic: Use usleep_range() instead of msleep() for sleep less than 20ms (bsc#909350 FATE#317546). - qlcnic: Add support for 0x8830 device ID (bsc#909350 FATE#317546). - qlcnic: Update Link speed and port type info for 83xx adapter (bsc#909350 FATE#317546). - treewide: Fix typo in printk (bsc#909350 FATE#317546). - qlcnic: Fix endianess issue in firmware load from file operation (bsc#909350 FATE#317546). - qlcnic: Fix endianess issue in FW dump template header (bsc#909350 FATE#317546). - qlcnic: Fix flash access interface to application (bsc#909350 FATE#317546). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909350 FATE#317546). - net: ethernet: qlogic: qlcnic: Remove duplicate object file from Makefile (bsc#909350 FATE#317546). - qlcnic: Initialize dcbnl_ops before register_netdev (bsc#909350 FATE#317546). - qlcnic: Set driver version before registering netdev (bsc#909350 FATE#317546). - qlcnic: Fix update of ethtool stats (bsc#909350 FATE#317546). - Update setapp/getapp prototypes in dcbnl_rtnl_ops to return int instead of u8 (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.61 (bsc#909350 FATE#317546). - qlcnic: Enhance Tx timeout debug data collection (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.60 (bsc#909350 FATE#317546). - qlcnic: Optimize ring count validations (bsc#909350 FATE#317546). - qlcnic: Pre-allocate DMA buffer used for minidump collection (bsc#909350 FATE#317546). - qlcnic: remove duplicate QLC_83XX_GET_LSO_CAPABILITY define (bsc#909350 FATE#317546). - qlcnic: Initialize mailbox cmd structure to zero (bsc#909350 FATE#317546). - qlcnic: info leak in qlcnic_dcb_peer_app_info() (bsc#909350 FATE#317546). - qlogic: Use time_before() (bsc#909350 FATE#317546). - net: get rid of SET_ETHTOOL_OPS (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.59 (bsc#909350 FATE#317546). - qlcnic: Collect firmware dump using DMA on 82xx adapters (bsc#909350 FATE#317546). - qlcnic: Add mac learning support to SR-IOV VF (bsc#909350 FATE#317546). - qlcnic: Add support to process commands in atomic context (bsc#909350 FATE#317546). - qlcnic: Allow SR-IOV VF probe in hypervisor (bsc#909350 FATE#317546). - qlcnic: Set real_num_{tx|rx}_queues properly (bsc#909350 FATE#317546). - qlcnic: Fix panic while dumping TX queues on TX timeout (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.58 (bsc#909350 FATE#317546). - qlcnic: Limit vNIC support in legacy interrupt mode (bsc#909350 FATE#317546). - qlcnic: Add driver logs in error path (bsc#909350 FATE#317546). - qlcnic: Allow setting TX interrupt coalescing parameters from VF (bsc#909350 FATE#317546). - qlcnic: Add hwmon interface to export board temperature (bsc#909350 FATE#317546). - qlcnic: Optimize MAC learning code (bsc#909350 FATE#317546). - qlcnic: Fix memory leak (bsc#909350 FATE#317546). - qlcnic: Reset firmware API lock at driver load time (bsc#909350 FATE#317546). - qlcnic: Fix MSI-X initialization code (bsc#909350 FATE#317546). - qlcnic: Do not disable SR-IOV when VFs are assigned to VMs (bsc#909350 FATE#317546). - qlcnic: Fix QLogic application/driver interface for virtual NIC configuration (bsc#909350 FATE#317546). - qlcnic: Fix PVID configuration on eSwitch port (bsc#909350 FATE#317546). - qlcnic: Fix max ring count calculation (bsc#909350 FATE#317546). - qlcnic: Fix to send INIT_NIC_FUNC as first mailbox (bsc#909350 FATE#317546). - qlcnic: Fix panic due to uninitialzed delayed_work struct in use (bsc#909350 FATE#317546). - net: qlcnic: include irq.h for irq definitions (bsc#909350 FATE#317546). - qlcnic: Remove casts of pointer to same type (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.57 (bsc#909350 FATE#317546). - qlcnic: dcb: a couple off by one bugs (bsc#909350 FATE#317546). - qlcnic: Fix number of rings when we fall back from msix to legacy (bsc#909350 FATE#317546). - qlcnic: Allow any VLAN to be configured from VF (bsc#909350 FATE#317546). - qlcnic: Fix usage of use_msi and use_msi_x module parameters (bsc#909350 FATE#317546). - qlcnic: Fix function return error check (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.56 (bsc#909350 FATE#317546). - qlcnic: Enhance semaphore lock access failure error message (bsc#909350 FATE#317546). - qlcnic: Allow vlan0 traffic (bsc#909350 FATE#317546). - qlcnic: Enhance driver message in failed state (bsc#909350 FATE#317546). - qlcnic: Updates to QLogic application/driver interface for virtual NIC configuration (bsc#909350 FATE#317546). - qlcnic: Re-factor firmware minidump template header handling (bsc#909350 FATE#317546). - qlcnic: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909350 FATE#317546). - qlcnic: Cleanup qlcnic_enable_msix() return values (bsc#909350 FATE#317546). - qlcnic: Fix loopback test failure (bsc#909350 FATE#317546). - qlcnic: Fix tx timeout (bsc#909350 FATE#317546). - qlcnic: Fix initialization of vlan list (bsc#909350 FATE#317546). - qlcnic: Correct off-by-one errors in bounds checks (bsc#909350 FATE#317546). - qlcnic: update version to 5.3.55 (bsc#909350 FATE#317546). - qlcnic: Enhance logic to calculate msix vectors (bsc#909350 FATE#317546). - qlcnic: Refactor interrupt coalescing code for all adapters (bsc#909350 FATE#317546). - qlcnic: Update poll controller code path (bsc#909350 FATE#317546). - qlcnic: Interrupt code cleanup (bsc#909350 FATE#317546). - qlcnic: Enhance Tx timeout debugging (bsc#909350 FATE#317546). - qlcnic: Use bool for rx_mac_learn (bsc#909350 FATE#317546). - qlcnic: fix sparse warnings (bsc#909350 FATE#317546). - qlcnic: remove unused code (bsc#909350 FATE#317546). - qlcnic: make local functions static (bsc#909350 FATE#317546). - net: qlcnic: fix warning for incorrect type in argument (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.54 (bsc#909350 FATE#317546). - qlcnic: Enable IPv6 LRO even if IP address is not programmed (bsc#909350 FATE#317546). - qlcnic: Fix SR-IOV cleanup code path (bsc#909350 FATE#317546). - qlcnic: Enable beaconing for 83xx/84xx Series adapter (bsc#909350 FATE#317546). - qlcnic: Do MAC learning for SRIOV PF (bsc#909350 FATE#317546). - qlcnic: Turn on promiscous mode for SRIOV PF (bsc#909350 FATE#317546). - qlcnic: Enable VF flood bit on PF (bsc#909350 FATE#317546). - qlcnic: Restrict VF from configuring any VLAN mode (bsc#909350 FATE#317546). - qlcnic: Convert vmalloc/memset to kcalloc (bsc#909350 FATE#317546). - qlcnic: Fix ethtool statistics length calculation (bsc#909350 FATE#317546). - qlcnic: Fix bug in TX statistics (bsc#909350 FATE#317546). - Merge branch 'master' of git://git.kernel.org/pub/scm/linux/kernel/git/davem/net (bsc#909350 FATE#317546). - qlcnic: Fix bug in Tx completion path (bsc#909350 FATE#317546). - qlcnic: Fix resource allocation for TX queues (bsc#909350 FATE#317546). - qlcnic: Fix loopback diagnostic test (bsc#909350 FATE#317546). - net: qlcnic: slight optimization of addr compare (bsc#909350 FATE#317546). - drivers: net: Mark functions as static in qlcnic_83xx_hw.c (bsc#909350 FATE#317546). - drivers: net: Mark functions as static in qlcnic_io.c (bsc#909350 FATE#317546). - qlcnic: update version to 5.3.53 (bsc#909350 FATE#317546). - qlcnic: Support for 16 virtual NIC functions (bsc#909350 FATE#317546). - qlcnic: VLAN enhancement for 84XX adapters (bsc#909350 FATE#317546). - qlcnic: Allow single Tx/Rx queue for all adapters (bsc#909350 FATE#317546). - qlcnic: Refactor initialize nic code path (bsc#909350 FATE#317546). - qlcnic: Issue INIT_NIC command only once (bsc#909350 FATE#317546). - qlcnic: Disable DCB operations from SR-IOV VFs (bsc#909350 FATE#317546). - qlcnic: Dump mailbox registers when mailbox command times out (bsc#909350 FATE#317546). - qlcnic: Fix mailbox processing during diagnostic test (bsc#909350 FATE#317546). - qlcnic: Allow firmware dump collection when auto firmware recovery is disabled (bsc#909350 FATE#317546). - qlcnic: Fix memory allocation (bsc#909350 FATE#317546). - qlcnic: Fix TSS/RSS validation for 83xx/84xx series adapter (bsc#909350 FATE#317546). - qlcnic: Fix TSS/RSS ring validation logic (bsc#909350 FATE#317546). - qlcnic: Fix diagnostic test for all adapters (bsc#909350 FATE#317546). - qlcnic: Fix usage of netif_tx_{wake, stop} api during link change (bsc#909350 FATE#317546). - qlcnic: update version to 5.3.52 (bsc#909350 FATE#317546). - qlcnic: Enable multiple Tx queue support for 83xx/84xx Series adapters (bsc#909350 FATE#317546). - qlcnic: refactor Tx/SDS ring calculation and validation in driver (bsc#909350 FATE#317546). - qlcnic: Enhance ethtool Statistics for Multiple Tx queue (bsc#909350 FATE#317546). - qlcnic: Register netdev in FAILED state for 83xx/84xx (bsc#909350 FATE#317546). - qlcnic: Do not read QLCNIC_FW_CAPABILITY_MORE_CAPS bit for 83xx adapter (bsc#909350 FATE#317546). - qlcnic: Do not force adapter to perform LRO without destination IP check (bsc#909350 FATE#317546). - net: qlcnic: remove unnecessary pci_set_drvdata() (bsc#909350 FATE#317546). - qlcnic: Validate Tx queue only for 82xx adapters (bsc#909350 FATE#317546). - qlcnic: update version to 5.3.51 (bsc#909350 FATE#317546). - qlcnic: Skip unknown entry type while collecting firmware dump (bsc#909350 FATE#317546). - qlcnic: dcb code cleanup and refactoring (bsc#909350 FATE#317546). - qlcnic: Remove redundant eSwitch enable commands (bsc#909350 FATE#317546). - qlcnic: Update ethtool standard pause settings (bsc#909350 FATE#317546). - qlcnic: Firmware dump collection when auto recovery is disabled (bsc#909350 FATE#317546). - qlcnic: Enhance ethtool to display ring indices and interrupt mask (bsc#909350 FATE#317546). - qlcnic: Print informational messages only once during driver load (bsc#909350 FATE#317546). - treewide: Fix typo in printk (bsc#909350 FATE#317546). - qlcnic: add missing destroy_workqueue() on error path in qlcnic_probe() (bsc#909350 FATE#317546). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (bsc#909350 FATE#317546). - qlcnic: Fix SR-IOV configuration (bsc#909350 FATE#317546). - qlcnic: Fix register device in FAILED state for 82xx (bsc#909350 FATE#317546). - qlcnic: Fix VF reset recovery (bsc#909350 FATE#317546). - qlcnic: Fix warning reported by kbuild test robot (bsc#909350 FATE#317546). - qlcnic: use standard NAPI weights (bsc#909350 FATE#317546). - qlcnic: remove a stray semicolon (bsc#909350 FATE#317546). - qlcnic: Fix sparse warning (bsc#909350 FATE#317546). - drivers/net: Convert uses of compare_ether_addr to ether_addr_equal (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.50 (bsc#909350 FATE#317546). - qlcnic: Add support for per port eswitch configuration (bsc#909350 FATE#317546). - qlcnic: Restructuring of qlc_83xx_fw_info structure (bsc#909350 FATE#317546). - qlcnic: Add AER support for 83xx adapter (bsc#909350 FATE#317546). - qlcnic: Add AER callback handlers (bsc#909350 FATE#317546). - qlcnic: Store firmware dump state in CAMRAM register (bsc#909350 FATE#317546). - qlcnic: Use firmware recommended dump capture mask as default (bsc#909350 FATE#317546). - qlcnic: Remove inline keyword (bsc#909350 FATE#317546). - qlcnic: Enhance PVID handling for 84xx adapters (bsc#909350 FATE#317546). - drivers:net: Convert dma_alloc_coherent(...__GFP_ZERO) to dma_zalloc_coherent (bsc#909350 FATE#317546). - qlcnic: underflow in qlcnic_validate_max_tx_rings() (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.49 (bsc#909350 FATE#317546). - qlcnic: dcb: Add support for CEE Netlink interface (bsc#909350 FATE#317546). - qlcnic: dcb: Register DCB AEN handler (bsc#909350 FATE#317546). - qlcnic: dcb: Get DCB parameters from the adapter (bsc#909350 FATE#317546). - qlcnic: dcb: Query adapter DCB capabilities (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.48 (bsc#909350 FATE#317546). - qlcnic: Enable diagnostic test for multiple Tx queues (bsc#909350 FATE#317546). - qlcnic: Enable Tx queue changes using ethtool for 82xx Series adapter (bsc#909350 FATE#317546). - qlcnic: Multi Tx queue support for 82xx Series adapter (bsc#909350 FATE#317546). - treewide: Fix typo in printk (bsc#909350 FATE#317546). - qlcnic: Update version to 5.3.47 (bsc#909350 FATE#317546). - qlcnic: Add support for 84xx adapters to load firmware from file (bsc#909350 FATE#317546). - qlcnic: Loopback Inter Driver Communication AEN handler (bsc#909350 FATE#317546). - qlcnic: Add PVID support for 84xx adapters (bsc#909350 FATE#317546). - qlcnic: Enable support for 844X adapter (bsc#909350 FATE#317546). - qlcnic: Update version to 5.2.46 (bsc#909350 FATE#317546). - qlcnic: Dump mailbox command data when a command times out (bsc#909350 FATE#317546). - qlcnic: Fix driver initialization for 83xx adapters (bsc#909350 FATE#317546). - qlcnic: Flush mailbox command list when mailbox is not available (bsc#909350 FATE#317546). - qlcnic: Reinitialize mailbox data structures after firmware reset (bsc#909350 FATE#317546). - qlcnic: Fix diagnostic interrupt test for 83xx adapters (bsc#909350 FATE#317546). - qlcnic: Fix beacon state return status handling (bsc#909350 FATE#317546). - qlcnic: Fix set driver version command (bsc#909350 FATE#317546). - qlcnic: Fix for flash update failure on 83xx adapter (bsc#909350 FATE#317546). - qlcnic: Fix link speed and duplex display for 83xx adapter (bsc#909350 FATE#317546). - qlcnic: Fix link speed display for 82xx adapter (bsc#909350 FATE#317546). - qlcnic: Fix external loopback test (bsc#909350 FATE#317546). - qlcnic: Removed adapter series name from warning messages (bsc#909350 FATE#317546). - qlcnic: Free up memory in error path (bsc#909350 FATE#317546). - qlcnic: Fix ingress MAC learning (bsc#909350 FATE#317546). - qlcnic: Fix MAC address filter issue on 82xx adapter (bsc#909350 FATE#317546). - qlcnic: Update version to 5.2.45 (bsc#909350 FATE#317546). - qlcnic: Enable mailbox interface in poll mode when interrupts are not available (bsc#909350 FATE#317546). - qlcnic: Replace poll mode mailbox interface with interrupt based mailbox interface (bsc#909350 FATE#317546). - qlcnic: Interrupt based driver firmware mailbox mechanism (bsc#909350 FATE#317546). - qlcnic: Enhance diagnostic loopback error codes (bsc#909350 FATE#317546). - qlcnic: Fix diagnostic interrupt test for 83xx adapters (bsc#909350 FATE#317546). - qlcnic: Fix setting Guest VLAN (bsc#909350 FATE#317546). - qlcnic: Fix operation type and command type (bsc#909350 FATE#317546). - qlcnic: Fix initialization of work function (bsc#909350 FATE#317546). - qlcnic: Fix guest VLAN (bsc#909350 FATE#317546). - qlcnic: Fix releasing of Tx frag which was never mapped (bsc#909350 FATE#317546). - qlcnic: Fix dump template version mask (bsc#909350 FATE#317546). - qlcnic: Fix ethtool display for 83xx adapter (bsc#909350 FATE#317546). - qlcnic: Fix panic while setting VF's MAC address (bsc#909350 FATE#317546). - qlcnic: Fix multicast packet handling for PF and VF (bsc#909350 FATE#317546). - qlcnic: Fix NULL pointer dereference in VF probe path (bsc#909350 FATE#317546). - qlcnic: Set __QLCNIC_DEV_UP in adapter state before enabling interrupts (bsc#909350 FATE#317546). - qlcnic: Fix invalid register offset calculation (bsc#909350 FATE#317546). - qlcnic: Do not sleep while holding spinlock (bsc#909350 FATE#317546). - qlcnic: Update version to 5.2.44 (bsc#909350 FATE#317546). - qlcnic: Add support for 83xx suspend and resume (bsc#909350 FATE#317546). - qlcnic: Add support for 'set driver version' in 83XX (bsc#909350 FATE#317546). - qlcnic: Cleanup of structure qlcnic_hardware_context (bsc#909350 FATE#317546). - qlcnic: Add support for PEX DMA method to read memory section of adapter dump (bsc#909350 FATE#317546). - qlcnic: Minimize sleep duration within loopback diagnostic test (bsc#909350 FATE#317546). - qlcnic: Secondary unicast MAC address support (bsc#909350 FATE#317546). - qlcnic: Handle qlcnic_alloc_mbx_args() failure (bsc#909350 FATE#317546). - net: ethernet: replace strict_strtoul() with kstrtoul() (bsc#909350 FATE#317546). - qlcnic: remove redundant D0 power state set (bsc#909350 FATE#317546). - treewide: Fix typo in printk (bsc#909350 FATE#317546). - qlcnic: Update version to 5.2.43 (bsc#909350 FATE#317546). - qlcnic: Enhance virtual NIC logging (bsc#909350 FATE#317546). - qlcnic: qlcnic_get_board_name() function cleanup (bsc#909350 FATE#317546). - qlcnic: Implement GET_LED_STATUS command for 82xx adapter (bsc#909350 FATE#317546). - qlcnic: modify reset recovery path in diag mode (bsc#909350 FATE#317546). - qlcnic: diagnostics routine changes (bsc#909350 FATE#317546). - qlcnic: Convert nested if-else to switch-case (bsc#909350 FATE#317546). - qlcnic: Initialize trans_work and idc_aen_work at VF probe (bsc#909350 FATE#317546). - qlcnic: Remove qlcnic_config_npars module parameter (bsc#909350 FATE#317546). - qlcnic: Update IRQ name for 8200 and 8300 Series adapter (bsc#909350 FATE#317546). - qlcnic: Disable INT-x interrupt for 83xx on driver unload (bsc#909350 FATE#317546). - qlcnic: Support spoof check config (bsc#909350 FATE#317546). - qlcnic: Fix updating netdev->features (bsc#909350 FATE#317546). - qlcnic: remove netdev->trans_start updates within the driver (bsc#909350 FATE#317546). - qlcnic: Return proper error codes from probe failure paths (bsc#909350 FATE#317546). - qlcnic: Fix validation of link event command (bsc#909350 FATE#317546). - qlcnic: Fix mailbox response handling (bsc#909350 FATE#317546). - qlcnic: Fix bug in diagnostics test reset recovery path (bsc#909350 FATE#317546). - qlcnic: Fix reset recovery after transmit timeout (bsc#909350 FATE#317546). - qlcnic: Fix ethtool supported port status for 83xx (bsc#909350 FATE#317546). - qlcnic: Fix missing bracket in module parameter (bsc#909350 FATE#317546). - qlcnic: Fix ethtool strings (bsc#909350 FATE#317546). - qlcnic: Fix setting MAC address (bsc#909350 FATE#317546). - qlcnic: Update version to 5.2.42 (bsc#909350 FATE#317546). - qlcnic: Add identifying string for 83xx adapter (bsc#909350 FATE#317546). - qlcnic: Rename the IRQ description (bsc#909350 FATE#317546). - qlcnic: Enable Interrupt Coalescing for 83xx adapter (bsc#909350 FATE#317546). - qlcnic: Add eSwitch statistics support (bsc#909350 FATE#317546). - qlcnic: Take EPORT out of reset sequence before disabling PAUSE (bsc#909350 FATE#317546). - qlcnic: Enhance channel configuration logs (bsc#909350 FATE#317546). - qlcnic: Update version to 5.2.41 (bsc#909350 FATE#317546). - qlcnic: Support polling for mailbox events (bsc#909350 FATE#317546). - qlcnic: Fix loopback test for SR-IOV PF (bsc#909350 FATE#317546). - qlcnic: Support VLAN id config (bsc#909350 FATE#317546). - qlcnic: Support MAC address, Tx rate config (bsc#909350 FATE#317546). - qlcnic: VF reset recovery implementation (bsc#909350 FATE#317546). - qlcnic: VF FLR implementation (bsc#909350 FATE#317546). - qlcnic: Change 82xx adapter VLAN id endian type (bsc#909350 FATE#317546). - qlcnic: Fix typo in logs (bsc#909350 FATE#317546). - qlcnic: fix TSO race condition (bsc#909350 FATE#317546). - qlcnic: Stop traffic before performing loopback test (bsc#909350 FATE#317546). - qlcnic: fix beaconing test for 82xx adapter (bsc#909350 FATE#317546). - qlcnic: Bump up the version to 5.2.40 (bsc#909350 FATE#317546). - qlcnic: Fix sparse warnings (bsc#909350 FATE#317546). - qlcnic: Fix NULL dereference in error path (bsc#909350 FATE#317546). - qlcnic: Fix potential NULL dereference (bsc#909350 FATE#317546). - qlcnic: Bump up the version to 5.2.39 (bsc#909350 FATE#317546). - qlcnic: Support atomic commands (bsc#909350 FATE#317546). - qlcnic: Support VF-PF communication channel commands (bsc#909350 FATE#317546). - qlcnic: VF-PF communication channel implementation (bsc#909350 FATE#317546). - qlcnic: Use shared interrupt vector for Tx and Rx (bsc#909350 FATE#317546). - qlcnic: SR-IOV VF probe (bsc#909350 FATE#317546). - qlcnic: Support SR-IOV enable and disable (bsc#909350 FATE#317546). - etherdevice: Add ether_addr_equal_unaligned (bsc#909350 FATE#317546). - commit 8373729 ++++ oprofile: - Fix build failures on ppc (32bit) [new: oprofile-change-configure-to-look-for-libpfm4-function-first-then-fallback-to-libpfm3.patch] [new: oprofile-doesn-t-build-for-32-bit-ppc.patch] [new: oprofile-use-libpfm-on-ppc64-only.patch] ------------------------------------------------------------------ ------------------ 2015-1-21 - Jan 21 2015 ------------------- ------------------------------------------------------------------ ++++ binutils: - Change binutils-fuzz-fix.diff to really fix bnc #903655. ++++ cross-ppc-binutils: - Change binutils-fuzz-fix.diff to really fix bnc #903655. ++++ cross-spu-binutils: - Change binutils-fuzz-fix.diff to really fix bnc #903655. ++++ ibutils: - Build for s390(x) (fate#318093) - Fix license specification - tag baselibs.conf as source ++++ infiniband-diags: - Enable s390(x) (fate#318093) ++++ kernel-docs: - Fix Module.supported handling for external modules (bnc#905304). - commit a0c6daf - powerpc: Add DSCR FSCR register bit definition (bsc#912129, FATE#317619). - powerpc: Add HWCAP2 aux entry (bsc#912129, FATE#317619). - powerpc: Add POWER8 architected mode to cputable (bsc#912129, FATE#317619). - powerpc: Add POWER8 setup code (bsc#912129, FATE#317619). - powerpc: Add new instructions for transactional memory (bsc#912129, FATE#317619). - powerpc: Add second POWER8 PVR entry (bsc#912129, FATE#317619). - powerpc: Add set_mode hcall (bsc#912129, FATE#317619). - powerpc: Add support for context switching the TAR register (bsc#912129, FATE#317619). - powerpc: Cleanup handling of the DSCR bit in the FSCR register (bsc#912129, FATE#317619). - powerpc: Context switch the new EBB SPRs (bsc#912129, FATE#317619). - powerpc: Emulate non privileged DSCR read and write (bsc#912129, FATE#317619). - powerpc: Export PIR data through sysfs (bsc#912129, FATE#317619). - powerpc: Fix context switch DSCR on POWER8 (bsc#912129, FATE#317619). - powerpc: Fix regression of per-CPU DSCR setting (bsc#912129, FATE#317619). - powerpc: Fix setting FSCR for HV=0 and on secondary CPUs (bsc#912129, FATE#317619). - powerpc: Move initial mfspr LPCR out of __init_LPCR (bsc#912129, FATE#317619). - powerpc: POWER8 cputable entry (bsc#912129, FATE#317619). - powerpc: Replace CPU_FTR_BCTAR with CPU_FTR_ARCH_207S (bsc#912129, FATE#317619). - powerpc: Set DSCR bit in FSCR setup (bsc#912129, FATE#317619). - powerpc: Setup relocation on exceptions for bare metal systems (bsc#912129, FATE#317619). - powerpc: Split __SYSFS_SPRSETUP macro (bsc#912129, FATE#317619). - powerpc: Turn on the EBB H/FSCR bits (bsc#912129, FATE#317619). - powerpc/cputable: Advertise DSCR support on P7/P7+ (bsc#912129, FATE#317619). - powerpc/cputable: Advertise support for ISEL/HTM/DSCR/TAR on POWER8 (bsc#912129, FATE#317619). - powerpc/cputable: Reserve bits in HWCAP2 for new features (bsc#912129, FATE#317619). - powerpc/kernel/sysfs: Cleanup set up macros for PMC/non-PMC SPRs (bsc#912129, FATE#317619). - powerpc: make POWER7 setup code name generic (bsc#912129, FATE#317619). - powerpc/perf: Add Power8 cache & TLB events (bsc#912129, FATE#317619). - powerpc/perf: Add basic assembly code to read BHRB entries on POWER8 (bsc#912129, FATE#317619). - powerpc/perf: Add new BHRB related generic functions, data and flags (bsc#912129, FATE#317619). - powerpc/perf: Add new BHRB related instructions for POWER8 (bsc#912129, FATE#317619). - powerpc/perf: BHRB filter configuration should follow the task (bsc#912129, FATE#317619). - powerpc/perf: Define BHRB generic functions, data and flags for POWER8 (bsc#912129, FATE#317619). - powerpc/perf: Enable branch stack sampling framework (bsc#912129, FATE#317619). - powerpc/perf: Fix setting of "to" addresses for BHRB (bsc#912129, FATE#317619). - powerpc/perf: Ignore separate BHRB privilege state filter request (bsc#912129, FATE#317619). - powerpc/perf: Move BHRB code into CONFIG_PPC64 region (bsc#912129, FATE#317619). - powerpc/pmu: Fix order of interpreting BHRB target entries (bsc#912129, FATE#317619). - powerpc/power8: Fix secondary CPUs hanging on boot for HV=0 (bsc#912129, FATE#317619). - powerpc/pseries: Update ibm,architecture.vec for PAPR 2.7/POWER8 (bsc#912129, FATE#317619). - powerpc, pseries: Emulate H_SET_DABR/XDABR as H_SET_MODE on POWER8 (bsc#912129, FATE#317619). - powerpc: Handle facility unavailable exceptions at 0xf60 (bsc#912129, FATE#317619). - Refresh patches.arch/powerpc-317607-fix_sparse_error.patch. fixes sequence-patch --fast. - Delete patches.arch/ppc-add-POWER8-cputable-entries and patches.fixes/powerpc-add-power8e-cputable-entry. Both now replaced with their complete upstream commit. - commit 275fd0f - hyperv: Add IPv6 into the hash computation for vRSS (fate#317533). - commit 44b86db - flow_dissector: Use IPv6 flow label in flow_dissector (fate#317533). - ipv6: add ip6_flowlabel helper (fate#317533). - flow_dissector: add support for IPPROTO_IPV6 (fate#317533). - ipv6: add ipv6_addr_hash() helper (fate#317533). - ipv6: optimize ipv6 addresses compares (fate#317533). - commit f59d34b - Reorder patches.suse/ip6_tunnel-add-optional-fwmark-inherit.patch in series.conf - commit 3e9122a - perf/x86/intel: Add model number for Avoton Silvermont (FATE#317406). - perf/x86: Add Silvermont (22nm Atom) support (FATE#317406). - perf/x86: use INTEL_UEVENT_EXTRA_REG to define MSR_OFFCORE_RSP_X (FATE#317406). - perf/x86/intel/lbr: Fix LBR filter (FATE#317409). - perf/x86/intel/lbr: Demand proper privileges for PERF_SAMPLE_BRANCH_KERNEL (FATE#317409). - commit 2f17998 ++++ libibcm: - Enable build for s390(x) (fate#318093) - Fix license specification. - Package COPYING. - Tag baselibs.conf as source ++++ samba: - Realign the winbind request structure following require_membership_of field expansion; (bnc#913001). ++++ libmlx4-rdmav2: - License is BSD-2-Clause or GPL-2.0. ++++ librdmacm: - Enable build for s390(x) (fate#318093) - Fix license specification. - Package COPYING - Tag buildlibs.conf as source. ++++ libsdp: - Enable build for s390(x) (fate#318093) - Fix license specification. - Package COPYING - Tag buildlibs.conf as source. ++++ mpitests: - Enable build for s390(x) (fate#318093) - Fix license specification. - Package all license documents - Tag buildlibs.conf as source. ++++ mpitests-mvapich: - Enable build for s390(x) (fate#318093) - Fix license specification. - Package all license documents - Tag buildlibs.conf as source. ++++ mpitests-mvapich2: - Enable build for s390(x) (fate#318093) - Fix license specification. - Package all license documents - Tag buildlibs.conf as source. ++++ mvapich2: - Enable build for s390(x) (fate#318093) - Fix license specification. - Package all license documentation. ++++ opensm: - Build for s390(x) (fate#318093) - Fix license specification - Package COPYING - tag baselibs.conf as source ++++ rds-tools: - Build for s390(x) (fate#318093) - Fix license specification ------------------------------------------------------------------ ------------------ 2015-1-20 - Jan 20 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Fix zero freq if frequency is requested too quickly in a row (bnc#908572). - commit 8487a0b - Fix zero freq if frequency is requested too quickly in a row (bnc#908572). - commit d0be41e - xfs: re-enable non-blocking behaviour in xfs_map_blocks (bnc#900279). - commit 35eb852 - xfs: recheck buffer pinned status after push trylock failure (bnc#907338). - xfs: remove log force from xfs_buf_trylock() (bnc#907338). - commit 83ec907 - config: enable CONFIG_QLCNIC_SRIOV and CONFIG_QLCNIC_HWMON For the updated qlcnic (bsc#909350, FATE#317546) - commit 9a603f8 - x86-64/MCE: flip CPU and bank numbers in log message. - scsifront: avoid acquiring same lock twice if ring is full. - patches.xen/xen-privcmd-hcall-preemption: Fix EFLAGS.IF access. - x86-64, espfix: Don't leak bits 31:16 of %esp returning to 16-bitstack (bsc#907818,CVE-2014-9090). - x86, espfix: Make it possible to disable 16-bit support (bsc#907818,CVE-2014-9090). - x86_64/entry/xen: Do not invoke espfix64 on Xen (bsc#907818,CVE-2014-9090). - x86_64, traps: Fix the espfix64 #DF fixup and rewrite it in C (bsc#907818,CVE-2014-9090). - x86_64, traps: Rework bad_iret (bsc#909077,CVE-2014-8133). - x86_64, traps: Stop using IST for #SS (bsc#907818, CVE-2014-9090, CVE-2014-9322). - Refresh other Xen patches. - commit 14991f8 ++++ libibverbs: - License is BSD-2-Clause or GPL-2.0+ ++++ libmspack: - Fix possible infinite loop caused DoS (bnc912214, CVE-2014-9556, libmspack-qtmd_decompress-loop.patch). ++++ spice: - Remove build dependency to spice-protocol ++++ oprofile: - Add oprofile support for Broadwell (and Silvermont) microarchitectures (fate#317402) [new: oprofile-add-some-missing-haswell-model-numbers.patch] [new: oprofile-add-support-for-intel-silvermont-processor.patch] [new: oprofile-update-the-silvermont-event-files.patch] [new: oprofile-add-support-for-broadwell-microarchitecture.patch] [new: oprofile-fix-some-problems-in-the-broadwell-events.patch] [new: oprofile-fix-default-numerical-unit-mask-when-using-numeric-and-modify-error-messages.patch] [new: oprofile-improve-error-message-for-non-unique-unit-mask.patch] ------------------------------------------------------------------ ------------------ 2015-1-19 - Jan 19 2015 ------------------- ------------------------------------------------------------------ ++++ dapl: - Licence is CPL-1.0 or BSD-3-Clause or GPL-2.0. - Package all documents concerning the licenses. ++++ glibc: - gethostbyname-digits-dots.patch: Fix parsing of numeric hosts in gethostbyname_r (CVE-2015-0235, bsc#913646, BZ #15014) ++++ kernel-docs: - x86_64, vdso: Fix the vdso address randomization algorithm (bsc#912705, CVE-2014-9585). - commit c897808 - Refresh patches.fixes/deal-with-deadlock-in-d_walk.patch. - Refresh patches.fixes/move-d_rcu-from-overlapping-d_child-to-overlapping-d.patch. - Refresh patches.fixes/reiserfs-xattr-crash-fix. - Refresh patches.kabi/kabi-fix-for-move-d_rcu.patch. - Delete patches.suse/kdb-move-d_rcu-from-overlapping-d_child.patch. - commit b84a230 - Refresh patches.kabi/kabi-fix-for-move-d_rcu.patch. - commit 0a2de8e - Reshuffle patches to apply. - commit fec8617 - sd: medium access timeout counter fails to reset (bnc#894213). - commit 0c5ba0f - sd: medium access timeout counter fails to reset (bnc#894213). - commit e436849 ++++ libHBAAPI2: - Update to version 2.2.9 * Build fixes * Update mailing list address - Replace patch with upstream version Remove patch: add-ldl-during-link.patch Add patch: 0001-Add-ldl-during-link.patch - libhbaapi: Add new HBA_PORTSPEED definitions Add patch: 0002-libhbaapi-Add-new-HBA_PORTSPEED-definitions.patch ++++ samba: - Fix libsmbclient DFS referral handling. + Reuse connections derived from DFS referrals; (bso#10123); (fate#316512). + Set domain/workgroup based on authentication callback value; (bso#11059). ++++ lldpad: - Revert commit 'Move to libnl3' - Do not install test programs - Update for SLES11 SP4: * Update to version 0.9.46 * Update to latest upstream commit 48a5f38778b18d6659a672ccb4640f25c6720827 * Merge in changes from SLES11 SP3 * Update build scripts to SP4 ++++ perftest: - License is BSD-2-Clause or GPL-2.0 ++++ sg3_utils: - Update to sg3_utils version 1.40: * New utilities sg_write_verify, sg_ses_microcode, sg_sat_read_gplog, sg_rep_zones, sg_reset_wp, sg_compare_and_write * Update support for Xcopy/TPC, Conglomerate LUNs, and ZAC/ZBC * Add udev rules * Various bugfixes - Remove merged patches: remove: sg3_utils-check-if-hba-supports-issue-lip.patch remove: sg3_utils-Fixup-T10-Vendor-designator-display.patch remove: sg3_utils-Update-sg_xcopy-to-version-0.41.patch remove: sg3_utils-Update-rescan-scsi-bus.sh-to-version-1.57.patch remove: sg3_utils-sginfo-strip-trailing-spaces.patch remove: sg3_utils-sg_inq-suppress-warning-messages-for-export.patch remove: sg3_utils-sg_inq-backport-encode_whitespaces-from-upstream.patch remove: sg3_utils-sg_inq-Fix-overflow-in-encode_whitespaces.patch ++++ yast2-http-server: - check for manually created files in order to prevent data loss (bsc#860856) - 2.17.16 ++++ yast2-network: - fate#316140 - configure vlan during installation when vlan id is provided by user / linuxrc - 2.17.203 ------------------------------------------------------------------ ------------------ 2015-1-16 - Jan 16 2015 ------------------- ------------------------------------------------------------------ ++++ dapl: - Add dapl-add_s390x_platform_support.patch from IBM that adds support for the s390x platform (bnc#910676, fate#318095). - Modify the patch so that the changes are also used for s390. - Remove the ExcludeArch for s390 and s390x - Tag baselibs.conf as source. ++++ kernel-docs: - hyperv: Add handling of IP header with option field in netvsc_set_hash() (fate#317533). - commit 95b28b9 - hv_netvsc: include net/flow_keys.h (fate#317533). - commit 0006acc - deal with deadlock in d_walk() (bnc#903640 CVE-2014-8559). - commit de6de17 - move d_rcu from overlapping d_child to overlapping d_alias (bnc#903640 CVE-2014-8559). - kabi: fix for move of d_rcu (bnc#903640 CVE-2014-8559). - kdb: move d_rcu from overlapping d_child to overlapping d_alias (bnc#903640 CVE-2014-8559). - Refresh patches.fixes/reiserfs-xattr-crash-fix. - commit 8ba0cef - Refresh patches.drivers/lpfc-8.3.39-Fixed-driver-vector-mapping-to-CPU-xen-buildfix.patch: fix build - commit 0dfd22d - x86: lpfc: fix Xen build due to different struct cpuinfo_x86. - Refresh patches.drivers/lpfc-8.3.42-Fix-crash-on-driver-load-due-to-cpu.patch. - commit 3ea3414 - Reorder two patches in series.conf - commit 677831f - flow_keys: Record IP layer protocol in skb_flow_dissect() (fate#317533). - net: flow_dissector: small optimizations in IPv4 dissect (fate#317533). - net: flow_dissector: fail on evil iph->ihl (fate#317533). - flow_dissector: factor out the ports extraction in skb_flow_get_ports (fate#317533). - commit bedc1a8 - net: flow_dissector: fix thoff for IPPROTO_AH (fate#317533). - flow.h/flow_keys.h: Remove extern from function prototypes (fate#317533). - commit 9d6db8f - flow_dissector: clean up IPIP case (fate#317533). - flow_keys: include thoff into flow_keys for later usage (fate#317533). - commit 63370bf - flow_dissector: use a 64bit load/store (fate#317533). - net: introduce skb_flow_dissect() (fate#317533). - commit a992f06 - ip: introduce ip_is_fragment helper inline function (fate#317533). - commit 3b3bea1 - ipr: Increase msi-x interrupt vectors to 16 (fate#317607). - ipr: convert to generic DMA API (fate#317607). - ipr: Remove extended delay bit on GSCSI reads/writes ops (fate#317607). - [SCSI] ipr: Handle early EEH (fate#317607). - ipr: fix compile failure. - ipr: don't log error messages when applications issues illegal requests (fate#317607). - ipr: Fix sparse error in ipr driver (fate#317607). - [SCSI] ipr: Add new CCIN definition for Grand Canyon support (fate#317607). - ipr: increase dump size in ipr driver (fate#317607). - [SCSI] ipr: reorder error handling code to include iounmap (fate#317607). - ipr: possible irq lock inversion dependency detected (fate#317607). - ipr: wait for aborted command responses (fate#317607). - ipr: qc_fill_rtf() method should not store alternate status register (fate#317607). - ipr: IOA Status Code(IOASC) update (fate#317607). - [SCSI] ipr: Format HCAM overlay ID 0x21 (fate#317607). - ipr: Add sereral new CCIN definitions for new adapters support (fate#317607). - ipr: Add new CCIN definition for new hardware support (fate#317607). - powerpc/crypto: Remove users of virt_to_abs() and phys_to_abs() in nx crypto driver (fate#317629). - powerpc+of: Add of node/property notification chain for adds and removes (fate#317629). - Drivers: crypto: remove __dev* attributes. (fate#317629). - crypto: drivers - remove cra_list initialization (fate#317629). - drivers/crypto/nx: Fixes for multiple races and issues (fate#317629). - Mainline 95ead5d7ff824a01cb07921c9211a7e29437a929 (fate#317629). - powerpc/pseries: Add pseries update notifier for OFDT prop changes (fate#317629). - crypto: nx - fix typo in nx driver config option. - crypto: nx - fix physical addresses added to sg lists (fate#317629). - crypto: nx - fix limits to sg lists for SHA-2 (fate#317629). - crypto: nx - saves chaining value from co-processor (fate#317629). - crypto: nx - fix concurrency issue (fate#317629). - crypto: nx - fix nx-aes-gcm verification (fate#317629). - crypto: nx - add offset to nx_build_sg_lists() (fate#317629). - crypto: nx - fix limits to sg lists for AES-ECB (fate#317629). - crypto: nx - fix limits to sg lists for AES-CBC (fate#317629). - crypto: nx - fix limits to sg lists for AES-CTR (fate#317629). - crypto: nx - fix limits to sg lists for AES-GCM (fate#317629). - crypto: nx - fix limits to sg lists for AES-XCBC (fate#317629). - crypto: nx - fix limits to sg lists for AES-CCM (fate#317629). - crypto: nx - fix XCBC for zero length messages (fate#317629). - crypto: nx - fix GCM for zero length messages (fate#317629). - crypto: nx - fix SHA-2 for chunks bigger than block size (fate#317629). - powerpc: Enable pseries hardware RNG and crypto modules (fate#317629). - powerpc/crypto: rework Kconfig (fate#317629). - Update config files. - Delete patches.arch/ppc-nxcrypt-fix-init-race-alignmasks-and-GCM-bug. - Delete patches.arch/ppc-nxcrypt-sles11sp3-beta4-fixes2. - commit 2ff508f - lpfc: update lpfc version to driver version 10.4.8000.0 (bnc#908903,FATE#317536). - lpfc: fix for handling unmapped ndlp in target reset handler (bnc#908903,FATE#317536). - lpfc: fix low priority issues from fortify source code scan (bnc#908903,FATE#317536). - lpfc: fix high priority issues from fortify source code scan (bnc#908903,FATE#317536). - lpfc: fix crash from page fault caused by use after rport delete (bnc#908903,FATE#317536). - lpfc: fix locking issues with abort data paths (bnc#908903,FATE#317536). - lpfc: fix race between LOGO/PLOGI handling causing NULL pointer (bnc#908903,FATE#317536). - lpfc: fix IP Reset processing - wait for RDY before proceeding (bnc#908903,FATE#317536). - lpfc: fix quarantined XRI recovery qualifier state in link bounce (bnc#908903,FATE#317536). - lpfc: fix discovery timeout during nameserver login (bnc#908903,FATE#317536). - lpfc: do not feed jiffies as random seed from lpfc driver (bnc#908903,FATE#317536). - lpfc: mark function as static in lpfc/lpfc_bsg.c (bnc#908903,FATE#317536). - lpfc: mark functions as static in lpfc/lpfc_scsi.c (bnc#908903,FATE#317536). - lpfc: mark functions as static in lpfc/lpfc_init.c (bnc#908903,FATE#317536). - lpfc: mark functions as static in lpfc/lpfc_hbadisc.c (bnc#908903,FATE#317536). - lpfc: mark functions as static in lpfc/lpfc_sli.c (bnc#908903,FATE#317536). - lpfc: Remove superfluous call to pci_disable_msix() (bnc#908903,FATE#317536). - lpfc: Update lpfc version to driver version 10.2.8001.0 (bnc#908903,FATE#317536). - lpfc: Fix ExpressLane priority setup (bnc#908903,FATE#317536). - lpfc: Fix for initializing RRQ bitmap (bnc#908903,FATE#317536). - lpfc: Fix for cleaning up stale ring flag and sp_queue_event entries (bnc#908903,FATE#317536). - lpfc: Update lpfc version to driver version 10.2.8000.0 (bnc#908903,FATE#317536). - lpfc: Update Copyright on changed files from 8.3.45 patches (bnc#908903,FATE#317536). - lpfc: Update Copyright on changed files (bnc#908903,FATE#317536). - lpfc: Fixed locking for scsi task management commands (bnc#908903,FATE#317536). - lpfc: Convert runtime references to old xlane cfg param to fof cfg (bnc#908903,FATE#317536). - lpfc: Fix FW dump using sysfs (bnc#908903,FATE#317536). - lpfc: Fix SLI4 s abort loop to process all FCP rings and under (bnc#908903,FATE#317536). - lpfc: Fixed kernel panic in lpfc_abort_handler (bnc#908903,FATE#317536). - lpfc: Fix locking for postbufq when freeing (bnc#908903,FATE#317536). - lpfc: Fix locking for lpfc_hba_down_post (bnc#908903,FATE#317536). - lpfc: Fix dynamic transitions of FirstBurst from on to off (bnc#908903,FATE#317536). - lpfc: Add iotag memory barrier (bnc#908903,FATE#317536). - lpfc: use NULL instead of 0 for pointer (bnc#908903,FATE#317536). - lpfc: remove self-assignments (bnc#908903,FATE#317536). - lpfc 8.3.45: Update lpfc version to driver version 8.3.45 (bnc#908903,FATE#317536). - lpfc 8.3.45: Fixed crash during driver unload (bnc#908903,FATE#317536). - lpfc 8.3.45: Fixed driver error messages after firmware (bnc#908903,FATE#317536). - lpfc 8.3.45: Fixed missing initialization for task management (bnc#908903,FATE#317536). - lpfc 8.3.45: Fix sysfs buffer overrun in read of (bnc#908903,FATE#317536). - lpfc 8.3.45: Incorporate changes to use reason in (bnc#908903,FATE#317536). - lpfc 8.3.45: Incorporated support of a low-latency io path (bnc#908903,FATE#317536). - lpfc 8.3.45: Added dport mailbox pass through support (bnc#908903,FATE#317536). - lpfc 8.3.44: Update lpfc version to driver version 8.3.44 (bnc#908903,FATE#317536). - lpfc 8.3.44: Fixed unassigned variable in ELS timeout message (bnc#908903,FATE#317536). - lpfc 8.3.44: Fixed incorrect allocation of iDiags (bnc#908903,FATE#317536). - lpfc 8.3.44: Fix kernel panics from corrupted ndlp list (bnc#908903,FATE#317536). - lpfc 8.3.44: Fix Crash in lpfc_els_timeout_handler (bnc#908903,FATE#317536). - lpfc 8.3.44: Fixed stopped FCF discovery on failed FCF record (bnc#908903,FATE#317536). - lpfc 8.3.44: Fixed IO hang when in msi mode (bnc#908903,FATE#317536). - lpfc: Fix wrong assignment in lpfc_debugfs.c (bnc#908903,FATE#317536). - lpfc: Fix typo on NULL assignment (bnc#908903,FATE#317536). - lpfc 8.3.43: Update lpfc version to driver version 8.3.43 (bnc#908903,FATE#317536). - lpfc 8.3.43: Fixed not processing task management IOCB (bnc#908903,FATE#317536). - lpfc 8.3.43: Fixed spinlock hang (bnc#908903,FATE#317536). - lpfc 8.3.43: Fixed invalid Total_Data_Placed value received (bnc#908903,FATE#317536). - lpfc 8.3.43: Fixed invalid fcp_rsp length fir FCP_ICMND (bnc#908903,FATE#317536). - lpfc 8.3.43: Fixed invalid mailbox timeouts (bnc#908903,FATE#317536). - lpfc 8.3.43: Fixed spinlock inversion problem (bnc#908903,FATE#317536). - lpfc 8.3.43: Fix crash after xri limit is reached (bnc#908903,FATE#317536). - lpfc: remove unnecessary read of PCI_CAP_ID_EXP (bnc#908903,FATE#317536). - lpfc 8.3.42: Update lpfc version to driver version 8.3.42 (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed issue of task management commands having a (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed inconsistent spin lock usage (bnc#908903,FATE#317536). - lpfc 8.3.42: Fix driver's abort loop functionality to skip IOs (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed failure to allocate SCSI buffer on PPC64 (bnc#908903,FATE#317536). - lpfc 8.3.42: Fix WARN_ON when driver unloads (bnc#908903,FATE#317536). - lpfc 8.3.42: Avoided making pci bar ioremap call during (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed driver iocbq structure's iocb_flag field (bnc#908903,FATE#317536). - lpfc 8.3.42: Fix crash on driver load due to cpu affinity (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed logging format of setting driver sysfs (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed back to back RSCNs discovery failure (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed race condition between BSG I/O dispatch and (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed function mode field defined too small for (bnc#908903,FATE#317536). - lpfc 8.3.42: Back out data count,(residual fcfi_parm) fix for (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed mailbox memory leak (bnc#908903,FATE#317536). - lpfc 8.3.42: Fix random errors using first burst (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed not able to log informational messages at (bnc#908903,FATE#317536). - lpfc 8.3.42: Fixed using unsafe linked list macro for walking (bnc#908903,FATE#317536). - lpfc: Removed obsolete fcp_eq_count and fcp_wq_count driver (bnc#908903,FATE#317536). - lpfc 8.3.41: Update lpfc version to driver version 8.3.41 (bnc#908903,FATE#317536). - lpfc 8.3.41: Update copyrights for 8.3.41 modifications (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed the format of some log message fields (bnc#908903,FATE#317536). - lpfc 8.3.41: Add first burst support to driver (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed not able to perform PCI function reset when (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed failure in setting SLI3 board mode (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed SLI3 failing FCP write on check-condition (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed support for 128 byte WQEs (bnc#908903,FATE#317536). - lpfc 8.3.41: Ensure driver properly zeros unused fields in (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed max value of lpfc_lun_queue_depth (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed Receive Queue varied frame size handling (bnc#908903,FATE#317536). - lpfc 8.3.41: Fix mailbox byteswap issue on PPC (bnc#908903,FATE#317536). - lpfc 8.3.41: Fixed freeing of iocb when internal loopback (bnc#908903,FATE#317536). - lpfc 8.3.40: Update lpfc version to driver version 8.3.40 (bnc#908903,FATE#317536). - lpfc 8.3.40: Update Copyrights to 2013 for 8.3.38, 8.3.39, and (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed a race condition between SLI host and port (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed issue mailbox wait routine failed to issue (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed system panic due to unsafe walking and (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed FCoE connection list vlan identifier and (bnc#908903,FATE#317536). - lpfc 8.3.40: Clarified the behavior of the lpfc_max_luns (bnc#908903,FATE#317536). - lpfc 8.3.40: Fix to allow OCM to report FEC status (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed a missing return code in a logging message (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed some logging message fields (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed list corruption when lpfc_drain_tx runs (bnc#908903,FATE#317536). - lpfc 8.3.40: Fix starting reference tag when calculating BG (bnc#908903,FATE#317536). - lpfc 8.3.40: Fix inconsistent list removal causes crash (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed system panic during handling unsolicited (bnc#908903,FATE#317536). - lpfc 8.3.40: Fix BlockGuard error checking (bnc#908903,FATE#317536). - lpfc 8.3.40: Fixed crash during FCoE failover testing (bnc#908903,FATE#317536). - lpfc 8.3.40: Fix lpfc_used_cpu to be more dynamic (bnc#908903,FATE#317536). - lpfc 8.3.39: Update lpfc version for 8.3.39 driver release (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed driver handling of CLEAR_LA with NPIV (bnc#908903,FATE#317536). - lpfc 8.3.39: Reduced tmo value set to FLOGI WQE for quick (bnc#908903,FATE#317536). - lpfc 8.3.39: Add log message when completes with clean address (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed driver vector mapping to CPU affinity (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed iocb flags not being reset for scsi (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed system panic during EEH recovery due to (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed not returning FAILED status when SCSI (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed bad book keeping in posting els sgls to (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed deadlock between hbalock and nlp_lock use (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed BlockGuard to take advantage of (bnc#908903,FATE#317536). - lpfc 8.3.39: Reduced spinlock contention on SCSI buffer list (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed crash when processing bsg's sg list with (bnc#908903,FATE#317536). - lpfc 8.3.39: Remove lpfc_fcp_look_ahead module parameter (bnc#908903,FATE#317536). - lpfc 8.3.39: Fix driver issues with SCSI Host reset (bnc#908903,FATE#317536). - lpfc 8.3.39: Doorbell formation information logged in (bnc#908903,FATE#317536). - lpfc 8.3.39: Fix driver issues with large s/g lists for (bnc#908903,FATE#317536). - lpfc 8.3.39: Fix driver issues with large lpfc_sg_seg_cnt (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed pt2pt and loop discovery problems on (bnc#908903,FATE#317536). - lpfc 8.3.39: Remove driver dependency on HZ (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed BlockGuard error reporting (bnc#908903,FATE#317536). - lpfc 8.3.39: Fixed VPI allocation issues after firmware dump (bnc#908903,FATE#317536). - lpfc: fix races for miscdevice open vs. rmmod (bnc#908903,FATE#317536). - lpfc: fix potential NULL pointer dereference in (bnc#908903,FATE#317536). - lpfc 8.3.38: Update lpfc version for 8.3.38 driver release (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed potential mis-interpretation of (bnc#908903,FATE#317536). - lpfc 8.3.38: Fix default value for lpfc_enable_rrq (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed circular locking dependency and (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed PT2PT bring up problem for FC SLI4 (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed OXID reuse issue (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed async FCF modified event to in-use FCF (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed deadlock condition in FCF round robin (bnc#908903,FATE#317536). - scsilpfc 8.3.38: Fixed bsg timeout handling issues that would (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed degraded performance after cable pulls (bnc#908903,FATE#317536). - lpfc 8.3.38: Fixed NMI watch dog panic's when resetting the (bnc#908903,FATE#317536). - commit cba4e57 - Remove non-standard patches in preparation for the lpfc update (bnc#908903,FATE#317536) - Delete patches.drivers/Update-lpfc-version-for-8.3.7.7.1p-driver-release.patch. - Delete patches.drivers/lpfc-8.3.7.10.1p-driver-panic-during-eeh.patch. - Delete patches.drivers/lpfc-8.3.7.10.2p-Fix-driver-issues-with-SCSI-Host-reset.patch. - Delete patches.drivers/lpfc-8.3.7.10.2p-Fixed-async-FCF-modified-event-to-in-use.patch. - Delete patches.drivers/lpfc-8.3.7.10.2p-Fixed-bad-book-keeping-in-posting-els-sgls-to-port.patch. - Delete patches.drivers/lpfc-8.3.7.10.2p-Fixed-crash-when-processing-bsg-s-sg-list-with-high-.patch. - Delete patches.drivers/lpfc-8.3.7.10.2p-Fixed-deadlock-between-hbalock-and-nlp_lock-use.patch. - Delete patches.drivers/lpfc-8.3.7.10.2p-Fixed-not-returning-FAILED-status-when-SCSI-invoking.patch. - Delete patches.drivers/lpfc-8.3.7.10.2p-Update-lpfc-version-for-8.3.7.10.3p-driver-release.patch. - Delete patches.drivers/lpfc-8.3.7.10.3p-Update-lpfc-version-for-8.3.7.10.5p-driver-release.patch. - Delete patches.drivers/lpfc-8.3.7.10.3p-fix-unsafe-walking-and-delete-linked-list.patch. - Delete patches.drivers/lpfc-8.3.7.10.5p-Update-lpfc-version-for-8.3.7.10.6p-driver-release.patch. - Delete patches.drivers/lpfc-8.3.7.10.6p-Fix-Crash-in-lpfc_els_timeout_handler.patch. - Delete patches.drivers/lpfc-8.3.7.10.6p-Fix-kernel-panic-from-corrupted-ndlp-list.patch. - Delete patches.drivers/lpfc-8.3.7.10.6p-Update-lpfc-version-for-8.3.7.10.7p-driver-release.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fix-default-value-for-lpfc_enable_rrq.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-NMI-watch-dog-panic-s-when-resetting-the-hba.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-OXID-reuse-issue.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-PT2PT-bring-up-problem-for-FC-SLI4.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-async-FCF-modified-event-to-in-use-FCF-failure.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-bsg-timeout-handling-issues-that-would-result-.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-circular-locking-dependency-and-inconsistent-l.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-deadlock-condition-in-FCF-round-robin-handling.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-degraded-performance-after-cable-pulls.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Fixed-potential-mis-interpretation-of-READ_TOPOLOGY-.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-Update-lpfc-version-for-8.3.7.10.1p-driver-release.patch. - Delete patches.drivers/lpfc-8.3.7.7.1p-fix-potential-NULL-pointer-dereference-in-lpfc_sli4_.patch. - Delete patches.drivers/lpfc-Fixed-SLI3-failing-FCP-write-on-che.patch. - Delete patches.drivers/lpfc-Fixed-issue-of-task-management-commands-.patch. - Delete patches.drivers/lpfc-revert-Fixed-async-FCF-modified-event.patch. - commit e215634 - hpsa: silence gcc warning (bnc#913241,FATE#317338). - hpsa: Remove pre-production leftovers (bnc#913241,FATE#317338). - hpsa: remove spin lock around command allocation (bnc#913241,FATE#317338). - hpsa: always call pci_set_master after pci_enable_device (bnc#913241,FATE#317338). - hpsa: Convert SCSI LLD ->queuecommand() for host_lock less operation (bnc#913241,FATE#317338). - hpsa: do not be so noisy about check conditions (bnc#913241,FATE#317338). - hpsa: use atomics for commands_outstanding (bnc#913241,FATE#317338). - hpsa: get rid of type/attribute/direction bit field where possible (bnc#913241,FATE#317338). - hpsa: fix endianness issue with scatter gather elements (bnc#913241,FATE#317338). - hpsa: fix allocation sizes for CISS_REPORT_LUNs commands (bnc#913241,FATE#317338). - hpsa: remove 'action required' phrasing (bnc#913241,FATE#317338). - hpsa: correct off-by-one sizing of chained SG block (bnc#913241,FATE#317338). - hpsa: remove dev_warn prints from RAID-1ADM (bnc#913241,FATE#317338). - hpsa: Clean up warnings from sparse (bnc#913241,FATE#317338). - MAINTAINERS: change hpsa and cciss maintainer (bnc#913241,FATE#317338). - hpsa: add missing pci_set_master in kdump path (bnc#913241,FATE#317338). - hpsa: refine the pci enable/disable handling (bnc#913241,FATE#317338). - hpsa: Fallback to MSI rather than to INTx if MSI-X failed (bnc#913241,FATE#317338). - hpsa: fix bad -ENOMEM return value in hpsa_big_passthru_ioctl (bnc#913241,FATE#317338). - hpsa: remove online devices from offline device list (bnc#913241,FATE#317338). - hpsa: fix non-x86 builds (bnc#913241,FATE#317338). - hpsa: do not unconditionally copy sense data (bnc#913241,FATE#317338). - hpsa: fix 6-byte READ/WRITE with 0 length data xfer (bnc#913241,FATE#317338). - hpsa: make hpsa_init_one return -ENOMEM if allocation of (bnc#913241,FATE#317338). - hpsa: fix handling of hpsa_volume_offline return value (bnc#913241,FATE#317338). - hpsa: return -ENOMEM not -1 on kzalloc failure in hpsa_get_device_id (bnc#913241,FATE#317338). - hpsa: remove messages about volume status VPD inquiry page not (bnc#913241,FATE#317338). - hpsa: report check condition even if no sense data present for (bnc#913241,FATE#317338). - hpsa: remove bad unlikely annotation from device list updating code (bnc#913241,FATE#317338). - hpsa: kill annoying messages about SSD Smart Path retries (bnc#913241,FATE#317338). - hpsa: define extended_report_lun_entry data structure (bnc#913241,FATE#317338). - hpsa: Rearrange start_io to avoid one unlock/lock sequence in main io (bnc#913241,FATE#317338). - hpsa: avoid unnecessary readl on every command submission (bnc#913241,FATE#317338). - hpsa: use per-cpu variable for lockup_detected (bnc#913241,FATE#317338). - hpsa: set irq affinity hints to route MSI-X vectors across CPUs (bnc#913241,FATE#317338). - hpsa: allocate reply queues individually (bnc#913241,FATE#317338). - hpsa: choose number of reply queues more intelligently (bnc#913241,FATE#317338). - hpsa: use gcc aligned attribute instead of manually padding structs (bnc#913241,FATE#317338). - hpsa: change doorbell reset delay to ten seconds (bnc#913241,FATE#317338). - hpsa: remove unused fields from struct ctlr_info (bnc#913241,FATE#317338). - hpsa: fix bad comparison of signed with unsigned in (bnc#913241,FATE#317338). - hpsa: do not ignore failure of sense controller parameters command (bnc#913241,FATE#317338). - hpsa: fix memory leak in hpsa_hba_mode_enabled (bnc#913241,FATE#317338). - hpsa: add new Smart Array PCI IDs (May 2014) (bnc#913241,FATE#317338). - hpsa: Checking for a NULL return from a kzalloc call (bnc#913241,FATE#317338). - hpsa: fix NULL dereference in hpsa_put_ctlr_into_performant_mode() (bnc#913241,FATE#317338). - hpsa: update driver version to 3.4.4-1 (bnc#913241,FATE#317338). - hpsa: fix bad endif placement in RAID 5 mapper code (bnc#913241,FATE#317338). - hpsa: Do not zero fields of ioaccel2 command structure twice (bnc#913241,FATE#317338). - hpsa: Add hba mode to the hpsa driver (bnc#913241,FATE#317338). - hpsa: increase the probability of a reported success after a device (bnc#913241,FATE#317338). - hpsa: bring format-in-progress drives online when ready (bnc#913241,FATE#317338). - hpsa: remove unused kthread.h header (bnc#913241,FATE#317338). - hpsa: Add support for a few HP Storage controllers (bnc#913241,FATE#317338). - hpsa: add HP/3PAR vendor id to pci_ids.h (bnc#913241,FATE#317338). - hpsa add sysfs debug switch for raid map debugging messages (bnc#913241,FATE#317338). - hpsa: improve error messages for driver initiated commands (bnc#913241,FATE#317338). - hpsa: only do device rescan for certain events (bnc#913241,FATE#317338). - hpsa: when switching out of accel mode await only accel (bnc#913241,FATE#317338). - hpsa: add controller base data-at-rest encryption (bnc#913241,FATE#317338). - hpsa: update source file copyrights (bnc#913241,FATE#317338). - hpsa: retry certain ioaccel error cases on the RAID path (bnc#913241,FATE#317338). - hpsa: do not inquire for unsupported ioaccel status vpd page (bnc#913241,FATE#317338). - hpsa: allow VPD page zero to be queried (bnc#913241,FATE#317338). - hpsa: rescan devices on ioaccel2 error (bnc#913241,FATE#317338). - hpsa: allow user to disable accelerated i/o path (bnc#913241,FATE#317338). - hpsa: complete the ioaccel raidmap code (bnc#913241,FATE#317338). - hpsa: make device update copy the raid map also (bnc#913241,FATE#317338). - hpsa: add task management for ioaccel mode 2 (bnc#913241,FATE#317338). - hpsa: teach hpsa_device_reset to do either target or lun reset (bnc#913241,FATE#317338). - hpsa: get ioaccel mode 2 i/o working (bnc#913241,FATE#317338). - hpsa: initialize controller to perform io accelerator mode 2 (bnc#913241,FATE#317338). - hpsa: get physical device handles for io accel mode 2 as well (bnc#913241,FATE#317338). - hpsa: do ioaccel mode 2 resource allocations (bnc#913241,FATE#317338). - hpsa: Acknowledge controller events in ioaccell mode 2 as well (bnc#913241,FATE#317338). - hpsa: add ioaccel mode 2 structure definitions (bnc#913241,FATE#317338). - hpsa: complain if physical or logical aborts are not supported (bnc#913241,FATE#317338). - hpsa: add hp_ssd_smart_path_enabled sysfs attribute (bnc#913241,FATE#317338). - hpsa: do not rescan controllers known to be locked up (bnc#913241,FATE#317338). - hpsa: poll controller to detect device change event (bnc#913241,FATE#317338). - hpsa: update raid offload status on device rescan (bnc#913241,FATE#317338). - hpsa: add ioaccell mode 1 RAID offload support (bnc#913241,FATE#317338). - hpsa: fix task management for mode-1 ioaccell path (bnc#913241,FATE#317338). - hpsa: only allow REQ_TYPE_FS to use fast path (bnc#913241,FATE#317338). - hpsa: add support for 'fastpath' i/o (bnc#913241,FATE#317338). - hpsa: mark last scatter gather element as the last (bnc#913241,FATE#317338). - hpsa: use extended report luns command for HP SSD SmartPath (bnc#913241,FATE#317338). - hpsa: fixup MSI-X registration (bnc#913241,FATE#317338). - hpsa: allow SCSI mid layer to handle unit attention (bnc#913241,FATE#317338). - hpsa: do not require board "not ready" status after hard reset (bnc#913241,FATE#317338). - hpsa: enable unit attention reporting (bnc#913241,FATE#317338). - hpsa: rename scsi prefetch field (bnc#913241,FATE#317338). - hpsa: use workqueue instead of kernel thread for lockup (bnc#913241,FATE#317338). - hpsa: remove P822se PCI ID (bnc#913241,FATE#317338). - hpsa: prevent stalled i/o (bnc#913241,FATE#317338). - hpsa: cap CCISS_PASSTHRU at 20 concurrent commands (bnc#913241,FATE#317338). - hpsa: add MSA 2040 to list of external target devices (bnc#913241,FATE#317338). - hpsa: fix memory leak in CCISS_BIG_PASSTHRU ioctl (bnc#913241,FATE#317338). - hpsa: remove unneeded include of seq_file.h (bnc#913241,FATE#317338). - hpsa: add 5 second delay after doorbell reset (bnc#913241,FATE#317338). - hpsa: do not attempt to flush the cache on locked up (bnc#913241,FATE#317338). - hpsa: return 0 from driver probe function on success, not 1 (bnc#913241,FATE#317338). - hpsa: do not discard scsi status on aborted commands (bnc#913241,FATE#317338). - hpsa: remove unused Smart Array ID (bnc#913241,FATE#317338). - hpsa: bump driver version to reflect changes (bnc#913241,FATE#317338). - hpsa: housekeeping patch for device_id and product arrays (bnc#913241,FATE#317338). - hpsa: add HP Smart Array Gen8 names (bnc#913241,FATE#317338). - hpsa: add HP Smart Array Gen9 PCI ID's (bnc#913241,FATE#317338). - hpsa: fix warning with smp_processor_id() in preemptible (bnc#913241,FATE#317338). - hpsa: remove unneeded variable (bnc#913241,FATE#317338). - hpsa: fix a race in cmd_free/scsi_done (bnc#913241,FATE#317338). - hpsa: check for dma_mapping_error in hpsa_passthru ioctls (bnc#913241,FATE#317338). - commit 52f2a41 - cxgb4i : Don't block unload/cxgb4 unload when remote closes TCP connection (FATE#317554 bnc#909582). - cxgb4i: send abort_rpl correctly (FATE#317554 bnc#909582). - cxgb4i : Fix -Wmaybe-uninitialized warning (FATE#317554 bnc#909582). - cxgb4i: Remove duplicate call to dst_neigh_lookup() (FATE#317554 bnc#909582). - cxgb4i: avoid holding mutex in interrupt context (FATE#317554 bnc#909582). - libcxgbi: Add ipv6 api to driver (FATE#317554 bnc#909582). - net, scsi/csgb4i: convert skb->transport_header into skb_transport_header(skb) (FATE#317554 bnc#909582). - cxgb4i: Convert over to dst_neigh_lookup() (FATE#317554 bnc#909582). - cxgb4i: Handle dst_get_neighbour_noref() returning NULL (FATE#317554 bnc#909582). - Remove unneeded version.h includes from drivers/scsi/ (FATE#317554 bnc#909582). - commit b99517d - Add the new sky2 config to config files (bsc#909566 FATE#314306) - commit b241eae ++++ libibverbs: - Add libibverbs-add_s390x_platform_support.patch from IBM that adds support for s390(x) (bnc#910676, fate#318095). - Modify the patch so that the changes are also used for s390. ++++ libmlx4-rdmav2: - Add libmlx4-add_s390x_platform_support.patch from IBM that adds support for the s390x platform (bnc#910676, fate#318095). - Modify the patch so that the changes are also used for s390. - Remove the ExcludeArch for s390 and s390x - Tag baselibs.conf as source. - Fix license specification ++++ iproute2: - upgrade to upstream 3.0 version for SLE11 SP4 (fate#318135) - remove patches obsoleted by upgrade: iproute2-2.6.29-1-pdfdoc.diff iproute2-2.6.29-1-tc-flex-fixes.diff iproute2-2.6.29-1-rtt-rto_min-unit.diff iproute2-2.6.29-1-flushcheckuid.diff iproute2-2.6.29-1-DCCP-redefine iproute2-2.6.29-1-skbedit-memset.diff iproute2-2.6.29-1-iptunnel-fclose.diff iproute2-2.6.29-1-ss-pclose.diff iproute2-2.6.29-1-neightable.diff iproute2-2.6.29-1-typelabels.diff iproute2-2.6.29-1-add-initrwnd.diff iproute2-2.6.29-1-add-macvlan-options-for-bridge-mode.diff iproute2-2.6.29-1-add-oif-classification-support.patch iproute2-2.6.29-1-add-support-for-setting-and-showing-SR-IOV-virtual-funtion-link-params.diff Update-kernel-headers-to-2.6.34-final-version.patch iproute2-rework-SR-IOV-VF-support.patch iproute2-ip-link-add-man.patch iproute2-2.6.29-1-tc-cgroup.patch update-to-2.6.39-rc3-headers.patch iproute2-2.6.29-1-tc-add-mqprio-qdisc-support.patch iproute2-2.6.29-1-tc-improve-mqprio-inputs.patch iproute2-2.6.29-1-add-mode-support-for-macvtap.patch - replace the rest by updated and git based ones: iproute2-2.6.29-1-libdir-1.diff - -> adjust-installation-directories-for-SLE.patch iproute2-2.6.29-1-HZ.diff - -> use-sysconf-_SC_CLK_TCK-if-HZ-undefined.patch - -> add-explicit-typecast-to-avoid-gcc-warning.patch iproute2-2.6.29-1-warnings.diff - -> avoid-unused-return-value-gcc-warnings.patch iproute2-2.6.29-1-bnc719537.diff - -> fix-build-with-D_FORTIFY_SOURCE-2.patch iproute2-2.6.29-1-tc-mqprio-formatted-print.patch - -> iproute2-tc-mqprio-formatted-print-fix.patch update-to-3.3-rc7-kernel-headers.patch refreshed iproute2-2.6.29-1-filter-dump-requests.patch - -> iproute2-Add-netlink-attribute-to-filter-dump-reques.patch iproute2-2.6.29-1-add-mode-support-for-ipnetns.patch - -> iproute2-Don-t-propogate-mounts-out-of-ip.patch - -> iproute2-Normalize-return-codes-in-ip-netns.patch - -> iproute2-Improve-ip-netns-add-failure-error-message.patch - -> iproute2-Make-ip-netns-delete-more-likely-to-succeed.patch - -> iproute2-Add-ip-netns-pids-and-ip-netns-identify.patch - -> iproute2-improved-error-messages.patch - -> ipnetns-fix-build-on-older-systems.patch - -> ip-netns-add-ip-netns-8-man-page-from-v3.9.0.patch rtnl_wilddump_request-fix-alignment-issue-for-embedd.patch refreshed libnetlink-Use-ifinfomsg-instead-of-rtgenmsg-in-rtnl.patch refreshed iproute2-Add-new-command-to-ip-link-to-enable-disabl.patch refreshed ++++ metacity: - Fix fate-317254-1.patch, fate-317254-2.patch to patch the right file: metacity.schemas.in.in (bnc#894018) ++++ openmpi: - Update to 1.8.1 from SLE12 (fate#314834). - Run autogen.sh only on sle12 and above. ++++ perftest: - Add perftest-add_s390x_platform_support.patch from IBM that adds support for the s390x platform (bnc#910676, fate#318095). - Modify the patch so that the changes are also used for s390. - Remove the ExcludeArch for s390 and s390x - Fix paths in perftest-add_s390x_platform_support.patch. ++++ wireshark: - Wireshark 1.10.12 - The following vulnerabilities allowed Wireshark to be crashed by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. + The WCCP dissector could crash wnpa-sec-2015-01 CVE-2015-0559 CVE-2015-0560 [boo#912365] + The LPP dissector could crash. wnpa-sec-2015-02 CVE-2015-0561 [boo#912368] + The DEC DNA Routing Protocol dissector could crash. wnpa-sec-2015-03 CVE-2015-0562 [boo#912369] + The SMTP dissector could crash. wnpa-sec-2015-04 CVE-2015-0563 [boo#912370] + Wireshark could crash while decypting TLS/SSL sessions. wnpa-sec-2015-05 CVE-2015-0564 [boo#912372] - wireshark-1.10.12-fix-wmem-headers.patch - Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.10.12.html ++++ xen: - Enhancement to virsh/libvirtd "send-key" command The xen side small fix. xend-fix-sendkey.patch FATE#317240 ------------------------------------------------------------------ ------------------ 2015-1-15 - Jan 15 2015 ------------------- ------------------------------------------------------------------ ++++ iprutils: - version update to 2.4.1 due to SP4 Fate request (FATE#317606) (bsc#912428); see patches for changes - added patches: iprutils-close.diff iprutils.add_zeroed_devices_to_zeroed_device_list.patch iprutils.bug-896587_mig_fix_le.patch iprutils.change_firmware_format_case_insensitive.patch iprutils.find_firmware_file.patch iprutils.fix_format_iprconfig_GUI.patch iprutils.generate_ipr_dump_file.patch iprutils.read_intensive_disks_doesnt_show_up.patch iprutils.redundant_paths_in_GTO.patch iprutils.segmentation_fault_when_calling_concurrent_add_remove_GUI.patch iprutils.segmentation_fault_when_rebuild_array_with_physica_disks.patch iprutils.set_known_zeroed_after_format.patch - modified patches: iprconfig.usr-sbin.patch - removed patches: bug-806859_raid-status-after-restart.patch bug-814531_fix_sysfs_error.patch bug-814779_remove_disk_with_hotspare.patch ++++ kernel-docs: - udp: Add MIB counters for rcvbuferrors (bnc#909565). - commit 9184397 - cciss: Fallback to MSI rather than to INTx if MSI-X failed (bnc#913241,FATE#317338). - drivers/block/cciss.c:cciss_init_one(): use proper errnos (bnc#913241,FATE#317338). - cciss: return 0 from driver probe function on success, not 1 (bnc#913241,FATE#317338). - cciss: set max scatter gather entries to 32 on P600 (bnc#913241,FATE#317338). - commit 53e14ec - qla4xxx: v5.03.00.00.11.4-k0 (FATE#317545 bnc#909371). - qla4xxx: Disable INTx interrupt for ISP82XX (FATE#317545 bnc#909371). - qla4xxx: Export sysfs DDBs from DPC handler (FATE#317545 bnc#909371). - qla4xxx: Initialize hardware queue for ISP40XX (FATE#317545 bnc#909371). - qla4xxx: Change default capture to firmware defined capture mask (FATE#317545 bnc#909371). - qla4xxx: Do not wait for IO completion, after issuing stop_firmware (FATE#317545 bnc#909371). - qla4xxx: Handle IPv6 AEN notifications (FATE#317545 bnc#909371). - qla4xxx: Update print statements in func qla4xxx_do_dpc() (FATE#317545 bnc#909371). - qla4xxx: Update print statements in func qla4xxx_eh_abort() (FATE#317545 bnc#909371). - qla4xxx: Update print statements in qla4xxx_mailbox_command() (FATE#317545 bnc#909371). - qla4xxx: Remove unused code from qla4xxx_set_ifcb() (FATE#317545 bnc#909371). - qla4xxx: Fix failure of mbox 0x31 (FATE#317545 bnc#909371). - qla4xxx: Reduce rom-lock contention during reset recovery (FATE#317545 bnc#909371). - qla4xxx: Clear DDB index map upon connection close failure (FATE#317545 bnc#909371). - qla4xxx: Fix pending IO completion in reset path before initiating chip reset (FATE#317545 bnc#909371). - qla4xxx: Fix processing response queue during probe (FATE#317545 bnc#909371). - qla4xxx: Correctly handle msleep_interruptible (FATE#317545 bnc#909371). - qla4xxx: Rename ACB_STATE macros with IP_ADDRSTATE macros (FATE#317545 bnc#909371). - qla4xxx: Use IDC_CTRL bit1 directly instead of AF_83XX_NO_FWDUMP flag (FATE#317545 bnc#909371). - qla4xxx: Fix comments in code (FATE#317545 bnc#909371). - qla4xxx: Print WARN_ONCE() if iSCSI function presence bit removed (FATE#317545 bnc#909371). - qla4xxx: ISP8xxx: Correct retry of adapter initialization (FATE#317545 bnc#909371). - qla4xxx: Use offset based on adapter type to set CHAP entry in flash (FATE#317545 bnc#909371). - qla4xxx: Populate local CHAP credentials for flash target sessions (FATE#317545 bnc#909371). - qla4xxx: Support setting of local CHAP index for flash target entry (FATE#317545 bnc#909371). - qla4xxx: Correct the check for local CHAP entry type (FATE#317545 bnc#909371). - qla4xxx: Return error if minidump data collection fails (FATE#317545 bnc#909371). - qla4xxx: Fix the minidump data collection check in for loop (FATE#317545 bnc#909371). - qla4xxx: Only BIOS boot target entries should be at index 0 and 1 (FATE#317545 bnc#909371). - qla4xxx: discovery_parent_idx can be shown without any check (FATE#317545 bnc#909371). - qla4xxx: Set IPv6 traffic class if device type is IPv6 (FATE#317545 bnc#909371). - qla4xxx: Use discovery_parent_idx instead of discovery_parent_type (FATE#317545 bnc#909371). - qla4xxx: Allow removal of failed session using logout (FATE#317545 bnc#909371). - commit 8da9972 - Reshuffle patches in preparation for the qla4xxx update. - commit 6f48b79 - Refresh patches.drivers/fnic-BUG-sleeping-function-called-from-invalid-.patch Update bug description as the original was causing errors during patching. - commit e751065 - mptfusion: simplify rounding (bnc#909787,FATE#317518). - mptfusion: tweak null pointer checks (bnc#909787,FATE#317518). - mptfusion: combine fw_event_work and its event_data (bnc#909787,FATE#317518). - mptfusion: make adapter prod_name a pointer (bnc#909787,FATE#317518). - mptfusion: fix msgContext in mptctl_hp_hostinfo (bnc#909787,FATE#317518). - fusion: Remove use of DEF_SCSI_QCMD (bnc#909787,FATE#317518). - fusion: Add free msg frames to the head, not tail of list (bnc#909787,FATE#317518). - drivers/message/fusion/mptscsih.c: missing break (bnc#909787,FATE#317518). - Fusion MPT: disable pci device when mpt map resoures failed (bnc#909787,FATE#317518). - drivers/message/fusion: use pci_dev->revision (bnc#909787,FATE#317518). - fusion: ensure NUL-termination of MptCallbacksName elements (bnc#909787,FATE#317518). - commit 516ef63 - fnic: IOMMU Fault occurs when IO and abort IO is out of order (bnc#913219,FATE#317512). - Fnic: Fnic Driver crashed with NULL pointer reference (bnc#913219,FATE#317512). - Fnic: For Standalone C series, "sending VLAN request" message seen (bnc#913219,FATE#317512). - Fnic: Improper resue of exchange Ids (bnc#913219,FATE#317512). - Fnic: Memcopy only mimumum of data or trace buffer (bnc#913219,FATE#317512). - Fnic: Not probing all the vNICS via fnic_probe on boot (bnc#913219,FATE#317512). - fnic: assign FIP_ALL_FCF_MACS to fcoe_all_fcfs (bnc#913219,FATE#317512). - fnic: fnic Control Path Trace Utility (bnc#913219,FATE#317512). - fnic: Failing to queue aborts due to Q full cause terminate driver (bnc#913219,FATE#317512). - fnic: NoFIP solicitation frame in NONFIP mode and changed IO Throttle (bnc#913219,FATE#317512). - fnic: Incremented driver version (bnc#913219,FATE#317512). - fnic: Fnic Statistics Collection (bnc#913219,FATE#317512). - fnic: host reset returns nonzero value(errno) on success (bnc#913219,FATE#317512). - fnic: fnic Driver Tuneables Exposed through CLI (bnc#913219,FATE#317512). - fnic: Kernel panic while running sh/nosh with max lun cfg (bnc#913219,FATE#317512). - fnic: Hitting BUG_ON(io_req->abts_done) in (bnc#913219,FATE#317512). - fnic: Remove QUEUE_FULL handling code (bnc#913219,FATE#317512). - fnic: On system with >1.1TB RAM, VIC fails multipath after (bnc#913219,FATE#317512). - fnic: FC stat param seconds_since_last_reset not getting (bnc#913219,FATE#317512). - fnic: BUG: sleeping function called from invalid context (bnc#913219,FATE#317512). - fnic: potential dead lock in fnic_is_abts_pending() (bnc#913219,FATE#317512). - commit bfaec22 - Rename patches.drivers/fnic-Incremented-driver-version.patch Rename to avoid clashes with later updates. - commit 3279e07 - Reshuffle patches to apply cleanly. - commit dad4d8c - Refresh vanilla configs - commit b5f9ddf - bnx2fc: Update version number to 2.8.1 (bnc#909367,FATE#317542). - bnx2fc: Cleanup io_req after ABTS timeout (bnc#909367,FATE#317542). - bnx2fc: Remove 'NetXtreme II' from source files (bnc#909367,FATE#317542). - bnx2fc: Remove explicit logouts (bnc#909367,FATE#317542). - bnx2fc: Fix 'bnx2fc: Fix FCP RSP residual parsing.' (bnc#909367,FATE#317542). - bnx2fc: Fix FCP RSP residual parsing (bnc#909367,FATE#317542). - bnx2fc: corrected copyright notices (bnc#909367,FATE#317542). - bnx2fc: Set ELS transfer length correctly for middle path commands (bnc#909367,FATE#317542). - bnx2fc: do not add shared skbs to the fcoe_rx_list (bnc#909367,FATE#317542). - bnx2fc: fix an error code in _bnx2fc_create() (bnc#909367,FATE#317542). - bnx2fc: check IS_ERR() instead of NULL (bnc#909367,FATE#317542). - bnx2fc: fix tgt spinlock locking (bnc#909367,FATE#317542). - bnx2fc: fix incorrect DMA memory mapping in bnx2fc_unmap_sg_list() (bnc#909367,FATE#317542). - bnx2fc: Rebranding bnx2fc driver (bnc#909367,FATE#317542). - bnx2fc: Improve stats update mechanism (bnc#909367,FATE#317542). - bnx2fc: do not scan uninitialized lists in case of error (bnc#909367,FATE#317542). - bnx2fc: fix memory leak in bnx2fc_allocate_hash_table() (bnc#909367,FATE#317542). - bnx2fc: fix memory leak and potential NULL pointer dereference (bnc#909367,FATE#317542). - bnx2fc: remove unused variable hash_table_size (bnc#909367,FATE#317542). - bnx2fc: Updated version to 2.4.2 (bnc#909367,FATE#317542). - bnx2fc: Fixed the handling for the SCSI retry delay (bnc#909367,FATE#317542). - bnx2fc: Fixed scsi_remove_target soft lockup when rmmod bnx2x (bnc#909367,FATE#317542). - bnx2fc: Bump version from 1.0.14 to 2.4.1 (bnc#909367,FATE#317542). - BNX2FC: hung task timeout warning observed when rmmod bnx2x (bnc#909367,FATE#317542). - bnx2fc: Fixed a SCSI CMD cmpl race condition between ABTS and (bnc#909367,FATE#317542). - commit 8759b55 - workqueue: Make rescuer thread process more works (bnc#900279). - commit 98fc823 - libfc: fix REC handling (bnc#909501,FATE#317541). - libfcoe: Save some memory and optimize name lookups (bnc#909501,FATE#317541). - libfcoe: Add fcoe_sysfs debug logging level (bnc#909501,FATE#317541). - libfcoe, fcoe, bnx2fc: Add new fcoe control interface (bnc#909501,FATE#317541). - fcoe: Use the fcoe_sysfs control interface (bnc#909501,FATE#317541). - bnx2fc: Use the fcoe_sysfs control interface (bnc#909501,FATE#317541). - libfc, libfcoe, fcoe: Convert debug_logging macros to pr_info (bnc#909501,FATE#317541). - fcoe: prep work to start consolidate the usage of fcoe_netdev (bnc#909501,FATE#317541). - fcoe: add support to the get_netdev() for fcoe_interface (bnc#909501,FATE#317541). - libfcoe, fcoe: move fcoe_link_speed_update() to libfcoe and export it (bnc#909501,FATE#317541). - libfcoe, fcoe: consolidate the fcoe_ctlr_get_lesb/fcoe_get_lesb (bnc#909501,FATE#317541). - bnx2fc: add support to get_netdev for bnx2f_interface (bnc#909501,FATE#317541). - bnx2fc: use fcoe_link_speed_update() from the exported symbol in (bnc#909501,FATE#317541). - bnx2fc: use fcoe_get_lesb/fcoe_ctlr_get_lesb() directly from libfcoe (bnc#909501,FATE#317541). - debris left by " libfcoe: Remove mutex_trylock/restart_syscall (bnc#909501,FATE#317541). - fcoe: close race on link speed detection in fcoe code (bnc#909501,FATE#317541). - fcoe: Fix deadlock while deleting FCoE interface with NPIV ports (bnc#909501,FATE#317541). - libfc: XenServer fails to mount root filesystem (bnc#909501,FATE#317541). - libfcoe: Check for unusable FCFs before looking for conflicting FCFs (bnc#909501,FATE#317541). - bnx2fc: Make the fcoe_cltr the SCSI host parent (bnc#909501,FATE#317541). - fcoe: Fix deadlock between create and destroy paths (bnc#909501,FATE#317541). - libfc, fcoe, bnx2fc: Always use fcoe_disc_init for discovery layer (bnc#909501,FATE#317541). - libfc, fcoe, bnx2fc: Split fc_disc_init into fc_disc_{init, config} (bnc#909501,FATE#317541). - libfcoe: Fix fcoe_sysfs VN2VN mode (bnc#909501,FATE#317541). - libfcoe: Fix Conflicting FCFs issue in the fabric (bnc#909501,FATE#317541). - libfc: Correct check for initiator role (bnc#909501,FATE#317541). - libfc: extend ex_lock to protect all of fc_seq_send (bnc#909501,FATE#317541). - MAINTAINERS: Fix fcoe mailing list (bnc#909501,FATE#317541). - libfc: Reject PLOGI from nodes with incompatible role (bnc#909501,FATE#317541). - fcoe: Fix smatch warning in fcoe_fdmi_info function (bnc#909501,FATE#317541). - fcoe: fix the link error status block sparse warnings (bnc#909501,FATE#317541). - libfc: Remove extra space in fc_exch_timer_cancel definition (bnc#909501,FATE#317541). - libfc: Differentiate echange timer cancellation debug statements (bnc#909501,FATE#317541). - libfcoe: Fix meaningless log statement (bnc#909501,FATE#317541). - fcoe: Stop fc_rport_priv structure leak (bnc#909501,FATE#317541). - fcoe: Reduce number of sparse warnings (bnc#909501,FATE#317541). - fcoe: ensure that skb placed on the fip_recv_list are unshared (bnc#909501,FATE#317541). - fcoe: make sure fcoe frames are unshared prior to manipulating them (bnc#909501,FATE#317541). - fcoe: cleanup return codes from fcoe_rcv (bnc#909501,FATE#317541). - libfc: Source code comment spelling fixes (bnc#909501,FATE#317541). - libfc: Debug code fixes (bnc#909501,FATE#317541). - libfc: Micro-optimize fc_setup_exch_mgr() (bnc#909501,FATE#317541). - libfc: Clarify fc_exch_find() (bnc#909501,FATE#317541). - libfc: Fix a race in fc_exch_timer_set_locked() (bnc#909501,FATE#317541). - libfc: Protect ep->esb_stat changes via ex_lock (bnc#909501,FATE#317541). - libfc: Avoid that sending after an abort triggers a kernel warning (bnc#909501,FATE#317541). - libfc: Reduce exchange lock contention in fc_exch_recv_abts() (bnc#909501,FATE#317541). - libfc: Do not invoke the response handler after fc_exch_done() (bnc#909501,FATE#317541). - fcp: Do not interpret check condition as underrun (bnc#909501,FATE#317541). - fcoe: Declare fcoe_ctlr_mode_set() static (bnc#909501,FATE#317541). - fcoe: Add missing newlines in debug messages (bnc#909501,FATE#317541). - fcoe: Reduce fcoe_sysfs_fcf_add() stack usage (bnc#909501,FATE#317541). - libfcoe: Make fcoe_sysfs optional / fix fnic NULL exception (bnc#909501,FATE#317541). - fcoe: Fix missing mutex_unlock in fcoe_sysfs_fcf_add error path (bnc#909501,FATE#317541). - fcoe: extend ethtool to FC port speed mapping (bnc#909501,FATE#317541). - scsi: add defines for new FC port speeds (bnc#909501,FATE#317541). - Delete patches.drivers/libfcoe-Make-fcoe_sysfs-optional-fix-fnic-NULL-excep.patch. - commit 839f1e9 - Refresh patches.drivers/0003-tg3-set-maximal-number-of-default-RSS-queues.patch. corrects erroneous Git-commit tag - commit f9b80ad - Refresh patches.drivers/0003-tg3-set-maximal-number-of-default-RSS-queues.patch. corrects erroneous Git-commit tag - commit b02543c - cxgb3i: Remove unneeded version.h include (bnc#909582). - commit ada7d18 ++++ libvirt: - FATE#317240: Enhancement to virsh/libvirtd "send-key" command virkeycode-add-API-for-sysrq-usage.patch xen-support-send-sysrq.patch libxl-support-send-sysrq.patch virsh.pod-add-sending-sysrq-examples.patch ++++ limal-ca-mgm: - version 1.5.24 - support digest sha224, sha256, sha384 and sha512 (bnc#889356) - Convert certificate policies to oids only (bnc#889356) - install COPYING file ++++ mozilla-nss: - update to 3.17.3 (bsc#910647) Bugfix release * The QuickDER decoder now decodes lengths robustly (bmo#1064670/CVE-2014-1569) * Support for TLS_FALLBACK_SCSV has been added to the ssltap and tstclnt utilities * Changes in CA certificates ++++ ocaml: - Update spec for SLES11SP4: - replace pkgconfig(x11) with xorg-x11-devel - add BuildRequires xz ++++ yast2-ca-management: - version 2.17.26 - add new signature algorithems SHA224RSA, SHA256RSA, SHA384RSA and SHA512RSA (bsc#889356) ------------------------------------------------------------------ ------------------ 2015-1-14 - Jan 14 2015 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 31.4.0 ESR (bsc#910669) * MFSA 2015-01/CVE-2014-8634/CVE-2014-8635 (bmo#1109889, bmo#1111737, bmo#1026774, bmo#1027300, bmo#1054538, bmo#1067473, bmo#1070962, bmo#1072130, bmo#1072871, bmo#1098583) Miscellaneous memory safety hazards (rv:35.0 / rv:31.4) * MFSA 2015-03/CVE-2014-8638 (bmo#1080987) sendBeacon requests lack an Origin header * MFSA 2015-04/CVE-2014-8639 (bmo#1095859) Cookie injection through Proxy Authenticate responses * MFSA 2015-06/CVE-2014-8641 (bmo#1108455) Read-after-free in WebRTC - fix broken install scripts in some locales (bsc#909563) - enable gstreamer (bsc#906111) ++++ kernel-docs: - Reshuffle patches in preparation for the fcoe/bnx2fc update - commit b24974e - ia64: export numa_slit() (bnc#913030,FATE#317455). - commit e416529 - powerpc/mm: fix ".__node_distance" undefined (bnc##913030,FATE#317455). - commit c6e2822 - net-next: replace obsolete NLMSG_* with type safe nlmsg_*. - net/tipc: remove depends on CONFIG_EXPERIMENTAL. - tipc: add InfiniBand media type. - tipc: add a bounds check in link_recv_changeover_msg(). - tipc: allow implicit connect for stream sockets. - tipc: bump tipc_ports kconfig limit/default. - tipc: clear 'next'-pointer of message fragments before reassembly. - tipc: correctly unlink packets from deferred packet queue. - tipc: cosmetic: clean up comments and break a long line. - tipc: don't hold portlock during nametbl unsubscribe. - tipc: don't reroute message fragments. - tipc: eliminate duplicated discard_rx_queue routine. - tipc: fix OOS packet delivery (bsc#907063). - tipc: fix deadlock during socket release. - tipc: fix message corruption bug for deferred packets. - tipc: fix missing spinlock init in broadcast code. - tipc: message reassembly using fragment chain. - tipc: move bcast_addr from struct tipc_media to struct tipc_bearer. - tipc: move datapath message rejection to workqueue (bsc#907063). - tipc: potential divide by zero in tipc_link_recv_fragment(). - tipc: protect nodesub list with a fine grained spinlock (bsc#907063). - tipc: pskb_copy() buffers when sending on more than one bearer. - tipc: reassembly failures should cause link reset. - tipc: remove interface state mirroring in bearer. - tipc: remove redundant checking for the number of iovecs in a send. - tipc: remove unused str2addr media callback. - tipc: set skb->protocol in eth_media packet transmission. - tipc: tipc_bcbearer_send(): simplify bearer selection. - Update config files. - commit 5aff65e - bfa: Cleanup bfad_setup_intr() function (bnc#909365,FATE#317496). - bfa: Do not call pci_enable_msix() after it failed once (bnc#909365,FATE#317496). - bfa: use ARRAY_SIZE instead of sizeof/sizeof (bnc#909365,FATE#317496). - bfa: remove useless return variables (bnc#909365,FATE#317496). - bfa: Fix undefined bit shift on big-endian architectures with 32-bit (bnc#909365,FATE#317496). - bfa: Use dma_zalloc_coherent (bnc#909365,FATE#317496). - bfa: allocate memory with GFP_ATOMIC in spinlock context (bnc#909365,FATE#317496). - bfa: Replace large udelay() with mdelay() (bnc#909365,FATE#317496). - bfa: Fix smatch warnings (bnc#909365,FATE#317496). - bfa: fix missing unlock on error in bfad_iocmd_cfg_trunk() (bnc#909365,FATE#317496). - bfa: Driver version upgrade to 3.2.23.0 (bnc#909365,FATE#317496). - bfa: change FC_ELS_TOV to 20sec (bnc#909365,FATE#317496). - bfa: Observed auto D-port mode instead of manual (bnc#909365,FATE#317496). - bfa: Fix for bcu or hcm faa query hang (bnc#909365,FATE#317496). - bfa: LUN discovery issue in direct attach mode (bnc#909365,FATE#317496). - bfa: Register port with SCSI even on port init failure (bnc#909365,FATE#317496). - bfa: Firmware patch simplification (bnc#909365,FATE#317496). - bfa: Chinook quad port 16G FC HBA claim issue (bnc#909365,FATE#317496). - bfa: Fix crash when symb name set for offline vport (bnc#909365,FATE#317496). - bfa: Use pcie_set()/get_readrq() to simplify code (bnc#909365,FATE#317496). - bfa: firmware update to 3.2.1.1 (bnc#909365,FATE#317496). - bfa: Update the driver version to 3.2.21.1 (bnc#909365,FATE#317496). - bfa: dis-associate bfa path_tov with dev_loss_tmo (bnc#909365,FATE#317496). - bfa: Support for chinook-quad port card (bnc#909365,FATE#317496). - bfa: fix endianess issue for firmware stats (bnc#909365,FATE#317496). - bfa: Fix bug_on condition in RPSC rsp handling (bnc#909365,FATE#317496). - bfa: Allow rsp queue process during ioc disable (bnc#909365,FATE#317496). - bfa: firmware statistics update (bnc#909365,FATE#317496). - bfa: fru vpd date update changes (bnc#909365,FATE#317496). - bfa: driver compatibility with 32bit libs (bnc#909365,FATE#317496). - bfa: kdump fix on 815 and 825 adapters (bnc#909365,FATE#317496). - bfa: Fix FDISC timeout handling (bnc#909365,FATE#317496). - bfa: Fix 1860 port initialize when ATC is enabled (bnc#909365,FATE#317496). - bfa: FDMI enhancements (bnc#909365,FATE#317496). - bfa: Fix WARN_ON condition check (bnc#909365,FATE#317496). - bfa: Add dynamic diagnostic port support (bnc#909365,FATE#317496). - bfa: Forward Error Correction status query (bnc#909365,FATE#317496). - bfa: Support for FC BB credit recovery (bnc#909365,FATE#317496). - bfa: Fixes for 0-terminated strncpy and possible null pointer (bnc#909365,FATE#317496). - bfa: fix strncpy() limiter in bfad_start_ops() (bnc#909365,FATE#317496). - commit 5cca31f - mtip32xx: Fix ERO and NoSnoop values in PCIe upstream on AMD systems (bnc#913072,FATE#317526). - mtip32xx: Remove dfs_parent after pci unregister (bnc#913072,FATE#317526). - mtip32xx: Increase timeout for STANDBY IMMEDIATE command (bnc#913072,FATE#317526). - mtip32xx: mtip_async_complete() bug fixes (bnc#913072,FATE#317526). - mtip32xx: Unmap the DMA segments before completing the IO request (bnc#913072,FATE#317526). - mtip32xx: Set queue bounce limit (bnc#913072,FATE#317526). - mtip32xx: Use pci_enable_msi() instead of pci_enable_msi_range() (bnc#913072,FATE#317526). - mtip32xx: fix bad use of smp_processor_id() (bnc#913072,FATE#317526). - mtip32xx: Use pci_enable_msix_range() instead of pci_enable_msix() (bnc#913072,FATE#317526). - mtip32xx: Remove superfluous call to pci_disable_msi() (bnc#913072,FATE#317526). - mtip32xx: Reduce the number of unaligned writes to 2 (bnc#913072,FATE#317526). - mtip32xx: Correctly handle security locked condition (bnc#913072,FATE#317526). - mtip32xx: Make SGL container per-command to eliminate high order dma (bnc#913072,FATE#317526). - mtip32xx: dynamically allocate buffer in debugfs functions (bnc#913072,FATE#317526). - mtip32xx: Add SRSI support (bnc#913072,FATE#317526). - commit 5266939 - Update patches to apply after NVMe backport (bnc#913030,FATE#317455) - Refresh patches.drivers/mtip32xx-0001-Add-driver-for-Micron-RealSSD-pcie-flash-cards.patch. - Refresh patches.drivers/nvme-0126-Rename-nvme.c-to-nvme-core.c.patch. - Refresh patches.drivers/nvme-0129-Add-nvme-scsi.c.patch. - Refresh patches.fixes/asm-generic-architecture-independent-readq-writeq-fo.patch. - Refresh patches.suse/twofish-2.6. - commit 7ea20c7 - NVMe: fail pci initialization if the device doesn't have any BARs (bnc#913030,FATE#317455). - NVMe: make setup work for devices that don't do INTx (bnc#913030,FATE#317455). - NVMe: Do not over allocate for discard requests (bnc#913030,FATE#317455). - NVMe: Do not open disks that are being deleted (bnc#913030,FATE#317455). - NVMe: Clear QUEUE_FLAG_STACKABLE (bnc#913030,FATE#317455). - NVMe: Fix device probe waiting on kthread (bnc#913030,FATE#317455). - NVMe: Updates for 1.1 spec (bnc#913030,FATE#317455). - NVMe: Passthrough IOCTL for IO commands (bnc#913030,FATE#317455). - NVMe: Add revalidate_disk callback (bnc#913030,FATE#317455). - NVMe: Fix nvmeq waitqueue entry initialization (bnc#913030,FATE#317455). - NVMe: Translate NVMe status to errno (bnc#913030,FATE#317455). - NVMe: Fix SG_IO status values (bnc#913030,FATE#317455). - NVMe: Remove duplicate compat SG_IO code (bnc#913030,FATE#317455). - NVMe: Reference count pci device (bnc#913030,FATE#317455). - nvme: Replace rcu_assign_pointer() with RCU_INIT_POINTER() (bnc#913030,FATE#317455). - NVMe: Correctly handle IOCTL_SUBMIT_IO when cpus > online queues (bnc#913030,FATE#317455). - NVMe: Fix filesystem sync deadlock on removal (bnc#913030,FATE#317455). - NVMe: Call nvme_free_queue directly (bnc#913030,FATE#317455). - NVMe: Add shutdown timeout as module parameter (bnc#913030,FATE#317455). - NVMe: Skip orderly shutdown on failed devices (bnc#913030,FATE#317455). - NVMe: Handling devices incapable of I/O (bnc#913030,FATE#317455). - NVMe: Change nvme_enable_ctrl to set EN and manage CC thru (bnc#913030,FATE#317455). - NVMe: Mismatched host/device page size support (bnc#913030,FATE#317455). - NVMe: Update list of status codes (bnc#913030,FATE#317455). - NVMe: Async event request (bnc#913030,FATE#317455). - NVMe: Fix START_STOP_UNIT Scsi->NVMe translation (bnc#913030,FATE#317455). - NVMe: Use Log Page constants in SCSI emulation (bnc#913030,FATE#317455). - NVMe: Define Log Page constants (bnc#913030,FATE#317455). - NVMe: Fix hot cpu notification dead lock (bnc#913030,FATE#317455). - NVMe: Rename io_timeout to nvme_io_timeout (bnc#913030,FATE#317455). - NVMe: Use last bytes of f/w rev SCSI Inquiry (bnc#913030,FATE#317455). - NVMe: Adhere to request queue block accounting enable/disable (bnc#913030,FATE#317455). - NVMe: Fix nvme get/put queue semantics (bnc#913030,FATE#317455). - NVMe: Delete NVME_GET_FEAT_TEMP_THRESH (bnc#913030,FATE#317455). - NVMe: Make admin timeout a module parameter (bnc#913030,FATE#317455). - NVMe: Make iod bio timeout a parameter (bnc#913030,FATE#317455). - NVMe: Prevent possible NULL pointer dereference (bnc#913030,FATE#317455). - NVMe: Fix the buffer size passed in GetLogPage(CDW10.NUMD) (bnc#913030,FATE#317455). - NVMe: Enable BUILD_BUG_ON checks (bnc#913030,FATE#317455). - NVMe: Configure support for block flush (bnc#913030,FATE#317455). - NVMe: Protect against badly formatted CQEs (bnc#913030,FATE#317455). - NVMe: Improve error messages (bnc#913030,FATE#317455). - NVMe: Update copyright headers (bnc#913030,FATE#317455). - NVMe: Retry failed commands with non-fatal errors (bnc#913030,FATE#317455). - NVMe: Add getgeo to block ops (bnc#913030,FATE#317455). - NVMe: Start-stop nvme_thread during device add-remove (bnc#913030,FATE#317455). - NVMe: Make I/O timeout a module parameter (bnc#913030,FATE#317455). - NVMe: CPU hot plug notification (bnc#913030,FATE#317455). - NVMe: per-cpu io queues (bnc#913030,FATE#317455). - NVMe: Replace DEFINE_PCI_DEVICE_TABLE (bnc#913030,FATE#317455). - NVMe: Fix divide-by-zero in nvme_trans_io_get_num_cmds (bnc#913030,FATE#317455). - NVMe: IOCTL path RCU protect queue access (bnc#913030,FATE#317455). - NVMe: RCU protected access to io queues (bnc#913030,FATE#317455). - NVMe: Initialize device reference count earlier (bnc#913030,FATE#317455). - NVMe: Add CONFIG_PM_SLEEP to suspend/resume functions (bnc#913030,FATE#317455). - NVMe: Namespace use after free on surprise removal (bnc#913030,FATE#317455). - NVMe: Correct uses of INIT_WORK (bnc#913030,FATE#317455). - NVMe: Include device and queue numbers in interrupt name (bnc#913030,FATE#317455). - NVMe: Add a pci_driver shutdown method (bnc#913030,FATE#317455). - NVMe: Disable admin queue on init failure (bnc#913030,FATE#317455). - NVMe: Dynamically allocate partition numbers (bnc#913030,FATE#317455). - NVMe: Async IO queue deletion (bnc#913030,FATE#317455). - NVMe: Surprise removal handling (bnc#913030,FATE#317455). - NVMe: Abort timed out commands (bnc#913030,FATE#317455). - NVMe: Schedule reset for failed controllers (bnc#913030,FATE#317455). - NVMe: Device resume error handling (bnc#913030,FATE#317455). - NVMe: Cache dev->pci_dev in a local pointer (bnc#913030,FATE#317455). - NVMe: Fix lockdep warnings (bnc#913030,FATE#317455). - NVMe: compat SG_IO ioctl (bnc#913030,FATE#317455). - NVMe: remove deprecated IRQF_DISABLED (bnc#913030,FATE#317455). - NVMe: Avoid shift operation when writing cq head doorbell (bnc#913030,FATE#317455). - DMA-API: block: nvme-core: replace (bnc#913030,FATE#317455). - NVMe: Merge issue on character device bring-up (bnc#913030,FATE#317455). - NVMe: Handle ioremap failure (bnc#913030,FATE#317455). - NVMe: Add pci suspend/resume driver callbacks (bnc#913030,FATE#317455). - NVMe: Use normal shutdown (bnc#913030,FATE#317455). - NVMe: Separate controller init from disk discovery (bnc#913030,FATE#317455). - NVMe: Separate queue alloc/free from create/delete (bnc#913030,FATE#317455). - NVMe: Group pci related actions in functions (bnc#913030,FATE#317455). - NVMe: Disk stats for read/write commands only (bnc#913030,FATE#317455). - NVMe: Bring up cdev on set feature failure (bnc#913030,FATE#317455). - NVMe: Fix checkpatch issues (bnc#913030,FATE#317455). - NVMe: Namespace IDs are unsigned (bnc#913030,FATE#317455). - NVMe: Update nvme_id_power_state with latest spec (bnc#913030,FATE#317455). - NVMe: Split header file into user-visible and kernel-visible pieces (bnc#913030,FATE#317455). - NVMe: Call nvme_process_cq from submission path (bnc#913030,FATE#317455). - NVMe: Remove "process_cq did something" message (bnc#913030,FATE#317455). - NVMe: Return correct value from interrupt handler (bnc#913030,FATE#317455). - NVMe: Disk IO statistics (bnc#913030,FATE#317455). - NVMe: Restructure MSI / MSI-X setup (bnc#913030,FATE#317455). - NVMe: Use kzalloc instead of kmalloc+memset (bnc#913030,FATE#317455). - NVMe: Add MSI support (bnc#913030,FATE#317455). - NVMe: Use dma_set_mask() correctly (bnc#913030,FATE#317455). - NVMe: Do not cancel command multiple times (bnc#913030,FATE#317455). - NVMe: fix error return code in nvme_submit_bio_queue() (bnc#913030,FATE#317455). - NVMe: check for integer overflow in nvme_map_user_pages() (bnc#913030,FATE#317455). - NVMe: Fix a signedness bug in nvme_trans_modesel_get_mp (bnc#913030,FATE#317455). - NVMe: Remove redundant version.h header include (bnc#913030,FATE#317455). - NVMe: Use user defined admin ioctl timeout (bnc#913030,FATE#317455). - NVMe: Simplify Firmware Activate code slightly (bnc#913030,FATE#317455). - NVMe: Only clear the enable bit when disabling controller (bnc#913030,FATE#317455). - NVMe: Wait for device to acknowledge shutdown (bnc#913030,FATE#317455). - NVMe: Schedule timeout for sync commands (bnc#913030,FATE#317455). - NVMe: Meta-data support in NVME_IOCTL_SUBMIT_IO (bnc#913030,FATE#317455). - NVMe: Device specific stripe size handling (bnc#913030,FATE#317455). - NVMe: Split non-mergeable bio requests (bnc#913030,FATE#317455). - NVMe: Remove dead code in nvme_dev_add (bnc#913030,FATE#317455). - NVMe: Check for NULL memory in nvme_dev_add (bnc#913030,FATE#317455). - NVMe: Fix error clean-up on nvme_alloc_queue (bnc#913030,FATE#317455). - NVMe: Free admin queue on request_irq error (bnc#913030,FATE#317455). - NVMe: Add scsi unmap to SG_IO (bnc#913030,FATE#317455). - NVMe: queue usage fixes in nvme-scsi (bnc#913030,FATE#317455). - NVMe: Set TASK_INTERRUPTIBLE before processing queues (bnc#913030,FATE#317455). - NVMe: Add a character device for each nvme device (bnc#913030,FATE#317455). - NVMe: Fix endian-related problems in user I/O submission path (bnc#913030,FATE#317455). - NVMe: Fix I/O cancellation status on big-endian machines (bnc#913030,FATE#317455). - NVMe: Fix sparse warnings in scsi emulation (bnc#913030,FATE#317455). - NVMe: Don't fail initialisation unnecessarily (bnc#913030,FATE#317455). - NVMe: Abstract out sector to block number conversion (bnc#913030,FATE#317455). - NVMe: Use round_jiffies_relative() for the periodic, once-per-second (bnc#913030,FATE#317455). - NVMe: Add nvme-scsi.c (bnc#913030,FATE#317455). - NVMe: Add definitions for format command (bnc#913030,FATE#317455). - NVMe: Move structures & definitions to header file (bnc#913030,FATE#317455). - NVMe: Rename nvme.c to nvme-core.c (bnc#913030,FATE#317455). - NVMe: Add discard support for capable devices (bnc#913030,FATE#317455). - NVMe: Add namespaces with no LBA range feature (bnc#913030,FATE#317455). - NVMe: Initialize iod nents to 0 (bnc#913030,FATE#317455). - NVMe: Define SMART log (bnc#913030,FATE#317455). - NVMe: Add result to nvme_get_features (bnc#913030,FATE#317455). - NVMe: Set result from user admin command (bnc#913030,FATE#317455). - NVMe: End queued bio requests when freeing queue (bnc#913030,FATE#317455). - NVMe: Free cmdid on nvme_submit_bio error (bnc#913030,FATE#317455). - commit 7d6709f - tty: Use lockless flip buffer free list (bnc#913030,FATE#317455). - llist: llist_add() can use llist_add_batch() (bnc#913030,FATE#317455). - llist: fix/simplify llist_add() and llist_add_batch() (bnc#913030,FATE#317455). - llist-return-whether-list-is-empty-before-adding-in-llist_add-fix (bnc#913030,FATE#317455). - llist: Add back llist_add_batch() and llist_del_first() prototypes (bnc#913030,FATE#317455). - commit d76f3a9 - netxen: Fix bug in Tx completion path (bsc#909363 FATE#317549). - netxen: Fix BUG "sleeping function called from invalid context" (bsc#909363 FATE#317549). - drivers/net: Convert remaining uses of pr_warning to pr_warn (bsc#909363 FATE#317549). - treewide: Fix typo in printk (bsc#909363 FATE#317549). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909363 FATE#317549). - qlogic: use pci_zalloc_consistent (bsc#909363 FATE#317549). - net: get rid of SET_ETHTOOL_OPS (bsc#909363 FATE#317549). - netxen: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909363 FATE#317549). - net: netxen: slight optimization of addr compare (bsc#909363 FATE#317549). - netxen: Correct off-by-one errors in bounds checks (bsc#909363 FATE#317549). - ethernet: Fix FSF address in file headers (bsc#909363 FATE#317549). - net: netxen: remove unnecessary pci_set_drvdata() (bsc#909363 FATE#317549). - netxen: clean up unnecessary MSI/MSI-X capability find (bsc#909363 FATE#317549). - net:drivers/net: Miscellaneous conversions to ETH_ALEN (bsc#909363 FATE#317549). - netxen_nic: Update version to 4.0.82 (bsc#909363 FATE#317549). - netxen_nic: Print ULA information (bsc#909363 FATE#317549). - qlogic: Remove extern from function prototypes (bsc#909363 FATE#317549). - netxen: lower NAPI weight (bsc#909363 FATE#317549). - ethernet: Convert mac address uses of 6 to ETH_ALEN (bsc#909363 FATE#317549). - net: ethernet: replace strict_strtoul() with kstrtoul() (bsc#909363 FATE#317549). - netxen_nic: Update version to 4.0.81 (bsc#909363 FATE#317549). - netxen_nic: Avoid mixed mode interrupts (bsc#909363 FATE#317549). - netxen_nic: netxen_setup_intr() function code cleanup (bsc#909363 FATE#317549). - netxen_nic: Log proper error message in case of mismatched adapter type (bsc#909363 FATE#317549). - netxen_nic: Log driver version with firmware version (bsc#909363 FATE#317549). - netxen: write IP address to firmware when using bonding (bsc#909363 FATE#317549). - drivers: net: misc: Remove unused OOM variables (bsc#909363 FATE#317549). - ethernet: Remove unnecessary alloc/OOM messages, alloc cleanups (bsc#909363 FATE#317549). - remove init of dev->perm_addr in drivers (bsc#909363 FATE#317549). - netxen: remove __dev* attributes (bsc#909363 FATE#317549). - drivers: ethernet: qlogic: netxen_nic_ethtool.c: Fixed a coding style issue (bsc#909363 FATE#317549). - netxen: explicity handle pause autoneg parameter (bsc#909363 FATE#317549). - netdev: make pci_error_handlers const (bsc#909363 FATE#317549). - PCI: Introduce pci_pcie_type(dev) to replace pci_dev->pcie_type (bsc#909363 FATE#317549). - netxen: remove unnecessary setting of skb->dev (bsc#909363 FATE#317549). - net: introduce NAPI_POLL_WEIGHT (bsc#909363 FATE#317549). - commit 72aa2c0 - ethernet: Convert dev_printk(KERN_ to dev_( (bsc#909575 FATE#317552). - cxgb3: remove __dev* attributes (bsc#909575 FATE#317552). - PCI: Add standard PCIe Capability Link ASPM field names (bsc#909575 FATE#317552). - cxgb3: Use standard #defines for PCIe Capability ASPM fields (bsc#909575 FATE#317552). - drivers/net: fix up function prototypes after __dev* removals (bsc#909575 FATE#317552). - remove init of dev->perm_addr in drivers (bsc#909575 FATE#317552). - chelsio: Use netdev_ and pr_ (bsc#909575 FATE#317552). - cxgb3: Update VLAN extraction stats in the GRO path (bsc#909575 FATE#317552). - cxgb3: Fix warning about using rcu_dereference when not in a rcu-locked section (bsc#909575 FATE#317552). - cxgb3: Correct comparisons and calculations using skb->tail and skb-transport_header (bsc#909575 FATE#317552). - cxgb3: Correct comparisons and calculations using skb->tail and skb-transport_header (bsc#909575 FATE#317552). - cxgb3: Missing rtnl lock in error recovery (bsc#909575 FATE#317552). - treewide: Add __GFP_NOWARN to k.alloc calls with v.alloc fallbacks (bsc#909575 FATE#317552). - device-core: Ensure drvdata = NULL when no driver is bound (bsc#909575 FATE#317552). - net: cxgb3: remove unnecessary pci_set_drvdata() (bsc#909575 FATE#317552). - chelsio: remove duplicate defines (bsc#909575 FATE#317552). - cxgb3: Fix length calculation in write_ofld_wr() on 32-bit architectures (bsc#909575 FATE#317552). - net: cxgb3: slight optimization of addr compare (bsc#909575 FATE#317552). - drivers/net: delete non-required instances of include (bsc#909575 FATE#317552). - cxgb3: Remove superfluous call to pci_disable_msix() (bsc#909575 FATE#317552). - cxgb3: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909575 FATE#317552). - cxgb3: Call dev_kfree/consume_skb_any instead of [dev_]kfree_skb (bsc#909575 FATE#317552). - net: get rid of SET_ETHTOOL_OPS (bsc#909575 FATE#317552). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bsc#909575 FATE#317552). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909575 FATE#317552). - Refresh patches.drivers/cxgb3-set-vlan_feature-on-net_device.patch. - commit 950c553 - config: Disable CONFIG_RCU_FAST_NO_HZ (bnc#884817) This option has been verified to be racy vs hotplug, and is irrelevant to SLE in any case. - commit 291c65f - config: Disable CONFIG_RCU_FAST_NO_HZ (bnc#884817) This option has been verified to be racy vs hotplug, and is irrelevant to SLE in any case. - commit 65e1222 ++++ jasper: - fixed CVE-2014-8157, CVE-2014-8158 (bnc#911837) ++++ vhostmd: - Build vhostmd for all supported architectures FATE#317817, bsc#917382 ++++ yast2: - bnc#900383 - ported several fixes for device renaming - added net device type detection based on sysfs - fixed type detection workflow - bnc#809053 - fixed device type detection when commiting new device into NetworkInterfaces' cache. - changes API for device type detection - incompatible to previous versions - 2.17.137 ++++ yast2-network: - fate#315162 - IPoIB mode configuration in YaST - 2.17.202 ------------------------------------------------------------------ ------------------ 2015-1-13 - Jan 13 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - powerpc/rtas_flash: Free kmem upon module exit (fate#317580). - powerpc/rtas_flash: New return code to indicate FW entitlement expiry (fate#317580). - powerpc/rtas_flash: Update return token comments (fate#317580). - commit 6c976e3 - PCI: Cache MSI/MSI-X capability offsets in struct pci_dev (bnc#909623,FATE#317523). - commit c856168 - pm8001: Update nvmd response data to request buffer (bnc#909623,FATE#317523). - pm8001: fix pm8001_store_update_fw (bnc#909623,FATE#317523). - pm8001: Fix erratic calculation in update_flash (bnc#909623,FATE#317523). - pm8001: Fix invalid return when request_irq() failed (bnc#909623,FATE#317523). - pm8001: fix a memory leak in nvmd_resp (bnc#909623,FATE#317523). - pm8001: fix update_flash (bnc#909623,FATE#317523). - pm8001: fix a memory leak in flash_update (bnc#909623,FATE#317523). - pm8001: Cleaning up uninitialized variables (bnc#909623,FATE#317523). - pm8001: Fix to remove null pointer checks that could never happen (bnc#909623,FATE#317523). - pm8001: more fixes to honor return value (bnc#909623,FATE#317523). - pm8001: add a new spinlock to protect the CCB (bnc#909623,FATE#317523). - pm8001: honor return value (bnc#909623,FATE#317523). - pm8001: clean bitmap management functions (bnc#909623,FATE#317523). - pm8001: Fix hibernation issue (bnc#909623,FATE#317523). - pm8001: Fix potential null pointer dereference and memory leak (bnc#909623,FATE#317523). - pm80xx : Fix missing NULL pointer checks and memory leaks (bnc#909623,FATE#317523). - drivers/scsi/pm8001/pm8001_ctl.c: avoid world-writable sysfs files (bnc#909623,FATE#317523). - pm80xx: fix problem of pm8001_work_fn reseting incorrect phy (bnc#909623,FATE#317523). - pm80xx: no need for tag allocation when issuing the command of (bnc#909623,FATE#317523). - pm80xx: Spinlock fix (bnc#909623,FATE#317523). - pm80xx: Enable BAR shift to avoid BIOS conflict with MPI space (bnc#909623,FATE#317523). - pm80xx: Read saved WWN from NVMD for ATTO pm8001 based HBAs (bnc#909623,FATE#317523). - pm80xx: Fixed return value issue (bnc#909623,FATE#317523). - pm80xx: Removing redundant code snippets (bnc#909623,FATE#317523). - pm80xx: Tasklets synchronization fix (bnc#909623,FATE#317523). - pm80xx: Resetting the phy state (bnc#909623,FATE#317523). - pm80xx: Fix for direct attached device (bnc#909623,FATE#317523). - pm80xx: Module author addition (bnc#909623,FATE#317523). - pm80xx: Firmware logging support (bnc#909623,FATE#317523). - pm80xx: Phy settings support for motherboard controller (bnc#909623,FATE#317523). - pm80xx: IButton security feature support for motherboard (bnc#909623,FATE#317523). - pm80xx: Print SAS address of IO failed device (bnc#909623,FATE#317523). - pm80xx: 4G boundary fix (bnc#909623,FATE#317523). - pm80xx: Queue rotation logic for inbound and outbound queues (bnc#909623,FATE#317523). - pm80xx: Set device state response logic fix (bnc#909623,FATE#317523). - pm80xx: Display controller BIOS version (bnc#909623,FATE#317523). - pm80xx: Indirect SMP request fix (bnc#909623,FATE#317523). - pm80xx: Device id changes to support series 8 controllers (bnc#909623,FATE#317523). - pm8001: clean up unnecessary MSI/MSI-X capability find (bnc#909623,FATE#317523). - pm80xx: Fix for 32 bit compilation warning (bnc#909623,FATE#317523). - pm80xx: fix Adaptec 71605H hang (bnc#909623,FATE#317523). - pm8001: use pdev->pm_cap instead of (bnc#909623,FATE#317523). - pm80xx: remove unneeded NULL check (bnc#909623,FATE#317523). - libsas: implement > 16 byte CDB support (bnc#909623,FATE#317523). - sas: unify the pointlessly separated enums sas_dev_type and (bnc#909623,FATE#317523). - pm80xx: thermal, sas controller config and error handling (bnc#909623,FATE#317523). - pm80xx: NCQ error handling changes (bnc#909623,FATE#317523). - pm80xx: WWN Modification for PM8081/88/89 controllers (bnc#909623,FATE#317523). - pm80xx: Changed module name and debug messages update (bnc#909623,FATE#317523). - pm80xx: Firmware flash memory free fix, with addition of new (bnc#909623,FATE#317523). - pm80xx: SPC new firmware changes for device id 0x8081 alone (bnc#909623,FATE#317523). - pm80xx: Added SPCv/ve specific hardware functionalities and (bnc#909623,FATE#317523). - pm80xx: MSI-X implementation for using 64 interrupts (bnc#909623,FATE#317523). - pm80xx: Updated common functions common for SPC and SPCv/ve (bnc#909623,FATE#317523). - pm80xx: Multiple inbound/outbound queue configuration (bnc#909623,FATE#317523). - pm80xx: Added SPCv/ve specific ids, variables and modify for (bnc#909623,FATE#317523). - pm80xx: fix for memory region free (bnc#909623,FATE#317523). - commit c029374 - mpt3sas: Bump mpt3sas driver version to 04.100.00.00 (bnc#909784,FATE#317520). - mpt3sas: Added Reply Descriptor Post Queue (RDPQ) Array support (bnc#909784,FATE#317520). - mpt3sas: Added OEM branding Strings (bnc#909784,FATE#317520). - mpt3sas: Copyright in driver sources is updated for year the 2014 (bnc#909784,FATE#317520). - mpt3sas: MPI2.5 Rev H (2.5.3) specifications (bnc#909784,FATE#317520). - mpt3sas: Bump mpt3sas driver version to 03.100.00.00 (bnc#909784,FATE#317520). - mpt3sas: Clear PFA Status on SGPIO when PFA Drive is Removed or (bnc#909784,FATE#317520). - mpt3sas: MPI2.5 Rev G (2.5.2) specifications (bnc#909784,FATE#317520). - mpt3sas: delay scsi_add_host call to work with scsi-mq (bnc#909784,FATE#317520). - mpt3sas: Rework the MSI-X grouping code (bnc#909784,FATE#317520). - mpt3sas: combine fw_event_work and its event_data (bnc#909784,FATE#317520). - mpt3sas: correct scsi_{target,device} hostdata allocation (bnc#909784,FATE#317520). - mpt3sas: Remove use of DEF_SCSI_QCMD (bnc#909784,FATE#317520). - mpt3sas: Remove uses of serial_number (bnc#909784,FATE#317520). - Allow MPT Fusion SAS 3.0 driver to be built into the kernel (bnc#909784,FATE#317520). - mpt3sas: Added a driver module parameter max_msix_vectors (bnc#909784,FATE#317520). - mpt3sas: fix cleanup on controller resource mapping failure (bnc#909784,FATE#317520). - mpt3sas: Bump driver version to v02.100.00.00 (bnc#909784,FATE#317520). - mpt3sas: when async scanning is enabled then while scanning, (bnc#909784,FATE#317520). - mpt3sas: MPI2.5 Rev F v2.5.1.1 specification (bnc#909784,FATE#317520). - mpt3sas: Infinite loops can occur if (bnc#909784,FATE#317520). - mpt3sas: fix for kernel panic when driver loads with HBA (bnc#909784,FATE#317520). - mpt3sas: Updated the Hardware timing requirements (bnc#909784,FATE#317520). - mpt3sas: 2013 source code copyright (bnc#909784,FATE#317520). - mpt3sas: don't wank with fasync on ->release() (bnc#909784,FATE#317520). - mpt3sas: remove unused variables (bnc#909784,FATE#317520). - mpt3sas: Remove unneeded version.h header inclusion (bnc#909784,FATE#317520). - mpt3sas: cut and paste bug storing trigger mpi (bnc#909784,FATE#317520). - commit 6a02c8b - mpt2sas: fix undefined reference to `__udivdi3' compilation errors (bnc#909785,FATE#317519). - commit cf846c7 - mpt2sas: Bump mpt2sas driver version to 18.100.00.00 (bnc#909785,FATE#317519). - mpt2sas: Get IOC_FACTS information using handshake protocol only (bnc#909785,FATE#317519). - mpt2sas: Added Reply Descriptor Post Queue (RDPQ) Array support (bnc#909785,FATE#317519). - mpt2sas: Avoid type casting for direct I/O commands (bnc#909785,FATE#317519). - mpt2sas: Bump mpt2sas driver version to 17.100.00.00 (bnc#909785,FATE#317519). - mpt2sas: Clear PFA Status on SGPIO when PFA Drive is Removed or (bnc#909785,FATE#317519). - mpt2sas: Copyright in driver sources is updated for year the 2014 (bnc#909785,FATE#317519). - mpt2sas: MPI2 Rev Y (2.00.17) and Rev Z (2.00.18) specifications (bnc#909785,FATE#317519). - mpt2sas: Added driver module parameter max_msix_vectors (bnc#909785,FATE#317519). - mpt2sas: delay scsi_add_host call to work with scsi-mq (bnc#909785,FATE#317519). - mpt2sas: Rework the MSI-X grouping code (bnc#909785,FATE#317519). - mpt2sas: annotate ioc->reply_post_host_index as __iomem (bnc#909785,FATE#317519). - mpt2sas: combine fw_event_work and its event_data (bnc#909785,FATE#317519). - mpt2sas: correct scsi_{target,device} hostdata allocation (bnc#909785,FATE#317519). - mpt2sas: Add free smids to the head, not tail of list (bnc#909785,FATE#317519). - mpt2sas: Remove use of DEF_SCSI_QCMD (bnc#909785,FATE#317519). - mpt2sas: Remove uses of serial_number (bnc#909785,FATE#317519). - mpt2sas: Don't disable device twice at suspend (bnc#909785,FATE#317519). - mpt2sas: Bump driver version to v16.100.00.00 (bnc#909785,FATE#317519). - mpt2sas: Fix for kernel panic when driver loads with HBA connected to (bnc#909785,FATE#317519). - mpt2sas: when Async scanning is enabled then while scanning, devices (bnc#909785,FATE#317519). - mpt2sas: Infinite loop can occur if (bnc#909785,FATE#317519). - mpt2sas: The copyright in driver sources is updated for the year 2013 (bnc#909785,FATE#317519). - mpt2sas: MPI2 Rev X (2.00.16) specifications (bnc#909785,FATE#317519). - mpt2sas: Change in MPI2_RAID_ACTION_SYSTEM_SHUTDOWN_INITIATED (bnc#909785,FATE#317519). - mpt2sas: Null pointer deference possibility in (bnc#909785,FATE#317519). - mpt2sas: fix cleanup on controller resource mapping failure (bnc#909785,FATE#317519). - mpt2sas: fix for unused variable 'event_data' warning (bnc#909785,FATE#317519). - mpt2sas: Bump driver vesion to v15.100.00.00 (bnc#909785,FATE#317519). - mpt2sas: Calulate the Reply post queue depth calculation as per the (bnc#909785,FATE#317519). - mpt2sas: Fix for device scan following host reset could get stuck in (bnc#909785,FATE#317519). - mpt2sas: Update the timing requirements for issuing a Hard Reset (bnc#909785,FATE#317519). - mpt2sas: MPI2 Rev W (2.00.15) specification (bnc#909785,FATE#317519). - mpt2sas: Fix for issue Missing delay not getting set during system (bnc#909785,FATE#317519). - mpt2sas: don't wank with fasync on ->release() (bnc#909785,FATE#317519). - mpt2sas: Add support for OEM specific controller (bnc#909785,FATE#317519). - mpt2sas: Add a module parameter that permits overriding protection (bnc#909785,FATE#317519). - mpt2sas: Return the correct sense key for DIF errors (bnc#909785,FATE#317519). - mpt2sas: fix double mutex lock in NON_BLOCKING state (bnc#909785,FATE#317519). - mpt2sas: Fix for issue - Unable to boot from the drive connected to (bnc#909785,FATE#317519). - commit e074eaa - storvsc: ring buffer failures may result in I/O freeze - commit fa9d51e - megaraid: Fail resume if MSI-X re-initialization failed (bnc#909789,FATE#317517). - Delete patches.drivers/megaraid_sas-0071-0071-megaraid-Fail-resume-if-MSI-X-re-initialization-fail.patch. - Delete patches.drivers/megaraid_sas-0072-0072-megaraid-Use-pci_enable_msix_range-instead-of-pci_en.patch. - Delete patches.drivers/megaraid_sas-0089-fix-bug-in-handling-return-value-of-pci.patch. - commit 2abecc1 - megaraid_sas: Use correct #define for MSI-X capability (bnc#909789,FATE#317517). - megaraid_sas: release lock on error path (bnc#909789,FATE#317517). - megaraid_sas: Return DID_ERROR for SCSI IO, when controller is in (bnc#909789,FATE#317517). - megaraid_sas: Fix the interrupt mask for Gen2 controller (bnc#909789,FATE#317517). - megaraid_sas: Update balance count in driver to be in sync of (bnc#909789,FATE#317517). - megaraid_sas: Free event detail memory without device ID check (bnc#909789,FATE#317517). - megaraid_sas: Set IO request timeout value provided by OS timeout for (bnc#909789,FATE#317517). - megaraid_sas: Add support for MegaRAID Fury (device ID-0x005f) 12Gb/s (bnc#909789,FATE#317517). - megaraid_sas: Add support to display Customer branding details in (bnc#909789,FATE#317517). - megaraid_sas: Set IoFlags to enable Fast Path for JBODs for 12 Gb/s (bnc#909789,FATE#317517). - megaraid_sas: Add support for Extended MSI-x vectors for 12Gb/s (bnc#909789,FATE#317517). - megaraid_sas: Add support for Uneven Span PRL11 (bnc#909789,FATE#317517). - megaraid_sas: Add support to differentiate between iMR vs MR Firmware (bnc#909789,FATE#317517). - megaraid_sas: Changelog and driver version update (bnc#909789,FATE#317517). - megaraid: minor cut and paste error fixed (bnc#909789,FATE#317517). - megaraid_sas: fix a bug for 64 bit arches (bnc#909789,FATE#317517). - megaraid_sas: megaraid_sas driver init fails in kdump kernel (bnc#909789,FATE#317517). - megaraid_sas: Add High Availability clustering support using (bnc#909789,FATE#317517). - megaraid_sas: Version and Changelog update (bnc#909789,FATE#317517). - megaraid_sas: addded support for big endian architecture (bnc#909789,FATE#317517). - megaraid_sas: fixes for few endianess issues (bnc#909789,FATE#317517). - megaraid_sas: Fix synchronization problem between sysPD IO (bnc#909789,FATE#317517). - megaraid: Use resource_size_t for PCI resources, not long (bnc#909789,FATE#317517). - megaraid: missing bounds check in mimd_to_kioc() (bnc#909789,FATE#317517). - megaraid_sas_fusion: correctly pass queue info pointer (bnc#909789,FATE#317517). - megaraid_sas_fusion: Return correct error value in (bnc#909789,FATE#317517). - megaraid_sas: check return value for megasas_get_pd_list() (bnc#909789,FATE#317517). - megaraid_sas: Don't wait forever for non-IOCTL DCMDs (bnc#909789,FATE#317517). - megaraid_sas: Big endian code related fixes (bnc#909789,FATE#317517). - megaraid_sas: Set 32-bit DMA mask (bnc#909789,FATE#317517). - megaraid_sas: Performance boost fixes (bnc#909789,FATE#317517). - megaraid_sas: Load correct raid context timeout (bnc#909789,FATE#317517). - megaraid_sas: Fix megasas_ioc_init_fusion (bnc#909789,FATE#317517). - megaraid_sas: Return leaked MPT frames to MPT frame pool (bnc#909789,FATE#317517). - megaraid_sas: Add Dell PowerEdge VRTX SR-IOV VF support (bnc#909789,FATE#317517). - megaraid_sas: Version and Changelog update (bnc#909789,FATE#317517). - megaraid_sas: fix a small problem when reading state value from hw (bnc#909789,FATE#317517). - megaraid: Fail resume if MSI-X re-initialization failed (bnc#909789,FATE#317517). - megaraid: Use pci_enable_msix_range() instead of pci_enable_msix() (bnc#909789,FATE#317517). - megaraid_sas: Fix LD/VF affiliation parsing (bnc#909789,FATE#317517). - megaraid_sas: Add missing initial call to (bnc#909789,FATE#317517). - megaraid_sas: Remove unused variables in megasas_instance (bnc#909789,FATE#317517). - megaraid_sas: Fix reset_mutex leak (bnc#909789,FATE#317517). - megaraid_sas: Version and Changelog update (bnc#909789,FATE#317517). - megaraid_sas : Do not scan non syspd drives (bnc#909789,FATE#317517). - megaraid_sas : Use writeq for 64bit pci write to avoid spinlock (bnc#909789,FATE#317517). - megaraid_sas : Update threshold based reply post host index register (bnc#909789,FATE#317517). - megaraid_sas : Firmware crash dump feature support (bnc#909789,FATE#317517). - megaraid_sas : Extended VD support (bnc#909789,FATE#317517). - megaraid_sas : Host lock less mode to enabled asynchronous IO (bnc#909789,FATE#317517). - megaraid_sas : Round down max sge supported by controller to power of (bnc#909789,FATE#317517). - megaraid_sas : Add module parameter to disable IRQ-CPU affinity hint (bnc#909789,FATE#317517). - megaraid_sas : N-drive primary raid level 1 load balancing (bnc#909789,FATE#317517). - megaraid_sas : MFI MPT linked list corruption fix (bnc#909789,FATE#317517). - megaraid_sas : Driver version update (bnc#909789,FATE#317517). - megaraid_sas: fix bug in handling return value of (bnc#909789,FATE#317517). - megaraid_sas: driver version upgrade and remove some meta data of (bnc#909789,FATE#317517). - megaraid_sas: update MAINTAINERS and copyright information for (bnc#909789,FATE#317517). - megaraid_sas: online Firmware upgrade support for Extended VD feature (bnc#909789,FATE#317517). - megaraid_sas: make HBA operational after LD_MAP_SYNC DCMD in OCR path (bnc#909789,FATE#317517). - megaraid_sas: corrected return of wait_event from abort frame path (bnc#909789,FATE#317517). - megaraid_sas: dndinaness related bug fixes (bnc#909789,FATE#317517). - megaraid_sas: do not process IOCTLs and SCSI commands during driver (bnc#909789,FATE#317517). - megaraid_sas: endianness related bug fixes and code optimization (bnc#909789,FATE#317517). - megaraid_sas: add support for secure JBOD (bnc#909789,FATE#317517). - megaraid_sas: fix the problem of non-existing VD exposed to host (bnc#909789,FATE#317517). - megaraid_sas: disable interrupt_mask before enabling hardware interrupts (bnc#909789,FATE#317517). - megaraid_sas: complete outstanding IOCTLs before killing adapter (bnc#909789,FATE#317517). - megaraid_sas: reserve commands for IOCTLs and internal DCMDs (bnc#909789,FATE#317517). - megaraid_sas: remove redundant memset call (bnc#909789,FATE#317517). - megaraid_sas: driver version update (bnc#909789,FATE#317517). - Delete patches.drivers/megaraid_sas_fix_kdump.patch. - commit 100d0a0 - PCI: Add pci_device_type to pdev's device struct (bsc#909350, FATE#317546). - PCI: SRIOV control and status via sysfs (bsc#909350, FATE#317546). - pci: Set dev->dev.type in alloc_pci_dev (bsc#909350, FATE#317546). - Refresh patches.drivers/cxgb3-0023-PCI-Make-pci_error_handlers-const.patch. - Refresh patches.fixes/PCI-Provide-method-to-reduce-the-number-of-total-VFs.patch. - commit 7fc8d46 - s390/kernel: add system calls for PCI memory access (FATE#318094, LTC#117845). - commit 68cbae5 - be2net: Change driver version to indicate a SUSE backport (bnc#908322 FATE#317535). - commit 7abcc94 - aacraid: kdump fix (bnc#909622,FATE#317525). - aacraid: Fix for arrays are going offline in the system. System hangs (bnc#909622,FATE#317525). - aacraid: Dual firmware image support (bnc#909622,FATE#317525). - aacraid: suppress two GCC warnings (bnc#909622,FATE#317525). - aacraid: 1024 max outstanding command support for Series 7 and above (bnc#909622,FATE#317525). - aacraid: SCSI dma mapping failure case handling (bnc#909622,FATE#317525). - commit 61a1599 ++++ libcgroup1: - add Require for post install scriptlets (bnc#912531) ++++ libvpd2: - version update to 2.2.4 due to SP4 fate request (FATE#317604) see Changelog for changes - fix udev rules directory - added patches: libvpd2.makefile.patch - modified patches: libvpd.async.patch ------------------------------------------------------------------ ------------------ 2015-1-12 - Jan 12 2015 ------------------- ------------------------------------------------------------------ ++++ docbook-xsl-stylesheets: - Fixed bnc#912669: added missing image directory - Moved some patches from the openSUSE branch to SLE ++++ kernel-docs: - Reshuffle patches to apply - commit bd7fc14 - PCI/MSI: Add pci_enable_msi_range() and pci_enable_msix_range() (bnc#908322 FATE#317535). - x86-64, espfix: Don't leak bits 31:16 of %esp returning to 16-bitstack (bsc#907818,CVE-2014-9090). - x86, espfix: Make it possible to disable 16-bit support (bsc#907818,CVE-2014-9090). - x86_64/entry/xen: Do not invoke espfix64 on Xen (bsc#907818,CVE-2014-9090). - x86_64, traps: Fix the espfix64 #DF fixup and rewrite it in C (bsc#907818,CVE-2014-9090). - x86_64, traps: Rework bad_iret (bsc#909077,CVE-2014-8133). - x86_64, traps: Stop using IST for #SS (bsc#907818, CVE-2014-9090, CVE-2014-9322). - x86, asm: Flip RESTORE_ARGS arguments logic (bsc#907818,CVE-2014-9090). - Refresh other Xen patches. - commit ac6b8d7 - scsi_transport_fc: Add 32Gbps speed definition (bnc#909372,FATE#317544). - commit c560518 - qla2xxx: Remove debug code that msleeps for random duration (bnc#909372,FATE#317544). - qla2xxx: Integrate generic card temperature with mezz card (bnc#909372,FATE#317544). - qla2xxx: Add clarifying printk to thermal access fail cases (bnc#909372,FATE#317544). - qla2xxx: Enhancements to support ISPFx00 (bnc#909372,FATE#317544). - qla2xxx: Remove unused function (bnc#909372,FATE#317544). - qla2xxx: fix sparse warning "large integer implicitly (bnc#909372,FATE#317544). - qla2xxx: qla2x00_sp_compl can be static (bnc#909372,FATE#317544). - qla2xxx: Set the index in outstanding command array to NULL (bnc#909372,FATE#317544). - qla2xxx: Move qla2x00_free_device to the correct location (bnc#909372,FATE#317544). - qla2xxx: Do not query FC statistics during chip reset (bnc#909372,FATE#317544). - qla2xxx: Do not take a second firmware dump when intentionally (bnc#909372,FATE#317544). - qla2xxx: Fix sparse warning from qla_mr.c and qla_iocb.c (bnc#909372,FATE#317544). - qla2xxx: Clean up qla24xx_iidma() (bnc#909372,FATE#317544). - qla2xxx: Clean up qla84xx_mgmt_cmd() (bnc#909372,FATE#317544). - qla2xxx: Remove dead code in qla2x00_configure_hba() (bnc#909372,FATE#317544). - qla2xxx: Remove two superfluous tests (bnc#909372,FATE#317544). - qla2xxx: Remove a dead assignment in (bnc#909372,FATE#317544). - qla2xxx: Remove redundant assignments (bnc#909372,FATE#317544). - qla2xxx: Help Coverity with analyzing ct_sns_pkt (bnc#909372,FATE#317544). - qla2xxx: Fix qla2xxx_check_risc_status() (bnc#909372,FATE#317544). - qla2xxx: Remove an unused variable from qla2x00_remove_one() (bnc#909372,FATE#317544). - qla2xxx: Fix a memory leak in an error path of (bnc#909372,FATE#317544). - qla2xxx: Fix sparse warnings in qlafx00_fxdisc_iocb function (bnc#909372,FATE#317544). - qla2xxx: Enable target mode support for ISP83xx (bnc#909372,FATE#317544). - qla2xxx: Prevent enabling target mode for unsupported HBAs (bnc#909372,FATE#317544). - qla2xxx: Add support for ISP8044 (bnc#909372,FATE#317544). - qla2xxx: Fix incorrect test after list_for_each_entry() exits (bnc#909372,FATE#317544). - qla2xxx: Correct multiqueue offset calculations (bnc#909372,FATE#317544). - qla2xxx: Set factory reset recovery timeout to 10 min. for (bnc#909372,FATE#317544). - qla2xxx: Perform warm reset every 2 minutes if firmware load (bnc#909372,FATE#317544). - qla2xxx: Add ISPFX00 specific bus reset routine (bnc#909372,FATE#317544). - qla2xxx: Remove QL_DEBUG_LEVEL_17 defines from qla_nx.c (bnc#909372,FATE#317544). - qla2xxx: Add setting of driver version string for vendor (bnc#909372,FATE#317544). - qla2xxx: Reconfigure thermal temperature (bnc#909372,FATE#317544). - qla2xxx: Notify ISPFX00 firmware when driver is unloaded or (bnc#909372,FATE#317544). - qla2xxx: Add critical temperature handling for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: Make log message that prints when a completion status (bnc#909372,FATE#317544). - qla2xxx: Add missing FCP statistics to sysfs interface (bnc#909372,FATE#317544). - qla2xxx: Add changes to support extended IOs for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: Add changes in initialization for ISPFX00 cards with (bnc#909372,FATE#317544). - qla2xxx: Send all AENs for ISPFx00 to above layers (bnc#909372,FATE#317544). - qla2xxx: Remove handling of Shutdown Requested AEN from (bnc#909372,FATE#317544). - qla2xxx: Correct Interrupt Register offset for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: QLAFX00 make over temperature AEN handling (bnc#909372,FATE#317544). - qla2xxx: Set default critical temperature value in cases when (bnc#909372,FATE#317544). - qla2xxx: Add loopback IDC-TIME-EXTEND aen handling support (bnc#909372,FATE#317544). - qla2xxx: Select link initialization option bits from current (bnc#909372,FATE#317544). - qla2xxx: Move queue depth ramp down message to i/o debug (bnc#909372,FATE#317544). - qla2xxx: Add a new interface to update versions (bnc#909372,FATE#317544). - qla2xxx: Correctly print out/in mailbox registers (bnc#909372,FATE#317544). - qla2xxx: Correction to message ids (bnc#909372,FATE#317544). - qla2xxx: print MAC via %pMR (bnc#909372,FATE#317544). - qla2xxx: Use pcie_is_pcie() to simplify code (bnc#909372,FATE#317544). - qla2xxx: Use standard PCIe Capability Link register field (bnc#909372,FATE#317544). - qla2xxx: Print proper QLAFX00 product name at probe (bnc#909372,FATE#317544). - qla2xxx: Honor execute firmware failures (bnc#909372,FATE#317544). - qla2xxx: Disable INTx interrupt for ISP82XX (bnc#909372,FATE#317544). - qla2xxx: Correctly set mailboxes for extended init control (bnc#909372,FATE#317544). - qla2xxx: Add BPM support for ISP25xx (bnc#909372,FATE#317544). - qla2xxx: Don't consider the drivers knocked out of IDC (bnc#909372,FATE#317544). - Revert "qla2xxx: Ramp down queue depth for attached SCSI (bnc#909372,FATE#317544). - qla2xxx: Refactor shutdown code so some functionality can be (bnc#909372,FATE#317544). - qla2xxx: Disable adapter when we encounter a PCI disconnect (bnc#909372,FATE#317544). - qla2xxx: Fix issue with not displaying node name after system (bnc#909372,FATE#317544). - qla2xxx: Add BSG interface for read/write serdes register (bnc#909372,FATE#317544). - qla2xxx: Fix undefined behavior in call to snprintf() (bnc#909372,FATE#317544). - qla2xxx: Clear RISC INT reg only for an event and not always (bnc#909372,FATE#317544). - qla2xxx: Add logic to abort BSG commands for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: Add changes to obtain ISPFX00 adapters product (bnc#909372,FATE#317544). - qla2xxx: Use the correct mailbox registers when acknowledging (bnc#909372,FATE#317544). - qla2xxx: Use scnprintf() instead of snprintf() in the sysfs (bnc#909372,FATE#317544). - qla2xxx: Only complete dcbx_comp and lb_portup_comp for (bnc#909372,FATE#317544). - qla2xxx: Reset nic_core_reset_owner on moving from COLD to (bnc#909372,FATE#317544). - qla2xxx: Replace a constant with a macro definition for (bnc#909372,FATE#317544). - qla2xxx: Update the driver version to 8.06.00.12-k (bnc#909372,FATE#317544). - qla2xxx: Fix warning reported by smatch (bnc#909372,FATE#317544). - qla2xxx: Fix scsi_host leak on qlt_lport_register callback failure (bnc#909372,FATE#317544). - qla2xxx: Remove last vestiges of qla_tgt_cmd.cmd_list (bnc#909372,FATE#317544). - qla2xxx: Fix kernel panic on selective retransmission request (bnc#909372,FATE#317544). - qla2xxx: Fix multiqueue MSI-X registration (bnc#909372,FATE#317544). - qla2xxx: Add mutex around optrom calls to serialize accesses (bnc#909372,FATE#317544). - qla2xxx: Add handling for boot indication progress AENs for (bnc#909372,FATE#317544). - qla2xxx: Replace constant value for IOCTL IOCB abort execution (bnc#909372,FATE#317544). - qla2xxx: Use proper message for Non owner reset ACK Timeout (bnc#909372,FATE#317544). - qla2xxx: Remove init control block related dead code for (bnc#909372,FATE#317544). - qla2xxx: Select correct request queue for error type IOCB for (bnc#909372,FATE#317544). - qla2xxx: Enable the Flash Access Control (FAC) mailbox (bnc#909372,FATE#317544). - qla2xxx: Properly handle 32 bit mailbox register for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: Set host can_queue value based on available (bnc#909372,FATE#317544). - qla2xxx: Add support for ISP2071 (bnc#909372,FATE#317544). - qla2xxx: Remove Marker type IOCB logic for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: Remove ISP_ABORT_NEEDED and ISP_ABORT_RETRY checks (bnc#909372,FATE#317544). - qla2xxx: Add changes in the IOCB structures to adjust driver (bnc#909372,FATE#317544). - qla2xxx: Avoid poisoning in the response queue for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: Simplify the ISPFX00 interrupt handler code for (bnc#909372,FATE#317544). - qla2xxx: Read capture firmware dump on mailbox timeout for (bnc#909372,FATE#317544). - qla2xxx: Correctly set the read_optrom pointer for ISP8044 (bnc#909372,FATE#317544). - qla2xxx: Update the driver version to 8.07.00.02-k (bnc#909372,FATE#317544). - qla2xxx: Correct the port no assignment for ISP82XX (bnc#909372,FATE#317544). - qla2xxx: Fix Task Management command asynchronous handling (bnc#909372,FATE#317544). - qla2xxx: Add IOCB Abort command asynchronous handling (bnc#909372,FATE#317544). - qla2xxx: fix error handling of qla2x00_mem_alloc() (bnc#909372,FATE#317544). - qla2xxx: Re-sync module parameter descriptions with the code (bnc#909372,FATE#317544). - qla2xxx: Fix build errors related to invalid print fields on (bnc#909372,FATE#317544). - qla2xxx: Wait for reset completion without lock for ISPFX00 (bnc#909372,FATE#317544). - qla2xxx: Do not schedule reset when one is already active when (bnc#909372,FATE#317544). - qla2xxx: Correct operations for ISP27xx template types 270 and 271 (bnc#909372,FATE#317544). - qla2xxx: Allow ISP83XX and ISP27XX both to write req_q_out register (bnc#909372,FATE#317544). - qla2xxx: Correct ISP83xx/ISP27xx mislogic in setting out_mb in (bnc#909372,FATE#317544). - qla2xxx: Log when device state is moved to failed state (bnc#909372,FATE#317544). - qla2xxx: Add pci device id 0x2271 (bnc#909372,FATE#317544). - qla2xxx: Allow the next firmware dump if the previous dump capture (bnc#909372,FATE#317544). - qla2xxx: Support of new firmware dump opcodes QLA8044_RDDFE(38), (bnc#909372,FATE#317544). - qla2xxx: Check for peg alive counter and clear any outstanding (bnc#909372,FATE#317544). - qla2xxx: Add ISP8044 serdes bsg interface (bnc#909372,FATE#317544). - qla2xxx: Correction to ISP27xx template entry types 256 and 258 (bnc#909372,FATE#317544). - qla2xxx: Track the process when the ROM_LOCK failure happens (bnc#909372,FATE#317544). - qla2xxx: Remove unnecessary delays from fw dump code path (bnc#909372,FATE#317544). - qla2xxx: Introduce fw_dump_flag to track fw dump progress (bnc#909372,FATE#317544). - qla2xxx: Enable fw_dump_size for ISP8044 (bnc#909372,FATE#317544). - qla2xxx: Update entry type 270 to match spec update (bnc#909372,FATE#317544). - qla2xxx: Decrease pci access for response queue processing for (bnc#909372,FATE#317544). - qla2xxx: Use proper log message for flash lock failed error (bnc#909372,FATE#317544). - qla2xxx: Include file for msleep declartion in qla_nx2.c (bnc#909372,FATE#317544). - qla2xxx: Remove unnecessary printk_ratelimited from qla_nx2.c (bnc#909372,FATE#317544). - qla2xxx: ISP8044 poll ipmdio bus timeout improvement (bnc#909372,FATE#317544). - qla2xxx: IOCB data should be copied to I/O mem using memcpy_toio (bnc#909372,FATE#317544). - qla2xxx: Adjust adapter reset routine to the changes in firmware (bnc#909372,FATE#317544). - qla2xxx: Check the QLA8044_CRB_DRV_ACTIVE_INDEX register when we are (bnc#909372,FATE#317544). - qla2xxx: ISP27xx firmware dump template spec updates (including (bnc#909372,FATE#317544). - qla2xxx: ISP27xx queue index shadow registers (bnc#909372,FATE#317544). - qla2xxx: Delay driver unload if there is any pending activity going (bnc#909372,FATE#317544). - qla2xxx: Fix beacon blink logic for ISP26xx/83xx (bnc#909372,FATE#317544). - qla2xxx: Add MBC option for fast SFP data access (bnc#909372,FATE#317544). - qla2xxx: Remove mapped vp index iterator macro dead code (bnc#909372,FATE#317544). - qla2xxx: ABTS cause double free of qla_tgt_cmd + (bnc#909372,FATE#317544). - qla2xxx: Do logins from a chip reset in DPC thread instead of the (bnc#909372,FATE#317544). - qla2xxx: Remove wait for online from host reset handler (bnc#909372,FATE#317544). - qla2xxx: Update the driver version to 8.07.00.08-k (bnc#909372,FATE#317544). - qla2xxx: fix incorrect debug printk (bnc#909372,FATE#317544). - qla2xxx: Use kmemdup instead of kmalloc + memcpy (bnc#909372,FATE#317544). - qla2xxx: Restrict max_lun to 16-bit for older HBAs (bnc#909372,FATE#317544). - qla2xxx: Use dma_zalloc_coherent (bnc#909372,FATE#317544). - qla2xxx: Use pci_enable_msix_range() instead of pci_enable_msix() (bnc#909372,FATE#317544). - qla2xxx: Move mailbox failure messages to a default debug level (bnc#909372,FATE#317544). - qla2xxx: Remove restriction on starting remote device discovery on (bnc#909372,FATE#317544). - qla2xxx: Fix shost use-after-free on device removal (bnc#909372,FATE#317544). - qla2xxx: Use qla2x00_clear_drv_active on probe failure (bnc#909372,FATE#317544). - qla2xxx: Collect PCI register checks and board_disable scheduling (bnc#909372,FATE#317544). - qla2xxx: Schedule board_disable only once (bnc#909372,FATE#317544). - qla2xxx: Prevent removal and board_disable race (bnc#909372,FATE#317544). - qla2xxx: Prevent probe and board_disable race (bnc#909372,FATE#317544). - qla2xxx: ISP27xx add tests for incomplete template (bnc#909372,FATE#317544). - qla2xxx: ISP27xx optimize fwdump entry table lookup (bnc#909372,FATE#317544). - qla2xxx: ISP27xx fwdump template remove high frequency debug logs (bnc#909372,FATE#317544). - qla2xxx: ISP27xx fwdump template fix insertbuf() routine (bnc#909372,FATE#317544). - qla2xxx: Add ISP27xx fwdump template entry T275 (insert buffer) (bnc#909372,FATE#317544). - qla2xxx: Enable fast flash access for ISP83xx (bnc#909372,FATE#317544). - qla2xxx: Add endianizer to max_payload_size modifier (bnc#909372,FATE#317544). - qla2xxx: ISP25xx multiqueue shadow register crash fix (bnc#909372,FATE#317544). - qla2xxx: ISP27xx fwdump template error print simplification (bnc#909372,FATE#317544). - qla2xxx: Fix potential return count bug in qla2xxx_get_vpd_field() (bnc#909372,FATE#317544). - qla2xxx: ISPFX00 avoid writing semaphore register in request_irqs() (bnc#909372,FATE#317544). - qla2xxx: Incorrect debug level on mailbox command print 0x1111 (bnc#909372,FATE#317544). - qla2xxx: Incorrect linked list semantic in qlafx00_get_fcport() (bnc#909372,FATE#317544). - qla2xxx: ISPFx00 unexpected resets during adapter boot sequence (bnc#909372,FATE#317544). - qla2xxx: Add FDMI-2 functionality (bnc#909372,FATE#317544). - qla2xxx: Add FA-WWN functionality (bnc#909372,FATE#317544). - qla2xxx: Add diagnostic port functionality (bnc#909372,FATE#317544). - qla2xxx: Fix driver version string message (bnc#909372,FATE#317544). - qla2xxx: Allow user to change ql2xfdmienable value (bnc#909372,FATE#317544). - qla2xxx: Unload of qla2xxx driver crashes the machine (bnc#909372,FATE#317544). - qla2xxx: Add fix in driver unload for pending activity (bnc#909372,FATE#317544). - qla2xxx: Declaration error cause stack corruption (bnc#909372,FATE#317544). - qla2xxx: Enable diagnostic port using NVRAM parameters (bnc#909372,FATE#317544). - qla2xxx: Disable laser for ISP2031 while unloading driver (bnc#909372,FATE#317544). - qla2xxx: Free sysfs attributes for ISP27xx (bnc#909372,FATE#317544). - qla2xxx: Force use of mailbox interface for flash access commands for (bnc#909372,FATE#317544). - qla2xxx: Add missing ISP27xx checks to optrom code (bnc#909372,FATE#317544). - qla2xxx: Honor FCP_RSP retry delay timer field (bnc#909372,FATE#317544). - qla2xxx: Restore WWPN in case of Loop Dead (bnc#909372,FATE#317544). - qla2xxx: Mark port lost when we receive an RSCN for it (bnc#909372,FATE#317544). - qla2xxx: Disable PCI device in shutdown handler (bnc#909372,FATE#317544). - qla2xxx: Fail adapter initialization on load ram failure (bnc#909372,FATE#317544). - qla2xxx: Move warning message to debug level (bnc#909372,FATE#317544). - qla2xxx: Fix sparse warning in qla_iocb.c file (bnc#909372,FATE#317544). - qla2xxx: Update the driver version to 8.07.00.16-k (bnc#909372,FATE#317544). - qla2xxx: Use correct offset to req-q-out for reserve calculation (bnc#909372,FATE#317544). - qla2xxx: Increase room in request queue for sending priority packets (bnc#909372,FATE#317544). - qla2xxx: Increase the request queue size to 8K for ISP2031 (bnc#909372,FATE#317544). - qla2xxx: remove redundant declaration in 'qla_gbl.h' (bnc#909372,FATE#317544). - qla2xxx: fix race in handling rport deletion during recovery causes (bnc#909372,FATE#317544). - qla2xxx: fix busy wait regression (bnc#909372,FATE#317544). - Delete patches.drivers/qla2xxx-Set-host-can_queue-value-based-on-available.patch. - commit cf3eaeb - mm: fix corner case in anon_vma endless growing prevention (bnc#904242). - commit bc81ecd - Refresh patches.fixes/mm-prevent-endless-growth-of-anon_vma-hierarchy. - commit bf9c9b0 ++++ spice: - Disable client build. no-client-fix.patch ++++ xen: - bnc#901488 - Intel ixgbe driver assigns rx/tx queues per core resulting in irq problems on servers with a large amount of CPU cores 5489c2cf-have-architectures-specify-Dom0-PIRQs.patch - bnc#910254 - SLES11 SP3 Xen VT-d igb NIC doesn't work 54ad06e6-VT-d-don-t-crash-when-PTE-bits-52-and-up-are-non-zero.patch - Upstream patches from Jan 548e9c0d-console-allocate-ring-buffer-earlier.patch 54aaabb8-domctl-fix-IRQ-permission-granting-revocation.patch ------------------------------------------------------------------ ------------------ 2015-1-9 - Jan 9 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - hyperv: Fix some variable name typos in send-buffer init/revoke (fate#317533). - storvsc: ring buffer failures may result in I/O freeze (fate#317533). - commit 8252d17 ++++ libguestfs: - Ignore deprecated feature warnings generated by OCaml 4 2000-ignore-ocaml-deprecated-strings-warnings.patch ++++ iptables: - Update to 1.4.16.3 for FATE#316701. * Include lost match/target descriptions in manpage again * libxt_LOG: fix ignorance of all but the last flag * libxt_HL: restore hl-* option names * libxt_hashlimit: use a more obvious expiry value by default * libxt_RATEEST: fix find-and-delete of rules with -j RATEEST * ipv4: restore negation for the -f option * Reject empty host specifications (e.g. -s "") * libxt_conntrack: restore network byteordering for ABI v1 & v2 * stricter option parsing * support for the current xt_SET target as contained in 2.6.39 * support for the new xt_devgroup match * support for the new xt_AUDIT target * support for a new NFQUEUE bypass option, allowing to bypass the queue if no userspace listener is present * a new iptables option "-C" to check for existence of a rules * support for the cpu match, which can be used to improve cache locality when running multiple server instances * support for the IDLETIMER target, which can be used to notify userspace of interfaces being idle * support for the CHECKSUM target * support for the ipvs match * a fix for deletion of rules using the quota match * support for the LED target * a new version of the set extension for the upcoming release supporting IPv6 * negation support for the quota match * support for the SACK-IMMEDIATELY SCTP extension and FORWARD_TSN chunk type in the sctp match * add support for the new xt_CT extension * import the nfnl_osf program required for proper operation of the xt_osf extension * libipq is built as a shared library * removal of some restrictions on interface names - Remove the patches/backport that already in. ++++ openssl: - fix for several security vulnerabilities: * CVE-2014-3570 (bnc#912296) - Bignum squaring (BN_sqr) may produce incorrect results on some platforms, including x86_64. - added openssl-CVE-2014-3570.patch * CVE-2014-3571 (bnc#912294) - Fix crash in dtls1_get_record whilst in the listen state where you get two separate reads performed - one for the header and one for the body of the handshake record. - added openssl-CVE-2014-3571.patch * CVE-2014-3572 (bnc#912015) - don't accept a handshake using an ephemeral ECDH ciphersuites with the server key exchange message omitted. - added openssl-CVE-2014-3572.patch * CVE-2014-8275 (bnc#912018) - fix various certificate fingerprint issues - added openssl-CVE-2014-8275.patch * CVE-2015-0204 (bnc#912014) - Only allow ephemeral RSA keys in export ciphersuites - added openssl-CVE-2015-0204.patch * CVE-2015-0205 (bnc#912293) - OpenSSL 0.9.8j is NOT vulnerable to CVE-2015-0205 as it doesn't support DH certificates and this typo prohibits skipping of certificate verify message for sign only certificates anyway. - patch only fixes the wrong condition - added openssl-CVE-2015-0205.patch ++++ libvirt: - Forward-port SLE11 SP3 bug fixes for the legacy xen virt driver xen-name-for-devid.patch, fix-pci-attach-xen-driver.patch - spec: add patches that were inadvertently removed disable-virCgroupGetPercpuStats-test.patch, qemu-apparmor-screenshot.patch ------------------------------------------------------------------ ------------------ 2015-1-8 - Jan 8 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - qlge: fix an "&&" vs "||" bug (bsc#912171). - commit b976670 ++++ curl: - curl_multi_remove_handle: don't crash on multiple removes (bnc#897816) * added curl-allow_multiple_removes_in_multi_handle.patch ++++ mpfr: - Add mpfr-3.1.2-patch11.diff to fix possible buffer overflow in mpfr_strtofr (CVE-2014-9474). [bnc#911812] ++++ rpm: - fix noglob patch, it broke files with spaces [bnc#911228] ++++ yast2-network: - bnc#900383 - adapted to new device type detection API provided by yast2 - fixed problem with not matching udev rule (bnc#551310) - bnc#695262 - fixed write sequence to enable device renaming. - 2.17.201 ------------------------------------------------------------------ ------------------ 2015-1-7 - Jan 7 2015 ------------------- ------------------------------------------------------------------ ++++ git: - VUL-0: arbitrary command execution vulnerability on case-insensitive file system (CVE-2014-9390, bnc#910756): backport upstream fixes: 0001-fsck-warn-about-.-and-.-in-trees.patch 0002-fsck-warn-about-.git-in-trees.patch 0003-unpack-trees-propagate-errors-adding-entries-to-the-.patch 0004-read-tree-add-tests-for-confusing-paths-like-.-and-..patch 0005-verify_dotfile-reject-.git-case-insensitively.patch 0006-t1450-refactor-.-.-and-.git-fsck-tests.patch 0007-fsck-notice-.git-case-insensitively.patch 0008-utf8-add-is_hfs_dotgit-helper.patch 0009-read-cache-optionally-disallow-HFS-.git-variants.patch 0010-fsck-complain-about-HFS-.git-aliases-in-trees.patch 0011-path-add-is_ntfs_dotgit-helper.patch 0012-read-cache-optionally-disallow-NTFS-.git-variants.patch 0013-fsck-complain-about-NTFS-.git-aliases-in-trees.patch ++++ util-linux: - libblkid: care about unsafe chars and possible buffer overflow in cache (CVE-2014-9114, util-linux-libblkid-unsafe-chars.patch, util-linux-libblkid-overflow.patch, bsc#907434) ++++ libsndfile: - VUL-0: two buffer read overflows in sd2_parse_rsrc_fork() (CVE-2014-9496, bnc#911796): backported upstream fix patches sndfile-src-sd2.c-Fix-segfault-in-SD2-RSRC-parser.patch sndfile-src-sd2.c-Fix-two-potential-buffer-read-overflows.patch ++++ libvirt: - Update to libvirt 1.2.5 - See http://libvirt.org/news.html for a list of features, enhancements, and bug fixes since version 1.0.5 found in SLE11 SP3 - Added patches xend-v3-migration-support.patch and xend-set-migration-constraints.patch for FATE#317239 - See also FATE#318081 ++++ xen: - Add domain_migrate_constraints_set API to Xend's http interface Modified xend-set-migration-constraints-from-cmdline.patch FATE#317239 - bnc#910681 - VUL-0: CVE-2015-0361: XSA-116: xen: xen crash due to use after free on hvm guest teardown 54abda24-x86-HVM-prevent-use-after-free-when-destroying-a-domain.patch (Replaces xsa116.patch) ------------------------------------------------------------------ ------------------ 2015-1-6 - Jan 6 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - udf: Check component length before reading it. - udf: Check path length when reading symlink. - udf: Verify symlink size before loading it. - udf: Verify i_size when loading inode. - isofs: Fix unchecked printing of ER records. - isofs: Fix infinite looping over CE entries (bnc#911325 CVE-2014-9420). - commit 8872db9 - rpm/kernel-source.spec.in: Restore accidentally deleted %source_timestamp - commit 93fab0f ++++ sssd: - bnc#902731 sssd_be[3734]: segfault at 8 ip 0000000000410656 sp 00007fff486952a0 error 4 in sssd_be[400000+87000] - bnc#903830 - SSSD inconsistent results - bnc#890242 After installing sssd-tools the sss_obfuscate command does not work. ------------------------------------------------------------------ ------------------ 2015-1-5 - Jan 5 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - x86, kvm: Clear paravirt_enabled on KVM guests for espfix32's benefit (bsc#909078, CVE-2014-8134). - commit 54cdab5 - x86: UV BAU: Increase maximum CPUs per socket/hub (bsc#911181). - x86: UV BAU: Avoid NULL pointer reference in ptc_seq_show (bsc#911181). - commit 99e6788 - mei: me: add Lynx Point Wellsburg work station device id (bnc#876086). - mei: add 9 series PCH mei device ids (bnc#876086). - mei: me: do not load the driver if the FW doesn't support MEI interface (bnc#876086). - mei: limit the number of consecutive resets (bnc#876086). - mei: ME hardware reset needs to be synchronized (bnc#876086). - mei: me: fix hardware reset flow (bnc#876086). - mei: add hw start callback (bnc#876086). - mei: me: read H_CSR after asserting reset (bnc#876086). - mei: me: clear interrupts on the resume path (bnc#876086). - mei: cancel stall timers in mei_reset (bnc#876086). - mei: don't have to clean the state on power up (bnc#876086). - Delete patches.drivers/mei-ME-hardware-reset-synchronized.patch. - Delete patches.drivers/mei-me-do-not-load-the-driver-if-the-FW-doesnt-support. - commit 063d4b7 - x86/uv: Update the UV3 TLB shootdown logic (bsc#909092). - x86/UV: Fix NULL pointer dereference in uv_flush_tlb_others() if the 'nobau' boot option is used (bsc#909092). - x86/uv: Work around UV2 BAU hangs (bsc#909092). - x86/uv: Implement UV BAU runtime enable and disable control via /proc/sgi_uv/ (bsc#909092). - x86/uv: Fix the UV BAU destination timeout period (bsc#909092). - x86/uv: Fix UV2 BAU legacy mode (bsc#909092). - commit 52e6495 - qlge: Fix compilation warning (bsc#909361 FATE#317547). - qlge: Fix TSO for non-accelerated vlan traffic (bsc#909361 FATE#317547). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bsc#909361 FATE#317547). - qlogic: use pci_zalloc_consistent (bsc#909361 FATE#317547). - pci-dma-compat: add pci_zalloc_consistent helper (bsc#909361 FATE#317547). - net: get rid of SET_ETHTOOL_OPS (bsc#909361 FATE#317547). - qlge: Convert /n to \n (bsc#909361 FATE#317547). - qlge: remove open-coded skb_cow_head (bsc#909361 FATE#317547). - qlge: Do not propaged vlan tag offloads to vlans (bsc#909361 FATE#317547). - qlge: Use pci_enable_msix_range() instead of pci_enable_msix() (bsc#909361 FATE#317547). - qlge: Get rid of an redundant assignment (bsc#909361 FATE#317547). - drivers/net: delete non-required instances of include (bsc#909361 FATE#317547). - qlge: Fix vlan netdev features (bsc#909361 FATE#317547). - qlge: make local function static (bsc#909361 FATE#317547). - qlge: Update version to 1.00.00.34 (bsc#909361 FATE#317547). - qlge: Allow enable/disable rx/tx vlan acceleration independently (bsc#909361 FATE#317547). - qlge: Fix ethtool statistics (bsc#909361 FATE#317547). - net: qlge: remove unnecessary pci_set_drvdata() (bsc#909361 FATE#317547). - qlge: Update version to 1.00.00.33 (bsc#909361 FATE#317547). - qlge: Enhance nested VLAN (Q-in-Q) handling (bsc#909361 FATE#317547). - qlogic: Remove extern from function prototypes (bsc#909361 FATE#317547). - qlge: call ql_core_dump() only if dump memory was allocated (bsc#909361 FATE#317547). - ethernet: Convert mac address uses of 6 to ETH_ALEN (bsc#909361 FATE#317547). - qlge: add missing free_netdev() on error in qlge_probe() (bsc#909361 FATE#317547). - net/ethernet/qlogic/qlge/qlge_main: Use module_pci_driver to register driver (bsc#909361 FATE#317547). - PCI: Add helper macro for pci_register_driver boilerplate (bsc#909361 FATE#317547). - drivers:net: Remove unnecessary OOM messages after netdev_alloc_skb (bsc#909361 FATE#317547). - drivers: net: Remove remaining alloc/OOM messages (bsc#909361 FATE#317547). - ethernet: Remove unnecessary alloc/OOM messages, alloc cleanups (bsc#909361 FATE#317547). - netdev: make pci_error_handlers const (bsc#909361 FATE#317547). - qlge: fix an "&&" vs "||" bug (bsc#909361 FATE#317547). - slab: introduce kmalloc_array() (bsc#909361 FATE#317547). - commit 89d04c9 ++++ xen: - Don't create the xend-tools package for anything newer than suse_version >= 1315 ++++ yast2-storage: - fixed switching between btrfs and other filesystems (bsc#910346) - support PReP on GPT in expert partitioner (fate#317611) - 2.17.148 ------------------------------------------------------------------ ------------------ 2015-1-3 - Jan 3 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Clarify directives about the "xen3-auto-*" patches "The rule is rather simple, [...]: Adjusting these patches for context is _of course_ fine. Putting into them any fixes or other code adjustments is not." - commit 3f6fa6f - Refresh patches.xen/xen3-auto-common.diff. - Delete patches.xen/remove-context-for-xen3-auto-common.patch. - Delete patches.xen/restore-context-for-xen3-auto-common.patch. Remove the workaround introduced in 6d183a6. - commit 2c223a1 ------------------------------------------------------------------ ------------------ 2015-1-2 - Jan 2 2015 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - rpm/old-flavors: Obsolete kernel-bigsmp (fate#318083) - commit 62430e1 ++++ curl: - fix for CVE-2014-8150 (bnc#911363) * request injection vulnerability * added curl-CVE-2014-8150.patch - fix for CVE-2014-3707 (bnc#901924) * duphandle read out of bounds * added curl-CVE-2014-3707.patch - add a default cipher list to avoid weak ciphers (bnc#885302) * curl-SUSE_default_cipherlist.patch ++++ subversion: - Sec update bnc#909935 CVE-2014-3580, CVE-2014-8108 * subversion-CVE-2014-3580.patch * subversion-CVE-2014-8108.patch ++++ xorg-x11-server: - u_ShowOptions-Avoid-crashing-when-option-showopts-is-specified.patch * Fix option '-showopts' to work with all drivers. (bnc#883051) ------------------------------------------------------------------ ------------------ 2014-12-31 - Dec 31 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - libiscsi: Added new boot entries in the session sysfs (FATE#317527 bsc#909612). - commit 0887c36 ------------------------------------------------------------------ ------------------ 2014-12-30 - Dec 30 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.fixes/0005-NFSv4-Ensure-delegation-recall-and-byte-range-lock-r.patch. - Delete patches.kabi/0001-NFSv4-Allow-the-state-manager-to-mark-an-open_owner-.patch. - commit 6089523 ++++ php53: - security update: * CVE-2014-8142 [bnc#910659] + php-CVE-2014-8142.patch * CVE-2015-0231 [bnc#910659] + php-CVE-2015-0231.patch * null ptr deref [bnc#910659] + php-unserialize-null-ptr-deref.patch * CVE-2015-0232 [bnc#914690] + php-CVE-2015-0232.patch - added added README.default_socket_timeout [bnc#907519] ------------------------------------------------------------------ ------------------ 2014-12-27 - Dec 27 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - net: Add functions netif_reset_xps_queue and netif_set_xps_queue (bnc#909484 FATE#317397). - xps: Add xps_queue_release function (bnc#909484 FATE#317397). - commit 816650d ------------------------------------------------------------------ ------------------ 2014-12-26 - Dec 26 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - copy of PCI/MSI: Add pci_enable_msi_range() and pci_enable_msix_range() (bug#908322 FATE#317535). - commit 743b40c - net: Check for presence of IFLA_AF_SPEC (bnc#908322 FATE#317535). - net: Validate IFLA_BRIDGE_MODE attribute length (bnc#908322 FATE#317535). - be2net: fix alignment on line wrap (bnc#908322 FATE#317535). - be2net: remove multiple assignments on a single line (bnc#908322 FATE#317535). - be2net: remove space after typecasts (bnc#908322 FATE#317535). - be2net: remove unnecessary blank lines after an open brace (bnc#908322 FATE#317535). - be2net: insert a blank line after function/struct//enum definitions (bnc#908322 FATE#317535). - be2net: remove multiple blank lines (bnc#908322 FATE#317535). - be2net: add blank line after declarations (bnc#908322 FATE#317535). - be2net: remove return statements for void functions (bnc#908322 FATE#317535). - be2net: add speed reporting for 20G-KR interface (bnc#908322 FATE#317535). - be2net: add speed reporting for 40G/KR interface (bnc#908322 FATE#317535). - be2net: fix sparse warnings in be_cmd_req_port_type{} (bnc#908322 FATE#317535). - be2net: fix a sparse warning in be_cmd_modify_eqd() (bnc#908322 FATE#317535). - be2net: enable PCIe error reporting on VFs too (bnc#908322 FATE#317535). - be2net: send a max of 8 EQs to be_cmd_modify_eqd() on Lancer (bnc#908322 FATE#317535). - net: added support for 40GbE link (bnc#908322 FATE#317535). - be2net: fix port-type reporting in get_settings (bnc#908322 FATE#317535). - be2net: add ethtool "-m" option support (bnc#908322 FATE#317535). - be2net: use v1 of SET_FLOW_CONTROL command (bnc#908322 FATE#317535). - be2net: fix RX fragment posting for jumbo frames (bnc#908322 FATE#317535). - be2net: replace strcpy with strlcpy (bnc#908322 FATE#317535). - be2net: fix some log messages (bnc#908322 FATE#317535). - be2net: query max_tx_qs for BE3 super-nic profile from FW (bnc#908322 FATE#317535). - be2net: define macro for_all_tx_queues_on_eq() (bnc#908322 FATE#317535). - be2net: get rid of TX budget (bnc#908322 FATE#317535). - be2net: make be_cmd_get_regs() return a status (bnc#908322 FATE#317535). - be2net: define BE_MAX_MTU (bnc#908322 FATE#317535). - be2net: remove unncessary gotos (bnc#908322 FATE#317535). - be2net: fix log messages in lancer FW download path (bnc#908322 FATE#317535). - be2net: Add a dma_mapping_error counter in ethtool (bnc#908322 FATE#317535). - be2net: Add TX completion error statistics in ethtool (bnc#908322 FATE#317535). - be2net: add a description for counter rx_input_fifo_overflow_drop (bnc#908322 FATE#317535). - be2net: shorten AMAP_GET/SET_BITS() macro calls (bnc#908322 FATE#317535). - be2net: add a few log messages (bnc#908322 FATE#317535). - be2net: Use dev_consume_skb_any() in the non-drop path (bnc#908322 FATE#317535). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bnc#908322 FATE#317535). - be2net: support deleting FW dump via ethtool (only for Lancer) (bnc#908322 FATE#317535). - be2net: ignore VF mac address setting for the same mac (bnc#908322 FATE#317535). - be2net: Issue shutdown event to ocrdma driver (bnc#908322 FATE#317535). - be2net: update driver version to 10.4 (bnc#908322 FATE#317535). - be2net: use adapter->flags to track SRIOV state (bnc#908322 FATE#317535). - be2net: use be_max_vfs() macro to access max-vfs (bnc#908322 FATE#317535). - be2net: use "if (!foo)" test style (bnc#908322 FATE#317535). - be2net: remove unused structures in be_cmds.h (bnc#908322 FATE#317535). - be2net: reduce arguments passed to FW-cmd routines (bnc#908322 FATE#317535). - be2net: update UE bit description strings (bnc#908322 FATE#317535). - be2net: fix return status of some ndo methods (bnc#908322 FATE#317535). - be2net: fix return status of some ethtool methods (bnc#908322 FATE#317535). - be2net: return -ENOMEM for memory allocation failures (bnc#908322 FATE#317535). - be2net: return -ETIMEDOUT when a FW-cmd times out (bnc#908322 FATE#317535). - be2net: fix error status for FW-download (bnc#908322 FATE#317535). - be2net: set EQ DB clear-intr bit in be_open() (bnc#908322 FATE#317535). - be2net: re-enable vlan filtering mode asap (bnc#908322 FATE#317535). - be2net: read VF's capabilities from GET_PROFILE_CONFIG cmd (bnc#908322 FATE#317535). - be2net: remove be_cmd_get_profile_config_mbox/mccq() variants (bnc#908322 FATE#317535). - be2net: fix qnq mode detection on VFs (bnc#908322 FATE#317535). - be2net: cleanup MCC async event processing code (bnc#908322 FATE#317535). - be2net: move async cmd processing to a separate routine (bnc#908322 FATE#317535). - be2net: re-factor MCCQ error status handling code (bnc#908322 FATE#317535). - be2net: support flashing new regions on Skyhawk-R (bnc#908322 FATE#317535). - be2net: skip multicast promiscuos setting in already set (bnc#908322 FATE#317535). - be2net: enable interrupts in EEH resume (bnc#908322 FATE#317535). - net: get rid of SET_ETHTOOL_OPS (bnc#908322 FATE#317535). - be2net: use MCCQ instead of MBOX in be_cmd_rss_config() (bnc#908322 FATE#317535). - be2net: include rx-compl error counter in ethtool stats (bnc#908322 FATE#317535). - be2net: remove unused code in be_cmd_vlan_config() (bnc#908322 FATE#317535). - be2net: covert vlan array to bit-map (bnc#908322 FATE#317535). - be2net: fix line wrap and function call indentation in be_ethtool.c (bnc#908322 FATE#317535). - be2net: fix function call indentation in be_cmds.c (bnc#908322 FATE#317535). - be2net: fix line wrap and function call indentation in be_main.c (bnc#908322 FATE#317535). - be2net: Fix invocation of be_close() after be_clear() (bnc#908322 FATE#317535). - be2net: Fix to reap TX compls till HW doesn't respond for some time (bnc#908322 FATE#317535). - be2net: Add abi version between be2net and ocrdma (bnc#908322 FATE#317535). - net: Replace u64_stats_fetch_begin_bh to u64_stats_fetch_begin_irq (bnc#908322 FATE#317535). - benet: Call dev_kfree_skby_any instead of kfree_skb (bnc#908322 FATE#317535). - be2net: update driver version to 10.2 (bnc#908322 FATE#317535). - be2net: Fix vlans_added counter (bnc#908322 FATE#317535). - be2net: Create multiple TXQs on RSS capable multi-channel BE3-R interfaces (bnc#908322 FATE#317535). - be2net: fix pmac_id allocation size (bnc#908322 FATE#317535). - be2net: log LPVID used in multi-channel configs (bnc#908322 FATE#317535). - be2net: Use GET_PROFILE_CONFIG cmd for BE3-R to query max-vfs (bnc#908322 FATE#317535). - be2net: do external loopback test only when it is requested (bnc#908322 FATE#317535). - be2net: dma_sync each RX frag before passing it to the stack (bnc#908322 FATE#317535). - be2net: isolate TX workarounds not applicable to Skyhawk-R (bnc#908322 FATE#317535). - be2net: Fix skb double free in be_xmit_wrokarounds() failure path (bnc#908322 FATE#317535). - be2net: clear promiscuous bits in adapter->flags while disabling promiscuous mode (bnc#908322 FATE#317535). - be2net: Fix to reset transparent vlan tagging (bnc#908322 FATE#317535). - benet: Use pci_enable_msix_range() instead of pci_enable_msix() (bnc#908322 FATE#317535). - be2net: refactor multi-channel config code for Skyhawk-R chip (bnc#908322 FATE#317535). - be2net: Update copyright year (bnc#908322 FATE#317535). - be2net: Log a kernel message when UE is detected in BE & Skyhawk (bnc#908322 FATE#317535). - be2net: Fix be_vlan_add/rem_vid() routines (bnc#908322 FATE#317535). - be2net: add dma_mapping_error() check for dma_map_page() (bnc#908322 FATE#317535). - be2net: update driver version to 10.0.x (bnc#908322 FATE#317535). - be2net: cleanup wake-on-lan code (bnc#908322 FATE#317535). - be2net: use GET_MAC_LIST cmd to query mac-address from a pmac-id (bnc#908322 FATE#317535). - be2net: do not use frag index in the RX-compl entry (bnc#908322 FATE#317535). - be2net: Remove "10Gbps" from driver description string (bnc#908322 FATE#317535). - be2net: fix incorrect setting of cmd_privileges for VFs (bnc#908322 FATE#317535). - be2net: ignore mac-addr set call for an already programmed mac-addr (bnc#908322 FATE#317535). - be2net: do not call be_set/get_fw_log_level() on Skyhawk-R (bnc#908322 FATE#317535). - be2net: Log the profile-id used by FW during driver initialization (bnc#908322 FATE#317535). - be2net: don't set "pport" field when querying "pvid" (bnc#908322 FATE#317535). - be2net: Use MCC_CREATE_EXT_V1 cmd for Skyhawk-R (bnc#908322 FATE#317535). - be2net: fix max_evt_qs calculation for BE3 in SR-IOV config (bnc#908322 FATE#317535). - be2net: increase the timeout value for loopback-test FW cmd (bnc#908322 FATE#317535). - be2net: disable RSS when number of RXQs is reduced to 1 via set-channels (bnc#908322 FATE#317535). - net: benet: slight optimization of addr compare (bnc#908322 FATE#317535). - net: emulex-benet calls skb_set_hash (bnc#908322 FATE#317535). - be2net: Free/delete pmacs (in be_clear()) only if they exist (bnc#908322 FATE#317535). - be2net: Fix Lancer error recovery to distinguish FW download (bnc#908322 FATE#317535). - be2net: Avoid programming permenant MAC by BE3-R VFs (bnc#908322 FATE#317535). - be2net: set coalesce-wm in CQ_CREATE_V2 cmd (bnc#908322 FATE#317535). - be2net: Disabling and enabling interrupts in suspend and resume (bnc#908322 FATE#317535). - be2net: Delete secondary unicast MAC addresses during be_close (bnc#908322 FATE#317535). - be2net: Fix unconditional enabling of Rx interface options (bnc#908322 FATE#317535). - net: Explicitly initialize u64_stats_sync structures for lockdep (bnc#908322 FATE#317535). - net/benet: Make lancer_wait_ready() static (bnc#908322 FATE#317535). - net/benet: Remove interface type (bnc#908322 FATE#317535). - be2net: Warn users of possible broken functionality on BE2 cards with very old FW versions with latest driver (bnc#908322 FATE#317535). - net: be2net: remove unnecessary pci_set_drvdata() (bnc#908322 FATE#317535). - be2net: Rework PCIe error report log messaging (bnc#908322 FATE#317535). - be2net: change the driver version number to 4.9.224.0 (bnc#908322 FATE#317535). - be2net: Display RoCE specific counters in ethtool -S (bnc#908322 FATE#317535). - be2net: Call version 2 of GET_STATS ioctl for Skyhawk-R (bnc#908322 FATE#317535). - be2net: add a counter for pkts dropped in xmit path (bnc#908322 FATE#317535). - be2net: fix adaptive interrupt coalescing (bnc#908322 FATE#317535). - be2net: call ENABLE_VF cmd for Skyhawk-R too (bnc#908322 FATE#317535). - be2net: Create single TXQ on BE3-R 1G ports (bnc#908322 FATE#317535). - be2net: pass if_id for v1 and V2 versions of TX_CREATE cmd (bnc#908322 FATE#317535). - be2net: Call be_vf_setup() even when VFs are enbaled from previous load (bnc#908322 FATE#317535). - be2net: Fix to display the VLAN priority for a VF (bnc#908322 FATE#317535). - be2net: Fix to configure VLAN priority for a VF interface (bnc#908322 FATE#317535). - be2net: Fix to allow VLAN configuration on VF interfaces (bnc#908322 FATE#317535). - be2net: Fix number of VLANs supported in UMC mode for BE3-R (bnc#908322 FATE#317535). - be2net: Fix VLAN promiscuous mode programming (bnc#908322 FATE#317535). - be2net: Fix the size of be_nic_res_desc structure (bnc#908322 FATE#317535). - be2net: Fix to prevent Tx stall on SH-R when packet size < 32 (bnc#908322 FATE#317535). - emulex: Remove extern from function prototypes (bnc#908322 FATE#317535). - DMA-API: net: emulex/benet: replace dma_set_mask()+dma_set_coherent_mask() with new helper (bnc#908322 FATE#317535). - be2net: missing variable initialization (bnc#908322 FATE#317535). - be2net: set and query VEB/VEPA mode of the PF interface (bnc#908322 FATE#317535). - drivers:net: Convert dma_alloc_coherent(...__GFP_ZERO) to dma_zalloc_coherent (bnc#908322 FATE#317535). - be2net: implement ethtool set/get_channel hooks (bnc#908322 FATE#317535). - be2net: refactor be_setup() to consolidate queue creation routines (bnc#908322 FATE#317535). - be2net: Fix be_cmd_if_create() to use MBOX if MCCQ is not created (bnc#908322 FATE#317535). - be2net: refactor be_get_resources() code (bnc#908322 FATE#317535). - be2net: Fixup profile management routines (bnc#908322 FATE#317535). - be2net: use EQ_CREATEv2 for SH-R (bnc#908322 FATE#317535). - be2net: Check for POST state in suspend-resume sequence (bnc#908322 FATE#317535). - be2net: fix disabling TX in be_close() (bnc#908322 FATE#317535). - be2net: Clear any capability flags that driver is not interested in (bnc#908322 FATE#317535). - be2net: update driver version (bnc#908322 FATE#317535). - be2net: Initialize "status" in be_cmd_get_die_temperature() (bnc#908322 FATE#317535). - be2net: fixup log msgs for async events (bnc#908322 FATE#317535). - be2net: Fix displaying supported speeds for BE2 (bnc#908322 FATE#317535). - be2net: don't limit max MAC and VLAN counts (bnc#908322 FATE#317535). - be2net: Do not call get_die_temperature cmd for VF (bnc#908322 FATE#317535). - be2net: Adding more speeds reported by get_settings (bnc#908322 FATE#317535). - be2net: Staticize local functions (bnc#908322 FATE#317535). - be2net: don't use dev_err when AER enabling fails (bnc#908322 FATE#317535). - be2net: delete primary MAC address while unloading (bnc#908322 FATE#317535). - be2net: use SET/GET_MAC_LIST for SH-R (bnc#908322 FATE#317535). - be2net: refactor MAC-addr setup code (bnc#908322 FATE#317535). - be2net: fix pmac_id for BE3 VFs (bnc#908322 FATE#317535). - be2net: allow VFs to program MAC and VLAN filters (bnc#908322 FATE#317535). - be2net: fix MAC address modification for VF (bnc#908322 FATE#317535). - be2net: Fix to avoid hardware workaround when not needed (bnc#908322 FATE#317535). - net/trivial: replace numeric with standard PM state macros (bnc#908322 FATE#317535). - be2net: use pci_vfs_assigned()/pci_num_vf() instead of be_find_vfs() (bnc#908322 FATE#317535). - be2net: Fix 32-bit DMA Mask handling (bnc#908322 FATE#317535). - be2net: Implement initiate FW dump feature for Lancer (bnc#908322 FATE#317535). - be2net: Fix crash on 2nd invocation of PCI AER/EEH error_detected hook (bnc#908322 FATE#317535). - be2net: Mark checksum fail for IP fragmented packets (bnc#908322 FATE#317535). - be2net: Trim padded packets for Lancer (bnc#908322 FATE#317535). - be2net: Pad skb to meet min Tx pkt size in lancer (bnc#908322 FATE#317535). - be2net: cleanup be_get_drvinfo() (bnc#908322 FATE#317535). - be2net: refactor HW workarounds in be_xmit() (bnc#908322 FATE#317535). - be2net: bug fix on returning an invalid nic descriptor (bnc#908322 FATE#317535). - be2net: Avoid double insertion of vlan tags (bnc#908322 FATE#317535). - be2net: disable TX in be_close() (bnc#908322 FATE#317535). - be2net: fix EQ from getting full while cleaning RX CQ (bnc#908322 FATE#317535). - be2net: fix payload_len value for GET_MAC_LIST cmd req (bnc#908322 FATE#317535). - be2net: provision VF resources before enabling SR-IOV (bnc#908322 FATE#317535). - be2net: Fix to fail probe if MSI-X enable fails for a VF (bnc#908322 FATE#317535). - be2net: avoid napi_disable() when it has not been enabled (bnc#908322 FATE#317535). - be2net: Fix firmware download for Lancer (bnc#908322 FATE#317535). - be2net: Fix to receive Multicast Packets when Promiscuous mode is enabled on certain devices (bnc#908322 FATE#317535). - be2net: Fix to show tx priority pause counter in ethtool -S (bnc#908322 FATE#317535). - be2net: Fix to use 32-bit stats to report rx_drops_no_fragment (bnc#908322 FATE#317535). - be2net: Fix to use version 2 of cq_create for SkyHawk-R devices (bnc#908322 FATE#317535). - be2net: FLR must be first cmd issued to Lancer FW (bnc#908322 FATE#317535). - be2net: Use GET_FUNCTION_CONFIG V1 cmd (bnc#908322 FATE#317535). - be2net: Fix to show wol disabled/enabled state correctly (bnc#908322 FATE#317535). - be2net: Fixed memory leak (bnc#908322 FATE#317535). - be2net: Avoid diagnostic test in certain versions of firmware to avoid NIC freeze (bnc#908322 FATE#317535). - be2net: Renamed rx_address_mismatch_errors to rx_address_filtered (bnc#908322 FATE#317535). - be2net: Add support for setting and getting rx flow hash options (bnc#908322 FATE#317535). - be2net: Fix PVID tag offload for packets with inline VLAN tag (bnc#908322 FATE#317535). - be2net: fix a Tx stall bug caused by a specific ipv6 packet (bnc#908322 FATE#317535). - be2net: Remove an incorrect pvid check in Tx (bnc#908322 FATE#317535). - be2net: enable IOMMU pass through for be2net (bnc#908322 FATE#317535). - be2net: Use GET_PROFILE_CONFIG V1 cmd for BE3-R (bnc#908322 FATE#317535). - be2net: Avoid flashing BE3 UFI on BE3-R chip (bnc#908322 FATE#317535). - be2net: Don't log "Out of MCCQ wrbs" error (bnc#908322 FATE#317535). - be2net: Use TXQ_CREATE_V2 cmd (bnc#908322 FATE#317535). - be2net: take care of __vlan_put_tag return value (bnc#908322 FATE#317535). - be2net: remove unused variable 'sge' (bnc#908322 FATE#317535). - drivers:net: dma_alloc_coherent: use __GFP_ZERO instead of memset(, 0) (bnc#908322 FATE#317535). - drivers:net: Remove dma_alloc_coherent OOM messages (bnc#908322 FATE#317535). - be2net: Use new F/W mailbox cmd to manipulate interrupts (bnc#908322 FATE#317535). - be2net: enable interrupts in be_probe() (RoCE and other ULPs need them) (bnc#908322 FATE#317535). - be2net: Update copyright year (bnc#908322 FATE#317535). - be2net: use CSR-BAR SEMAPHORE reg for BE2/BE3 (bnc#908322 FATE#317535). - benet: Wait f/w POST until timeout (bnc#908322 FATE#317535). - be2net: remove BUG_ON() in be_mcc_compl_is_new() (bnc#908322 FATE#317535). - be2net: update driver version to 4.6.x (bnc#908322 FATE#317535). - be2net: fix re-loaded PF driver to re-gain control of its VFs (bnc#908322 FATE#317535). - be2net: Updating Module Author string and log message string to "Emulex Corporation" (bnc#908322 FATE#317535). - be2net: fix unconditionally returning IRQ_HANDLED in INTx (bnc#908322 FATE#317535). - ethtool: fix drvinfo strings set in drivers (bnc#908322 FATE#317535). - be2net: fix wrong frag_idx reported by RX CQ (bnc#908322 FATE#317535). - be2net: fix be_close() to ensure all events are ack'ed (bnc#908322 FATE#317535). - commit 03902cf ------------------------------------------------------------------ ------------------ 2014-12-25 - Dec 25 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Fix comment for e1000 sp4 driver backport - commit 5ef6323 - Remove context for xen3-auto-common (bug#908322 FATE#317535). - Restore context for PCI-MSI-Add-pci_enable_msi_range-and-pci_enable_msix.patch (bug#908322 FATE#317535). - Refresh patches.xen/xen3-patch-2.6.31. This workaround is conspicuously awkward. - commit 6d183a6 - PCI/MSI: Add pci_enable_msi_range() and pci_enable_msix_range() (bnc#908322 FATE#317535). - PCI: Provide method to reduce the number of total VFs supported (bnc#908322 FATE#317535). - PCI: Remove useless "!dev" tests (bnc#908322 FATE#317535). - PCI: Return -ENOSYS for SR-IOV operations on non-SR-IOV devices (bnc#908322 FATE#317535). - etherdevice: Use ether_addr_copy to copy an Ethernet address (bnc#908322 FATE#317535). - etherdevice.h: Add ether_addr_equal (bnc#908322 FATE#317535). - net: Explicitly initialize u64_stats_sync structures for lockdep (bnc#908322 FATE#317535). - net: Replace u64_stats_fetch_begin_bh to u64_stats_fetch_begin_irq (bnc#908322 FATE#317535). - net: introduce dev_consume_skb_any() (bnc#908322 FATE#317535). - pci: Add SRIOV helper function to determine if VFs are assigned to guest (bnc#908322 FATE#317535). - Refresh patches.drivers/0002-net-next-Add-netif_get_num_default_rss_queues.patch. - Refresh patches.drivers/cxgb4vf-0003-netdevice-Kill-feature-test-macros.patch. Note that some of the xen patches need to be refreshed for the sequence to apply fully. This will be done in the next commit. - commit 4ad625a ------------------------------------------------------------------ ------------------ 2014-12-23 - Dec 23 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - be2iscsi: check ip buffer before copying (FATE#317534 bsc#908901). - be2iscsi : Bump the driver version (FATE#317534 bsc#908901). - be2iscsi : Fix kernel panic during reboot/shutdown (FATE#317534 bsc#908901). - be2iscsi: Bump the driver version (FATE#317534 bsc#908901). - be2iscsi: Fix processing CQE before connection resources are freed (FATE#317534 bsc#908901). - be2iscsi: Fix updating the boot enteries in sysfs (FATE#317534 bsc#908901). - be2iscsi: Fix the copyright year (FATE#317534 bsc#908901). - be2iscsi: Fix the sparse warning introduced in previous submission (FATE#317534 bsc#908901). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (FATE#317534 bsc#908901). - be2iscsi: Fix memory leak in mgmt_set_ip() (FATE#317534 bsc#908901). - be2iscsi: remove potential junk pointer free (FATE#317534 bsc#908901). - be2iscsi: add an missing goto in error path (FATE#317534 bsc#908901). - Revert "be2iscsi: Fix processing cqe for cxn whose endpoint is freed" (FATE#317534 bsc#908901). - be2iscsi: Bump the driver version (FATE#317534 bsc#908901). - be2iscsi: Fix processing cqe for cxn whose endpoint is freed (FATE#317534 bsc#908901). - be2iscsi: Fix destroy MCC-CQ before MCC-EQ is destroyed (FATE#317534 bsc#908901). - be2iscsi: Fix memory corruption in MBX path (FATE#317534 bsc#908901). - be2iscsi: Fix TCP parameters while connection offloading (FATE#317534 bsc#908901). - be2iscsi: Fix interrupt Coalescing mechanism (FATE#317534 bsc#908901). - be2iscsi: Fix exposing Host in sysfs after adapter initialization is complete (FATE#317534 bsc#908901). - be2iscsi: Fix retrieving MCCQ_WRB in non-embedded Mbox path (FATE#317534 bsc#908901). - [SCSI] be2iscsi : Bump the driver version (FATE#317534 bsc#908901). - [SCSI] be2iscsi : Fix DMA Out of SW-IOMMU space error (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix scsi_cmnd leakage in driver (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix the session cleanup when reboot/shutdown happens (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix doorbell format for EQ/CQ/RQ s per SLI spec (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix port speed typo in driver (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix handling timed out MBX completion from FW (FATE#317534 bsc#908901). - block: remove old blk_iopoll_enabled variable (FATE#317534 bsc#908901). - [SCSI] be2iscsi: fix bad if expression (FATE#317534 bsc#908901). - [SCSI] be2iscsi: fix memory leak in error path (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Bump driver version (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix SGL posting for unaligned ICD values (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix AER handling in driver (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Invalidate WRB in Abort/Reset Path (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix Insufficient Buffer Error returned in MBX Completion (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix log level for protocol specific logs (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix MSIx creation for SKH-R adapter (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Display Port Identifier for each iSCSI function (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Dispaly CID available for connection offload (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix chute cleanup during drivers unload (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix connection offload to support Dual Chute (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix CID allocation/freeing to support Dual chute mode (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix WRB_Q posting to support Dual Chute mode (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix SGL Initilization and posting Pages for Dual Chute (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix Template HDR support for Dual Chute mode (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix changes in ASYNC Path for SKH-R adapter (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Config parameters update for Dual Chute Support (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix soft lock up issue during UE or if FW taking time to respond (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix locking mechanism in Unsol Path (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix negotiated parameters upload to FW (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix repeated issue of MAC ADDR get IOCTL (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix the MCCQ count leakage (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix Template HDR IOCTL (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Bump the driver version to 10.0.467.0 (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix issue in passing the exp_cmdsn and max_cmdsn (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix possible reentrancy issue in be_iopoll (FATE#317534 bsc#908901). - [SCSI] be2scsi: Update copyright dates to 2013 (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix checking Adapter state while establishing CXN (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix dynamic CID allocation Mechanism in driver (FATE#317534 bsc#908901). - be2iscsi : Fix the NOP-In handling code path (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix the Port Link Status issue (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix displaying the Active Session Count from driver (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix displaying the FW Version from driver (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix support for DEFQ extension (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix MACRO for checking the adapter type (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix freeing CXN specific driver resources (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix MSIX support in SKH-R to 32 (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix MBX Command issues (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix returning Failure when MBX fails with Insufficient buffer error (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix lack of uninitialize pattern to FW (FATE#317534 bsc#908901). - treewide: Fix typo in printk and comments (FATE#317534 bsc#908901). - Drivers: scsi: remove __dev* attributes (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Bump the driver version (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix Unrecoverable Error Detection (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix for MBX timeout issue (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Update the copyright information (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix issue of displaying adapter family (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix Task Completion Event handling (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix session update context with V2 version (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix support for V2 version of WRB (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix support for handling CQ_CREATE V2 version (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix max EQ supported by the driver (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix driver support for Skyhawk-R adapter (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix return value and typo (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix kernel panic in blk_iopoll disable mode (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Issue an function level reset when driver is loaded (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Display driver name and version in device attribute (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix max supported EQ count to 8 (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix memory leak in control path of driver (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Display Completion Event string instead of Opcode (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Fix the issue with soft reset (FATE#317534 bsc#908901). - [SCSI] be2iscsi: Get Port State and Speed of the Adapter (FATE#317534 bsc#908901). - commit a119982 - Delete post-sp3 be2net patches They will be re-added shortly. - Delete patches.drivers/be2net-0001-be2net-Use-TXQ_CREATE_V2-cmd.patch. - Delete patches.drivers/be2net-0002-be2net-Avoid-flashing-BE3-UFI-on-BE3-R-chip.patch. - Delete patches.drivers/be2net-0003-be2net-Use-GET_FUNCTION_CONFIG-V1-cmd.patch. - Delete patches.drivers/be2net-0004-be2net-Fix-to-use-version-2-of-cq_create-for-SkyHawk.patch. - Delete patches.drivers/be2net-0005-be2net-Fix-firmware-download-for-Lancer.patch. - Delete patches.drivers/be2net-0006-be2net-provision-VF-resources-before-enabling-SR-IOV.patch. - Delete patches.drivers/be2net-0007-be2net-bug-fix-on-returning-an-invalid-nic-descripto.patch. - Delete patches.drivers/be2net-0008-be2net-Check-for-POST-state-in-suspend-resume-sequen.patch. - Delete patches.drivers/be2net-0144-Wait-f-w-POST-until-timeout.patch. - Delete patches.drivers/be2net-0145-use-CSR-BAR-SEMAPHORE-reg-for-BE2-BE3.patch. - Delete patches.drivers/be2net-0146-be2net-enable-interrupts-in-be_probe-RoCE-and-other-.patch. - Delete patches.drivers/be2net-0147-Use-new-F-W-mailbox-cmd-to-manipulate-interru.patch. - Delete patches.drivers/be2net-0148-fix-re-loaded-PF-driver-to-re-gain-control-of.patch. - Delete patches.drivers/be2net-0149-Use-GET_PROFILE_CONFIG-V1-cmd-for-BE3-R.patch. - Delete patches.fixes/be2net-Fix-invocation-of-be_close-after-be_clear.patch. - Delete patches.fixes/be2net-add-dma_mapping_error-check-for-dma_map_page.patch. - commit 1a0cfe1 ------------------------------------------------------------------ ------------------ 2014-12-22 - Dec 22 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Import kabi files from kernel 3.0.101-0.40 - commit 6252f28 - kvm: iommu: Add cond_resched to legacy device assignment code (bnc#910159). - commit 6d49fdd ------------------------------------------------------------------ ------------------ 2014-12-20 - Dec 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Cleanup the sp3 be2net backport As explained in 777565c12, most of the early v3.0..v3.2 commits were added as part of 722092. Most, but not all. dafc0fe be2net: don't create multiple TXQs in BE2 (v3.2-rc1) moved to proper position 8e58613 net: make vlan ndo_vlan_rx_[add/kill]_vid return error value (v3.3-rc1) skipped treewide change 80817cb be2net: fix be_vlan_add/rem_vid (v3.3-rc1) was missing eeb7fc7 be2net: Fix EEH error reset before a flash dump completes (v3.5-rc1) moved to proper position cd8f76c be2net: fix a race in be_xmit() (v3.5-rc3) already fixed in -stable 9e7d7c5 (v3.0.37) - be2net: fix be_vlan_add/rem_vid (bnc#777565 FATE#313819). - Refresh patches.drivers/be2net-0001-be2net-Move-the-Emulex-driver.patch. - Refresh patches.drivers/be2net-0004-be2net-add-vlan-rx-mode-flow-control-config-to-be_se.patch. - Refresh patches.drivers/be2net-0005-be2net-refactor-VF-setup-teardown-code-into-be_vf_se.patch. - Refresh patches.drivers/be2net-0018-be2net-stop-issuing-FW-cmds-if-any-cmd-times-out.patch. - Refresh patches.drivers/be2net-0036-be2net-fix-range-check-for-set_qos-for-a-VF.patch. - Refresh patches.drivers/be2net-0037-be2net-query-link-status-in-be_open.patch. - Refresh patches.drivers/be2net-0038-netdev-make-net_device_ops-const.patch. - Refresh patches.drivers/be2net-0039-be2net-create-RSS-rings-even-in-multi-channel-config.patch. - Refresh patches.drivers/be2net-0040-be2net-allocate-more-headroom-in-incoming-skbs.patch. - Refresh patches.drivers/be2net-0044-be2net-Use-new-implementation-of-get-mac-list-comman.patch. - Refresh patches.drivers/be2net-0045-be2net-event-queue-re-design.patch. - Refresh patches.drivers/be2net-0046-be2net-cancel-be_worker-during-EEH-recovery.patch. - Refresh patches.drivers/be2net-0047-be2net-fix-tx-completion-cleanup.patch. - Refresh patches.drivers/be2net-0048-be2net-reset-queue-address-after-freeing.patch. - Refresh patches.drivers/be2net-0051-be2net-enable-WOL-by-default-if-h-w-supports-it.patch. - Refresh patches.drivers/be2net-0052-be2net-Program-secondary-UC-MAC-address-into-MAC-fil.patch. - Refresh patches.drivers/be2net-0053-be2net-Fix-number-of-vlan-slots-in-flex-mode.patch. - Refresh patches.drivers/be2net-0054-be2net-fix-programming-of-VLAN-tags-for-VF.patch. - Refresh patches.drivers/be2net-0055-be2net-fix-ethtool-get-settings.patch. - Refresh patches.drivers/be2net-0056-be2net-Fix-VLAN-multicast-packet-reception.patch. - Refresh patches.drivers/be2net-0059-be2net-Fix-traffic-stall-INTx-mode.patch. - Refresh patches.drivers/be2net-0062-be2net-Fix-FW-download-for-BE.patch. - Refresh patches.drivers/be2net-0063-be2net-Ignore-status-of-some-ioctls-during-driver-lo.patch. - Refresh patches.drivers/be2net-0067-be2net-Record-receive-queue-index-in-skb-to-aid-RPS.patch. - Refresh patches.drivers/be2net-0069-be2net-Add-functionality-to-support-RoCE-driver.patch. - Refresh patches.drivers/be2net-0070-be2net-avoid-disabling-sriov-while-VFs-are-assigned.patch. - Refresh patches.drivers/be2net-0071-be2net-Fix-to-allow-get-set-of-debug-levels-in-the-f.patch. - Refresh patches.drivers/be2net-0072-be2net-don-t-call-vid_config-when-there-s-no-vlan-co.patch. - Refresh patches.drivers/be2net-0073-be2net-cleanup-be_vid_config.patch. - Refresh patches.drivers/be2net-0074-be2net-do-not-modify-PCI-MaxReadReq-size.patch. - Refresh patches.drivers/be2net-0075-be2net-fix-reporting-number-of-actual-rx-queues.patch. - Refresh patches.drivers/be2net-0077-be2net-do-not-use-SCRATCHPAD-register.patch. - Refresh patches.drivers/be2net-0078-be2net-Fix-driver-load-for-VFs-for-Lancer.patch. - Refresh patches.drivers/be2net-0079-be2net-reduce-gso_max_size-setting-to-account-for-et.patch. - Refresh patches.drivers/be2net-0083-be2net-Regression-bug-wherein-VFs-creation-broken-fo.patch. - Refresh patches.drivers/be2net-0085-be2net-set-maximal-number-of-default-RSS-queues.patch. - Refresh patches.drivers/be2net-0088-be2net-Fix-die-temperature-stat-for-Lancer.patch. - Refresh patches.drivers/be2net-0089-be2net-Fix-initialization-sequence-for-Lancer.patch. - Refresh patches.drivers/be2net-0090-be2net-Activate-new-FW-after-FW-download-for-Lancer.patch. - Refresh patches.drivers/be2net-0091-be2net-Fix-cleanup-path-when-EQ-creation-fails.patch. - Refresh patches.drivers/be2net-0092-be2net-Fix-port-name-in-message-during-driver-load.patch. - Refresh patches.drivers/be2net-0095-be2net-dont-pull-too-much-data-in-skb-linear-part.patch. - Refresh patches.drivers/be2net-0096-be2net-Fix-VF-driver-load-for-Lancer.patch. - Refresh patches.drivers/be2net-0098-be2net-Missing-byteswap-in-be_get_fw_log_level-cause.patch. - Refresh patches.drivers/be2net-0099-be2net-Fix-to-parse-RSS-hash-from-Receive-completion.patch. - Refresh patches.drivers/be2net-0100-emulex-benet-Add-a-missing-CR-in-the-end-of-message.patch. - Refresh patches.drivers/be2net-0101-netpoll-revert-6bdb7fe3104-and-fix-be_poll-instead.patch. - Refresh patches.drivers/be2net-0102-be2net-create-RSS-rings-even-in-multi-channel-config.patch. - Refresh patches.drivers/be2net-0103-be2net-fix-max-VFs-reported-by-HW.patch. - Refresh patches.drivers/be2net-0104-be2net-fix-FW-default-for-VF-tx-rate.patch. - Refresh patches.drivers/be2net-0105-be2net-fixup-malloc-free-of-adapter-pmac_id.patch. - Refresh patches.drivers/be2net-0107-be2net-use-PCIe-AER-capability.patch. - Refresh patches.drivers/be2net-0108-netdev-make-pci_error_handlers-const.patch. - Refresh patches.drivers/be2net-0109-be2net-fix-vfs-enumeration.patch. - Refresh patches.drivers/be2net-0110-Revert-be2net-fix-vfs-enumeration.patch. - Refresh patches.drivers/be2net-0111-be2net-remove-type-argument-of-be_cmd_mac_addr_query.patch. - Refresh patches.drivers/be2net-0112-be2net-fix-wrong-handling-of-be_setup-failure-in-be_.patch. - Refresh patches.drivers/be2net-0113-be2net-cleanup-code-related-to-be_link_status_query.patch. - Refresh patches.drivers/be2net-0114-be2net-fixup-log-messages.patch. - Refresh patches.drivers/be2net-0115-be2net-fix-vfs-enumeration.patch. - Refresh patches.drivers/be2net-0116-be2net-Remove-code-that-stops-further-access-to-BE-N.patch. - Refresh patches.drivers/be2net-0117-be2net-Fix-driver-load-failure-for-different-FW-conf.patch. - Refresh patches.drivers/be2net-0118-be2net-Fix-setting-QoS-for-VF-for-Lancer.patch. - Refresh patches.drivers/be2net-0119-be2net-Fix-change-MAC-operation-for-VF-for-Lancer.patch. - Refresh patches.drivers/be2net-0120-be2net-Wait-till-resources-are-available-for-VF-in-e.patch. - Refresh patches.drivers/be2net-0121-be2net-Fix-configuring-VLAN-for-VF-for-Lancer.patch. - Refresh patches.drivers/be2net-0122-be2net-Fix-error-messages-while-driver-load-for-VFs.patch. - Refresh patches.drivers/be2net-0125-be2net-Fix-unnecessary-delay-in-PCI-EEH.patch. - Refresh patches.drivers/be2net-0126-be2net-Fix-VF-driver-load-on-newer-Lancer-FW.patch. - Refresh patches.drivers/be2net-0127-be2net-Enabling-Wake-on-LAN-is-not-supported-in-S5-s.patch. - Refresh patches.drivers/be2net-0128-be2net-Fix-FW-flashing-on-Skyhawk-R.patch. - Refresh patches.drivers/be2net-0129-be2net-Fix-skyhawk-VF-PCI-Device-ID.patch. - Refresh patches.drivers/be2net-0130-be2net-Fix-smatch-warnings-in-be_main.c.patch. - Refresh patches.drivers/be2net-0132-be2net-fix-wrong-usage-of-adapter-generation.patch. - Refresh patches.drivers/be2net-0133-be2net-do-not-use-sli_family-to-identify-skyhawk-R-c.patch. - Refresh patches.drivers/be2net-0134-be2net-re-factor-bar-mapping-code.patch. - Refresh patches.drivers/be2net-0135-be2net-fix-access-to-SEMAPHORE-reg.patch. - Refresh patches.drivers/be2net-0136-be2net-remove-roce-on-lancer.patch. - Refresh patches.drivers/be2net-0137-be2net-remove-adapter-eq_next_idx.patch. - Refresh patches.drivers/be2net-0139-be2net-fix-a-possible-events_get-race-on-BE2.patch. - Refresh patches.drivers/be2net-0140-be2net-fix-INTx-ISR-for-interrupt-behaviour-on-BE2.patch. - Refresh patches.drivers/be2net-0141-be2net-remove-__dev-attributes.patch. - Refresh patches.drivers/be2net-0142-drivers-net-fix-up-function-prototypes-after-__dev-r.patch. - Update patches.drivers/be2net-Fix-EEH-error-reset-before-a-flash-dump-compl.patch (bnc#777565 FATE#313819). - commit b877ccb ------------------------------------------------------------------ ------------------ 2014-12-19 - Dec 19 2014 ------------------- ------------------------------------------------------------------ ++++ jasper: - fixed CVE-2014-8137, CVE-2014-8138 (bnc#909474, bnc#909475) ------------------------------------------------------------------ ------------------ 2014-12-18 - Dec 18 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.fixes/scsi_dh_alua-add-missing-hunk-in-alua_set_params.patch. - commit f55bd1f - cciss: fix broken mutex usage in ioctl (bnc#910013). - commit 6469517 - Refresh patches.fixes/scsi_dh_alua-add-missing-hunk-in-alua_set_params.patch. - commit 33d4272 - scsi_dh_alua: add missing hunk in alua_set_params() (bnc#846656). - commit 6d9d722 - ahci: Add Device IDs for Intel Wildcat Point-LP. (fate#317348) - commit ced53d9 - NFSv4.1: Don't decode skipped layoutgets (bnc#864411). - pnfs: defer release of pages in layoutget (bnc#864411). - commit 358a8b0 - NFSv4.1: Fix an ABBA locking issue with session and state serialisation (bnc#864409). - NFSv4.1: Fix a race in the pNFS return-on-close code (bnc#864409). - NFSv4: Do not accept delegated opens when a delegation recall is in effect (bnc#864409). - commit 1f3fe9e - e1000: rename struct e1000_buffer to e1000_tx_buffer (bnc#909498 FATE#317395). - e1000: add and use e1000_rx_buffer info for Rx (bnc#909498 FATE#317395). - e1000: perform copybreak ahead of DMA unmap (bnc#909498 FATE#317395). - e1000: move tbi workaround code into helper function (bnc#909498 FATE#317395). - e1000: move e1000_tbi_adjust_stats to where its used (bnc#909498 FATE#317395). - e1000: e1000_ethertool.c coding style fixes (bnc#909498 FATE#317395). - e1000: Fix TSO for non-accelerated vlan traffic (bnc#909498 FATE#317395). - PCI: Remove DEFINE_PCI_DEVICE_TABLE macro use (bnc#909498 FATE#317395). - e1000: remove unnecessary break after return (bnc#909498 FATE#317395). - net: use SPEED_UNKNOWN and DUPLEX_UNKNOWN when appropriate (bnc#909498 FATE#317395). - e1000: Use time_after() for time comparison (bnc#909498 FATE#317395). - e1000: remove the check: skb->len<=0 (bnc#909498 FATE#317395). - e1000: Use is_broadcast_ether_addr/is_multicast_ether_addr helpers (bnc#909498 FATE#317395). - e1000: remove open-coded skb_cow_head (bnc#909498 FATE#317395). - e1000: remove debug messages with function names (bnc#909498 FATE#317395). - drivers/net: delete non-required instances of include (bnc#909498 FATE#317395). - e1000: fix possible reset_task running after adapter down (bnc#909498 FATE#317395). - e1000: fix lockdep warning in e1000_reset_task (bnc#909498 FATE#317395). - e1000: prevent oops when adapter is being closed and reset simultaneously (bnc#909498 FATE#317395). - e1000: fix wrong queue idx calculation (bnc#909498 FATE#317395). - intel: Remove extern from function prototypes (bnc#909498 FATE#317395). - DMA-API: net: intel/e1000: replace dma_set_mask()+dma_set_coherent_mask() with new helper (bnc#909498 FATE#317395). - drivers:net: Convert dma_alloc_coherent(...__GFP_ZERO) to dma_zalloc_coherent (bnc#909498 FATE#317395). - e1000: ethtool: Add missing dma_mapping_error-call in e1000_setup_desc_rings (bnc#909498 FATE#317395). - drivers:net: dma_alloc_coherent: use __GFP_ZERO instead of memset(, 0) (bnc#909498 FATE#317395). - drivers:net: Remove dma_alloc_coherent OOM messages (bnc#909498 FATE#317395). - e1000: fix whitespace issues and multi-line comments (bnc#909498 FATE#317395). - drivers: net: Remove remaining alloc/OOM messages (bnc#909498 FATE#317395). - remove init of dev->perm_addr in drivers (bnc#909498 FATE#317395). - commit b8d4c8f - Removing patch added but not needed for bnc#909370 - commit f7049b0 - Update bnx2i driver to v3.18 level (bnc#909370, FATE#317540) - commit 816042c ++++ libzypp: - Provide boost/format for zypper - version 9.38.2 (8) ++++ parted: - Implement support for PRep GUID (bnc#797485, fate#317609) - add: parted-GPT-add-support-for-PReP-GUID.patch ++++ ruby: - fix CVE-2014-8090: ruby: Another Denial Of Service XML Expansion (bnc#905326) CVE-2014-8080.patch: contains the patch - fix CVE-2014-8080: ruby: ruby19: Denial Of Service XML Expansion (bnc#902851) CVE-2014-8090.patch: contains the patch ------------------------------------------------------------------ ------------------ 2014-12-17 - Dec 17 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Disable switching to bootsplash at oops/panic (bnc#877593). - commit 9b5987e - drivers:net: Convert dma_alloc_coherent(...__GFP_ZERO) to dma_zalloc_coherent (bug#909498 FATE#317395). - DMA-API: provide a helper to set both DMA and coherent DMA masks (bug#909498 FATE#317395). - net: init perm_addr in register_netdevice() (bug#909498 FATE#317395). - commit e9e9296 - Fix HDIO_DRIVE_* ioctl() regression (bnc#833588, bnc#905799) - commit 1983136 - x86, asm, xen: Flip RESTORE_ARGS arguments logic (bnc#910251 CVE-9322). - commit 8356111 - AHCI: Add DeviceIDs for Sunrise Point-LP SATA controller. (fate#317355) - commit 7f0c7da - Refresh patches.fixes/0005-SUNRPC-Don-t-allow-low-priority-tasks-to-pre-empt-hi.patch. Restore kabi - commit 0346984 - SUNRPC: When changing the queue priority, ensure that we change the owner (bnc#864401). - SUNRPC: Don't allow low priority tasks to pre-empt higher priority ones (bnc#864401). - NFS: Add sequence_priviliged_ops for nfs4_proc_sequence() (bnc#864401). - NFSv4.1: We must release the sequence id when we fail to get a session slot (bnc#864401). - NFSv4.1 handle DS stateid errors (bnc#864401). - NFSv4: Ensure correct locking when accessing the 'lock_states' list (bnc#864401). - commit b3eea7c ++++ libzypp: - Improve conflict message for locked packages (bnc#828631) - version 9.38.1 (8) ------------------------------------------------------------------ ------------------ 2014-12-16 - Dec 16 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - xhci: add the meaningful IRQ description if it is empty (FATE#317451). - Refresh patches.drivers/xhci_bad_pci_irq.patch. - commit ce4fa5f - Refresh patches.fixes/x86-espfix-make-espfix64-a-kconfig-option-fix-uml.patch: disable on Xen (bsc#910251) patches.fixes/x86-espfix-make-it-possible-to-disable-16-bit-support.patch: disable on Xen (bsc#910251) - commit 1cb9545 - Update patches.fixes/x86_64-traps-stop-using-ist-for-ss.patch (bsc#907818, CVE-2014-9090, CVE-2014-9322). - commit ed63940 - Update config files (espfix, bsc#907818,CVE-2014-9090) - commit e2c7a19 - xhci: fix incorrect type in assignment in handle_device_notification() (bsc#910321). - commit a5ebcfa - Refresh patches.xen/xen3-patch-2.6.31. - commit ab6aadb - hyperv: Add support for vNIC hot removal. - hv: hv_balloon: avoid memory leak on alloc_error of 2MB memory block. - tools: hv: ignore ENOBUFS and ENOMEM in the KVP daemon. - Tools: hv: vssdaemon: skip all filesystems mounted readonly. - Tools: hv: vssdaemon: report freeze errors. - Drivers: hv: kvp,vss: Fast propagation of userspace communication failure. - Drivers: hv: vss: Introduce timeout for communication with userspace. - net: Hyper-V: Deletion of an unnecessary check before the function call "vfree". - hyperv: Add processing of MTU reduced by the host. - Drivers: hv: vmbus: Fix a race condition when unregistering a device. - Drivers: hv: util: make struct hv_do_fcopy match Hyper-V host messages. - tools: hv: introduce -n/--no-daemon option. - Tools: hv: vssdaemon: ignore the EBUSY on multiple freezing the same partition. - Drivers: hv: util: Properly pack the data for file copy functionality. - commit c208d1d - x86/tls: Validate TLS entries to protect espfix (bsc#909077,CVE-2014-8133). - x86_64, traps: Rework bad_iret (bsc#909077,CVE-2014-8133). - x86/tls: Validate TLS entries to protect espfix (bsc#909077,CVE-2014-8133). - x86_64, traps: Rework bad_iret (bsc#909077,CVE-2014-8133). - commit 5356774 - x86_64, traps: Stop using IST for #SS (bsc#907818,CVE-2014-9090). - commit 7185ac9 - x86_64, traps: Fix the espfix64 #DF fixup and rewrite it in C (bsc#907818,CVE-2014-9090). - commit 6756426 - x86_64/entry/xen: Do not invoke espfix64 on Xen (bsc#907818,CVE-2014-9090). - x86, espfix: Make it possible to disable 16-bit support (bsc#907818,CVE-2014-9090). - x86, espfix: Make espfix64 a Kconfig option, fix UML (bsc#907818,CVE-2014-9090). - x86-64, espfix: Don't leak bits 31:16 of %esp returning to 16-bit stack (bsc#907818,CVE-2014-9090). - x86, extable: Remove open-coded exception table entries in arch/x86/kernel/entry_64.S (bsc#907818,CVE-2014-9090). - x86, extable: Use .pushsection ... .popsection for _ASM_EXTABLE() (bsc#907818,CVE-2014-9090). - x86, asm: Flip RESTORE_ARGS arguments logic (bsc#907818,CVE-2014-9090). - x86, asm: Thin down SAVE/RESTORE_* asm macros (bsc#907818,CVE-2014-9090). - x86_64/entry/xen: Do not invoke espfix64 on Xen (bsc#907818,CVE-2014-9090). - x86, espfix: Make it possible to disable 16-bit support (bsc#907818,CVE-2014-9090). - x86, espfix: Make espfix64 a Kconfig option, fix UML (bsc#907818,CVE-2014-9090). - x86-64, espfix: Don't leak bits 31:16 of %esp returning to 16-bit stack (bsc#907818,CVE-2014-9090). - x86, extable: Remove open-coded exception table entries in arch/x86/kernel/entry_64.S (bsc#907818,CVE-2014-9090). - x86, extable: Use .pushsection ... .popsection for _ASM_EXTABLE() (bsc#907818,CVE-2014-9090). - x86, asm: Flip RESTORE_ARGS arguments logic (bsc#907818,CVE-2014-9090). - x86, asm: Thin down SAVE/RESTORE_* asm macros (bsc#907818,CVE-2014-9090). - commit cd635eb - hv_netvsc: define RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE - commit 6f28e2c ------------------------------------------------------------------ ------------------ 2014-12-15 - Dec 15 2014 ------------------- ------------------------------------------------------------------ ++++ bind: - Security update 9.9.6P1: * A flaw in delegation handling could be exploited to put named into an infinite loop. This has been addressed by placing limits on the number of levels of recursion named will allow (default 7), and the number of iterative queries that it will send (default 50) before terminating a recursive query (CVE-2014-8500, bnc#908994). * The recursion depth limit is configured via the "max-recursion-depth" option, and the query limit via the "max-recursion-queries" option. ++++ e2fsprogs: - badblocks: Limit maximum number of bad blocks [bnc#883735] badblocks-Limit-maximum-number-of-bad-blocks.patch ++++ kernel-docs: - mutex: Do not unnecessarily deal with waiters (fate#317234). - commit 41d3e26 - locking/mutex: Remove MUTEX_SPIN_USE_MCS_QUEUE (fate#317232). - commit 53991ea - mm: unmapped page migration avoid unmap+remap overhead (MM scalability). - commit cbd8e11 - swap: fix shmem swapping when more than 8 areas (bnc#903096). - commit 3ca7af2 - hyperv: Fix the total_data_buflen in send path - commit 8210ba3 - hyperv: Fix a bug in netvsc_start_xmit() - commit b93ba60 - hyperv: Add hash value into RNDIS Per-packet info - commit c500c29 - hyperv: Properly handle checksum offload - commit f50540a - Drivers: net: hyperv: Address UDP checksum issues - commit 9e6b611 - Drivers: net: hyperv: Allocate memory for all possible per-pecket information - commit b52058e - Drivers: net: hyperv: Enable large send offload - commit b0d1ca6 - Drivers: net: hyperv: Enable send side checksum offload - commit e923991 - net: reset mac header in dev_start_xmit(). - commit 6b571ee - Delete patches.kabi/* workarounds - commit d88051e ++++ libsatsolver: - Support product end-of-life attribute [FATE#300591] - 0.17.9 ++++ libzypp: - Add Product::endOfLife attribute (Fate#316172,Fate#300591) - version 9.38.0 (8) ++++ xorg-x11-server: - u_Xvnc_reallocate_buffer_if_its_too_small.patch * Prevents crash when client with higher depth connects after one with lower. (bnc#907633) ------------------------------------------------------------------ ------------------ 2014-12-12 - Dec 12 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - kvm: fix excessive pages un-pinning in kvm_iommu_map error path (CVE-2014-8369 bnc#902675). - x86,kvm,vmx: Preserve CR4 across VM entry (CVE-2014-3690 bnc#902232). - KVM: x86: Don't report guest userspace emulation error to userspace (CVE-2014-7842 bnc#905312). - commit e73641f - Refresh patches.drivers/HID-multitouch-add-support-for-Atmel-212c. Fix the non-working touchsreen (bnc#909740) - commit 153a86d - usb: xhci: rework root port wake bits if controller isn't allowed to wakeup (bsc#909264). - commit f11d108 - Refresh patches.drivers/0001-usb-Fix-xHCI-host-issues-on-remote-wakeup.patch. - Delete patches.suse/0002-xhci-hub.c-preserved-kABI.patch. - commit 05c3210 ++++ iptables: - fix manpage to reflect actual supported syntax (bnc#863290) * added iptables-fix_manpage_to_reflect_actual_supported_syntax.patch - Fix-listing-saving-the-new-revision-of-the-SET-targe.patch: fix broken output of list/save for xt_SET target (bnc#868452) - Fix-set-match-target-direction-parser.patch: fix direction parser in xt_set match and xt_SET target (bnc#868452) - libxt_set-new-revision-added.patch: move from libipt_set/libipt_SET to libxt_set/libxt_SET in order to support IPv6 (bnc#868452) ++++ kdebase4: - Update add-force-newprocess-bnc879084.diff to add new config option for forcing a new process bnc#879084 fate#318100 ++++ ofed: - exclude arch ppc (no 32bit binary kernels available) ------------------------------------------------------------------ ------------------ 2014-12-11 - Dec 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update Xen patches to c/s 1272. - xen-pciback: drop SR-IOV VFs when PF driver unloads (bsc#901839). - x86, mm: Create slow_virt_to_phys() (fate#317533). - x86, mm: Pagetable level size/shift/mask helpers (fate#317533). - Update EC2 config files (SERIO=n). - commit 291b79b - x86/UV: Fix conditional in gru_exit() (bsc#909095). - commit aadfdfa - Preserve kabi checksum of path_is_under(). - commit 1a269a2 - Delete patches.kabi/* workarounds - commit 260c027 - crypto: kernel oops at insmod of the z90crypt device driver (bnc#909088, LTC#119591). - commit 5d7a0d7 ++++ xen: - Fix xen.spec to build the KMPs for i586 ------------------------------------------------------------------ ------------------ 2014-12-10 - Dec 10 2014 ------------------- ------------------------------------------------------------------ ++++ e2fsprogs: - lsattr, chattr: add support for nocow flag [fate#315089] lsattr-chattr-add-support-for-btrfs-s-No_COW-flag.patch chattr-update-chattr-s-man-page-chattr-for-No_COW.patch ++++ kernel-docs: - Fixup kABI after patches.fixes/writeback-do-not-sync-data-dirtied-after-sync-start.patch (bnc#833820). - Refresh patches.fixes/writeback-do-not-sync-data-dirtied-after-sync-start.patch. - commit 6ec581e - series.conf: Separate SP4-only net patch from the SP3 series - commit d560c05 - mfd: lpc_ich: iTCO_wdt patch for Intel Coleto Creek DeviceIDs (fate#317357). - commit b4e9d9a - Refresh patches.arch/0001-mfd-lpc_ich-Add-Device-IDs-for-Intel-Wildcat-Point-L.patch. Add TCO related info of Wildcat Point-LP. - commit 14e4f50 - mfd: lpc_ich: Add Device IDs for Intel Wildcat Point-LP PCH (fate#317348). - commit 7d9075f - intel_idle: Support Intel Atom Processor C2000 Product Family (fate#317428). - commit 2cd2cee - ahci: Add Device IDs for Intel Sunrise Point PCH (fate#317355). - commit 43311c2 - Split out kabi fix to separate patch - kabi fix (bnc#864404). - Refresh patches.fixes/0001-NFSv4-Allow-the-state-manager-to-mark-an-open_owner-.patch. - commit 8508c5e - Refresh patches.fixes/netlink-add-privilege-check-of-socket-opener.patch. Fix KABI. - commit ca5efe2 ++++ libksba: - fix CVE-2014-9087 (bnc#907074) * buffer overflow in OID processing * added libksba-CVE-2014-9087.patch ++++ rpm: - honor --noglob in install mode [bnc#892431] new patch: installnoglob.diff - check for bad invalid name sizes [bnc#908128] [CVE-2014-8118] new patch: cpionamesize.diff - create files with mode 0 [bnc#906803] [CVE-2013-6435] new patch: unpackmode0.diff ++++ release-notes-sdk: - 11.4.0: - Start resetting for SLE 11 SP4. - Pull in SP4 release notes from FATE. ++++ xorg-x11-server: - Add security patches. (bnc#907268, CVE-2014-8092, CVE-2014-8097) + U_dbe_Call_to_DDX_SwapBuffers_requires_address_of_int_not_unsigned_int.patch + U_dix_GetHosts_bounds_check_using_wrong_pointer_value.patch + U_dix_Missing_parens_in_REQUEST_FIXED_SIZE_macro.patch ------------------------------------------------------------------ ------------------ 2014-12-9 - Dec 9 2014 ------------------- ------------------------------------------------------------------ ++++ brp-check-suse: - add brp-check-suse-add_no_check_rootfs.diff: set NO_BRP_CHECK_ROOTFS to skip that check ++++ kernel-docs: - netlink: add privilege check of socket opener (bsc#875051, CVE-2014-0181). - commit c9d6294 - Delete patches.fixes/0010a-NFS-Clean-up-nfs4_select_rw_state.fix One more SP3 kabi workaround. - commit 24767c6 - Delete SP3 kabi workarounds - Delete patches.kabi/* patches.arch/paravirt-stub-kabi-for-KVM_MMU.patch. patches.drivers/Revert-kABI-changes-of-libfcoe-Make-fcoe_sysfs-optio.patch. patches.fixes/0012a-NFSv4-Resend-stateid-kabi-fix. patches.fixes/mm-vmscan-take-page-buffers-dirty-and-locked-state-into-account-v3-KABI-fix.patch. patches.fixes/mm-vmscan-take-page-buffers-dirty-and-locked-state-into-account-v3-KABI.patch. patches.fixes/scsi-kABI-fixes.patch. patches.suse/bug-853428-scsi_device-fix-kabi.patch. patches.suse/dcache-kABI-fixes-for-lockref-dentries. patches.suse/mm-hugetlb-unify-region-structure-handling-kabi.patch. - Add patches that have been skipped in SP3 due to kabi: mm: redefine address_space.assoc_mapping. Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs. - Refresh: patches.fixes/af_unix-do-not-pack-creds-for-dying-process. patches.fixes/autofs-fix-lockref-lookup.patch. patches.fixes/mm-vmscan-only-defer-compaction-for-failed-order-and-higher.patch. patches.suse/0010-autofs4-factor-should_expire-out-of-autofs4_expire_i.patch. patches.suse/helper-for-reading-d_count. patches.suse/kdb-v4.4-3.1-common-1. patches.suse/mm-add-support-for-a-filesystem-to-activate-swap-files-and-use-direct_IO-for-writing-swap-pages.patch. patches.suse/mm-hugetlb-improve-cleanup-resv_map-parameters.patch. patches.suse/mm-hugetlb-use-vma_resv_map-map-types.patch. patches.suse/scsi-add-a-blacklist-flag-which-enables-VPD-page-inq.patch. - commit 9a77942 - net, sunrpc: suppress allocation warning in rpc_malloc() (bnc#904659). - commit 0006458 - kabi/severities: revert 751c4d18 ("kabi/severities: allow all kABI changes to pass, while still keeping SP3 symsets") - Delete kabi/i386/symsets-default.tar.gz. - Delete kabi/i386/symsets-pae.tar.gz. - Delete kabi/i386/symsets-trace.tar.gz. - Delete kabi/i386/symsets-xen.tar.gz. - Delete kabi/i386/symtypes-default. - Delete kabi/i386/symtypes-pae. - Delete kabi/i386/symtypes-trace. - Delete kabi/i386/symtypes-xen. - Delete kabi/i386/symvers-default. - Delete kabi/i386/symvers-default.fake. - Delete kabi/i386/symvers-pae. - Delete kabi/i386/symvers-pae.fake. - Delete kabi/i386/symvers-trace. - Delete kabi/i386/symvers-trace.fake. - Delete kabi/i386/symvers-xen. - Delete kabi/ia64/symsets-default.tar.gz. - Delete kabi/ia64/symsets-trace.tar.gz. - Delete kabi/ia64/symtypes-default. - Delete kabi/ia64/symtypes-trace. - Delete kabi/ia64/symvers-default. - Delete kabi/ia64/symvers-trace. - Delete kabi/ppc64/symsets-default.tar.gz. - Delete kabi/ppc64/symsets-ppc64.tar.gz. - Delete kabi/ppc64/symsets-trace.tar.gz. - Delete kabi/ppc64/symtypes-default. - Delete kabi/ppc64/symtypes-ppc64. - Delete kabi/ppc64/symtypes-trace. - Delete kabi/ppc64/symvers-default. - Delete kabi/ppc64/symvers-ppc64. - Delete kabi/ppc64/symvers-trace. - Delete kabi/s390x/symsets-default.tar.gz. - Delete kabi/s390x/symsets-trace.tar.gz. - Delete kabi/s390x/symtypes-default. - Delete kabi/s390x/symtypes-trace. - Delete kabi/s390x/symvers-default. - Delete kabi/s390x/symvers-trace. - Delete kabi/x86_64/symsets-bigsmp.tar.gz. - Delete kabi/x86_64/symsets-default.tar.gz. - Delete kabi/x86_64/symsets-trace.tar.gz. - Delete kabi/x86_64/symsets-xen.tar.gz. - Delete kabi/x86_64/symtypes-bigsmp. - Delete kabi/x86_64/symtypes-default. - Delete kabi/x86_64/symtypes-trace. - Delete kabi/x86_64/symtypes-xen. - Delete kabi/x86_64/symvers-bigsmp. - Delete kabi/x86_64/symvers-default. - Delete kabi/x86_64/symvers-default.fake. - Delete kabi/x86_64/symvers-trace. - Delete kabi/x86_64/symvers-trace.fake. - Delete kabi/x86_64/symvers-xen. - Delete kabi/x86_64/symvers-xen.fake. Due to planned -bigsmp merge into -default there is not much sense in keeping to track it. - commit 1be5b1e ++++ kiwi: - v5.05.81 released Added kiwi-image: provides tags for OBS ++++ libcgroup1: - package upgraded from 0.37 to 0.41.rc1 - libcgroup-man_pages.patch: removed because obsoleted by 41b1e43155831 - initd_cgconfig-read-correctly-defaultcgroup.patch: removed because obsoleted by 9659403b713f9 - do-not-version-pam-module.patch: fix an invalid link to pam_cgroup.so.0.0.0 and do not build cgroup pam module as a versioned shared object (bnc#817533) ------------------------------------------------------------------ ------------------ 2014-12-8 - Dec 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - s390: add support to start the kernel in 64 bit mode (bnc#902516, FATE#317622, LTC#110331). - s390/zcrypt: add support for EP11 coprocessor cards (bnc#902514, FATE#317624, LTC#110335). - qeth: Display adjacent switch attributes (bnc#902513, FATE#317598, LTC#110521). - s390/cio: add condev keyword to cio_ignore (bnc#902387, FATE#317623, LTC#110333). - s390/cio: add ipldev keyword to cio_ignore (bnc#902387, FATE#317623, LTC#110333). - s390/perf: make print_debug_cf() static (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: fix printk format warnings (bnc#900899, FATE#317698, LTC#110510). - s390/perf: Add service level information for CPU-Measurement Facilities (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: Add flag to process full SDBs only (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: Add raw data sampling to support the diagnostic-sampling function (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: Filter perf events based event->attr.exclude_* settings (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: Detect KVM guest samples (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: Add helper to read TOD from trailer entries (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: Atomically reset trailer entry fields of sample-data-blocks (bnc#900899, FATE#317698, LTC#110510). - s390/cmpxchg,percpu: implement cmpxchg_double() (bnc#900899, FATE#317698, LTC#110510). - s390/cpum_sf: Dynamically extend the sampling buffer if overflows occur (bnc#900899, FATE#317698, LTC#110510). - s390/perf,oprofile: Share sampling facility (bnc#900899, FATE#317698, LTC#110510). - s390/perf: Improve PMU selection for PERF_COUNT_HW_CPU_CYCLES events (bnc#900899, FATE#317698, LTC#110510). - s390/perf: add support for the CPU-Measurement Sampling Facility (bnc#900899, FATE#317698, LTC#110510). - s390/oprofile: move hwsampler interfaces to cpu_mf.h (bnc#900899, FATE#317698, LTC#110510). - s390/perf: cpum_cf: fallback to software sampling events (bnc#900899, FATE#317698, LTC#110510). - s390/perf_events: compile only for CONFIG_64BIT (bnc#900899, FATE#317698, LTC#110510). - s390/perf: Remove print_hex_dump_bytes() debug output (bnc#900899, FATE#317698, LTC#110510). - s390/perf: fix compile error (undefined reference sie_exit) (bnc#900899, FATE#317698, LTC#110510). - KVM: s390,perf: Detect if perf samples belong to KVM host or guest (bnc#900899, FATE#317698, LTC#110510). - commit 61994bc - config.conf: Do not require kernel-bigsmp-devel by kernel-syms The flavor will soon be merged back into -default. - commit f87c20d - iommu/vt-d: Fix an off-by-one bug in __domain_mapping() (bsc#908825). - commit 091260c ++++ xen: - Update block-dmmd with fixes from SLE11-SP3 - bnc#906996 - VUL-0: CVE-2014-9065, CVE-2014-9066: XSA-114: xen: p2m lock starvation 5485ab8a-switch-to-write-biased-r-w-locks.patch - bnc#904255 - XEN boot hangs in early boot on UEFI system 546a0107-EFI-allow-retry-of-ExitBootServices-call.patch - bsc#912011 - high ping latency after upgrade to latest SLES11SP3 on xen Dom0 54744659-x86-cpuidle-don-t-count-C1-multiple-times.patch - Renamed patches to upstream commit version xsa113.patch to 546e1916-x86-mm-fix-a-reference-counting-error-in-MMU_MACHPHYS_UPDATE.patch xsa112.patch to 547720b4-x86-HVM-confine-internally-handled-MMIO-to-solitary-regions.patch xsa111.patch to 54772067-x86-limit-checks-in-hypercall_xlat_continuation-to-actual-arguments.patch xsa110.patch to 546b46a7-x86emul-enforce-privilege-level-restrictions-when-loading-CS.patch xsa109.patch to 546b4669-x86-don-t-allow-page-table-updates-on-non-PV-pts.patch ------------------------------------------------------------------ ------------------ 2014-12-7 - Dec 7 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - net: sctp: fix remote memory pressure from excessive queueing (bnc#902351 CVE-2014-3688). - commit 87d5fc9 - net: sctp: fix remote memory pressure from excessive queueing (bnc#902351 CVE-2014-3688). - commit 8a2eadc ------------------------------------------------------------------ ------------------ 2014-12-5 - Dec 5 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - mnt: Prevent pivot_root from creating a loop in the mount tree (CVE-2014-7970 bnc#900644). - vfs: more mnt_parent cleanups (CVE-2014-7970 bnc#900644). - vfs: new internal helper: mnt_has_parent(mnt) (CVE-2014-7970 bnc#900644). - Refresh patches.suse/dcache-add-dcache_lustre_invalid-flag-for-lustre-to-handle-its-own-invalidation. - commit ded5a46 - xhci: fix oops when xhci resumes from hibernate with hw lpm capable devices (FATE#317453). - usb: allow lpm (en/dis)able only if device is atleast in default state (FATE#317453). - xhci: A default implementation for Ux timeout calculation and tier policy check (FATE#317453). - xhci: fix wrong port number reported when setting USB2.0 hardware LPM (FATE#317453). - xhci: Prevent runtime pm from autosuspending during initialization (FATE#317453). - usb/xhci: Change how we indicate a host supports Link PM (FATE#317453). - usb: hub: usb_ext_cap_descriptor.bmAttributes is le32 (FATE#317453). - xhci: replace USB_MAXINTERFACES with config->desc.bNumInterface (FATE#317453). - xhci: correct the usage of USB_CTRL_SET_TIMEOUT (FATE#317453). - usb: Push USB2 LPM disable on disconnect into USB core (FATE#317453). - usb: hub: modify hub driver for missing ACPI parts (FATE#317453). - xhci: Enable LPM support only for hardwired or BESL devices (FATE#317453). - usb: Don't enable USB 2.0 Link PM by default (FATE#317453). - xhci: Set L1 device slot on USB2 LPM enable/disable (FATE#317453). - usbcore: check usb device's state before sending a Set SEL control transfer (FATE#317453). - usbcore: fix incorrect type in assignment in descriptors_changed() (FATE#317453). - usbcore: compare and release one bos descriptor in usb_reset_and_verify_device() (FATE#317453). - xhci: Don't enable/disable RWE on bus suspend/resume (FATE#317453). - usb: add usb2 Link PM variables to sysfs and usb_device (FATE#317453). - usb: xhci: add USB2 Link power management BESL support (FATE#317453). - xHCI: BESL calculation based on USB2.0 LPM errata (FATE#317453). - xhci: Use ilog2() rather than __ffs() for calculating SEGMENT_SHIFT (FATE#317453). - USB: driver.c: processing failure, maching resume condition with suspend condition (FATE#317453). - USB: remove CONFIG_USB_SUSPEND option (FATE#317453). - USB: avoid error messages when a device is disconnected (FATE#317453). - xhci: Report USB 2.1 link status for L1 (FATE#317453). - usb: xhci: define port register names and use them instead of magic numbers (FATE#317453). - xhci: fix port BESL LPM capability checking (FATE#317453). - commit 52e9e5b - x86/gpu: Print the Intel graphics stolen memory range (bnc#908550). - commit 1378cad - mfd: lpc_ich: Add support for Intel Bay Trail SoC (bnc#908012,FATE#317358). - mfd: lpc_ich: Change Avoton to iTCO v3 (bnc#908012,FATE#317358). - mfd: lpc_ich: Add support for iTCO v3 (bnc#908012,FATE#317358). - watchdog: iTCO_wdt: Add support for v3 silicon (bnc#908012,FATE#317358). - commit a8440ac - KEYS: Fix stale key registration at error path (bnc#908163). - commit 1761fb7 - net: sctp: fix panic on duplicate ASCONF chunks (bnc#902349 CVE-2014-3687). - commit ca3113c - net: sctp: fix panic on duplicate ASCONF chunks (bnc#902349 CVE-2014-3687). - commit 61b5f92 ------------------------------------------------------------------ ------------------ 2014-12-4 - Dec 4 2014 ------------------- ------------------------------------------------------------------ ++++ samba: - Fix spoolss error response marshalling; (bso#10984). ++++ libzypp: - Update sle-zypp-po.tar.bz2 ++++ linuxrc: - add vlan support to linuxrc (fate #316140) - 3.3.97 ------------------------------------------------------------------ ------------------ 2014-12-3 - Dec 3 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 31.3.0 ESR (bnc#908009) * MFSA 2014-83/CVE-2014-1587/CVE-2014-1588 (bmo#1042567, bmo#1072847, bmo#1079729, bmo#1080312, bmo#1089207, bmo#1013001, bmo#1023158, bmo#1026037, bmo#1037830, bmo#1048517, bmo#1064835, bmo#1073577, bmo#1075546, bmo#1077687, bmo#1086842, bmo#1096026) Miscellaneous memory safety hazards (rv:34.0 / rv:31.3) * MFSA 2014-85/CVE-2014-1590 (bmo#1087633) XMLHttpRequest crashes with some input streams * MFSA 2014-87/CVE-2014-1592 (bmo#1088635) Use-after-free during HTML5 parsing * MFSA 2014-88/CVE-2014-1593 (bmo#1085175) Buffer overflow while parsing media content * MFSA 2014-89/CVE-2014-1594 (bmo#1074280) Bad casting from the BasicThebesLayer to BasicContainerLayer - removing merged patch disabling SSLv3 by default ++++ kernel-docs: - virtio_net: drop dst reference before transmitting a packet (bnc#882470). - commit d276a14 - ipv6: fix net reference leak in IPv6 conntrack reassembly (bnc#865419). - nf_conntrack: avoid reference leak in __ipv6_conntrack_in() (bnc#865419). - commit eb15acb - sched/fair: Stop searching for tasks in newidle balance if there are runnable tasks (FATE#317649). - commit bca3762 ++++ xorg-x11-server: - Add security patches. (bnc#907268, CVE-2014-8091, CVE-2014-8092, CVE-2014-8093, CVE-2014-8094, CVE-2014-8095, CVE-2014-8096, CVE-2014-8097, CVE-2014-8098, CVE-2014-8099, CVE-2014-8100, CVE-2014-8101, CVE-2014-8102) + U_Xi_unvalidated_lengths_in_Xinput_extension.patch + U_Xv_unvalidated_lengths_in_XVideo_extension_swapped_procs.patch + U_dbe_unvalidated_lengths_in_DbeSwapBuffers_calls.patch + U_dix_integer_overflow_in_GetHosts.patch + U_dix_integer_overflow_in_ProcPutImage.patch + U_dix_integer_overflow_in_REQUEST_FIXED_SIZE.patch + U_dix_integer_overflow_in_RegionSizeof.patch + U_dri2_integer_overflow_in_ProcDRI2GetBuffers.patch + U_glx_Add_safe__add_mul_pad.patch + U_glx_Additional_paranoia_in___glXGetAnswerBuffer___GLX_GET_ANSWER_BUFFER.patch + U_glx_Be_more_paranoid_about_variable_length_requests.patch + U_glx_Be_more_strict_about_rejecting_invalid_image_sizes.patch + U_glx_Fix_image_size_computation_for_EXT_texture_integer.patch + U_glx_Fix_mask_truncation_in___glXGetAnswerBuffer.patch + U_glx_Integer_overflow_protection_for_non_generated_render_requests.patch + U_glx_Length_checking_for_GLXRender_requests.patch + U_glx_Length_checking_for_RenderLarge_requests.patch + U_glx_Length_checking_for_non_generated_single_request.patch + U_glx_Length_checking_for_non_generated_vendor_private_requests.patch + U_glx_Pass_remaining_request_length_into_varsize.patch + U_glx_Top_level_length_checking_for_swapped_VendorPrivate_requests.patch + U_randr_unvalidated_lengths_in_RandR_extension_swapped_procs.patch + U_render_check_request_size_before_reading_it.patch + U_render_unvalidated_lengths_in_Render_extn_swapped_procs.patch + U_unchecked_malloc_may_allow_unauthed_client_to_crash_Xserver.patch + U_xcmisc_unvalidated_length_in_SProcXCMiscGetXIDList.patch + U_xfixes_unvalidated_length_in_SProcXFixesSelectSelectionInput.patch ------------------------------------------------------------------ ------------------ 2014-12-2 - Dec 2 2014 ------------------- ------------------------------------------------------------------ ++++ pidgin: - Add patches to address CVE issues: + pidgin-CVE-2014-3698.patch: bnc#902408 - CVE-2014-3698: remote information leak via crafted XMPP message. + pidgin-CVE-2014-3696.patch: bnc#902410 - CVE-2014-3696: denial of service parsing Groupwise server message. + pidgin-CVE-2014-3695-rebase.patch: bnc#902409 - CVE-2014-3695: crash in MXit protocol plug-in. ++++ kernel-docs: - kvm: Don't expose MONITOR cpuid as available (bnc#887597) - commit 40b6ebe ++++ jasper: - fixed possible overflow CVE-2014-9029 (bnc#906364) ++++ libvirt: - Enable building ESX driver FATE#316660 ++++ libyaml: - fix CVE-2014-9130: libyaml: assert failure when processing wrapped strings (bnc#907809) CVE-2014-9130.patch contains the fix ++++ xen: - Fix missing banner by restoring figlet program figlet.tar.bz2 xen-figlet-makefile.patch ------------------------------------------------------------------ ------------------ 2014-12-1 - Dec 1 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - proc_sys_revalidate: fix Oops on NULL nameidata (bnc#907551). - commit fda7acf ------------------------------------------------------------------ ------------------ 2014-11-28 - Nov 28 2014 ------------------- ------------------------------------------------------------------ ++++ java-1_7_1-ibm: - Enable ppc and ppc64 ++++ kernel-docs: - net: fix neighbours after MAC change (bnc#905299). - commit 5211998 - Force native backlight for HP POS machines (bnc#908551,FATE#317933). - commit 8f1b4a4 ------------------------------------------------------------------ ------------------ 2014-11-27 - Nov 27 2014 ------------------- ------------------------------------------------------------------ ++++ binutils: - Fix for several CVEs found when feeding fuzzed binary files into various binutils programs like strings, objdump or readelf. [bnc #902676, #902677, #903655, #905735, #905736] [CVE-2014-8485, CVE-2014-8484, CVE-2014-8501, CVE-2014-8502, CVE-2014-8503, CVE-2014-8504, CVE-2014-8738, CVE-2014-8737] [PR17510, PR17512, PR17521, PR17531, PR17533, PR17552, PR17597, PR17605] ++++ cross-ppc-binutils: - Fix for several CVEs found when feeding fuzzed binary files into various binutils programs like strings, objdump or readelf. [bnc #902676, #902677, #903655, #905735, #905736] [CVE-2014-8485, CVE-2014-8484, CVE-2014-8501, CVE-2014-8502, CVE-2014-8503, CVE-2014-8504, CVE-2014-8738, CVE-2014-8737] [PR17510, PR17512, PR17521, PR17531, PR17533, PR17552, PR17597, PR17605] ++++ cross-spu-binutils: - Fix for several CVEs found when feeding fuzzed binary files into various binutils programs like strings, objdump or readelf. [bnc #902676, #902677, #903655, #905735, #905736] [CVE-2014-8485, CVE-2014-8484, CVE-2014-8501, CVE-2014-8502, CVE-2014-8503, CVE-2014-8504, CVE-2014-8738, CVE-2014-8737] [PR17510, PR17512, PR17521, PR17531, PR17533, PR17552, PR17597, PR17605] ++++ gfxboot: - remove 'Novell' from welcome screen (bnc #811461) - 4.1.34 - prepare package for jenkins auto-submission - 4.1.33 ++++ kernel-docs: - i2c: i801: Add Device IDs for Intel Sunrise Point PCH (fate#317355). - i2c: i801: Add Device IDs for Intel Wildcat Point-LP PCH (fate#317348). - i2c: i801: SMBus patch for Intel Coleto Creek DeviceIDs (fate#317357). - commit 9e6f3ca - bonding: propagate LRO disabling down to slaves (bnc#829110 bnc#891277 bnc#904053). - net: handle more general stacking in dev_disable_lro() (bnc#829110 bnc#891277 bnc#904053). - commit 9bd4b28 - ACPI idle: permit sparse C-state sub-state numbers (bnc#908550,FATE#317933). - x86/intel: Add quirk to disable HPET for the Baytrail platform (bnc#908550,FATE#317933). - x86/hpet: Make boot_hpet_disable extern (bnc#908550,FATE#317933). - x86/early quirk: use gen6 stolen detection for VLV (bnc#908550,FATE#317933). - x86: add early quirk for reserving Intel graphics stolen memory v5 (bnc#908550,FATE#317933). - Revert "drm/i915: Calculate correct stolen size for GEN7+" (bnc#908550,FATE#317933). - drm/i915: split PCI IDs out into i915_drm.h v4 (bnc#908550,FATE#317933). - commit c4832a9 - dw_dmac: add support for Lynxpoint DMA controllers (fate#317311). - commit ed6ddcd ++++ linuxrc: - backport linemode changes from sle12 (bnc #906345, fate #313155, fate #313156) - 3.3.96 ------------------------------------------------------------------ ------------------ 2014-11-26 - Nov 26 2014 ------------------- ------------------------------------------------------------------ ++++ Mesa: - U_i965-Enable-the-Bay-Trail-platform.patch: Enable BayTrail support (FATE#317933, bnc#930085) ++++ flac: - A couple of security fixes: * flac-fix-CVE-2014-8962.patch: arbitrary code execution by a stack overflow (CVE-2014-8962, bnc#906831) * flac-fix-CVE-2014-9028.patch: Heap overflow via specially crafted .flac files (CVE-2014-9028, bnc#907016) ++++ kernel-docs: - Add support for AdvancedSilicon HID multitouch screen (2149:36b1) (FATE#317933). - HID: use multi input quirk for 22b9:2968 (FATE#317933). - commit c291077 - ALSA: hda/hdmi - apply Valleyview fix-ups to Cherryview display codec (FATE#317933). - ALSA: hda - add codec ID for Braswell display audio codec (FATE#317933). - ALSA: hda - verify pin:converter connection on unsol event for HSW and VLV (FATE#317933). - ALSA: hda - hdmi: Re-setup pin and infoframe on plug-in on all codecs (FATE#317933). - ALSA: hda - verify pin:cvt connection on preparing a stream for Intel HDMI codec (FATE#317933). - ALSA: hda/hdmi - apply all Haswell fix-ups to Broadwell display codec (FATE#317933). - ALSA: hda - add codec ID for Broadwell display audio codec (FATE#317933). - ALSA: hda - rename function not_share_unassigned_cvt() (FATE#317933). - ALSA: hda - not choose assigned converters for unused pins of Valleyview (FATE#317933). - ALSA : hda - not use assigned converters for all unused pins (FATE#317933). - ALSA: hda - unmute pin amplifier in infoframe setup for Haswell (FATE#317933). - ALSA: hda - define is_haswell() to check if a display audio codec is Haswell (FATE#317933). - ALSA: hda - add codec ID for Valleyview2 display codec (FATE#317933). - ALSA: hda_intel: Add DeviceIDs for Sunrise Point-LP (FATE#317347). - ALSA: hda_intel: Add Device IDs for Intel Sunrise Point PCH (FATE#317347). - ALSA: hda - add PCI IDs for Intel Braswell (FATE#317347). - ALSA: hda - Fix onboard audio on Intel H97/Z97 chipsets (FATE#317347). - ALSA: hda - Add Device IDs for Intel Wildcat Point-LP PCH (FATE#317347). - ALSA: hda - add PCI IDs for Intel BayTrail (FATE#317347). - commit 5bda7d8 - supported.conf: Sort the list - commit cf8a204 - supported.conf: Update module paths Driver code has moved around in the kernel tree over time, update our list of supported modules accordingly. - commit b5f589b - rpm/constraints.in: Require 10GB disk space on POWER A debuginfo build currently requires about 8.5 GB on POWER. Also, require at least 8 CPUs, so that builds do not get accidentally scheduled on slow machines. - commit cd17059 ++++ ksh: - fix stk aliasing code [bnc#844071] new patch: ksh93-stkaliasdif ++++ yast2-iscsi-server: - don't write authentication info to y2log file (bnc #895058) - 2.17.11 ------------------------------------------------------------------ ------------------ 2014-11-25 - Nov 25 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Disable all languages but C, C++, Fortran and Ada. [fate#316860] ++++ kernel-docs: - mm, thp: Add dummy definition for VM_NOHUGEPAGE where necessary (prctl support for disabling THP (fate#317831)). - commit 2d1a8ee - mce: acpi/apei: Add a boot option to disable ff mode for corrected errors (fate#317438). - mce: acpi/apei: Honour Firmware First for MCA banks listed in APEI HEST CMC (fate#317438). - mce: acpi/apei: Soft-offline a page on firmware GHES notification (fate#317438). - Update config files. - commit 28f4c36 - x86, xsave: remove thread_has_fpu() bug check in __sanitize_i387_state() (bnc#904671). - coredump: ensure the fpu state is flushed for proper multi-threaded core dump (bnc#904671). - commit 9a038ce - mm, thp: add VM_INIT_DEF_MASK and PRCTL_THP_DISABLE (prctl support for disabling THP (fate#317831)). - mm: revert "thp: make MADV_HUGEPAGE check for mm->def_flags" (prctl support for disabling THP (fate#317831)). - thp: make MADV_HUGEPAGE check for mm->def_flags (prctl support for disabling THP (fate#317831)). - commit 8b6da20 - mm: fix BUG in __split_huge_page_pmd (bnc#906586). - commit 9394f8d - Carry outstanding hv_netvsc patches, not applied due to crash They are not applied yet because they cause a crash. - Drivers: net: hyperv: Enable send side checksum offload (fate#317533). - Drivers: net: hyperv: Enable large send offload (fate#317533). - Drivers: net: hyperv: Allocate memory for all possible per-pecket information (fate#317533). - Drivers: net: hyperv: Address UDP checksum issues (fate#317533). - hyperv: Properly handle checksum offload (fate#317533). - hyperv: Add hash value into RNDIS Per-packet info (fate#317533). - hyperv: Fix a bug in netvsc_start_xmit() (fate#317533). - hyperv: Fix the total_data_buflen in send path (fate#317533). - commit 445aff6 - kabi, mm: prevent endless growth of anon_vma hierarchy (bnc#904242). - mm: prevent endless growth of anon_vma hierarchy (bnc#904242). - commit 695231a - supported.conf: Fix typo in cxgb4i module path - commit 3229ee9 - supported.conf: Drop references to deleted modules All these modules no longer exist in our kernel tree so listing them in supported.conf is pointless. - commit 6fe8dc3 - i2c: piix4: Use different message for AMD Auxiliary SMBus Controller (FATE#316957). - i2c: piix4: Add support for AMD ML and CZ SMBus changes (FATE#316957). - i2c: piix4: Add support for secondary SMBus on AMD SB800 and AMD FCH chipsets (FATE#316957). - i2c-piix4: Add AMD CZ SMBus device ID (FATE#316957). - i2c-piix4: Fix build failure (FATE#316957). - i2c-piix4: Support AMD auxiliary SMBus controller (FATE#316957). - i2c-piix4: Separate registration and probing code (FATE#316957). - i2c-piix4: Eliminate piix4_smba global variable (FATE#316957). - commit c137a57 - fs: add link restrictions (FATE#314496). - commit 8e7f2bd ++++ xen: - bnc#903357 - Corrupted save/restore test leaves orphaned data in xenstore libxl-restore-cleanup-left-xenstore-entries.patch - Replace xentop-expand-field-sizes.patch with upstream version 29949-xentop-dynamically-expand-columns.patch ------------------------------------------------------------------ ------------------ 2014-11-24 - Nov 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - iommu/vt-d: Be less pessimistic about domain coherency where possible (fate#317111). - iommu/vt-d: Simplify intel_unmap_sg() and kill duplicated code (fate#317111). - iommu/vt-d: Clean up and fix page table clear/free behaviour (fate#317111). - commit 0939dbf ++++ libdrm: - Update to version 2.4.52 for supporting BayTrail (FATE#317933, bnc#930085) - Drop obsoleted patches: U_intel-0x041E.patch U_intel-Add-support-for-VEBOX-ring-v2.patch ++++ xen: - bnc#903359 - Temporary migration name is not cleaned up after migration libxl-migration-cleanup-update-uuid-name.patch libxl-migration-cleanup-remove-backend-domain-field.patch ------------------------------------------------------------------ ------------------ 2014-11-23 - Nov 23 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - mm,vmacache: optimize overflow system-wide flushing (VM Performance). - commit 850c598 - mm: enable per-thread vma caching (FATE#318083). - commit d146195 ------------------------------------------------------------------ ------------------ 2014-11-22 - Nov 22 2014 ------------------- ------------------------------------------------------------------ ++++ ksh: - enable vfork again for now - fix stk restoration in sh_exec [bnc#844071] new patch: ksh93-stkfreeze.dif - make a unknown location fatal in stkset so that we get a core dump right away instead of later in an unrelated part of code new patch: ksh93-stkset-abort.dif ------------------------------------------------------------------ ------------------ 2014-11-21 - Nov 21 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ocfs2: fix NULL pointer dereference in ocfs2_duplicate_clusters_by_page (bnc#899843). - Refresh patches.fixes/ocfs2-remove-filesize-checks-for-journal-commits.patch. - commit 4f07b11 - xhci: replace xhci_info() with xhci_dbg() (FATE#317451). - xhci: replace printk(KERN_DEBUG ...) (FATE#317451). - xhci: remove CONFIG_USB_XHCI_HCD_DEBUGGING and unused code (FATE#317451). - Update config files. - commit 12e59c2 ++++ acl: - libacl: fix SIGSEGV of getfacl -e on overly long group name (bnc#902881) ------------------------------------------------------------------ ------------------ 2014-11-20 - Nov 20 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Fix build against SLE11 SP4. [fate#317926] * Build without GRAPHITE support where isl and cloog-isl are not available. * Where mpfr 2.4.0 is not available disable the few features requiring it to allow building with mpfr 2.3.2. * Disable Ada build for ppc64. - Do not build icecream backends and cross compilers. ++++ dhcp: - Applied contrib/ldap/dhcpd-conf-to-ldap patch by Ales Novak to reorder config to add all global options or option declarations to the dhcpService object instead to create new service object (bsc#886094,ISC-Bugs#37876). [+ dhcp-4.2.x-contrib-conf-to-ldap-reorder.886094.patch] - Applied an upstream patch by Thomas Markwalder adding missed mapping of SHA TSIG algorithm names to their constants to enable hmac-sha1, hmac_sha224, hmac_sha256, hmac_sha384 and hmac_sha512 authenticated dynamic DNS updates (bsc#890731, ISC-Bugs#36947). [+ dhcp-4.2.x-ddns-tsig-hmac-sha-support.890731.patch] - Decline IPv6 addresses on Duplicate Address Detection failure and stop client message exchanges on reached MRD rather than at some point after it. Applied fedora patches by Jiri Popelka and added DAD reporting via exit 3 to the dhclient-script and a fix to use correct address variables in the DEPREF6 action (bsc#872609,ISC-Bugs#26735,ISC-Bugs#21238). [+ dhcp-4.2.x-dhcpv6-decline-on-DAD-failure.872609.patch, + dhcp-4.2.x-dhcpv6-retransmission-until-MRD.872609.patch] - Applied backport patch by William Preston avoiding to bind ddns socket in the server when ddns-update-style is none (bsc#891655). [+ dhcp-4.2.x-disable-unused-ddns-port-in-server.891655.patch] - Updated licence statement and FSF address in our scripts. ++++ kernel-docs: - x86: use optimized ioresource lookup in ioremap function (Boot time optimisations (bnc#895387)). - Refresh patches.xen/xen3-patch-2.6.37. - commit c2cd2fc - vfs,proc: guarantee unique inodes in /proc (bnc#868049). - commit 96f9010 - Remove filesize checks for sync I/O journal commit (bnc#800255). - commit 627896b ++++ xen: - bnc#906439 - VUL-0: CVE-2014-9030: XSA-113: Guest effectable page reference leak in MMU_MACHPHYS_UPDATE handling xsa113.patch - bnc#905467 - VUL-0: CVE-2014-8867: XSA-112: xen: Insufficient bounding of "REP MOVS" to MMIO emulated inside the hypervisor xsa112.patch - bnc#905465 - VUL-0: CVE-2014-8866: XSA-111: xen: Excessive checking in compatibility mode hypercall argument translation xsa111.patch ++++ yast2: - Disable the repository when it's GPG key is not trusted to avoid asking the user to trust the key at each repository refresh, needed esp. for the nVidia and ATI driver repositories (fate#314990) - 2.17.136 ------------------------------------------------------------------ ------------------ 2014-11-19 - Nov 19 2014 ------------------- ------------------------------------------------------------------ ++++ ksh: - fix build with std malloc new patch: ksh93-malloc-hook.dif - backport job locking code fix new patch: ksh93-joblock.dif - disable vfork, use fork instead new patch: ksh93-disable-vfork.dif ++++ libreoffice: - Remove wrong hung from sdremote.patch as we had it already disabled. ++++ rubygem-actionpack-3_2: - fix CVE-2014-7829: rubygem-actionpack-3_2: Arbitrary file existence disclosure (bnc#905727) CVE-2014-7829.patch: contains the fix ------------------------------------------------------------------ ------------------ 2014-11-18 - Nov 18 2014 ------------------- ------------------------------------------------------------------ ++++ apache2: - added httpd-2.2.x-mod_proxy_wstunnel.patch that provides support for the tunnelling of web socket connections to a backend websockets server [fate#316880]. ++++ java-1_7_1-ibm: - bring to sle11sp4 fate#317600 - bnc#904889 java 1.7.1_sr1.2 released - CVE-2014-3065: ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. (bnc#) - CVE-2014-3566: The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue. (bnc#901223 901254 901277 901748 901757 901759 901889 901968 902229 902476 902912 903684 903690 903692) - CVE-2014-6513: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT. (bnc#901239 901242 901246) - CVE-2014-6456: Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. (bnc#901239 901242 901246) - CVE-2014-6503: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6532. (bnc#901239 901242 901246) - CVE-2014-6532: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6503. (bnc#901239 901242 901246) - CVE-2014-4288: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6493, CVE-2014-6503, and CVE-2014-6532. (bnc#901239 901242 901246) - CVE-2014-6493: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6503, and CVE-2014-6532. (bnc#901239 901242 901246) - CVE-2014-6492: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment. (bnc#901239 901242 901246) - CVE-2014-6458: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment. (bnc#901239 901242 901246) - CVE-2014-6466: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Internet Explorer, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment. (bnc#901239 901242 901246) - CVE-2014-6506: Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries. (bnc#901239 901242 901246) - CVE-2014-6476: Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6527. (bnc#901239 901242 901246) - CVE-2014-6515: Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment. (bnc#901239 901242 901246) - CVE-2014-6511: Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality via unknown vectors related to 2D. (bnc#901239 901242 901246) - CVE-2014-6531: Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality via unknown vectors related to Libraries. (bnc#901239 901242 901246) - CVE-2014-6512: Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Libraries. (bnc#901239 901242 901246) - CVE-2014-6457: Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3, and R28.3.3 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE. (bnc#901239 901242 901246) - CVE-2014-6527: Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6476. (bnc#901239 901242 901246) - CVE-2014-6502: Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect integrity via unknown vectors related to Libraries. (bnc#901239 901242 901246) - CVE-2014-6558: Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Security. (bnc#901239 901242 901246) ++++ kernel-docs: - intel_idle: Broadwell support (fate#317424). - commit 82c1c8f - block: Fix bogus partition statistics reports (bnc#885077 bnc#891211). - commit d841046 - scsi_dh_alua: disable ALUA handling for non-disk devices (bnc#876633). - commit 8e5e56c - KVM: Add x86_hyper_kvm to complete detect_hypervisor_platform check (FATE#314895, bsc#801138). - x86/apic: Allow x2apic without IR on VMware platform (FATE#314895, bsc#801138). - x86, kvm: Fix intialization warnings in kvm.c (FATE#314895, bsc#801138). - Refresh patches.xen/xen3-patch-2.6.29. - commit d440e7e ------------------------------------------------------------------ ------------------ 2014-11-15 - Nov 15 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - net: sctp: fix skb_over_panic when receiving malformed ASCONF chunks (bnc#902346 CVE-2014-3673). - commit 26373dd - net: sctp: fix skb_over_panic when receiving malformed ASCONF chunks (bnc#902346 CVE-2014-3673). - commit bf44109 ------------------------------------------------------------------ ------------------ 2014-11-14 - Nov 14 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - disable firefox-multilocale-chrome.patch causing build breakages on SLE11 and SLE10 (bnc#905528) ++++ kernel-docs: - update two hv_vmbus patches to mainline state - commit dfd436c - hyperv: Fix a bug in netvsc_send() (fate#317533). - Drivers: hv: vmbus: Enable interrupt driven flow control (fate#317533). - Drivers: hv: vmbus: Properly protect calls to smp_processor_id() (fate#317533). - Drivers: hv: vmbus: Cleanup hv_post_message() (fate#317533). - Drivers: hv: vmbus: Cleanup vmbus_close_internal() (fate#317533). - Drivers: hv: vmbus: Fix a bug in vmbus_open() (fate#317533). - Drivers: hv: vmbus: Cleanup vmbus_establish_gpadl() (fate#317533). - Drivers: hv: vmbus: Cleanup vmbus_teardown_gpadl() (fate#317533). - Drivers: hv: vmbus: Cleanup vmbus_post_msg() (fate#317533). - storvsc: get rid of overly verbose warning messages (fate#317533). - hyperv: NULL dereference on error (fate#317533). - hyperv: Increase the buffer length for netvsc_channel_cb() (fate#317533). - Input: hyperv-keyboard - register as a wakeup source (fate#317533). - hyperv: Adjust the size of sendbuf region to support ws2008r2 (fate#317533). - Drivers: net-next: hyperv: Increase the size of the sendbuf region (fate#317533). - HID: hyperv: register as a wakeup source (fate#317533). - video: hyperv: hyperv_fb: refresh the VM screen by force on VM panic (fate#317533). - Drivers: add blist flags (fate#317533). - drivers: scsi: storvsc: Correctly handle TEST_UNIT_READY failure (fate#317533). - drivers: scsi: storvsc: Set srb_flags in all cases (fate#317533). - Drivers: scsi: storvsc: Implement a eh_timed_out handler (fate#317533). - Drivers: scsi: storvsc: Fix a bug in handling VMBUS protocol version (fate#317533). - Drivers: scsi: storvsc: Filter commands based on the storage protocol version (fate#317533). - Drivers: scsi: storvsc: Set cmd_per_lun to reflect value supported by the Host (fate#317533). - Drivers: scsi: storvsc: Change the limits to reflect the values on the host (fate#317533). - hyperv: Fix error return code in netvsc_init_buf() (fate#317533). - Drivers: hv: hv_fcopy: fix a race condition for SMP guest (fate#317533). - hyperv: Add netpoll support (fate#317533). - hyperv: remove meaningless pr_err() in vmbus_recvpacket_raw() (fate#317533). - Tools: hv: fix file overwriting of hv_fcopy_daemon (fate#317533). - drivers/net/hyperv/netvsc.c: remove unnecessary null test before kfree (fate#317533). - hyperv: Add handler for RNDIS_STATUS_NETWORK_CHANGE event (fate#317533). - hyperv: fix apparent cut-n-paste error in send path teardown (fate#317533). - hyper-v: make uuid_le const (fate#317533). - hv: use correct order when freeing monitor_pages (fate#317533). - Add support for netvsc build without CONFIG_SYSFS flag (fate#317533). - Drivers: hv: balloon: Ensure pressure reports are posted regularly (fate#317533). - hv: Remove unnecessary comparison of unsigned against 0 (fate#317533). - Drivers: hv: vmbus: Implement per-CPU mapping of relid to channel (fate#317533). - Drivers: hv: Eliminate the channel spinlock in the callback path (fate#317533). - hyperv: Enable sendbuf mechanism on the send path (fate#317533). - hyperv: Simplify the send_completion variables (fate#317533). - hyperv: Remove recv_pkt_list and lock (fate#317533). - hyperv: Add support for virtual Receive Side Scaling (vRSS) (fate#317533). - Drivers: hv: vmbus: Negotiate version 3.0 when running on ws2012r2 hosts (fate#317533). - Tools: hv: Handle the case when the target file exists correctly (fate#317533). - x86, irq, pic: Probe for legacy PIC and set legacy_pic appropriately (fate#317533). - Drivers: net: hyperv: Negotiate suitable ndis version for offload support (fate#317533). - x86, hyperv: Bypass the timer_irq_works() check (fate#317533). - hyperv: Change the receive buffer size for legacy hosts (fate#317533). - Drivers: net: hyperv: Enable receive side IP checksum offload (fate#317533). - Drivers: net: hyperv: Enable offloads on the host (fate#317533). - Drivers: net: hyperv: Cleanup the send path (fate#317533). - Drivers: net: hyperv: Enable scatter gather I/O (fate#317533). - Drivers: hv: vmbus: Increase the limit on the number of pfns we can handle (fate#317533). - hyperv: Move state setting for link query (fate#317533). - hyperv-fb: kick off efifb early (fate#317533). - hyperv-fb: add support for generation 2 virtual machines (fate#317533). - vmbus: use resource for hyperv mmio region (fate#317533). - vmbus: add missing breaks (fate#317533). - hyperv: Add latest NetVSP versions to auto negotiation (fate#317533). - Drivers: hv: fcopy_open() can be static (fate#317533). - Drivers: hv: Implement the file copy service (fate#317533). - Drivers: net: hyperv: Cleanup the netvsc receive callback functio (fate#317533). - Drivers: net: hyperv: Cleanup the receive path (fate#317533). - Drivers: net: hyperv: Get rid of the rndis_filter_packet structure (fate#317533). - HID: hyperv: make sure input buffer is big enough (fate#317533). - hyperv: Fix the carrier status setting (fate#317533). - Drivers: hv: Ballon: Make pressure posting thread sleep interruptibly (fate#317533). - Tools: hv: vssdaemon: Ignore VFAT mounts during the Freeze operation (fate#317533). - Drivers: hv: vmbus: Support per-channel driver state (fate#317533). - Drivers: hv: vmbus: Cleanup the packet send path (fate#317533). - Drivers: hv: vmbus: Extract the mmio information from DSDT (fate#317533). - Drivers: hv: vmbus: Don't timeout during the initial connection with host (fate#317533). - Drivers: hv: vmbus: Specify the target CPU that should receive notification (fate#317533). - hyperv: Add support for physically discontinuous receive buffer (fate#317533). - Input: hyperv-keyboard - pass through 0xE1 prefix (fate#317533). - hyperv: Fix race between probe and open calls (fate#317533). - drivers: hv: Mark the function hv_synic_free_cpu() as static in hv.c (fate#317533). - netvsc: don't flush peers notifying work during setting mtu (fate#317533). - Tools: hv: remove inclusion of linux/types.h (fate#317533). - x86, hyperv: Move a variable to avoid an unused variable warning (fate#317533). - x86, hyperv: Fix build error due to missing include (fate#317533). - Drivers: hv: vmbus: Fix a bug in channel rescind code (fate#317533). - drivers: hv: Fix wrong check for synic_event_page (fate#317533). - x86, hyperv: Correctly guard the local APIC calibration code (fate#317533). - x86, hyperv: Get the local APIC timer frequency from the hypervisor (fate#317533). - hyperv-fb: add blanking support (fate#317533). - hyperv-fb: add pci stub (fate#317533). - hv: vmbus: fix vmbus_recvpacket_raw() return code (fate#317533). - Tools: hv: use single send+recv buffer (fate#317533). - Tools: hv: cache FQDN in kvp_daemon to avoid timeouts (fate#317533). - hv: make "monitor_pages" a "real" pointer array (fate#317533). - hv: Change variable type to bool (fate#317533). - Input: add a driver to support Hyper-V synthetic keyboard (fate#317533). - Fix the VLAN_TAG_PRESENT in netvsc_recv_callback() (fate#317533). - hyperv: Fix vlan_proto setting in netvsc_recv_callback() (fate#317533). - commit 52c98d0 - ttusb-dec: buffer overflow in ioctl (bnc#905522). - commit 24d8848 - Revert "HID: picolcd: sanity check report size in raw_event() callback" This reverts commit e93bc3cae41ae9345c4a56f898506ec6658d4afe. - commit 9d53954 - HID: picolcd: sanity check report size in raw_event() callback (bsc#896392, CVE-2014-3186) (bnc#905522). - commit e93bc3c - scsi: add a blacklist flag which enables VPD page inquiries (fate#317533). - scsi_scan: Restrict sequential scan to 256 LUNs (fate#317533). - Workaround for disks that report bad optimal transfer length (fate#317533). - commit 59d0451 - ALSA: hda_intel: Add DeviceIDs for Sunrise Point-LP (FATE#317347). - ALSA: hda_intel: Add Device IDs for Intel Sunrise Point PCH (FATE#317347). - ALSA: hda - add PCI IDs for Intel Braswell (FATE#317347). - ALSA: hda - Fix onboard audio on Intel H97/Z97 chipsets (FATE#317347). - ALSA: hda - Add Device IDs for Intel Wildcat Point-LP PCH (FATE#317347). - ALSA: hda - add PCI IDs for Intel BayTrail (FATE#317347). - commit 553c347 - Delete patches.suse/btrfs-8288-clone-don-t-create-invalid-hole-extent-map.patch. Enable patches.suse/btrfs-8284-fix-EIO-on-reading-file-after-ioctl-clone-work.patch. - commit 81627a9 - hv: netvsc: convert to SKB paged frag API. - net: add skb frag size accessors. - Refresh two other hv_netvsc patches to match mainline - commit dd3020a ++++ wireshark: - update to 1.10.11 - The following vulnerabilities have been fixed. + SigComp UDVM buffer overflow wnpa-sec-2014-20 CVE-2014-8710 bnc#905246 + AMQP crash wnpa-sec-2014-21 CVE-2014-8711 bnc#905245 + NCP crashes wnpa-sec-2014-22 CVE-2014-8712 CVE-2014-8713 bnc#905248 + TN5250 infinite loops wnpa-sec-2014-23 CVE-2014-8714 bnc#905247 - Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.10.11.html - enable zlib [bnc#899303] ++++ yast2-network: - fate#316938, bnc#633310 - AY: added IPv6 option () - 2.17.200 ------------------------------------------------------------------ ------------------ 2014-11-13 - Nov 13 2014 ------------------- ------------------------------------------------------------------ ++++ ImageMagick: - security update CVE-2014-8716 [bnc#905260] * ImageMagick-CVE-2014-8716.patch ++++ evolution-data-server: - Added evolution-data-server-2.28.2-enable-tls-only.patch restricting use of weak cryptographic algorithms (bnc#901553, swamp#59555). ++++ hwinfo: - even better git2log - improved git2log script - prepare package for jenkins auto-submission - update version and changes - 15.54 ++++ kernel-docs: - HID: picolcd: sanity check report size in raw_event() callback (bsc#896392, CVE-2014-3186). - commit 177b5b9 - net: Add skb_get_hash_raw (fate#317533). - net: Add utility functions to clear rxhash (fate#317533). - net: Add function to set the rxhash (fate#317533). - rps: Add flag to skb to indicate rxhash is based on L4 tuple (fate#317533). - commit 060b637 - x86, mm: Create slow_virt_to_phys() (fate#317533). - x86, mm: Pagetable level size/shift/mask helpers (fate#317533). - x86/apic: Allow use of lapic timer early calibration result (fate#317533). - commit 325fafc - net: sctp: fix NULL pointer dereference in af->from_addr_param on (bnc#905100, CVE-2014-7841). - commit 950a520 - lzo: check for length overrun in variable length encoding (bnc#883948,CVE-2014-4608). - commit 1aebccc - Btrfs: check file extent type before anything else (bnc#897694). - commit 9b90338 - mac80211: fix fragmentation code, particularly for encryption (bnc#904700,CVE-2014-8709). - commit 98a4c71 - USB: whiteheat: Added bounds checking for bulk command response (CVE-2014-3185,bnc#896391). - commit 6842b21 ++++ ksh: - fix crash when the subshell number overflows [bnc#893031] new patch: ksh93-longenv.dif - fix path normalization in cd command [bnc#867401] new patch: ksh93-cdpwd.dif - fix segfault in dirname when cwd is gone [bnc#852160] new patch: ksh93-subshellpwd.dif ++++ linuxrc: - improved jenkins tools - make 'textmode' equivalent to textmod=1 (bnc #864316) - 3.3.95 - ensure /dev/pts is mounted (bnc #824297, bnc #755845) - fix compiler warnings (mainly unused vars) - 3.3.94 - remove VERSION from git - prepare package for jenkins auto-submission - 3.3.93 ++++ rubygem-sprockets-2_2: - fix CVE-2014-7819: rubygem-sprockets: Arbitrary file existence disclosure (bnc#903658) CVE-2014-7819: contains the fix ------------------------------------------------------------------ ------------------ 2014-11-12 - Nov 12 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - HID: fix a couple of off-by-ones (bsc#896390, CVE-2014-3184). - commit 3101559 - cifs: delay super block destruction until all cifsFileInfo objects are gone (bnc#903653). - commit fcc029b - Update Xen patches to c/s 1266. - blkback: allow using indirect request segment descriptors (fate#316876). - blkfront: allow using indirect request segment descriptors (fate#316876). - blkif: indirect request segment descriptors definitions (fate#316876). - privcmd: actually batch hypercalls for batch ioctls. - x86: use optimized ioresource lookup in ioremap function (Boot time optimisations (bnc#895387)). - Update Xen config files. - commit c106661 - zcrypt: toleration of new crypto adapter hardware (bnc#894058, LTC#117041). - zcrypt: support for extended number of ap domains (bnc#894058, LTC#117041). - commit 554c1e1 ++++ kiwi: - v5.05.80 released Update .travis.yml to run for master only ------------------------------------------------------------------ ------------------ 2014-11-11 - Nov 11 2014 ------------------- ------------------------------------------------------------------ ++++ gnu-efi: - Update to gnu-efi 3.0u (fate#317969) (bsc#889332) + Disable MMX and SSE to avoid using the uninitialized registers + Support .text.* sections on x86_64 + Automatically determine number of uefi_call_wrapper() args on x86_64 + Fix parameter-passing corruption on x86_64 for >= 5 args + Add the definitions for TCP, UDP and IP, for both IPv4 and IPv6 + Fix UEFI functions that use the wrong ABI (System V ABI) + Use new gcc flag: GNU_EFI_USE_MS_ABI + Add new status codes to efierr.h + Align stack properly to avoid crash + Support UEFI PXE over IPv6 - Add gnu-efi-use-gcc47.patch to use gcc 4.7 due to the requirement of the attribute of ms_abi ++++ kernel-docs: - HID: magicmouse: sanity check report size in raw_event() callback (bsc#896382, CVE-2014-3181). - commit aa733ae - Build the KOTD against the SP3 Update project - commit 4209181 - Refresh patches.suse/x86-use-optimized-ioresource-lookup-in-ioremap-function.patch. - x86, ioremap: Speed up check for RAM pages (Boot time optimisations (bnc#895387)). - commit cff6fb5 - xhci: no switching back on non-ULT Haswell (FATE#317636). - xhci: Switch only Intel Lynx Point-LP ports to EHCI on shutdown (FATE#317636). - xhci: Switch Intel Lynx Point ports to EHCI on shutdown (FATE#317636). - xhci: Prevent runtime pm from autosuspending during initialization (FATE#317636). - usb: xhci: fix section mismatch in linux-next (FATE#317636). - commit e5e1e24 - net: add WARN_ON if kernel advertises msg_namelen > sizeof(struct (bnc#853040). - commit 6b96ffb ++++ ksh: - Fix ksh using wrong files is some elements in the path do not exist [bnc#899014] new patch: ksh93-path-skip.dif - disable fs3d probing new patch: ksh93-fs3d.dif ++++ util-linux: - enable build of libmount / findmnt (bsc#900965) ++++ libzypp: - Call rpm with '--noglob' (bnc#892431) - version 9.37.10 (8) ++++ sblim-gather: - sblim-gather-2.2.0-fix_allocation_BytesSubmitted.patch: Prevent crash from buffer overrun in IPProtocolEndpoint Bytessubmitted (bnc#894582, bnc#831134) ------------------------------------------------------------------ ------------------ 2014-11-10 - Nov 10 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - tracing/syscalls: Ignore numbers outside NR_syscalls' range (bsc#904013, CVE-2014-7826). - commit b064be5 - NFSv4: nfs4_open_done first must check that GETATTR decoded a file type (bnc#899574). - commit 7829aff ------------------------------------------------------------------ ------------------ 2014-11-7 - Nov 7 2014 ------------------- ------------------------------------------------------------------ ++++ glib2: - Added glib2-bnc899590-monotonic-clock.patch for bnc#899590. This patch backports the feature to use a monotonic clock for timeouts, so they will not fire before their due time even if the system clock changes. Thanks to Petr Uzel for doing the heavy lifting on this. ++++ kernel-docs: - ipv6: fix leaking uninitialized port number of offender sockaddr (bsc#853040). - commit 65ceabb - x86: use optimized ioresource lookup in ioremap function (Boot time optimisations (bnc#895387)). - x86: optimize resource lookups for ioremap (Boot time optimisations (bnc#895387)). - commit 9e9d27f - usb: Do not re-read descriptors for wired devices in usb_authorize_device() (bnc#904358). - commit 1cb3909 - netxen: Fix link event handling (bnc#873228). - netxen: fix link notification order (bnc#873228). - commit 7cfef2a ++++ rubygem-actionpack-3_2: - fix CVE-2014-7818: rubygem-actionpack-3_2: Arbitrary file existence disclosure in Action Pack (bnc#903662) CVE-2014-7818.patch: contains the fix ++++ xen: - bnc#903850 - VUL-0: Xen: guest user mode triggerable VM exits not handled by hypervisor 5453653b-x86-HVM-only-kill-on-unknown-exit-from-kernel-mode.patch - bnc#866902 - L3: Xen save/restore of HVM guests cuts off disk and networking 544e6762-vmx-fix-save-restore-issue-with-apicv.patch - Upstream patches from Jan 54467cfc-x86-hvm-further-restrict-x2apic-MSRs.patch 5448ba29-fix-vcpu-listing-for-domains-lacking-any.patch 544e67be-hvm-load-correct-length-checks-for-zeroextended-records.patch 544e6810-x86-tolerate-running-on-EFI-rt-pgts-in-map_domain_page.patch 544e6838-EFI-allow-to-suppress-the-use-of-runtime-services.patch 544e6885-x86-HVM-sanity-check-xsave-area-when-migrating-from-older-Xen.patch 545364ef-VMX-MSR_IA32_SYSENTER-values-should-be-canonical.patch ------------------------------------------------------------------ ------------------ 2014-11-6 - Nov 6 2014 ------------------- ------------------------------------------------------------------ ++++ apache2-mod_perl: - fix refcount handling in new_constsub() when an alias is created (i.e. -compile is not used) [bnc#901858] new patch: apache2-mod_perl-2.0.4-constrefcnt.diff - fix hashattack test to work with perl versions that have a fix for CVE-2013-1667 (backported from mod_perl-2.0.8) new patch: apache2-mod_perl-2.0.4-hashattack.diff ++++ kernel-docs: - Delete patches.suse/0001-mm-hugetlb-improve-page-fault-scalability.patch. It's a unused duplicate of patches.suse/mm-hugetlb-improve-page-fault-scalability.patch - commit 1c7ee4f - kabi/severities: allow all kABI changes to pass, while still keeping SP3 symsets We try to keep SLE11-SP4 kABI as stable as possible. This allows us to keep track of how kABI is changing by watching the kABI build warnings but do not have failing builds because of that. This will be removed once kABI is officially frozen and we start tracking it properly in our normal way. - commit 751c4d1 - README.BRANCH: - rpm/config.sh: Create SLE11-SP4 branch and update config. - commit 4190a64 ++++ kiwi: - v5.05.79 released ------------------------------------------------------------------ ------------------ 2014-11-5 - Nov 5 2014 ------------------- ------------------------------------------------------------------ ++++ python: - disable SSLv2 unless explicitly asked for (bnc#901715) ++++ python-base: - disable SSLv2 unless explicitly asked for (bnc#901715) ++++ xen: - bnc#903970 - VUL-0: CVE-2014-8595: XSA-110: xen: Missing privilege level checks in x86 emulation of far branches xsa110.patch - bnc#903967 - VUL-0: CVE-2014-8594: XSA-109: xen: Insufficient restrictions on certain MMU update hypercalls xsa109.patch ------------------------------------------------------------------ ------------------ 2014-11-4 - Nov 4 2014 ------------------- ------------------------------------------------------------------ ++++ ImageMagick: - security update: CVE-2014-8354, CVE-2014-8355, CVE-2014-8562 * ImageMagick-CVE-2014-8354.patch [bnc#903204] * ImageMagick-CVE-2014-8355.patch [bnc#903216] * ImageMagick-CVE-2014-8562.patch [bnc#903638] ++++ kernel-docs: - drm/mgag200: Add command line option to specify preferred depth (bnc#893040, FATE#317582). - drm/mgag200: Remove connector in sysfs when unloading the driver (bnc#876238, FATE#317582). - drm/mgag200: Implement basic PM support (bnc#872213, FATE#317582). - commit bc033a7 - Update patch header. futex: Fix a race condition between REQUEUE_PI and task death (bcn#851603 (futex scalability series)). - commit bc2eb07 ------------------------------------------------------------------ ------------------ 2014-11-3 - Nov 3 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - xfs: fix cil push sequence after log recovery (bsc#755743). - xfs: Don't reference the EFI after it is freed (bsc#755743). - xfs: don't free EFIs before the EFDs are committed (bsc#755743). - commit eca07fc - block: Fix computation of merged request priority. - commit 080a35b - nfs: fix inverted test for delegation in nfs4_reclaim_open_state (bnc#903331). - NFS: remove incorrect "Lock reclaim failed!" warning (bnc#903331). - commit 371f97c ------------------------------------------------------------------ ------------------ 2014-10-30 - Oct 30 2014 ------------------- ------------------------------------------------------------------ ++++ kiwi: - v5.05.78 released ++++ curl: - fix for libcurl cookie leaks CVE-2014-3613 (bnc#894575) * added curl-CVE-2014-3613.patch ++++ samba: - Fix spoolss EnumJobs and GetJob responses; (bso#10905); (bnc#898031). + Fix handling of bad EnumJobs levels; (bso#10898). ------------------------------------------------------------------ ------------------ 2014-10-29 - Oct 29 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - megaraid_sas: Disable fastpath writes for non-RAID0 (bnc#897502). - commit 8749dfd - NFS: Provide stub nfs_fscache_wait_on_invalidate() for when CONFIG_NFS_FSCACHE=n. - commit 6e066a5 ++++ udev: - Fix MicroTouch device wake-up from suspend (bnc#846568). add: udev-147-fix-wakeup-issue-for-MicroTouch-device.patch ++++ libreoffice: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-branding-upstream: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-help-group1: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-help-en-US: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-help-group2: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-help-group3: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-help-group4: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-help-group5: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-icon-themes: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ++++ libreoffice-l10n: - Add patches to fix VULNs bnc#900214 and bnc#900218 CVE-2014-3693 ------------------------------------------------------------------ ------------------ 2014-10-28 - Oct 28 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - be2net: Fix invocation of be_close() after be_clear() (bnc#895468). - commit 11ced17 - PCI: pciehp: Clear Data Link Layer State Changed during init (bnc#898295). - PCI: pciehp: Use symbolic constants, not hard-coded bitmask (bnc#898295). - commit a66f400 - usbback: don't access request fields in shared ring more than once. - x86_32, entry: Store badsys error code in %eax (bnc#883724, CVE-2014-4508). - x86: Add check for number of available vectors before CPU down (bnc#887418). - x86, cpu hotplug: Fix stack frame warning incheck_irq_vectors_for_cpu_disable() (bnc#887418). - Refresh patches.xen/xen-blkback-multi-page-ring (bnc#897708)). - Refresh other Xen patches. - commit 3644416 - futex: Fix a race condition between REQUEUE_PI and task death (bcn #851603 (futex scalability series)). - commit c21fc0a ++++ xen: - fate#318081: Update Xen to Version 4.4 ------------------------------------------------------------------ ------------------ 2014-10-27 - Oct 27 2014 ------------------- ------------------------------------------------------------------ ++++ php53: - security update: * CVE-2014-3670 [bnc#902357] * CVE-2014-3669 [bnc#902360] * CVE-2014-3668 [bnc#902368] - added patches: * php-CVE-2014-3670.patch * php-CVE-2014-3669.patch * php-CVE-2014-3668.patch ------------------------------------------------------------------ ------------------ 2014-10-24 - Oct 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - PCI: pciehp: Use link change notifications for hot-plug and removal (bnc#898295). - PCI: pciehp: Use per-slot workqueues to avoid deadlock (bnc#898295). - PCI: pciehp: Handle push button event asynchronously (bnc#898295). - PCI: pciehp: Make check_link_active() non-static (bnc#898295). - PCI: pciehp: Enable link state change notifications (bnc#898295). - commit 2f37faa ------------------------------------------------------------------ ------------------ 2014-10-23 - Oct 23 2014 ------------------- ------------------------------------------------------------------ ++++ file: - Add patch file-4.24-CVE-2014-3710.patch to fic bsc#902367 CVE-2014-3710: file: out-of-bounds read in elf note headers ++++ ocaml: - Recognize macros provided by prjconf to disable ocamlopt and run testsuite - New subpackage ocaml-rpm-macros ------------------------------------------------------------------ ------------------ 2014-10-22 - Oct 22 2014 ------------------- ------------------------------------------------------------------ ++++ openssl: - fix regression caused by CVE-2014-0224.patch (bnc#892403) - added patches: * Fix-stateless-session-resumption-so-it-can-coexist-with-SNI.patch * Generate-stateless-session-ID-just-after-the-ticket-is-r.patch ++++ ocaml: - update version 4.02.1 * http://caml.inria.fr/pub/distrib/ocaml-4.02/notes/Changes ------------------------------------------------------------------ ------------------ 2014-10-21 - Oct 21 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - futex: Ensure get_futex_key_refs() always implies a barrier (bcn #851603 (futex scalability series)). - commit 01182e8 ++++ openssl: - security fixes for bnc#901277 and bnc#901223 - NOTE: this update alone DOESN'T FIX the POODLE SSL protocol vulnerability. OpenSSL only adds downgrade detection support for client applications. See https://www.suse.com/support/kb/doc.php?id=7015773 for mitigations. - details of the addressed vulnerabilities: * ) Session Ticket Memory Leak. When an OpenSSL SSL/TLS/DTLS server receives a session ticket the integrity of that ticket is first verified. In the event of a session ticket integrity check failing, OpenSSL will fail to free memory causing a memory leak. By sending a large number of invalid session tickets an attacker could exploit this issue in a Denial Of Service attack. (CVE-2014-3567) * ) Build option no-ssl3 is incomplete. When OpenSSL is configured with "no-ssl3" as a build option, servers could accept and complete a SSL 3.0 handshake, and clients could be configured to send them. (CVE-2014-3568) * ) Add support for TLS_FALLBACK_SCSV. Client applications doing fallback retries should call SSL_set_mode(s, SSL_MODE_SEND_FALLBACK_SCSV). (CVE-2014-3566) ++++ libqb: - Bump release version to 0.17.1 - check_ipc.c: improve error checking during ipc stress tests - ipcs: Correctly allocate receive buffer size - ipc_socket: Signalhandler must be resetted to Default, use only cleanup_sigpipe to return from qb_ipc_dgram_sock_setup. - trie: allow modifying the trie map during the notify callback - Upstream version cs: 3f7de657855bb9fb4e58777851735bf663fa7f3f ++++ libvirt: - Add Xen 4.4 compatibility patches fd2e3c4c-xen-domctl-v9.patch a52fa556-fix-api-changes-in-xen-restore.patch FATE#318081 ------------------------------------------------------------------ ------------------ 2014-10-20 - Oct 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/i915: Flush the PTEs after updating them before suspend (bnc#901638). - drm/i915: Undo gtt scratch pte unmapping again (bnc#901638). - commit ce5f9db ++++ openwsman: - New config option "ssl_disabled_protocols" to disable SSLv2 and SSLv3 protocols (CVE-2014-3566) bsc#901882 - Added patches - 0001-New-option-ssl_disabled_protocols.patch - 0002-make-SSL_CTX_ctrl-available.patch - 0003-Honor-ssl_disable_protocols-config-option.patch ++++ libzypp: - MediaCurl: Fix URL path concatenation (bnc#901590) - version 9.37.9 (8) ++++ ocaml: - Update ppc64/ppc64le patch (bnc#901836) ------------------------------------------------------------------ ------------------ 2014-10-17 - Oct 17 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - KVM: x86: Sysexit emulation does not mask RIP/RSP (CVE-2014-3647 bnc#899192). - KVM: vmx: Inject #GP on invalid PAT CR (CVE-2014-3647 bnc#899192). - KVM: x86: emulating descriptor load misses long-mode case (CVE-2014-3647 bnc#899192). - KVM: x86: Distinguish between stack operation and near branches (CVE-2014-3647 bnc#899192). - KVM: x86: Use new is_noncanonical_address in _linearize (CVE-2014-3647 bnc#899192). - KVM: x86: Handle errors when RIP is set during far jumps (CVE-2014-3647 bnc#899192). - KVM: x86: Emulator fixes for eip canonical checks on near branches (CVE-2014-3647 bnc#899192). - KVM: x86: Fix wrong masking on relative jump/call (CVE-2014-3647 bnc#899192). - KVM: x86: Warn if guest virtual address space is not 48-bits (CVE-2014-3647 bnc#899192). - kvm: vmx: handle invvpid vm exit gracefully (CVE-2014-3646 bnc#899192). - KVM/x86: Improve thread safety in pit (CVE-2014-3647 bnc#899192). - KVM: x86: Check non-canonical addresses upon WRMSR (CVE-2014-3610 bnc#899192). - kvm: iommu: fix the third parameter of kvm_iommu_put_pages (CVE-2014-3601) (CVE-2014-3601 bnc#892782). - commit bd01911 ++++ kiwi: - v5.05.77 released ++++ libxml2: - fix for CVE-2014-3660 (bnc#901546) * denial of service via recursive entity expansion (related to billion laughs) * added libxml2-CVE-2014-3660.patch ------------------------------------------------------------------ ------------------ 2014-10-16 - Oct 16 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.kabi/kabi-hid-usage-index.patch -- add forgotten patch to series.conf - commit 654ec6c - kmod: make __request_module() killable (bnc#778463, CVE-2012-4398). - kmod: introduce call_modprobe() helper (bnc#778463, CVE-2012-4398). - usermodehelper: ____call_usermodehelper() doesn't need do_exit() (bnc#778463, CVE-2012-4398). - usermodehelper: implement UMH_KILLABLE (bnc#778463, CVE-2012-4398). - usermodehelper: introduce umh_complete(sub_info) (bnc#778463, CVE-2012-4398). - usermodehelper: use UMH_WAIT_PROC consistently (bnc#778463, CVE-2012-4398). - commit 654bee1 ++++ xen: - bnc#901317 - L3: increase limit domUloader to 32MB domUloader.py ++++ yast2-product-creator: - fix the iso image template (bnc#901141) - drop obsoleted xen template - added support for current image flags - 2.17.60 ------------------------------------------------------------------ ------------------ 2014-10-15 - Oct 15 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 31.2.0 ESR (bnc#900941) * MFSA 2014-74/CVE-2014-1574/CVE-2014-1575 (bmo#1001994, bmo#1011354, bmo#1018916, bmo#1020034, bmo#1023035, bmo#1032208, bmo#1033020, bmo#1034230, bmo#1061214, bmo#1061600, bmo#1064346, bmo#1072044, bmo#1072174) Miscellaneous memory safety hazards (rv:33.0/rv:31.2) * MFSA 2014-75/CVE-2014-1576 (bmo#1041512) Buffer overflow during CSS manipulation * MFSA 2014-76/CVE-2014-1577 (bmo#1012609) Web Audio memory corruption issues with custom waveforms * MFSA 2014-77/CVE-2014-1578 (bmo#1063327) Out-of-bounds write with WebM video * MFSA 2014-79/CVE-2014-1581 (bmo#1068218) Use-after-free interacting with text directionality * MFSA 2014-81/CVE-2014-1585/CVE-2014-1586 (bmo#1062876, bmo#1062981) Inconsistent video sharing within iframe * MFSA 2014-82/CVE-2014-1583 (bmo#1015540) Accessing cross-origin objects via the Alarms API - SSLv3 is disabled by default. See README.POODLE for more detailed information. ++++ kernel-docs: - HID: fix kabi breakage. - commit 7482976 ++++ mozilla-nss: - update to 3.17.2 (bnc#900941) Bugfix release * bmo#1049435 - Importing an RSA private key fails if p < q * bmo#1057161 - NSS hangs with 100% CPU on invalid EC key * bmo#1078669 - certutil crashes when using the --certVersion parameter - changes from earlier version of the 3.17 branch: update to 3.17.1 (bnc#897890) * MFSA 2014-73/CVE-2014-1568 (bmo#1064636, bmo#1069405) RSA Signature Forgery in NSS * Change library's signature algorithm default to SHA256 * Add support for draft-ietf-tls-downgrade-scsv * Add clang-cl support to the NSS build system * Implement TLS 1.3: * Part 1. Negotiate TLS 1.3 * Part 2. Remove deprecated cipher suites andcompression. * Add support for little-endian powerpc64 update to 3.17 * required for Firefox 33 New functionality: * When using ECDHE, the TLS server code may be configured to generate a fresh ephemeral ECDH key for each handshake, by setting the SSL_REUSE_SERVER_ECDHE_KEY socket option to PR_FALSE. The SSL_REUSE_SERVER_ECDHE_KEY option defaults to PR_TRUE, which means the server's ephemeral ECDH key is reused for multiple handshakes. This option does not affect the TLS client code, which always generates a fresh ephemeral ECDH key for each handshake. New Macros * SSL_REUSE_SERVER_ECDHE_KEY Notable Changes: * The manual pages for the certutil and pp tools have been updated to document the new parameters that had been added in NSS 3.16.2. ++++ telnet: - added following patches: * telnet-bsd-1.2-fix-infinite-loop.patch that fixes generating an infinite loop (bnc#898481) * telnet-bsd-1.2-hostalias.patch to exit cleanly when hostalias cannot be resolved and to made manpage more clear about the -b option (bnc#700229) ++++ yast2-ca-management: - version 2.17.25 - fix reading passwords from env in commandline mode (bnc#899893) read passwords from environment where needed consistent handling of passwords from environment ------------------------------------------------------------------ ------------------ 2014-10-14 - Oct 14 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Btrfs: limit delalloc pages outside of find_delalloc_range (bnc#898375). - Btrfs: fix crash of compressed writes (bnc#898375). - commit 2828dee ++++ python-ply: - fix doc subpackage license - add %check section ++++ xmlstarlet: - SPEC file changes to fix bnc#900891 - Added link from /usr/bin/xml to /usr/bin/xmlstarlet as other distributions do the same - Did the same for the manpage - Additional SPEC file changes: - Relate to SLE12/openSUSE SPEC file - Adjust to build on SLE11 SP3 - Added rpmlintrc file - Rebuild patch xmlstarlet-0.9.5-configure_fix.diff to fix build problems ------------------------------------------------------------------ ------------------ 2014-10-13 - Oct 13 2014 ------------------- ------------------------------------------------------------------ ++++ yast2-storage: - fixed setting disk label on multipath devices (bsc#898525) - 2.17.147 ------------------------------------------------------------------ ------------------ 2014-10-9 - Oct 9 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - HID: picolcd_core: validate output report details (bnc#835839 CVE-2013-2899). - commit c10062d - HID: multitouch: validate indexes details (bnc#835839,CVE-2013-2897). - HID: add usage_index in struct hid_usage (bnc#835839). - commit 063d867 ++++ yast2-instserver: - added support for SLE12 products (bnc#882849) - write "cpeid" attribute to SLP configuration (SLE12 products) - save FTP firewall port configuration option - install "nfs-kernel-server" package when NFS server is selected (missing in minimal system) - 2.17.7 ------------------------------------------------------------------ ------------------ 2014-10-8 - Oct 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ipv6: fix a refcnt leak with peer addr (bnc#896415). - ipv6: add support of peer address (bnc#896415). - commit b5a096a - ext3: return 32/64-bit dir name hash according to usage type (bnc#898554). - nfsd: vfs_llseek() with 32 or 64 bit offsets (hashes) (bnc#898554). - nfsd: rename 'int access' to 'int may_flags' in nfsd_open() (bnc#898554). - ext4: return 32/64-bit dir name hash according to usage type (bnc#898554). - fs: add new FMODE flags: FMODE_32bithash and FMODE_64bithash (bnc#898554). - commit bedf117 ++++ ocaml: - update version 4.02.0 * http://caml.inria.fr/pub/distrib/ocaml-4.02/notes/Changes drop ocaml-rpath.patch, can be done with make args drop ocaml-yacc-Use-mkstemp-instead-of-mktemp.patch, upstream drop unused postscript docs - Removed Camlp4 and Labltk from the distribution, now available as third-party software. ------------------------------------------------------------------ ------------------ 2014-10-6 - Oct 6 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - For the build on SLE11 make sure to have initfini array support disabled. [bnc#878067, fate#317926] ++++ kernel-docs: - HID: LG: validate HID output report details (bnc#835839,CVE-2013-2893). - commit fa93b31 ++++ bash: - Replace patches bash-3.2-heredoc-eof-delim.patch and bash-3.2-parse-exportfunc.patch with the official upstream patch levels bash32-056 and bash32-057 ------------------------------------------------------------------ ------------------ 2014-10-4 - Oct 4 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - fix: use after free of xfs workqueues (bnc#894895). - commit dea32bb ------------------------------------------------------------------ ------------------ 2014-10-2 - Oct 2 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - PM / hibernate: Iterate over set bits instead of PFNs in swsusp_free() (bnc#860441). - Revert "PM / Hibernate: Iterate over set bits instead of PFNs in swsusp_free()" (bnc#860441). - commit 2d51816 ++++ samba: - Fix small memory-leak in the background print process; (bnc#899558). + Gracefully handle xx_path() allocation failures. + Avoid long lived talloc stackframe. ++++ bash: - Replace patch bash-3.2-CVE-2014-7187.patch with upstream patch level bash32-055 - Add patch bash-3.2-parse-exportfunc.patch for bsc#898884, CVE-2014-6278: code execution after original 6271 fix ++++ libvirt: - CVE-2014-3657: Fix domain deadlock fc22b2e7-CVE-2014-3657.patch bsc#899484 ------------------------------------------------------------------ ------------------ 2014-10-1 - Oct 1 2014 ------------------- ------------------------------------------------------------------ ++++ krb5: - bnc#890623 klist -s trips over referral entries - added patches: * bnc#890623-klist-segfault.diff ++++ libevent: - libevent-CVE-2014-6272.patch: fixed various heap overflows in the buffered api (bnc#897243 CVE-2014-6272) ++++ python-base: - CVE-2014-7185-buffer-wraparound.patch: potential wraparound/overflow in buffer() (CVE-2014-7185, bnc#898572) ------------------------------------------------------------------ ------------------ 2014-9-30 - Sep 30 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - usbhid: add another mouse that needs QUIRK_ALWAYS_POLL (bnc#888607). - commit 317008c ++++ bash: - Add patch bash-3.2-heredoc-eof-delim.patch for bsc#898812, CVE-2014-6277: more troubles with functions - Make bash-4.2-extra-import-func.patch an optional patch due instruction - Remove and replace patches bash-3.2-CVE-2014-6271.patch bash-3.2-BSC898604.patch bash-3.2-CVE-2014-7169.patch with bash upstream patch 52, patch 53, and patch bash32-054 - Add patch bash-3.2-extra-import-func.patch which is based on the BSD patch of Christos. As further enhancements the option import-functions is mentioned in the manual page and a shopt switch is added to enable and disable import-functions on the fly ++++ xen: - bnc#897657 - VUL-0: CVE-2014-7188: xen: XSA-108 Improper MSR range used for x2APIC emulation xsa108.patch - Upstream patches from Jan 29491-VMX-fix-DebugCtl-MSR-clearing.patch 29511-x86-ats-Disable-Address-Translation-Services-by-default.patch 29583-x86-idle-add-barriers-to-CLFLUSH-workaround.patch 29604-VMX-don-t-leave-x2APIC-MSR-intercepts-disabled.patch 29622-VT-d-suppress-UR-signaling-for-further-desktop-chipsets.patch 29659-x86-shadow-fix-race-when-sampling-dirty-vram-state.patch (Replaces xsa104.patch) 29660-x86-emulate-check-cpl-for-all-privileged-instructions.patch (Replaces xsa105.patch) 29661-x86emul-only-emulate-swint-injection-for-real-mode.patch (Replaces xsa106.patch) 29685-x86emul-fix-SYSCALL-SYSENTER-SYSEXIT-emulation.patch 29692-x86-HVM-fix-miscellaneous-aspects-of-x2APIC-emulation.patch 29693-x86-HVM-fix-ID-handling-of-x2APIC-emulation.patch 29695-x86-vlapic-don-t-silently-accept-bad-vectors.patch ------------------------------------------------------------------ ------------------ 2014-9-29 - Sep 29 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - sched: Fix unreleased llc_shared_mask bit during CPU hotplug (bnc#891368). - commit 6e0b26a ++++ python-lxml: - Fixed bnc#877258: CVE-2014-3146: python-lxml: clean_html input sanitization flaw (patch file python-lxml-html.clean.diff) - Fixed warnings from rpmlint ------------------------------------------------------------------ ------------------ 2014-9-28 - Sep 28 2014 ------------------- ------------------------------------------------------------------ ++++ krb5: - bnc#897874 CVE-2014-5351: krb5: current keys returned when randomizing the keys for a service principal - added patches: * bnc#897874-CVE-2014-5351.diff ------------------------------------------------------------------ ------------------ 2014-9-26 - Sep 26 2014 ------------------- ------------------------------------------------------------------ ++++ kiwi: Fixed passthrough of luks cipher (bnc #898249) kiwi passed the ciper using a shell echo command which is bad because the shell evaluates the contents of this information and might break the cipher if it contains shell meta characters. This patch fixes this by using a simple pipe stream to the cryptsetup process without invoking a shell command ++++ bash: - Add patches bash-3.2-BSC898604.patch for bsc#898604: functions via environment hardening bash-3.2-CVE-2014-7169.patch for bsc#898346, CVE-2014-7169: incremental parsing fix for function environment issue bash-3.2-CVE-2014-7187.patch for bsc#898603, CVE-2014-7186, CVE-2014-7187: bad handling of HERE documents and for loop issue ++++ xen: - Update to Xen 4.2.5 Dropped 55 patches now contained in the tarball ------------------------------------------------------------------ ------------------ 2014-9-24 - Sep 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - powerpc: Add smp_mb() to arch_spin_is_locked() (bsc#893758). - powerpc: Implement arch_spin_is_locked() using arch_spin_value_unlocked() (bsc#893758). - powerpc: Add support for the optimised lockref implementation (bsc#893758). - powerpc: Add smp_mb()s to arch_spin_unlock_wait() (bsc#893758). - commit b01dcae - mm: change __remove_pages() to call release_mem_region_adjustable() (bnc#891790). - resource: add __adjust_resource() for internal use (bnc#891790). - resource: add release_mem_region_adjustable() (bnc#891790). - commit 054c231 ++++ gcc-shlib-transition: - Also provide libgcc1 from libgcc43 packages to provide transition to the gcc48 runtime packages. [bnc#878067, bnc#907296, fate#317926] ++++ openssl: - fix README-FIPS.txt [bnc#735192] ++++ mozilla-nss: - Security update to 3.16.5 (bnc#897890) * MFSA-2014-73/CVE-2014-1568 (bmo#1064636, bmo#1069405) RSA Signature Forgery ------------------------------------------------------------------ ------------------ 2014-9-22 - Sep 22 2014 ------------------- ------------------------------------------------------------------ ++++ wireshark: - update to 1.10.10 [bnc#897055] Package upgraded to 1.10.x from 1.8.x as it was discontinued. This update fixes vulnerabilities in Wireshark that could allow an attacker to crash Wireshark or make it become unresponsive by sending specific packages onto the network or have it loaded via a capture file while the dissectors are running. It also contains a number of other bug fixes. * RTP dissector crash wnpa-sec-2014-12 CVE-2014-6421 CVE-2014-6422 * MEGACO dissector infinite loop wnpa-sec-2014-13 CVE-2014-6423 * Netflow dissector crash wnpa-sec-2014-14 CVE-2014-6424 * RTSP dissector crash wnpa-sec-2014-17 CVE-2014-6427 * SES dissector crash wnpa-sec-2014-18 CVE-2014-6428 * Sniffer file parser crash wnpa-sec-2014-19 CVE-2014-6429 CVE-2014-6430 CVE-2014-6431 CVE-2014-6432 - Further bug fixes as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.10.10.html - includes changes from 1.10.9: fixes several crashes triggered by malformed protocol packages - vulnerabilities fixed: * The Catapult DCT2000 and IrDA dissectors could underrun a buffer wnpa-sec-2014-08 CVE-2014-5161 CVE-2014-5162 (bnc#889901) * The GSM Management dissector could crash wnpa-sec-2014-09 CVE-2014-5163 (bnc#889906) * The RLC dissector could crash wnpa-sec-2014-10 CVE-2014-5164 (bnc#889900) * The ASN.1 BER dissector could crash wnpa-sec-2014-11 CVE-2014-5165 (bnc#889899) - Further bug fixes as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.10.9.html ------------------------------------------------------------------ ------------------ 2014-9-19 - Sep 19 2014 ------------------- ------------------------------------------------------------------ ++++ python-ply: - submit SLE12 version to SLE11 (FATE#317809, bnc#896079) ------------------------------------------------------------------ ------------------ 2014-9-18 - Sep 18 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - futex: Unlock hb->lock in futex_wait_requeue_pi() error path (fix bnc#880892). - commit 44b8c95 - pagecachelimit: reduce lru_lock congestion for heavy parallel reclaim fix (bnc#895680). - commit cb9fe08 ++++ samba: - Use domain name if search by domain SID fails to send SIDHistory lookups to correct idmap backend; (bnc#773464). ++++ bash: - Add bash-4.2-CVE-2014-6271.patch to fix CVE-2014-6271, the unexpected code execution with environment variables (bnc#896776) ++++ libvirt: - CVE-2014-3633: Use correct definition when looking up disk in qemu blkiotune 3e745e8f-CVE-2014-3633.patch bsc#897783 ------------------------------------------------------------------ ------------------ 2014-9-17 - Sep 17 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update patches.fixes/udf-Avoid-infinite-loop-when-processing-indirect-ICB.patch (bnc#896689 CVE-2014-6410). - commit c0c3b5f - udf: Avoid infinite loop when processing indirect ICBs (bnc#896689). - commit 733fbd1 ++++ wireshark: - bnc#889854 - VUL-0: Wireshark 1.10.9 fixes several crashes triggered by malformed protocol packages * The Catapult DCT2000 and IrDA dissectors could underrun a buffer. wnpa-sec-2014-08 CVE-2014-5161 CVE-2014-5162 * The GSM Management dissector could crash. wnpa-sec-2014-09 CVE-2014-5163 * The RLC dissector could crash. wnpa-sec-2014-10 CVE-2014-5164 * The ASN.1 BER dissector could crash. wnpa-sec-2014-11 CVE-2014-5165 wireshark-1.10.9-fix.patch ------------------------------------------------------------------ ------------------ 2014-9-16 - Sep 16 2014 ------------------- ------------------------------------------------------------------ ++++ dbus-1: - dbus-cve-2014-3638.patch: Add patch for CVE-2014-3638 to fix DoS vulnerability (bnc#896453, fdo#81053) * Upstream fix by Alban Crequy - dbus-cve-2014-3639.patch: Add patch for CVE-2014-3639 to fix DoS vulnerability in dbus-daemon (bnc#896453, fdo#80919) * Upstream fix by Alban Crequy ------------------------------------------------------------------ ------------------ 2014-9-15 - Sep 15 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/ast: Actually load DP501 firmware when required (bnc#895608 bnc#871134). - drm/ast: initial DP501 support (v0.2) (bnc#871134). - drm/ast: open key before detect chips (bnc#895983). - drm/ast: AST2000 cannot be detected correctly (bnc#895983). - commit 3254d7b - ALSA: hda - Enabling Realtek ALC 671 codec (bnc#891746). - commit 8184816 ++++ udev: - udev: always resolve correctly database names on 'change' event (bnc#864745). add: udev-147-always-resolve-correctly-database-names-on-chan.patch ------------------------------------------------------------------ ------------------ 2014-9-12 - Sep 12 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/i915: Fix up cpt pixel multiplier enable sequence (bnc#879304). - commit a708175 - x86, cpu hotplug: Fix stack frame warning in check_irq_vectors_for_cpu_disable() (bnc#887418). - x86: Add check for number of available vectors before CPU down (bnc#887418). - commit 3e94e66 ++++ xen: - bnc#896023 - L3: Adjust xentop column layout xentop-expand-field-sizes.patch ------------------------------------------------------------------ ------------------ 2014-9-11 - Sep 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update x86_64 config files: re-enable SENSORS_W83627EHF (bnc#891281) It was only enabled in i386 long ago because a customer asked for it, but now we have another customer who needs it on x86_64 too. - commit 3c97549 ++++ samba: - Prune idle or hung connections older than "winbind request timeout"; (bso#3204); (bnc#872912). ------------------------------------------------------------------ ------------------ 2014-9-10 - Sep 10 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update patches.fixes/isofs-Fix-unbounded-recursion-when-processing-reloca.patch (bnc#892490 CVE-2014-5472 CVE-2014-5471). - commit a22a896 ++++ php53: - security update: * CVE-2014-5459 [bnc#893849] * CVE-2014-3597 [bnc#893853] - added patches: * php-CVE-2014-3597.patch ++++ xen: - bnc#895802 - VUL-0: CVE-2014-7156: xen: XSA-106: Missing privilege level checks in x86 emulation of software interrupts xsa106.patch - bnc#895799 - VUL-0: CVE-2014-7155: xen: XSA-105: Missing privilege level checks in x86 HLT, LGDT, LIDT, and LMSW emulation xsa105.patch - bnc#895798 - VUL-0: CVE-2014-7154: xen: XSA-104: Race condition in HVMOP_track_dirty_vram xsa104.patch ------------------------------------------------------------------ ------------------ 2014-9-9 - Sep 9 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Btrfs: fix a crash of clone with inline extents's split. - Btrfs: fix EINVAL checks in btrfs_clone. - btrfs: replace error code from btrfs_drop_extents. - Btrfs: fix EIO on reading file after ioctl clone works on it. - Btrfs: ensure readers see new data after a clone operation. - Btrfs: clone, don't create invalid hole extent map. - btrfs_ioctl_clone: Move clone code into it's own function. - btrfs: abtract out range locking in clone ioctl(). - Btrfs: unlock inodes in correct order in clone ioctl. - Delete patches.suse/btrfs-8270-fix-crash-when-starting-transaction.patch. - commit 18d2be7 - memcg: do not expose uninitialized mem_cgroup_per_node to world (bnc#883096). - commit ae82607 - pagecache_limit: batch large nr_to_scan targets (bnc#895221). - Refresh patches.fixes/mm-vmscan-store-priority-in-struct-scan_control.patch. - commit a0b5f23 ------------------------------------------------------------------ ------------------ 2014-9-8 - Sep 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Btrfs: unlock extent and pages on error in cow_file_range. - Btrfs: cache extent states in defrag code path. - Btrfs: fix deadlock with nested trans handles. - btrfs: always choose work from prio_head first. - Btrfs: correctly determine if blocks are shared in btrfs_compare_trees. - btrfs: filter invalid arg for btrfs resize. - Btrfs: balance delayed inode updates. - Btrfs: fix leaf corruption after __btrfs_drop_extents. - Btrfs: ensure btrfs_prev_leaf doesn't miss 1 item. - Btrfs: handle a missing extent for the first file extent. - Btrfs: remove unused wait queue in struct extent_buffer. - Btrfs: fix race between balance recovery and root deletion. - Btrfs: fix hang on error (such as ENOSPC) when writing extent pages. - btrfs: replace EINVAL with ERANGE for resize when ULLONG_MAX. - Btrfs: fix crash when starting transaction. - Btrfs: fill_holes: Fix slot number passed to hole_mergeable() call. - btrfs: Return right extent when fiemap gives unaligned offset and len. - Btrfs: read lock extent buffer while walking backrefs. - Btrfs: Fix wrong device size when we are resizing the device. - Btrfs: fix wrong extent mapping for DirectIO. - Btrfs: do not bug_on if we try to cow a free space cache inode. - Refresh patches.suse/btrfs-8018-use-irqsave-spinlocks-everywhere.patch. - commit 4181c7e - patches.fixes/writeback-do-not-sync-data-dirtied-after-sync-start.patch: writeback: Do not sync data dirtied after sync start (bnc#833820). - commit a82aaab - usbhid: fix PIXART optical mouse (bnc#888607). - HID: usbhid: enable always-poll quirk for Elan Touchscreen (bnc#888607). - HID: usbhid: add always-poll quirk (bnc#888607). - commit d95573b - One more fix for kABI breakage. - commit f39e7b7 - Fix more kabi breakage with recent NFS fix (bnc#888968). - commit a85afe7 - Fix kabi breakage with recent NFS fix (bnc#888968). - commit 6165239 ++++ yast2-core: - Enable buffering for parsing agent output (bnc#854809). - 2.17.46 ------------------------------------------------------------------ ------------------ 2014-9-6 - Sep 6 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - x86/uv/nmi: Fix Sparse warnings (bnc#888847). - x86/UV: Add kdump to UV NMI handler (bnc#888847). - x86/UV: Add call to KGDB/KDB from NMI handler (bnc#888847). - x86/UV: Add summary of cpu activity to UV NMI handler (bnc#888847). - x86/UV: Move NMI support (bnc#888847). - x86/UV: Update UV support for external NMI signals (bnc#888847). - Delete patches.arch/uv-update-nmi-handler-for-uv2.patch. - commit 3ed86eb ------------------------------------------------------------------ ------------------ 2014-9-5 - Sep 5 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update kabi files to reflect fscache change (bnc#880344) - commit 5058e52 - Refresh patches.suse/btrfs-0006-fix-error-check-of-btrfs_lookup_dentry.patch. - Refresh patches.suse/btrfs-8253-unset-DCACHE_DISCONNECTED-when-mounting-defaul.patch. - commit 4436b67 - Update patch tags. - Btrfs: unset DCACHE_DISCONNECTED when mounting default subvol (bnc#866615). - Btrfs: fix csum tree corruption, duplicate and outdated checksums (bnc#891619). - Refresh patches.suse/btrfs-8007-lock-and-disable-irq-during-space-alloc.patch. - Refresh patches.suse/btrfs-8021-add-btrfs-prefix-to-kernel-log-output.patch. - Refresh patches.suse/btrfs-8135-Release-uuid_mutex-for-shrink-during-device-de.patch. - Refresh patches.suse/btrfs-8136-fall-back-to-global-reservation-when-removing-.patch. - Refresh patches.suse/btrfs-8137-fix-get-set-label-blocking-against-balance.patch. - Refresh patches.suse/btrfs-8138-reset-ret-in-record_one_backref.patch. - Refresh patches.suse/btrfs-8139-cleanup-reloc-roots-properly-on-error.patch. - Refresh patches.suse/btrfs-8140-add-sanity-checks-regarding-to-parsing-mount-o.patch. - Refresh patches.suse/btrfs-8141-use-u64-for-subvolid-when-parsing-mount-option.patch. - Refresh patches.suse/btrfs-8142-add-missing-mounting-options-in-btrfs_show_opt.patch. - Refresh patches.suse/btrfs-8143-don-t-bug_on-when-we-fail-when-cleaning-up-tra.patch. - Refresh patches.suse/btrfs-8144-return-ENOSPC-when-target-space-is-full.patch. - Refresh patches.suse/btrfs-8145-don-t-allow-a-subvol-to-be-deleted-if-it-is-th.patch. - Refresh patches.suse/btrfs-8146-fix-the-error-handling-wrt-orphan-items.patch. - Refresh patches.suse/btrfs-8147-add-missing-error-code-to-btrfs_IOC_INO_LOOKUP.patch. - Refresh patches.suse/btrfs-8148-don-t-miss-inode-ref-items-in-btrfs_IOC_INO_LO.patch. - Refresh patches.suse/btrfs-8149-fix-memory-leak-of-orphan-block-rsv.patch. - Refresh patches.suse/btrfs-8150-fix-printing-of-non-NULL-terminated-string.patch. - Refresh patches.suse/btrfs-8169-Simplify-the-logic-in-alloc_extent_buffer-for-.patch. - Refresh patches.suse/btrfs-8170-deal-with-io_tree-mapping-being-NULL.patch. - Refresh patches.suse/btrfs-8171-use-a-bit-to-track-if-we-re-in-the-radix-tree.patch. - Refresh patches.suse/btrfs-8172-move-the-extent-buffer-radix-tree-into-the-fs_.patch. - btrfs: Return EXDEV for cross file system snapshot. - Btrfs: avoid warning bomb of btrfs_invalidate_inodes. - btrfs: wake up transaction thread upon remount. - Btrfs: fix a possible deadlock between scrub and transaction committing. - Btrfs: cancel scrub on transaction abortion. - Btrfs: wake up @scrub_pause_wait as much as we can. - Btrfs: return EPERM when deleting a default subvolume (bnc#869934). - Btrfs: abort the transaction when we don't find our extent ref. - Btrfs: correctly set profile flags on seqlock retry. - btrfs: make device scan less noisy. - Btrfs: more efficient io tree navigation on wait_extent_bit. - btrfs: retrieve more info from FS_INFO ioctl. - btrfs: make DEV_INFO ioctl available to anyone. - btrfs: make FS_INFO ioctl available to anyone. - Btrfs: output warning instead of error when loading free space cache failed. - Btrfs: fix possible memory leak in btrfs_create_tree(). - Btrfs: make sure there are not any read requests before stopping workers. - Btrfs: fix double free in find_lock_delalloc_range. - btrfs: free delayed node outside of root->inode_lock (bnc#866864). - Btrfs: don't check nodes for extent items. - Btrfs: use right type to get real comparison. - btrfs: fix use of uninit "ret" in end_extent_writepage(). - Refresh patches.suse/btrfs-8252-fix-corruption-after-write-fsync-failure-fsync.patch. - Delete patches.fixes/Btrfs-unset-DCACHE_DISCONNECTED-when-mounting-defaul.patch. - Delete patches.suse/btrfs-9000-fix-csum-tree-corruption-duplicate-and-outdate.patch. - commit 863ae5b - net/mlx4_core: Load higher level modules according to ports type (bnc#887680). - net/mlx4_core: Load the IB driver when the device supports IBoE (bnc#887680). - commit 151ad21 - net: fix checksumming features handling in output path (bnc#891259). - commit ec141f3 - Update patches.suse/mm-hugetlb-fix-race-in-region-tracking.patch (Hugetlb Fault Scalability (fate#317271), bnc#892790). - commit b84fe54 - kernel: sclp console tty reference counting (bnc#891087, LTC#115466). - kernel: 3215 tty hang (bnc#891087, LTC#114562). - kernel: fix data corruption when reading /proc/sysinfo (bnc#891087, LTC#114480). - dasd: validate request size before building CCW/TCW (bnc#891087, LTC#114068). - commit fd1088f ++++ openCryptoki: - Fixed ica token's SHA update function when passing zero message size (bnc#892644) - Added patch ica-sha-update-empty-msg.patch ------------------------------------------------------------------ ------------------ 2014-9-4 - Sep 4 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update patches.kernel.org/patch-3.0.75-76 (CVE-2013-0160 CVE-2013-1979 bnc#797175 bnc#815745 bnc#816708). Add references to one more CVE. - commit 3ef14f9 - IB/iser: Add TIMEWAIT_EXIT event handling (bnc#890297). - commit 4957bde ------------------------------------------------------------------ ------------------ 2014-9-3 - Sep 3 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Drivers: hv: vmbus: Fix a bug in the channel callback dispatch code (bnc#886840). - Drivers: hv: util: Fix a bug in the KVP code (bnc#886840). - commit 42a848a - NFSv4: Fix the return value of nfs4_select_rw_stateid (bnc#888968). - NFSv4: nfs4_stateid_is_current should return 'true' for an invalid stateid (bnc#888968). - NFSv4: Resend the READ/WRITE RPC call if a stateid change causes an error (bnc#888968). - NFSv4: The stateid must remain the same for replayed RPC calls (bnc#888968). - NFS: Clean up helper function nfs4_select_rw_stateid() (bnc#888968). - NFSv4: Clean up nfs4_select_rw_stateid() (bnc#888968). - NFS: Don't copy read delegation stateids in setattr (bnc#888968). - NFSv4: Simplify the struct nfs4_stateid (bnc#888968). - NFSv4: Add a helper for encoding stateids (bnc#888968). - NFSv4: Add a helper for encoding opaque data (bnc#888968). - NFSv4: Add helpers for basic copying of stateids (bnc#888968). - NFSv4: Rename nfs4_copy_stateid() (bnc#888968). - Don't use a delegation to open a file when returning that delegation (bnc#888968, bnc#892200, bnc#893596, bnc#893496) - NFSv4 set open access operation call flag in nfs4_init_opendata_res (bnc#888968, bnc#892200, bnc#893596, bnc#893496). - commit cc34334 ++++ timezone-java: - update to 2014g (bnc#894862): * Turks & Caicos are switching from US eastern time to UTC-4 year-round, modeled as a switch from EST/EDT to AST on 2014-11-02 at 02:00. * Many past time stamps were changed for correctness. * Many performance enhancements and fixes in the time zone manipulation utilities. - iso3166-uk.diff, tzcode-fromname.patch, tzcode-zic.diff, tzdata-china.diff: refresh. - tzcode-symlink.patch: rebase. - update to 2014f (bnc#890921, bnc#892843): * Russia will subtract an hour from most of its time zones on 2014-10-26 at 02:00 local time. * Many time zone abbreviations were adjusted or fixed. * Many past time stamps were changed for correctness. * A new file 'zone1970.tab' was added. The new file's extended format allows multiple country codes per zone. New applications should use the new file. * Some fixes in 'localtime', 'zic', 'mktime' and 'yearistype'. ------------------------------------------------------------------ ------------------ 2014-9-2 - Sep 2 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 24.8.0 (bnc#894370) * MFSA 2014-67/CVE-2014-1553/CVE-2014-1554/CVE-2014-1562 (bmo#990247, bmo#995075, bmo#995704, bmo#1004480, bmo#1016519, bmo#1022945, bmo#1027359, bmo#1033121, bmo#1035007, bmo#1037666, bmo#1041148, bmo#1054359) Miscellaneous memory safety hazards (rv:32.0 / rv:31.1 / rv:24.8) * MFSA 2014-72/CVE-2014-1567 (bmo#1037641) Use-after-free setting text directionality - require NSPR 4.10.7, NSS 3.16.4 ++++ spice: - bnc#894069: disable smartcard support ++++ net-snmp: - added net-snmp-5.4.x_fix-snmptrapd-remote-denial-of-service.patch: fix remote denial of service problem inside snmptrapd when started with the "-OQ" option (CVE-2014-3565)(bnc#894361) - added net-snmp-5.4.x_fix-ipcidr-oids-on-64bit.patch: fix time out during SNMP MIB walk on OID 1.3.6.1.2.1.4.24 when using the Net-SNMP v5.5 or later snmpwalk application (bnc#865222) ------------------------------------------------------------------ ------------------ 2014-9-1 - Sep 1 2014 ------------------- ------------------------------------------------------------------ ++++ libqt4: - limit the number of supported ciphers (at least 128 bits) (bnc#865241) ++++ libqt4-devel-doc: - limit the number of supported ciphers (at least 128 bits) (bnc#865241) ++++ libqt4-devel-doc-data: - limit the number of supported ciphers (at least 128 bits) (bnc#865241) ++++ libqt4-sql-plugins: - limit the number of supported ciphers (at least 128 bits) (bnc#865241) ++++ mozilla-nspr: - update to version 4.10.7 * bmo#836658: VC11+ defaults to SSE2 builds by default. * bmo#979278: TSan: data race nsprpub/pr/src/threads/prtpd.c:103 PR_NewThreadPrivateIndex. * bmo#1026129: Replace some manual declarations of MSVC intrinsics with [#]include . * bmo#1026469: Use AC_CHECK_LIB instead of MOZ_CHECK_PTHREADS. Skip compiler checks when using MSVC, even when $CC is not literally "cl". * bmo#1034415: NSPR hardcodes the C compiler to cl on Windows. * bmo#1042408: Compilation fix for Android > API level 19. * bmo#1043082: NSPR's build system hardcodes -MD. ++++ mozilla-nss: - update to 3.16.4 * required for Firefox 32 Notable Changes: * The following 1024-bit root CA certificate was restored to allow more time to develop a better transition strategy for affected sites. It was removed in NSS 3.16.3, but discussion in the mozilla.dev.security.policy forum led to the decision to keep this root included longer in order to give website administrators more time to update their web servers. - CN = GTE CyberTrust Global Root * In NSS 3.16.3, the 1024-bit "Entrust.net Secure Server Certification Authority" root CA certificate was removed. In NSS 3.16.4, a 2048-bit intermediate CA certificate has been included, without explicit trust. The intention is to mitigate the effects of the previous removal of the 1024-bit Entrust.net root certificate, because many public Internet sites still use the "USERTrust Legacy Secure Server CA" intermediate certificate that is signed by the 1024-bit Entrust.net root certificate. The inclusion of the intermediate certificate is a temporary measure to allow those sites to function, by allowing them to find a trust path to another 2048-bit root CA certificate. The temporarily included intermediate certificate expires November 1, 2015. - update to 3.16.3 New Functions: * CERT_GetGeneralNameTypeFromString (This function was already added in NSS 3.16.2, however, it wasn't declared in a public header file.) Notable Changes: * The following 1024-bit CA certificates were removed - Entrust.net Secure Server Certification Authority - GTE CyberTrust Global Root - ValiCert Class 1 Policy Validation Authority - ValiCert Class 2 Policy Validation Authority - ValiCert Class 3 Policy Validation Authority * Additionally, the following CA certificate was removed as requested by the CA: - TDC Internet Root CA * The following CA certificates were added: - Certification Authority of WoSign - CA 沃通根è¯ä¹¦ - DigiCert Assured ID Root G2 - DigiCert Assured ID Root G3 - DigiCert Global Root G2 - DigiCert Global Root G3 - DigiCert Trusted Root G4 - QuoVadis Root CA 1 G3 - QuoVadis Root CA 2 G3 - QuoVadis Root CA 3 G3 * The Trust Bits were changed for the following CA certificates - Class 3 Public Primary Certification Authority - Class 3 Public Primary Certification Authority - Class 2 Public Primary Certification Authority - G2 - VeriSign Class 2 Public Primary Certification Authority - G3 - AC Raíz Certicámara S.A. - NetLock Uzleti (Class B) Tanusitvanykiado - NetLock Expressz (Class C) Tanusitvanykiado ------------------------------------------------------------------ ------------------ 2014-8-29 - Aug 29 2014 ------------------- ------------------------------------------------------------------ ++++ kdelibs4: - add default ssl ciphersuite to the ssl configuration (related with bnc#865241) ++++ kernel-docs: - Btrfs: fix corruption after write/fsync failure + fsync + log recovery (bnc#894200). - commit 26c7cde - drm/i915: Only apply DPMS to the encoder if enabled (bnc#893064). - commit 6408baf ++++ kiwi: - v5.05.76 released - This is a metadata commit to add update information between kiwi v4 and this release with regards to bugzilla references * This version has some code parts refactored which invalidates bugs fixed in the old version because the code is different and no longer there * This version had bugs already fixed which were later reported as bugs for the v4 kiwi version in bugzilla and got cherry-picked including a bug reference. With this commit we add the bugzilla number reference information back bnc #793305 (EC2 support) commit 0a424f5c353ca523d62af644d288d133977a3180 bnc #793099 (xen host mode preload iso packs wrong initrd) was refactored which makes this one obsolete bnc #789411 (s390 blogd tty) was refactored by using /dev/console bnc #782092 (qemu required in spec) commit d12fa168b89b97e13f42c0a5d143f241c3e71d78 bnc #775278 (size parameter is ignored) commit 14c42665a5c98826645337ca71ccb1932e27912f bnc #773861 (usb stick fails to reimage after additional partitions have been added) commit ca6b45621f3c7bbe4d3af9d8e3a61aa9f0412d4e bnc #759341 (wireless drivers) has been refactored, there are no static lists anymore bnc #752604 (kiwi perl warnings) commit 09271a7d413eea2ee3cbbbbc5d5f4607dc012b50 bnc #724787 (grub config with installstick=true) commit ffc7417c4c8240a7e1fb0d87d7abcfc0a015c3d2 ++++ xen: - bnc#864801 - VUL-0: CVE-2013-4540: qemu: zaurus: buffer overrun on invalid state load CVE-2013-4540-qemu.patch ------------------------------------------------------------------ ------------------ 2014-8-28 - Aug 28 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - x86_32, entry: Clean up sysenter_badsys declaration (bnc#883724, CVE-2014-4508). - commit b6c828e - x86_32, entry: Store badsys error code in %eax (bnc#883724, CVE-2014-4508). - commit 8ed1359 ++++ libreoffice: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) * chart shown flipped (bnc#834722) * chart missing dataset (bnc#839727) * import new line in text (bnc#828390) * lines running off screens (bnc#819614) * add set-all language menu (bnc#863021) * text rotation (bnc#783433, bnc#862510) * page border shadow testcase (bnc#817956) * one more clickable field fix (bnc#802888) * multilevel labels are rotated (bnc#820273) * incorrect nested table margins (bnc#816593) * use BitmapURL only if its valid (bnc#821567) * import gradfill for text colors (bnc#870234) * fix undo of paragraph attributes (bnc#828598) * stop-gap solution to avoid crash (bnc#830205) * import images with duotone filter (bnc#820077) * missing drop downs for autofilter (bnc#834705) * typos in first page style creation (bnc#820836) * labels wrongly interpreted as dates (bnc#834720) * RTF import of fFilled shape property (bnc#825305) * placeholders text size is not correct (bnc#831457) * cells value formatted with wrong output (bnc#821795) * RTF import of freeform shape coordinates (bnc#823655) * styles (rename &) copy to different decks (bnc#757432) * XLSX Chart import with internal data table (bnc#819822) * handle M.d.yyyy date format in DOCX import (bnc#820509) * paragraph style in empty first page header (bnc#823651) * copying slides having same master page name (bnc#753460) * printing handouts using the default, 'Order' (bnc#835985) * wrap polygon was based on dest size of picture (bnc#820800) * added common flags support for SEQ field import (bnc#825976) * hyperlinks of illustration index in DOCX export (bnc#834035) * allow insertion of redlines with an empty author (bnc#837302) * handle drawinglayer rectangle inset in VML import (bnc#779642) * don't apply complex font size to non-complex font (bnc#820819) * issue with negative seeks in win32 shell extension (bnc#829017) * slide appears quite garbled when imported from PPTX (bnc#593612) * initial MCE support in writerfilter ooxml tokenizer (bnc#820503) * MSWord uses \xb for linebreaks in DB fields, take 2 (bnc#878854) * try harder to convert floating tables to text frames (bnc#779620) * itemstate in parent style incorrectly reported as set (bnc#819865) * default color hidden by Default style in writerfilter (bnc#820504) * DOCX document crashes when using internal OOXML filter (bnc#382137) * data exposure using crafted OLE objects (CVE-2014-3575, bnc#893141) * ugly workaround for external leading with symbol fonts (bnc#823626) * followup fix for exported xlsx causes errors for mso2007 (bnc#823935) * we only support simple labels in the InternalDataProvider (bnc#864396) * RTF import: fix import of numbering bullet associated font (bnc#823675) * page specific footer extended to every pages in DOCX export (bnc#654230) * v:textbox mso-fit-shape-to-text style property in VML import (bnc#820788) * w:spacing in a paragraph should also apply to as-char objects (bnc#780044) * compatibility setting for MS Word wrapping text in less space (bnc#822908) * fix SwWrtShell::SelAll() to work with empty table at doc start (bnc#825891) - cve-2013-4156-docm-memory-corruption.diff: DOCM memory corruption vulnerability (CVE-2013-4156, bnc#831578) ++++ libreoffice-branding-upstream: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-help-group1: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-help-en-US: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-help-group2: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-help-group3: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-help-group4: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-help-group5: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-icon-themes: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ libreoffice-l10n: - maintenance update (bnc#893141) - update to 4.0.3.3.26 (SUSE 4.0-patch26, tag suse-4.0-26, based on upstream 4.0.3.3) ++++ metacity: - Add a /apps/metacity/general/new_windows_always_on_top preference. When set, new windows are always placed on top, even if they are denied focus. (FATE#317254, bnc#894018) Adds: fate-317254-1.patch, fate-317254-2.patch ++++ python-keyring: - reduce/fix build requires ------------------------------------------------------------------ ------------------ 2014-8-27 - Aug 27 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/isofs-Fix-unbounded-recursion-when-processing-reloca.patch: Update references - commit 22deff5 ++++ ocaml: - Require as/gcc for ocamlopt (bnc#891177) ------------------------------------------------------------------ ------------------ 2014-8-26 - Aug 26 2014 ------------------- ------------------------------------------------------------------ ++++ glibc: - disable-gconv-translit-modules.patch: Disable gconv transliteration module loading (CVE-2014-5119, bnc#892073, BZ #17187) - setenv-alloca.patch: Avoid unbound alloca in setenv (bnc#892065) - printf-multibyte-format.patch: Don't parse %s format argument as multibyte string (bnc#888347) ++++ kernel-docs: - Delete patches.suse/0013-NFS-nfs4_do_open-should-add-negative-results-to-the-.patch. Not needed in SLES11 - only needed in mainline (where it is). - commit da9b0be - Update patches.fixes/nfs-mountpoint-deleted.patch (bnc#888591, bnc#891485). More complete fix for this bug. - commit f276f01 ------------------------------------------------------------------ ------------------ 2014-8-25 - Aug 25 2014 ------------------- ------------------------------------------------------------------ ++++ bind: - Bug fix release 9.9.5P1 * Fixes a multithread issue with IXFR (bnc#882511). ++++ kernel-docs: - be2net: add dma_mapping_error() check for dma_map_page() (bnc#881759). - commit 5dc79da ------------------------------------------------------------------ ------------------ 2014-8-23 - Aug 23 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/ast: Add reduced non reduced mode parsing for wide screen mode (bnc#892723). - drm/ast: Add missing entry to dclk_table[]. - commit b23160f ------------------------------------------------------------------ ------------------ 2014-8-22 - Aug 22 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Delete patches.fixes/watchdog-make-disable-enable-hotplug-and-preempt-save.patch. kthread_stop()/kthread_create_on_node() cannot be called with preemption disabled - commit 5ec8d9d ------------------------------------------------------------------ ------------------ 2014-8-21 - Aug 21 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - isofs: Fix unbounded recursion when processing relocated directories (bnc#892490). - commit d3aa404 - target/rd: Refactor rd_build_device_space + rd_release_device_space (bnc#882639). - commit 52d9ab6 ++++ ppp: - ppp-CVE-2014-3158.patch: Fix an nteger overflow in option parsing (CVE-2014-3158, bnc#891489). ------------------------------------------------------------------ ------------------ 2014-8-20 - Aug 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - autofs4: make "autofs4_can_expire" idempotent (bnc#866130). - commit a8a5e25 - Update patches.fixes/md-raid6-avoid-data-corruption-during-recovery-of-do.patch (bnc#892650). Improve comment. - commit e3136ad - PM / Hibernate: Touch Soft Lockup Watchdog in rtree_next_node (bnc#860441). - PM / Hibernate: Remove the old memory-bitmap implementation (bnc#860441). - PM / Hibernate: Iterate over set bits instead of PFNs in swsusp_free() (bnc#860441). - PM / Hibernate: Implement position keeping in radix tree (bnc#860441). - PM / Hibernate: Add memory_rtree_find_bit function (bnc#860441). - PM / Hibernate: Create a Radix-Tree to store memory bitmap (bnc#860441). - commit 6f93dc2 ------------------------------------------------------------------ ------------------ 2014-8-19 - Aug 19 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - NFS: avoid mountpoint being " (deleted)" in /proc/mounts (bnc#888591). - commit 332e140 ++++ libgcrypt: - fix for CVE-2014-5270 (bnc#892464) * side-channel attack on Elgamal encryption subkeys * added libgcrypt-CVE-2014-5270.patch ------------------------------------------------------------------ ------------------ 2014-8-18 - Aug 18 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - md/raid6: avoid data corruption during recovery of double-degraded RAID6. - commit 7a83069 ++++ sg3_utils: - sg_inq: Suppress warning messages for --export (bnc#876454). add: sg3_utils-sg_inq-suppress-warning-messages-for-export.patch - sg_inq: Backport encode_whitespaces from upstream (bnc#876454). add: sg3_utils-sg_inq-backport-encode_whitespaces-from-upstream.patch - sg_inq: Fix overflow in encode_whitespaces (bnc#876454). add: sg3_utils-sg_inq-Fix-overflow-in-encode_whitespaces.patch ------------------------------------------------------------------ ------------------ 2014-8-15 - Aug 15 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - [media] media-device: fix infoleak in ioctl media_enum_entities() (bnc#882804,CVE-2014-1739). - commit 4201858 - restore smp_mb() in unlock_new_inode() (bnc#890526). - commit 2ce5ff3 ------------------------------------------------------------------ ------------------ 2014-8-14 - Aug 14 2014 ------------------- ------------------------------------------------------------------ ++++ pulseaudio: - baselibs.conf: Build 32bit versions of libpulse-mainloop-glib0 (bnc#892061) ++++ subversion: - Add security patch subversion-CVE-2014-3528.patch fixing CVE-2014-3528 bnc#889849 ------------------------------------------------------------------ ------------------ 2014-8-13 - Aug 13 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - net/l2tp: don't fall back on UDP [get|set]sockopt (bnc#887082, CVE-2014-4943). - commit 8b5563c - patches.fixes/crypto-fips-only-panic-on-bad-missing-crypto-mod-signatures : Allow CRYPTO_FIPS without MODULE_SIGnatures. Not all archs have them, but some are FIPS certified, with some kernel support. - commit a1eae33 - Btrfs: fix csum tree corruption, duplicate and outdated checksums (bnc#891619). This fixes a bug that's been around for 7 years in btrfs, as Chris Mason mentioned [1], so it affects a wide range of SLES and openSUSE releases. [1] http://www.spinics.net/lists/linux-btrfs/msg36525.html - commit 5a10429 ++++ samba: - build: disable mmap on s390 systems; (bso#10765); (bnc#886193); (bnc#882356). ------------------------------------------------------------------ ------------------ 2014-8-12 - Aug 12 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - e1000e: enable support for new device IDs (bnc#885509). - commit 18b3ff2 - crypto: fips - only panic on bad/missing crypto mod signatures (bnc#887503). - commit c1a9b4f - supported.conf: support net/sched/act_police.ko (bnc#890426) - commit eb1d46a - drm/i915: clear the FPGA_DBG_RM_NOCLAIM bit at driver init (bnc#869055). - drm/i915: use FPGA_DBG for the "unclaimed register" checks (bnc#869055). - drm/i915: create functions for the "unclaimed register" checks (bnc#869055). - commit e0b4e08 ++++ openssl: - build with -DPURIFY to reduce valgrind warnings. ++++ xen: - bnc#891539 - xend: fix netif convertToDeviceNumber for running domains Updated xen-migration-bridge-check.patch New xend-vif-devnum.patch ------------------------------------------------------------------ ------------------ 2014-8-11 - Aug 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - PCI: enable MPS "performance" setting to properly handle bridge MPS (bnc#883376). - commit f2eef9d - Allow more operations in an NFSv4.1 request (bnc#890513). - commit f6d0b39 ------------------------------------------------------------------ ------------------ 2014-8-9 - Aug 9 2014 ------------------- ------------------------------------------------------------------ ++++ apache2: - Add httpd-2.2.x-fate317766-config-control-two-protocol-options.diff Introduces directives to control two protocol options: * HttpContentLengthHeadZero - allow Content-Length of 0 to be returned on HEAD * HttpExpectStrict - allow admin to control whether we must see "100-continue" This is helpful when using Ceph's radosgw and httpd. Bump MODULE_MAGIC_NUMBER_MINOR to 24, this change is not forward- compatible, new modules with old httpd2 might break. Requested via fate#317766. [bnc#894225] ------------------------------------------------------------------ ------------------ 2014-8-8 - Aug 8 2014 ------------------- ------------------------------------------------------------------ ++++ gcc: - Add gcc-c++-32bit, gcc-c++-64bit, libstdc++-devel-32bit and libstdc++-devel-64bit packages. [bnc#893829, fate#317873] ++++ java-1_7_1-ibm: - Version bump to 7.1-1.0 bnc#890434: * Maintenance update for the 7.1 series matching oracle jaca 7u65 ++++ kernel-docs: - scsiback: correct grant page unmapping. - scsiback: fix retry handling in __report_luns(). - scsiback: free resources after error. - vscsi: support larger transfer sizes (bnc#774818). - Refresh other Xen patches. - commit 021ff16 ++++ krb5: - buffer overrun in kadmind with LDAP backend CVE-2014-4345 (bnc#891082) bug-891082-CVE-2014-4345-buffer-overrun-in-kadmind-with-LDAP-backend.dif ++++ openssl: - Double Free when processing DTLS packets (CVE-2014-3505) * added openssl-CVE-2014-3505.patch * bnc#890767 - DTLS memory exhaustion (CVE-2014-3506) * added openssl-CVE-2014-3506.patch * bnc#890768 - DTLS memory leak from zero-length fragments (CVE-2014-3507) * added openssl-CVE-2014-3507.patch * bnc#890769 - Information leak in pretty printing functions (CVE-2014-3508) * added openssl-CVE-2014-3508.patch * bnc#890764 - OpenSSL DTLS anonymous EC(DH) denial of service (CVE-2014-3510) * added openssl-CVE-2014-3510.patch * bnc#890770 ------------------------------------------------------------------ ------------------ 2014-8-7 - Aug 7 2014 ------------------- ------------------------------------------------------------------ ++++ bind: - Fix handling of TXT records in ldapdump (bnc#743758). ++++ java-1_7_1-ibm: - Replace SuSE with SUSE. bnc#889006 ++++ kernel-docs: - memcg, vmscan: Fix forced scan of anonymous pages (memory reclaim fix). - Refresh patches.fixes/mm-vmscan-store-priority-in-struct-scan_control.patch. - Refresh patches.suse/mm-vmscan-Do-not-force-reclaim-file-pages-until-it-exceeds-anon.patch. - Refresh patches.suse/mm-vmscan-Update-rotated-and-scanned-when-force-reclaimed.patch. - commit 6823cfe ++++ kdebase4: - add patches: * new-tab-opens-new-shell-bnc867250.diff (bnc#867250). When opening a new tab, a new shell is opened instead of a clone of the current tab * add-force-newprocess-bnc879084.diff (bnc#879084) Adds a --force-newprocess parameter that forces to create a new konsole process instead of reusing an already running one. * fix-new-tab-cwd-bnc880279.diff (bnc#880279) When opening a new tab, opens the shell in the same directory as current tab instead of $HOME ++++ xen: - Upstream patches from Jan 26281-x86-mm-hap-Adjust-vram-tracking-to-play-nicely-with-log-dirty.patch 29263-VT-d-ATS-correct-and-clean-up-dev_invalidate_iotlb.patch 29306-properly-reference-count-DOMCTL_-un-pausedomain-hypercalls.patch 29386-avoid-crash-when-doing-shutdown-with-active-cpupools.patch 29430-x86-cpu-undo-BIOS-CPUID-max_leaf-limit-earlier.patch ------------------------------------------------------------------ ------------------ 2014-8-6 - Aug 6 2014 ------------------- ------------------------------------------------------------------ ++++ glibc: - setlocale-directory-traversal.patch: Directory traversal in locale environment handling (CVE-2014-0475, bnc#887022, BZ #17137) - ibm93x-redundant-shift-si.patch: Avoid redundant shift character in iconv output at block boundary (bnc#886416, BZ #17197) - Don't forcefully enable nscd on update (bnc#882028) ++++ kernel-docs: - autofs: fix lockref lookup (bnc#888591). - commit 69a9444 ------------------------------------------------------------------ ------------------ 2014-8-5 - Aug 5 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - qla2xxx: Set host can_queue value based on available resources (bnc#859840). - commit 3ccd6a7 - qla2xxx: Issue abort command for outstanding commands during cleanup when only firmware is alive (bnc#859840). - commit 9a365c5 ++++ lprng: - LPRng-3.8.28-child_forget.diff Remove the child from the Process_list when it has been successfully waited on, in order to prevent killing another process with the same pid later, when cleaning up. (bnc#889330) ------------------------------------------------------------------ ------------------ 2014-8-4 - Aug 4 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - qla2xxx: Avoid escalating the SCSI error handler if the command is not found in firmware (bnc#859840). - commit adefe9e - qla2xxx: Clear loop_id for ports that are marked lost during fabric scanning (bnc#859840). - commit e41f594 - qla2xxx: Reduce the time we wait for a command to complete during SCSI error handling (bnc#859840). - commit 8585578 - qla2xxx: Don't check for firmware hung during the reset context for ISP82XX (bnc#859840). - commit ceb58c4 - scripts/log: uses bashisms so should explicitly call bash scripts/log2: uses bashisms so should explicitly call bash On non-SUSE systems, other shells may be used as /bin/sh. This has been observed to cause runtime failures. - commit e2f2cf1 - [FEAT NET1222] ib_uverbs: Allow explicit mmio trigger (FATE#83366, ltc#83367). - commit 5a748b8 - Refresh patches.suse/0002-NFS-prepare-for-RCU-walk-support-but-pushing-tests-l.patch. - Refresh patches.suse/0005-NFS-teach-nfs_neg_need_reval-to-understand-LOOKUP_RC.patch. Fixes for NFS RCU-walk support in line with code going upstream - commit c6b12b2 - NFS: Use FS-Cache invalidation (bnc#880344). - commit f6ea50b ++++ gpgme: - fix for CVE-2014-3564 (bnc#890123) * overflow in gpgsm engine * added gpgme-CVE-2014-3564.patch ++++ openmpi: - Move plugins to main package (bnc#887130). ------------------------------------------------------------------ ------------------ 2014-8-1 - Aug 1 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Add patch gcc48-libgfortran-CVE-2014-5044.diff to fix integer overflows in libgfortran, CVE-2014-5044. [bnc#888791] ++++ kernel-docs: - cpuset: Fix memory allocator deadlock (bnc#876590). - commit aa2819e - block: fix race between request completion and timeout handling (bnc#881051). - commit 2ade659 - scsi_dh: use missing accessor 'scsi_device_from_queue' (bnc#889614). - commit 7e46e5a - crypto: testmgr - allow aesni-intel and ghash_clmulni-intel in fips mode (bnc#889451). - commit 0f53a3f ------------------------------------------------------------------ ------------------ 2014-7-31 - Jul 31 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - supported.conf: remove external from drivers/net/veth (bnc#889727) - commit 456ffd4 - Refresh patches.fixes/input-add-acer-aspire-5710-to-nomux.patch: update upstream reference. - commit 41e0146 - Update patches.suse/0004-EFI-Add-in-kernel-variable-to-determine-if-Secure-Boot-is-enabled.patch (fate#314574, bnc#884333). - commit 4815e8e - Respin xen patches for backpoprted new patches of Lock down functions for UEFI secure boot Respin xen patches for backpoprted new patches of Lock down functions for UEFI secure boot (fate#314486, bnc#884333). - Refresh patches.xen/xen-x86-EFI. - Refresh patches.xen/xen3-0003_x86_Lock_down_IO_port_access_in_secure_boot_environments_v2.patch. - Refresh patches.xen/xen3-0004-EFI-Add-in-kernel-variable-to-determine-if-Secure-Boot-is-enabled.patch. - Refresh patches.xen/xen3-0006_Restrict__dev_mem_and__dev_kmem_in_secure_boot_setups_v2.patch. - Refresh patches.xen/xen3-0008_efi_Enable_secure_boot_lockdown_automatically_when_enabled_in_firmware_v2.patch. - Refresh patches.xen/xen3-x86_microcode_set_comprise_kernel.patch. - commit 60d0ce9 - Backpoprted new patches of Lock down functions for UEFI secure boot Also updated series.conf and removed old patches. - Add secure_modules() call (fate#314486, bnc#884333). - PCI: Lock down BAR access when module security is enabled (fate#314486, bnc#884333). - x86: Lock down IO port access when module security is enabled (fate#314486, bnc#884333). - ACPI: Limit access to custom_method (fate#314486, bnc#884333). - asus-wmi: Restrict debugfs interface when module loading is restricted (fate#314486, bnc#884333). - Restrict /dev/mem and /dev/kmem when module loading is restricted (fate#314486, bnc#884333). - acpi: Ignore acpi_rsdp kernel parameter when module loading is restricted (fate#314486, bnc#884333). - kexec: Disable at runtime if the kernel enforces module loading restrictions (fate#314486, bnc#884333). - uswsusp: Disable when module loading is restricted (fate#314486, bnc#884333). - x86: Restrict MSR access when module loading is restricted (fate#314486, bnc#884333). - Add option to automatically enforce module signatures when in Secure Boot mode (fate#314486, bnc#884333). - hibernate: Disable in a signed modules environment (fate#314486, bnc#884333). - Delete patches.suse/0001-modsign-Always-enforce-module-signing-in-a-Secure-Boot.patch. - Delete patches.suse/0002_PCI_Lock_down_BAR_access_in_secure_boot_environments_v2.patch. - Delete patches.suse/0003_x86_Lock_down_IO_port_access_in_secure_boot_environments_v2.patch. - Delete patches.suse/0004_ACPI_Limit_access_to_custom_method_v2.patch. - Delete patches.suse/0005_asus-wmi_Restrict_debugfs_interface_v2.patch. - Delete patches.suse/0006_Restrict__dev_mem_and__dev_kmem_in_secure_boot_setups_v2.patch. - Delete patches.suse/0008_efi_Enable_secure_boot_lockdown_automatically_when_enabled_in_firmware_v2.patch. - Delete patches.suse/0009_acpi_Ignore_acpi_rsdp_kernel_parameter_in_a_secure_boot_environment_v2.patch. - Delete patches.suse/0011-hibernate-Disable-in-a-Secure-Boot-environment.patch. - Delete patches.suse/kexec-Disable-in-a-secure-boot-environment.patch. - Delete patches.suse/x86-Require-CAP_COMPROMISE_KERNEL-for-MSR-writing.patch. - Delete patches.suse/x86_microcode_set_comprise_kernel.patch. - commit f3af2f2 ++++ udev: - ata_id: skip ATA commands if we find an optical drive (bnc#880066). add: udev-147-ata_id-skip-ATA-commands-if-we-find-an-optical-drive.patch - ata_id: Support SG_IO version 4 interface (bnc#880066). add: udev-147-ata_id-Support-SG_IO-version-4-interface.patch - path_id: add delay when CCW attributes are not available (bnc#881358). add: udev-147-path_id-add-delay-when-CCW-attributes-are-not-avail.patch - udevd: better error reporting when worker exits (bnc#884441). add: udev-147-better-error-reporting-when-child-exits.patch - boot.udev_retry: fix script to trigger failed events (bnc#884441). ------------------------------------------------------------------ ------------------ 2014-7-30 - Jul 30 2014 ------------------- ------------------------------------------------------------------ ++++ sg3_utils: - Fix backwards compatibility, create libsgutils.so link (bnc#888826). ------------------------------------------------------------------ ------------------ 2014-7-29 - Jul 29 2014 ------------------- ------------------------------------------------------------------ ++++ apache2: - httpd-2.2.x-bnc869106-CVE-2014-0098-log_cookie_c.diff was missing from last changelog entry. correction to parsing of cookie content; this can lead to a crash with a specially designed cookie sent to the server. This is CVE-2014-0098 [bnc#869106] . ++++ augeas: - Fix bnc871323 issues with parsing multipath configuration * bnc-871323-multipath-lenses.patch - Dropped patch merged in the above: * bnc-757397-multipath.patch ++++ kernel-docs: - s390/pci: introduce lazy IOTLB flushing for DMA unmap (bnc#889061, LTC#113725). - kernel: fix kernel oops with load of fpc register (bnc#889061, LTC#113596). - commit 51a83f6 - net: sctp: inherit auth_capable on INIT collisions (bnc#889173 CVE-2014-5077). - commit f647115 ------------------------------------------------------------------ ------------------ 2014-7-28 - Jul 28 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Add patch gcc48-ppc64le-abi-warnings-fix.diff to fix failure to link any Objective-C/C++ program on ppc64le. [ggo#61920] ++++ cups: - str4450.CVE-2014-3537.str4455.CVE-2014-5029.CVE-2014-5030.CVE-2014-5031.CUPS-1.3.9.patch fixes that the web interface incorrectly served symlinked files and files that were not world-readable, potentially leading to a disclosure of information (CVE-2014-3537 STR #4450 plus the subsequent CVE-2014-5029 CVE-2014-5030 CVE-2014-5031 STR #4455 all in bnc#887240). ++++ kernel-docs: - Import kabi files for kernel-bigsmp - commit 8ca35c8 - cdc-ether: clean packet filter upon probe (bnc#876017). - commit e59819a - dm-mpath: fix panic on deleting sg device (bnc#870161). - commit a3e218d - dm mpath: fix race condition between multipath_dtr and pg_init_done (bnc#826486). - commit 39aa039 - Delete patches.arch/s390-sles11sp3-17-01-uverbs-kwrite-mmio.patch. - bnc#802775 - commit f7edda2 ++++ krb5: - fix denial of service flaws when handling RFC 1964 tokens CVE-2014-4341 (bnc#886016) bug-886016-CVE-2014-4341-denial-of-service-flaws-when-handling-RFC-1964-tokens.dif - Fix null deref in SPNEGO acceptor CVE-2014-4344 (bnc#888697) bug-888697-CVE-2014-4344-fix-null-deref-in-SPNEGO-acceptor.dif ++++ libqb: - log: return filter type enum to preserve abi compatibilty with corosync - Upstream version cs: e5b8950863b92b314675ba0cbba13f00b8b77c52 ++++ yast2-storage: - fixed used-by information for multipath with LVM (bnc#888838) - 2.17.146 ------------------------------------------------------------------ ------------------ 2014-7-25 - Jul 25 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Add patch gcc48-ppc64le-abi-warnings.diff to warn about future ABI changes for ppc64le. [bnc#888907] ++++ kernel-docs: - tg3: Change nvram command timeout value to 50ms (bnc#855657). - tg3: Override clock, link aware and link idle mode during NVRAM dump (bnc#855657). - tg3: Set the MAC clock to the fastest speed during boot code load (bnc#855657). - commit 62abd53 - usbcore: don't log on consecutive debounce failures of the same port (bnc#888105). - commit 867a600 - mm, thp: do not allow thp faults to avoid cpuset restrictions (bnc#888849). - commit 12848b1 - ipv6: tcp: fix tcp_v6_conn_request() (bnc#887645). - commit 1355551 - Fix 0006-NFS-teach-nfs_lookup_verify_inode-to-handle-LOOKUP_R.patch Didn't interact will with another recent patch - commit 371255b ++++ postgresql94-libs: - bnc#888564: Move the server socket from /tmp to /var/run to avoid problems with clients that use PrivateTmp. postgresql-var-run-socket.patch - Rediff patches. ------------------------------------------------------------------ ------------------ 2014-7-24 - Jul 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - shmem: fix faulting into a hole, not taking i_mutex (bnc#883518, CVE-2014-4171). - shmem: fix splicing from a hole while it's punched (bnc#883518, CVE-2014-4171). - Delete patches.fixes/shmem-fix-faulting-into-a-hole-while-its-punched-take-2.patch. - commit 634b83f - Fix kabi breakage with previous patches. - commit 0294808 - NFS: nfs4_do_open should add negative results to the dcache (bnc#866130). - autofs4: don't take spinlock when not needed in autofs4_lookup_expiring (bnc#866130). - autofs4: avoid taking fs_lock during rcu-walk (bnc#866130). - autofs4: factor should_expire() out of autofs4_expire_indirect (bnc#866130). - autofs4: allow RCU-walk to walk through autofs4 (bnc#866130). - autofs4: remove a redundant assignment (bnc#866130). - NFS: allow lockless access to access_cache (bnc#866130). - NFS: teach nfs_lookup_verify_inode to handle LOOKUP_RCU (bnc#866130). - NFS: teach nfs_neg_need_reval to understand LOOKUP_RCU (bnc#866130). - NFS: support RCU_WALK in nfs_permission() (bnc#866130). - sunrpc/auth: allow lockless (rcu) lookup of credential cache (bnc#866130). - NFS: prepare for RCU-walk support but pushing tests later in code (bnc#866130). - NFS: nfs_open_revalidate: only evaluate parent if it will be used (bnc#866130). - commit ef1de82 ++++ postgresql94-libs: - Update to 9.3.5. The most important changes are: * In pg_upgrade, remove pg_multixact files left behind by initdb. If you used a pre-9.3.5 version of pg_upgrade to upgrade a database cluster to 9.3, it might have left behind a file $PGDATA/pg_multixact/offsets/0000 that should not be there and will eventually cause problems in VACUUM. However, in common cases this file is actually valid and must not be removed. * Correctly initialize padding bytes in contrib/btree_gist indexes on bit columns. This error could result in incorrect query results due to values that should compare equal not being seen as equal. Users with GiST indexes on bit or bit varying columns should REINDEX those indexes after installing this update. * Protect against torn pages when deleting GIN list pages. This fix prevents possible index corruption if a system crash occurs while the page update is being written to disk. * Don't clear the right-link of a GiST index page while replaying updates from WAL. This error could lead to transiently wrong answers from GiST index scans performed in Hot Standby. * See release notes for a full list of changes: http://www.postgresql.org/docs/9.3/static/release-9-3-5.html /usr/share/doc/packages/postgresql93/HISTORY - Remove obsolete postgresql-plperl.patch ------------------------------------------------------------------ ------------------ 2014-7-23 - Jul 23 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 24.7.0 (bnc#887746) * MFSA 2014-56/CVE-2014-1547/CVE-2014-1548 Miscellaneous memory safety hazards * MFSA 2014-61/CVE-2014-1555 (bmo#1023121) Use-after-free with FireOnStateChange event * MFSA 2014-62/CVE-2014-1556 (bmo#1028891) Exploitable WebGL crash with Cesium JavaScript library * MFSA 2014-63/CVE-2014-1544 (bmo#963150) Use-after-free while when manipulating certificates in the trusted cache (solved with NSS 3.16.2 requirement) * MFSA 2014-64/CVE-2014-1557 (bmo#913805) Crash in Skia library when scaling high quality images - require NSS 3.16.2 ++++ kernel-docs: - net/mlx4_en: Fix selftest failing on non 10G link speed (bnc#888058). - ibmvscsi: Add memory barriers for send / receive (bnc#885382). - ibmvscsi: Abort init sequence during error recovery (bnc#885382). - commit d93e8e3 ++++ python-base: - CVE-2014-4650-CGIHTTPServer-traversal.patch: CGIHTTPServer file disclosure and directory traversal through URL-encoded characters (CVE-2014-4650, bnc#885882) - python-2.7.7-mhlib-linkcount.patch: remove link count optimizations that are incorrect on btrfs (and possibly other filesystems) - explicitly enable IPv6 support in python-base as well as python ------------------------------------------------------------------ ------------------ 2014-7-22 - Jul 22 2014 ------------------- ------------------------------------------------------------------ ++++ augeas: - Update fixes for bnc#885003 to actually save things: - Added patches: * bnc-885003-CVE-2012-0786-crossmount.patch - Modified patches: * bnc-885003-CVE-2012-0786-symlink-prevention.patch ------------------------------------------------------------------ ------------------ 2014-7-18 - Jul 18 2014 ------------------- ------------------------------------------------------------------ ++++ apache2: - httpd-2.2.x-bnc887768-CVE-2014-0231_mod_cgid_DoS_via_no_stdin_read.diff Introduces new configuration parameter CGIDScriptTimeout, which defaults to the value of parameter Timeout . CGIDScriptTimeout is set to 60s if mod_cgid is loaded/active, via /etc/apache2/conf.d/cgid-timeout.conf . The new directive and its effect prevent request workers to be eaten until starvation if cgi programs do not send output back to the server within the timout set by CGIDScriptTimeout. CVE-2014-0231 , [bnc#887768] - httpd-2.2.x-bnc887765-CVE-2014-0226-mod_status_race.diff Don't rely on live references of the scoreboard for an individual worker to remain the same while building the response within mod_status, but copy the scoreboard entry. This avoids a race condition and a consecutive heap overflow. CVE-2014-0226 , [bnc#887765] ++++ pulseaudio: - Add pulseaudio-bnc881524-rtp.patch. CVE-2014-3970 Denial of service in module-rtp-recv ------------------------------------------------------------------ ------------------ 2014-7-17 - Jul 17 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - scsi_transport_fc: Cap dev_loss_tmo by fast_io_fail (bnc#887608). - commit 977ac64 ++++ libzypp: - fix wrong '//' when extending URLs with an empty path (bnc#885254) - version 9.37.8 (8) ++++ php53: - security update: * php-CVE-2014-4670.patch [bnc#886059] * php-CVE-2014-4698.patch [bnc#886060] * php-CVE-2014-4721.patch [bnc#885961] ++++ rubygem-activerecord-3_2: - fix CVE-2014-3482: SQL injection vulnerability in 'bitstring' quoting (bnc#885636) CVE-2014-3482.patch: patch that fixes the vulnerability ------------------------------------------------------------------ ------------------ 2014-7-16 - Jul 16 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Add patch gcc48-bnc887141.patch to fix INTERNAL_SYSCALL_NCS miscompile in glibc. [bnc#887141] - Add patch gcc48-bnc884738.patch to fix kernel atomic_dec_and_test miscompile. [bnc#884738] ++++ kernel-docs: - hugetlb: don't use ERR_PTR with VM_FAULT* values - mm, hugetlb: add VM_NORESERVE check in vma_has_reserves() - mm, hugetlb: change variable name reservations to resv - mm, hugetlb: decrement reserve count if VM_NORESERVE alloc page cache - mm: hugetlb: defer freeing pages when gathering surplus pages - mm, hugetlb: do not use a page in page cache for cow optimization - mm, hugetlb: fix and clean-up node iteration code to alloc or free - mm, hugetlb: fix race in region tracking - mm, hugetlb: fix subpool accounting handling - mm, hugetlb: improve, cleanup resv_map parameters - mm, hugetlb: improve page-fault scalability - mm, hugetlb: move up the code which check availability of free huge page - mm, hugetlb: protect reserved pages when soft offlining a hugepage - mm, hugetlb: remove decrement_hugepage_resv_vma() - mm, hugetlb: remove redundant list_empty check in gather_surplus_pages() - mm, hugetlb: remove resv_map_put - mm, hugetlb: remove useless check about mapping type - mm, hugetlb: return a reserved page to a reserved pool if failed - mm, hugetlb: trivial commenting fix - mm, hugetlb: unify region structure handling kabi - mm, hugetlb: unify region structure handling - mm, hugetlb: use vma_resv_map() map types - mm/hugetlb.c: use long vars instead of int in region_count() (Hugetlb Fault Scalability (fate#317271)). - commit 28f38bd ++++ xen: - bnc#882092 - Installing SLES12 as a VM on SLES11 SP3 fails because of btrfs in the VM Add package dependency on grub2-x86_64-xen in xen-tools xen.spec ------------------------------------------------------------------ ------------------ 2014-7-15 - Jul 15 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - net/mlx4_en: Fix a race between napi poll function and RX ring cleanup (bnc#863586). - commit cfac2f9 ++++ xorg-x11-server: - U_Render-Add-PanoramiX-aware-requests-for-CreateSolidFill-Create-Gradient.patch Since the PanoramiX wrappers for RenderCreateSolidFill, CreateLinearGradient, CreateRadialGradient and CreateConicalGradient where missing but indicated as supported by the RENDER protocol version clients expecting these were crashing (bnc#864911). ------------------------------------------------------------------ ------------------ 2014-7-14 - Jul 14 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - kabi: hide bnc#860593 changes of struct inetpeer_addr_base (bnc#860593). - inetpeer: initialize ->redirect_genid in inet_getpeer() (bnc#860593). - inet: add a redirect generation id in inetpeer (bnc#860593). - commit bdb98b5 ------------------------------------------------------------------ ------------------ 2014-7-12 - Jul 12 2014 ------------------- ------------------------------------------------------------------ ++++ libtasn1: - In order to update libtasn1 with the patches required for https://bugzilla.novell.com/show_bug.cgi?id=880737, we have to do the following: - Pull the source code for libtasn1-3.6 - Wrap the entire API and make it internal-only. - Expose the same API/ABI as that of libtasn1-1.5. Backporting patches to version 1.5 is unfeasible. From now on we should be able to use patches for version 3.x, while maintaining the old API/ABI. ------------------------------------------------------------------ ------------------ 2014-7-11 - Jul 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.suse/perf-core-add-weighted-samples.patch for series2git. - commit 0945cd7 ------------------------------------------------------------------ ------------------ 2014-7-10 - Jul 10 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - USB: handle LPM errors during device suspend correctly (bnc#849123). - commit 79f8b30 - af_iucv: correct cleanup if listen backlog is full (bnc#885262, LTC#111728). - sclp_vt220: Enable integrated ASCII console per default (bnc#885262, LTC#112035). - commit e5e00e5 ------------------------------------------------------------------ ------------------ 2014-7-9 - Jul 9 2014 ------------------- ------------------------------------------------------------------ ++++ hal: - rc.hal: rewrite rewrite X keyboard configuration .fdi file if required, i.e. system keyboard layout has changed; this way this won't be done any longer in xdm init script, which resulted in a race condition before (bnc#841789) ++++ kernel-docs: - tcp: adapt selected parts of RFC 5682 and PRR logic (bnc#879921). - Refresh patches.fixes/tcp-allow-to-disable-cwnd-moderation-in-TCP_CA_Loss-.patch. - commit 7dd7926 - Refresh patches.fixes/dlm-abort-listening-connection.patch. The hunk was misplaced: nodeid was used before check. - commit c36987d ++++ samba: - Reduce printer_list.tdb lock contention during printcap update; (bso#10652); (bnc#883870). + Only update the printer share inventory when needed. - Avoid double-free in get_print_db_byname; (bso#10699). ++++ xorg-x11-server: - U_fb-Don-t-crash-when-pixman_image_create_bits-returns-NULL.patch Some formats used for pictures may not work with the chosen framebuffer format. This may happen especially if the framebuffer is packed 24bpp (bnc#886213). ------------------------------------------------------------------ ------------------ 2014-7-8 - Jul 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - sctp: Fix sk_ack_backlog wrap-around problem (bnc#885422, CVE-2014-4667). - commit fde331e ++++ lzo: - update license header to SPDX format ------------------------------------------------------------------ ------------------ 2014-7-7 - Jul 7 2014 ------------------- ------------------------------------------------------------------ ++++ ant-contrib: - Clean up a bit with spec-cleaner ++++ kernel-docs: - usb: Don't enable LPM if the exit latency is zero (bnc#832309). - commit b43e26e ------------------------------------------------------------------ ------------------ 2014-7-4 - Jul 4 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - shmem: fix faulting into a hole while it's punched, take 2 (bnc#883518, CVE-2014-4171). - commit df18687 - x86_32, entry: Do syscall exit work on badsys (CVE-2014-4508) (bnc#883724, CVE-2014-4508). - commit e42f120 - ptrace,x86: force IRET path after a ptrace_stop() (bnc#885725, CVE-2014-4699). - commit 451cc04 ------------------------------------------------------------------ ------------------ 2014-7-3 - Jul 3 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.suse/pagecache-limit-reduce-zone-lrulock-bouncing.patch. Fixed UNINTERRUPTIBLE sleep vs. INTERRUPTIBLE wakeup - commit f33ae02 - Add bug reference (bnc#879695) - commit 67c18f1 - x86_32, entry: Do syscall exit work on badsys (CVE-2014-4508) (bnc#883724, CVE-2014-4508). - commit 0a52197 ------------------------------------------------------------------ ------------------ 2014-7-2 - Jul 2 2014 ------------------- ------------------------------------------------------------------ ++++ apache2: - httpd-2.2.x-bnc869105-CVE-2013-6438-mod_dav-dos.diff: properly remove whitespace characters from CDATA sections to avoid remote denial of service by a crash of the apache server process. This is CVE-2013-6438 [bnc#869105]. ++++ kernel-docs: - sched: fix the theoretical signal_wake_up() vs schedule() race (bnc#876055). - commit 90f5625 - block: add cond_resched() to potentially long running ioctl discard loop (bnc#884725). - commit 1a1fdb2 - NFSD: Don't hand out delegations for 30 seconds after recalling them (bnc#880370). - commit 756294d ------------------------------------------------------------------ ------------------ 2014-7-1 - Jul 1 2014 ------------------- ------------------------------------------------------------------ ++++ augeas: - Fix CVE-2012-0786 and CVE-2013-6412 wrt bnc#885003 and bnc#853044: * bnc-885003-CVE-2012-0786-fopen.patch * bnc-885003-CVE-2012-0786-permissions.patch * bnc-885003-CVE-2012-0786-symlink-prevention.patch ++++ kernel-docs: - drm/mgag200: Initialize data needed to map fbdev memory (bnc #806990). - Refresh patches.drm/drm-mgag200-Fix-framebuffer-pitch-calculation.patch. - Delete patches.drm/drm-mgag200-Initialized-data-needed-to-map-fbdev-memory.patch. - commit fef48ec ++++ libqb: - epoll: don't miss poll events under high load - ipc_shm: fix error handling in qb_ipcs_shm_connect() - ringbuffer: fix size in qb_rb_create_from_file() - trie: cleanup ref count logic in trie_notify_del - ipcs: Cleanup unnecessary reference counting - Upstream version cs: b103e1ae61f6fc288cfb228344f24508adaaba9a ++++ lzo: - added lzo-integer_overflow.patch: (bnc#883947) CVE-2014-4607 DoS or possible RCE by allowing an attacker to change control flow. ++++ mozilla-nss: - update to 3.16.2 * newly required for Firefox 31 New Functionality: - DTLS 1.2 is supported. - The TLS application layer protocol negotiation (ALPN) extension is also supported on the server side. - RSA-OEAP is supported. Use the new PK11_PrivDecrypt and PK11_PubEncrypt functions with the CKM_RSA_PKCS_OAEP mechanism. - New Intel AES assembly code for 32-bit and 64-bit Windows, contributed by Shay Gueron and Vlad Krasnov of Intel. New Functions: - CERT_AddExtensionByOID - adds an extension to a certificate (OID is represented by a SECItem instead of a SECOidTag). - PK11_PrivDecrypt/PK11_PubEncrypt - de/encrypts with a private key. The algorithm is specified with a CK_MECHANISM_TYPE. New Macros: - SSL_ERROR_NEXT_PROTOCOL_NO_CALLBACK - An SSL error code that means the next protcol negotiation extension was enabled, but the callback was cleared prior to being needed. - SSL_ERROR_NEXT_PROTOCOL_NO_PROTOCOL - An SSL error code that means the server supports no protocols that the client advertises in the ALPN extension. Notable Changes: - The btoa command has a new command-line option -w suffix, which causes the output to be wrapped in BEGIN/END lines with the given suffix. Use "c" as a shorthand for the suffix CERTIFICATE. - The certutil commands supports additionals types of subject alt name extensions - The certutil commands supports generic certificate extensions, by loading binary data from files, which have been prepared using external tools, or which have been extracted and dumped to file from other existing certificates - The certutil command has three new certificate usage specifiers The pp command has a new command-line option -u, which means "use UTF-8". The default is to show a non-ASCII character as ".". - On Linux, NSS is built with the -ffunction-sections - fdata-sections compiler flags and the --gc-sections linker flag to allow unused functions to be discarded. ++++ php53: - security update [bnc#884986], [bnc#884987], [bnc#884989], [bnc#884990], [bnc#884991], [bnc#884992] - added patches: * php-5.3.17-CVE-2014-0207.patch * php-5.3.17-CVE-2014-3478.patch * php-5.3.17-CVE-2014-3479.patch * php-5.3.17-CVE-2014-3480.patch * php-5.3.17-CVE-2014-3487.patch * php-5.3.17-CVE-2014-3515.patch ------------------------------------------------------------------ ------------------ 2014-6-30 - Jun 30 2014 ------------------- ------------------------------------------------------------------ ++++ cmake: - search for ppc64 in FindJNI on ppc64le as well cmake-jni-ppc64le-ppc64.patch ++++ dhcp: - Applied patch for the contrib/ldap/dhcpd-conf-to-ldap script fixing subclass statement handling (bnc#878846,[ISC-Bugs #36409]) [+ dhcp-4.2.4-P2-bnc878846-conf-to-ldap.patch] ++++ kdebase4-workspace: - backport fix for CVE-2013-4132 and CVE-2013-4133 (bnc#829857) ++++ kernel-docs: - x86 thermal: Re-enable power limit notification interrupt by default (bnc#882317). - x86 thermal: Disable power limit notification interrupt by default (bnc#882317). - x86 thermal: Delete power-limit-notification console messages (bnc#882317). - commit 49797c6 - ACPI / PAD: call schedule() when need_resched() is true (bnc#866911). - commit 322718e - CacheFiles: Don't try to dump the index key if the cookie has been cleared (bnc#880344). - FS-Cache: Don't use spin_is_locked() in assertions (bnc#880344). - FS-Cache: The retrieval remaining-pages counter needs to be atomic_t (bnc#880344). - FS-Cache: Simplify cookie retention for fscache_objects, fixing oops (bnc#880344). - Fix __wait_on_atomic_t() to call the action func if the counter != 0 (bnc#880344). - Add wait_on_atomic_t() and wake_up_atomic_t() (bnc#880344). - FS-Cache: Fix object state machine to have separate work and wait states (bnc#880344). - FS-Cache: Wrap checks on object state (bnc#880344). - FS-Cache: Uninline fscache_object_init() (bnc#880344). - FS-Cache: Don't sleep in page release if __GFP_FS is not set (bnc#880344). - fs/fscache: remove spin_lock() from the condition in while() (bnc#880344). - FS-Cache: Clear remaining page count on retrieval cancellation (bnc#880344). - FS-Cache: Mark cancellation of in-progress operation (bnc#880344). - FS-Cache: One of the write operation paths doesn't set the object state (bnc#880344). - FS-Cache: Fix signal handling during waits (bnc#880344). - FS-Cache: Add transition to handle invalidate immediately after lookup (bnc#880344). - NFS: nfs_migrate_page() does not wait for FS-Cache to finish with a page (bnc#880344). - FS-Cache: Exclusive op submission can BUG if there's been an I/O error (bnc#880344). - FS-Cache: Limit the number of I/O error reports for a cache (bnc#880344). - FS-Cache: Initialise the object event mask with the calculated mask (bnc#880344). - FS-Cache: Convert the object event ID #defines into an enum (bnc#880344). - CacheFiles: Add missing retrieval completions (bnc#880344). - CacheFiles: Implement invalidation (bnc#880344). - VFS: Make more complete truncate operation available to CacheFiles (bnc#880344). - FS-Cache: Provide proper invalidation (bnc#880344). - FS-Cache: Fix operation state management and accounting (bnc#880344). - FS-Cache: Make cookie relinquishment wait for outstanding reads (bnc#880344). - CacheFiles: Make some debugging statements conditional (bnc#880344). - FS-Cache: Check that there are no read ops when cookie relinquished (bnc#880344). - CacheFiles: Downgrade the requirements passed to the allocator (bnc#880344). - CacheFiles: Fix the marking of cached pages (bnc#880344). - commit 49fab4a ++++ xen: - bnc#881900 - XEN kernel panic do_device_not_available() 29174-x86-EFI-allow-FPU-XMM-use-in-runtime-service-functions.patch - bnc#833483 - Boot Failure with xen kernel in UEFI mode with error "No memory for trampoline" 29174-x86-EFI-allow-FPU-XMM-use-in-runtime-service-functions.patch - Upstream patches from Jan 29056-x86-amd_ucode-flip-revision-numbers-in-printk.patch 29090-ACPI-Prevent-acpi_table_entries-from-falling-into-a-infinite-loop.patch 29103-VT-d-honor-APEI-firmware-first-mode-in-XSA-59-workaround-code.patch 29106-x86-fix-reboot-shutdown-with-running-HVM-guests.patch 29108--x86-domctl-two-functional-fixes-to-XEN_DOMCTL_-gs-etvcpuextstate.patch 29109-avoid-crash-on-HVM-domain-destroy-with-PCI-passthrough.patch 29113-x86-HVM-refine-SMEP-test-in-HVM_CR4_GUEST_RESERVED_BITS.patch 29148-x86-EFI-improve-boot-time-diagnostics.patch 29150-x86-mce-don-t-spam-the-console-with-CPUx-Temperature-z.patch 29158-page-alloc-scrub-pages-used-by-hypervisor-upon-freeing.patch (Replaces xsa100.patch) 29171-IOMMU-prevent-VT-d-device-IOTLB-operations-on-wrong-IOMMU.patch ------------------------------------------------------------------ ------------------ 2014-6-29 - Jun 29 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ACPI: Fix bug when ACPI reset register is implemented in system memory (bnc#882900). - commit 95930dc ------------------------------------------------------------------ ------------------ 2014-6-28 - Jun 28 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Ignore 'flags' change to event_constraint (bnc#876114, fate#317174). - Reuse existing 'state' field to indicate PERF_X86_EVENT_PEBS_LDLAT (bnc#876114, fate#317174). - Ignore 'data_src'/'weight' changes to perf_sample_data (bnc#876114, fate#317174). - perf: Add generic memory sampling interface (bnc#876114, fate#317174). - perf/core: Add weighted samples (bnc#876114, fate#317174). - perf/x86: Add flags to event constraints (bnc#876114, fate#317174). - perf/x86: Add memory profiling via PEBS Load Latency (bnc#876114, fate#317174). - Refresh patches.fixes/perf-x86-fix-offcore_rsp-valid-mask-for-snb-ivb.patch. - commit 30c4a1f ------------------------------------------------------------------ ------------------ 2014-6-27 - Jun 27 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r212056) * Fixes ppc64le miscompile with VSX vector extracts. [bnc#884628] * Fixes -march=native behavior when running in QEMU/KVM. [ggo#61570] * Fixes wrong-code on i686 with int to double conversions. [ggo#61423] * Fixes wrong-code on aarch64 for TLS accesses. [ggo#61545] ++++ kernel-docs: - mm, oom: fix badness score underflow (bnc#884582, bnc#884767). - mm, oom: normalize oom scores to oom_score_adj scale only for userspace (bnc#884582, bnc#884767). - commit cb351f4 ------------------------------------------------------------------ ------------------ 2014-6-26 - Jun 26 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Add libgcj48-rpmlintrc and libffi48-rpmlintrc as sources. ++++ kernel-docs: - Update references patches.drivers/alsa-0001-control-Protect-user-controls-against-concurren (CVE-2014-4652,bnc#883795) patches.drivers/alsa-0002-control-Fix-replacing-user-controls (CVE-2014-4654,CVE-2014-4655,bnc#883795) patches.drivers/alsa-0003-control-Don-t-access-controls-outside-of-protec (CVE-2014-4653,bnc#883795) patches.drivers/alsa-0004-control-Handle-numid-overflow (CVE-2014-4656,bnc#883795) patches.drivers/alsa-0005-control-Make-sure-that-id-index-does-not-overfl (CVE-2014-4656,bnc#883795) - commit 38d0c15 ++++ xorg-x11-server: - Extended/fixed: * u_PanoramiX-Disable-Xinerama-as-early-as-possible.patch * u_PanoramiX-Store-command-line-setting-of-PanoramiX-in-a-separate-variable.patch ------------------------------------------------------------------ ------------------ 2014-6-25 - Jun 25 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ipv6: don't set DST_NOCOUNT for remotely added routes (bnc#867531, CVE-2014-2309). - commit 83968af - rpm/config.sh: Build in the OBS against SUSE:SLE-11:SP3 - commit 9f5fcdc - Fix kABI breakage due to addition of user_ctl_lock (bnc#883795). - ALSA: control: Make sure that id->index does not overflow (bnc#883795). - ALSA: control: Handle numid overflow (bnc#883795). - ALSA: control: Don't access controls outside of protected regions (bnc#883795). - ALSA: control: Fix replacing user controls (bnc#883795). - ALSA: control: Protect user controls against concurrent access (bnc#883795). - commit cb2a85d ++++ rpm: - add query support for the new weak dependency tags used in sle-12 [bnc#884373] - remove harmful --target option passing from the configure macro [bnc#870358] - disable broken ldconfig skipping code [bnc#725478] ------------------------------------------------------------------ ------------------ 2014-6-24 - Jun 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drivers/rtc/interface.c: fix infinite loop in initializing the alarm (bnc#871676). - commit 268aaef - Revert "udp: remove redundant variable" (bnc#881171). - commit e330dcd ------------------------------------------------------------------ ------------------ 2014-6-23 - Jun 23 2014 ------------------- ------------------------------------------------------------------ ++++ glibc: - nss-files-long-lines.patch: Don't ignore too long lines in nss_files (bnc#883217, BZ #17079) ++++ kernel-docs: - bnx2x: Fix kernel crash and data miscompare after EEH recovery (bnc#881761). - bnx2x: Adapter not recovery from EEH error injection (bnc#881761). - commit 31c3af5 - drm/ast: Fix double lock at PM resume (bnc#883380). - drm/ast: add widescreen + rb modes from X.org driver (v2) (bnc#883380). - drm/ast: deal with bo reserve fail in dirty update path (bnc#883380). - drm/ast: do not attempt to acquire a reservation while in an interrupt handler (bnc#883380). - drm/ast: fix the ast open key function (bnc#883380). - drm/ast: fix value check in cbr_scan2 (bnc#883380). - drm/ast: inline reservations (bnc#883380). - drm/ast: invalidate page tables when pinning a BO (bnc#883380). - drm/ast: rename the mindwm/moutdwm and deinline them (bnc#883380). - drm/ast: resync the dram post code with upstream (bnc#883380). - drm: ast: use drm_can_sleep (bnc#883380). - drm/ast: use drm_modeset_lock_all (bnc#883380). - drm/: Unified handling of unimplemented fb->create_handle (bnc#883380). - drm/mgag200,ast,cirrus: fix regression with drm_can_sleep conversion (bnc#883380). - Update patches.drm/drm-ast-add-AST-2400-support.patch (bnc#883380). - commit dc3e71b - Btrfs: fix a crash when running balance and defrag concurrently. - Delete patches.suse/btrfs-8165-fix-negative-qgroup-tracking-from-owher.patch. - commit d1ad835 - dlm: keep listening connection alive with sctp mode (bnc#881939) - commit 417dabc ++++ xalan-j2: - Fix bnc#870082 CVE-2014-0107 - insufficient secure processing: * xalan-j2-CVE-2014-0107.patch ++++ xorg-x11-server: - n_ddx-vnc-Implement-DeleteInputDeviceRequest-in-Xvnc.patch Implement DeleteInputDeviceRequest in Xvnc to avoid server crash when the Xserver restarts after a server reset (Patch by Michal Srb ) (bnc#880745). ------------------------------------------------------------------ ------------------ 2014-6-20 - Jun 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/mgag200: Consolidate depth/bpp handling (bnc#882324). - Delete patches.drm/drm-mgag200-on-cards-with-2MB-VRAM-default-to-16-bit.patch. - Add patches.drm/drm-mgag200-Consolidate-depth-bpp-handling.patch. - commit bf1f113 - series.conf: Clarify comment about Xen kabi adjustments (bnc#876114#c25) - commit 02b03f7 - patches.suse/btrfs-8250-fix-use-of-uninit-ret-in-end_extent_writepage.patch: - patches.suse/btrfs-8249-use-right-type-to-get-real-comparison.patch: - patches.suse/btrfs-8248-don-t-check-nodes-for-extent-items.patch: - patches.suse/btrfs-8247-free-delayed-node-outside-of-root-inode_lock.patch: (bnc#866864). - patches.suse/btrfs-8245-fix-double-free-in-find_lock_delalloc_range.patch: - patches.suse/btrfs-8242-make-sure-there-are-not-any-read-requests-befo.patch: - patches.suse/btrfs-8241-fix-possible-memory-leak-in-btrfs_create_tree.patch: - patches.suse/btrfs-8240-output-warning-instead-of-error-when-loading-f.patch: - patches.suse/btrfs-8239-make-FS_INFO-ioctl-available-to-anyone.patch: - patches.suse/btrfs-8238-make-DEV_INFO-ioctl-available-to-anyone.patch: - patches.suse/btrfs-8236-retrieve-more-info-from-FS_INFO-ioctl.patch: - patches.suse/btrfs-8234-more-efficient-io-tree-navigation-on-wait_exte.patch: - patches.suse/btrfs-8233-make-device-scan-less-noisy.patch: - patches.suse/btrfs-8231-correctly-set-profile-flags-on-seqlock-retry.patch: - patches.suse/btrfs-8230-abort-the-transaction-when-we-don-t-find-our-e.patch: - patches.suse/btrfs-8229-return-EPERM-when-deleting-a-default-subvolume.patch: (bnc#869934). - patches.suse/btrfs-8228-wake-up-scrub_pause_wait-as-much-as-we-can.patch: - patches.suse/btrfs-8227-cancel-scrub-on-transaction-abortion.patch: - patches.suse/btrfs-8226-fix-a-possible-deadlock-between-scrub-and-tran.patch: - patches.suse/btrfs-8225-wake-up-transaction-thread-upon-remount.patch: - patches.suse/btrfs-8224-avoid-warning-bomb-of-btrfs_invalidate_inodes.patch: - patches.suse/btrfs-8223-Return-EXDEV-for-cross-file-system-snapshot.patch: - commit 0b65b40 - sched: Consider pi boosting in setscheduler. - sched: Queue RT tasks to head when prio drops. - commit e3bccb1 - sched: Adjust sched_reset_on_fork when nothing else changes. - commit 96d9cc1 - tcp: allow to disable cwnd moderation in TCP_CA_Loss state (bnc#879921). - commit 1bfc39f - bonding: fix vlan_features computing (bnc#872634). - vlan: more careful checksum features handling (bnc#872634). - commit f19bb4c - xfrm: fix race between netns cleanup and state expire notification (bnc#879957). - commit 5a08e21 - sched: Fix clock_gettime(CLOCK__CPUTIME_ID) monotonicity (bnc#880357). - commit 5f2a932 - skbuff: skb_segment: orphan frags before copying (bnc#867723 CVE-2014-0131). - commit 213221a ++++ xorg-x11-server: - Prevent crash at the end of 2nd server generation when number of privates differ between 1st and 2nd: u_Privates-reset-item-size-in-dixResetPrivates.patch - Consoldiate handling of Xinerama: * u_PanoramiX-Disable-Xinerama-as-early-as-possible.patch Move xinerama disable when only one screen is present to main loop. * Improve xinerama command line option handling u_PanoramiX-Store-command-line-setting-of-PanoramiX-in-a-separate-variable.patch All patches: (bnc#883598) - U_SecurityResource-should-not-segfault-when-client-owning-resource-has-exited.patch * This upsream patch papers over a crash when object belongs to a client that no longer exists (bnc#883516). ------------------------------------------------------------------ ------------------ 2014-6-18 - Jun 18 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Reorder APEI patches to make the patch series bisectable - commit 765996d - Remove bnc#861980 fix (customer changed their mind and decided to wait for SLE12 instead) - Delete patches.fixes/ipvs-handle-IPv6-fragments-with-one-packet-schedulin.patch. - Delete patches.fixes/netfilter-reuse-skb-nfct_reasm-for-ipvs-conn-referen.patch. - Delete patches.kabi/kabi-hide-modifications-of-struct-sk_buff-done-by-bn.patch. - commit 4d3940f ++++ rxvt-unicode: - use spdx format for the license: GPL-2.0+ ++++ xorg-x11-server: - U_dix-try-to-ring-the-bell-even-if-the-current-device-.patch * Try to make keyboard bell ring on all devices attached to master keyboard (bnc#879019). ------------------------------------------------------------------ ------------------ 2014-6-17 - Jun 17 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - exec/ptrace: fix get_dumpable() incorrect tests (bnc#847652, CVE-2013-2929). - commit 381fa65 ++++ libvirt: - Fix races in setting/getting domain state b260a77e-state-race.patch, f26701f5-state-race.patch, 89759301-state-race.patch bnc#882598 ++++ php53: - security update: * php-5.3.17-CVE-2014-4049.patch [bnc#882992] ------------------------------------------------------------------ ------------------ 2014-6-16 - Jun 16 2014 ------------------- ------------------------------------------------------------------ ++++ apache2: - httpd-2.2.x-bnc869106-CVE-2014-0098-log_cookie_c.diff: correction to parsing of cookie content; this can lead to a crash with a specially designed cookie sent to the server. This is CVE-2014-0098 [bnc#869106] . - httpd-2.2.x-bnc859916-enable-ecc.diff: ECC support should not be missing. [bnc#859916] ++++ glibc: - psfaa.patch: copy filename argument in posix_spawn_file_actions_addopen (CVE-2014-4043, bnc#882600, BZ #17048) ++++ kernel-docs: - drm/ast: Initialized data needed to map fbdev memory (bnc#880007). - Delete patches.drm/drm-ast-Initialized-data-needed-to-map-fbdev-memory.patch. - commit 3705d0b ++++ libgphoto2: - disable mtp autoprobing to avoid messing with nonstandard usb devs - open serial devices with O_NOCTTY to avoid getting the controlling tty in daemonized usage (gphotofs) (bnc#878311) ------------------------------------------------------------------ ------------------ 2014-6-13 - Jun 13 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - filter: prevent nla extensions to peek beyond the end of the message (bnc#877257 CVE-2014-3144 CVE-2014-3145). - commit 1884a46 - pagecachelimit: reduce lru_lock contention for heavy parallel kabi fixup: (bnc#878509, bnc#864464). - pagecachelimit: reduce lru_lock contention for heavy parallel reclaim (bnc#878509, bnc#864464). - Refresh patches.fixes/mm-vmscan-only-defer-compaction-for-failed-order-and-higher.patch. - Refresh patches.fixes/mm-vmscan-store-priority-in-struct-scan_control.patch. - Refresh patches.suse/pagecache-limit-fix-shmem-deadlock.patch. - commit 7203b05 - auditsc: audit_krule mask accesses need bounds checking (bnc#880484, CVE-2014-3917). - commit 56b36f8 ++++ libtasn1: - Add bnc880735-commit*. Fix for CVE-2014-3468. - Add bnc880738-commit*. Fix for CVE-2014-3469. ++++ libvirt: - Add PCI multi-domain support to the qemu driver 17133e37-pci-multidomain.patch, 1e947cf7-qemu-pci-multidomain.patch bnc#882661 ++++ timezone-java: - update to 2014e (bnc#882684): * Egypt's 2014 Ramadan-based transitions are June 26 and July 31 at 24:00. Similarly, Morocco's are June 28 at 03:00 and August 2 at 02:00. - update to 2014d: * zic no longer generates files containing time stamps before the Big Bang. This works around GNOME bug 730332. - tzcode-revert-low-valued.patch: remove, no longer needed. ++++ vhostmd: - Further updates to vmhostd.xml - Support both xen and non-xen hypervisors (kvm) - Document reserved characters in 'action' field - Revert xen_version back to major/minor/extra to maintain compatability with xend - Minor syntax and legibility cleanup vhostmd-conf.patch bnc#872736 ++++ xorg-x11-server: - n_vnc_ignore_numlock.patch * Ignore numlock in Xvnc. Following keys from VNC client will be already modulated by numlock on client side. (bnc#878446) ------------------------------------------------------------------ ------------------ 2014-6-12 - Jun 12 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r211485). * Fixes ppc64le V1TI memory operation miscompile. [bnc#882300] * Fixes ppc64le miscompile of calls to K&R functions. [ggo#61300] ++++ kernel-docs: - drm/ast: add AST 2400 support (bnc#880007). - commit d03385e - drm/mgag200: on cards with < 2MB VRAM default to 16-bit (bnc#882324). - drm/mgag200: fix typo causing bw limits to be ignored on some chips (bnc#882324). - commit 2a5f6f5 - TTY: serial, cleanup include file (bnc#881571). - TTY: serial, fix includes in some drivers (bnc#881571). - serial_core: Fix race in uart_handle_dcd_change (bnc#881571). - Refresh patches.fixes/n_tty-Fix-n_tty_write-crash-when-echoing-in-raw-mode.patch. - commit 5d0bb33 ++++ samba: - Fix segmentation fault in smbd_marshall_dir_entry()'s SMB_FIND_FILE_UNIX handler; CVE-2014-3493; (bnc#883758). ------------------------------------------------------------------ ------------------ 2014-6-11 - Jun 11 2014 ------------------- ------------------------------------------------------------------ ++++ dhcp: - Added /etc/bindresvport.blacklist to dhcp server chroot file lists as it seems to block its start in some cases (bnc#842360). ++++ kernel-docs: - drm/ast: Fix memleaks in error path in ast_fb_create(). - commit 2cb43ef - drm/ast: Add an crtc_disable callback to the crtc helper funcs - drm/ast: Simplify function ast_ttm_placement(). - drm/ast: Simplify function ast_bo_unpin(). - drm/ast: Make local function ast_bo_unref() static. - drm/ast: Initialized data needed to map fbdev memory (bnc#880007). - drm/ast: Free container instead of member in ast_user_framebuffer_destroy(). - drm/ast: Fix memleak in error path in ast_bo_create(). - commit 70310c3 - vhost: fix total length when packets are too short (bnc#870576 CVE-2014-0077). - vhost: validate vhost_get_vq_desc return value (bnc#870173 CVE-2014-0055). - commit de95996 - Don't allow scheduler time to go backwards (bnc#880357). - commit a834452 - Refresh patches.drivers/mlx4-use-GFP_NOFS-during-ipoib-tx-path.patch: update upstream references. - commit bb665a3 ++++ vhostmd: - Various updates to vmhostd.xml - Replace xm commands with xl commands - Add /sbin and /bin to - Use xen_version for VirtualizationProductInfo vhostmd-conf.patch ------------------------------------------------------------------ ------------------ 2014-6-10 - Jun 10 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 24.6.0 (bnc#881874) * MFSA 2014-48/CVE-2014-1533/CVE-2014-1534 (bmo#921622, bmo#967354, bmo#969517, bmo#969549, bmo#973874, bmo#978652, bmo#978811, bmo#988719, bmo#990868, bmo#991981, bmo#992274, bmo#994907, bmo#995679, bmo#995816, bmo#995817, bmo#996536, bmo#996715, bmo#999651, bmo#1000598, bmo#1000960, bmo#1002340, bmo#1005578, bmo#1007223, bmo#1009952, bmo#1011007) Miscellaneous memory safety hazards (rv:30.0 / rv:24.6) * MFSA 2014-49/CVE-2014-1536/CVE-2014-1537/CVE-2014-1538 (bmo#1005584, bmo#989994, bmo#999274) Use-after-free and out of bounds issues found using Address Sanitizer * MFSA 2014-52/CVE-2014-1541 (bmo#1000185) Use-after-free with SMIL Animation Controller * MFSA 2014-55/CVE-2014-1545 (bmo#1018783) Out of bounds write in NSPR - require NSPR 4.10.6 because of MFSA 2014-55/CVE-2014-1545 ++++ ctdb: - Fix temp file vulnerabilities; CVE-2013-4159; (bnc#836064). + Create and specify runtime directory for .socket_lock. ++++ dhcp: - Fixed dhcp server start script to use correct libdir (bnc#868250) - Fixed dhcp server to chown leases to run user at start (bnc#868253) [+ 0020-dhcp-4.2.x-chown-server-leases.bnc868253.patch] - Fixed to write missed dhcp-ldap debug level messages (bnc#835818) [+ 0019-dhcp-4.2.x-ldap-debug-write.bnc835818.patch] ++++ kernel-docs: - powerpc/perf: Power8 PMU support (bnc#832710). - powerpc/perf: Add support for SIER (bnc#832710). - powerpc/perf: Add regs_no_sipr() (bnc#832710). - powerpc/perf: Add an accessor for regs->result (bnc#832710). - powerpc/perf: Convert mmcra_sipr/sihv() to regs_sipr/sihv() (bnc#832710). - powerpc/perf: Add an explict flag indicating presence of SLOT field (bnc#832710). - commit dff86e1 ++++ mozilla-nspr: - update to version 4.10.6 (bnc#881874) * requirement for Firefox 30 * PR_GetPhysicalMemorySize should release the mach_host_self() Mach port when done with it (bmo#1009270) * "Network address type not supported" error on the Hurd (bmo#1011861) * Clang Static Analysis: useless declaration in NSPR (bmo#1003946) * MFSA 2014-55/CVE-2014-1545 (bmo#1018783) Out of bounds write in NSPR ++++ mozilla-nss: - update to 3.16.1 (bnc#881874) * required for Firefox 31 New functionality: * Added the "ECC" flag for modutil to select the module used for elliptic curve cryptography (ECC) operations. New Functions: * PK11_ExportDERPrivateKeyInfo/PK11_ExportPrivKeyInfo exports a private key in a DER-encoded ASN.1 PrivateKeyInfo type or a SECKEYPrivateKeyInfo structure. Only RSA private keys are supported now. * SECMOD_InternalToPubMechFlags converts from NSS-internal to public representation of mechanism flags New Types: * ssl_padding_xtn the value of this enum constant changed from the experimental value 35655 to the IANA-assigned value 21 New Macros * PUBLIC_MECH_ECC_FLAG a public mechanism flag for elliptic curve cryptography (ECC) operations * SECMOD_ECC_FLAG an NSS-internal mechanism flag for elliptic curve cryptography (ECC) operations. This macro has the same numeric value as PUBLIC_MECH_ECC_FLAG. Notable Changes: * Imposed name constraints on the French government root CA ANSSI (DCISS). - require NSPR 4.10.6 because of MFSA 2014-55/CVE-2014-1545 ++++ rxvt-unicode: - added 8c779aae27af9d714230fdc18f61d0e34f805328.patch: security bugfix: window property values could be queried even in secure mode (reported by Phillip Hallam-Baker). (bnc#876101 CVE-2014-3121) ------------------------------------------------------------------ ------------------ 2014-6-9 - Jun 9 2014 ------------------- ------------------------------------------------------------------ ++++ yast2-network: - bnc#840565 - configuring dummy netwok interface error disable '-o' option for dummy module (ported from OS: bnc#767946) hwcfg widget doesn't exist - 2.17.199 ------------------------------------------------------------------ ------------------ 2014-6-5 - Jun 5 2014 ------------------- ------------------------------------------------------------------ ++++ dbus-1: - dbus-cve-2014-3477.patch: Add patch for CVE-2014-3477 to fix DoS vulnerability in dbus-daemon (bnc#881137) * Based on upstream provided patch by Alban Crequy ++++ kernel-docs: - Fix missing unlock of vfsmount_lock in unlazy_walk (bnc#880437). - commit 253abee - swiotlb: don't assume PA 0 is invalid (bnc#865882). - lockref: implement lockless reference count updates using cmpxchg() (FATE#317271). - Delete patches.xen/lockref-implement-lockless-reference-count-updates-using-cmpxchg. - Refresh other Xen patches. - commit 4461f4d - rds: prevent dereference of a NULL device in rds_iw_laddr_check (bnc#871561 CVE-2014-2678). - rds: prevent dereference of a NULL device (bnc#869563 CVE-2013-7339). - commit cdbe806 ++++ kiwi: - v5.05.75 released ------------------------------------------------------------------ ------------------ 2014-6-4 - Jun 4 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - futex: Validate atomic acquisition in futex_lock_pi_atomic() (bnc#880892 CVE-2014-3153). - futex: Forbid uaddr == uaddr2 in futex_requeue(..., requeue_pi=1) (bnc#880892 CVE-2014-3153). - commit 87c5279 ++++ sendmail: - Add patch sendmail-CVE-2014-3956.patch to fix CVE-2014-3956 of bnc#881284 - Not properly closing file descriptors before executing programs ++++ xen: - bnc#880751 - VUL-0: CVE-2014-4021: xen: Hypervisor heap contents leaked to guests xsa100.patch - bnc#878841 - VUL-0: CVE-2014-3967, CVE-2014-3968 XSA-96: Xen: Vulnerabilities in HVM MSI injection 29088-x86-HVM-eliminate-vulnerabilities-from-hvm_inject_msi.patch - Upstream patches from Jan 29015-VT-d-apply-quirks-at-device-setup-time-rather-than-only-at-boot.patch 29016-VT-d-extend-error-report-masking-workaround-to-newer-chipsets.patch 29017-move-domain-to-cpupool0-before-destroying-it.patch 29040-hvmloader-PA-range-0xfc000000-0xffffffff-should-be-UC.patch 29043-ACPI-ERST-fix-table-mapping.patch 29045-VT-d-fix-mask-applied-to-DMIBAR-in-desktop-chipset-XSA-59-workaround.patch 29047-AMD-IOMMU-don-t-free-page-table-prematurely.patch 29048-x86-don-t-use-VA-for-cache-flush-when-also-flushing-TLB.patch 29050-timers-set-the-deadline-more-accurately.patch ------------------------------------------------------------------ ------------------ 2014-6-3 - Jun 3 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - af_iucv: wrong mapping of sent and confirmed skbs (bnc#878407, LTC#110452). - af_iucv: recvmsg problem for SOCK_STREAM sockets (bnc#878407, LTC#110452). - af_iucv: fix recvmsg by replacing skb_pull() function (bnc#878407, LTC#110452). - kernel: avoid page table walk on user space access (bnc#878407, LTC#110316). - commit 448a5d4 - dm snapshot: fix data corruption (bnc#846404). - commit c45bf67 - net: ipv4: current group_info should be put after using (bnc#873374 CVE-2014-2851). - commit 38bee04 ++++ kiwi: - KIWICollect: fix order of architectures * if one repository contains multiple architecture versions of same rpm. ++++ openmpi: - Update to OFED 3.12 final. ++++ php53: - security update * CVE-2014-0237 [bnc#880905] * CVE-2014-0238 [bnc#880904] ------------------------------------------------------------------ ------------------ 2014-6-2 - Jun 2 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - mac80211: fix AP powersave TX vs. wakeup race (bnc#871797). backported for v3.0 with minor changes. - commit b8d5bfe - Refresh patches.suse/btrfs-8888-add-allow_unsupported-module-parameter.patch. - commit c7ded11 ++++ gnutls: - Fixed bug[ bnc#880910], gnutls affected by libtasn1 vulnerabilities Add patch files: CVE-2014-3467.patch, CVE-2014-3468.patch, CVE-2014-3469.patch - Fixed bug[ bnc#880730], CVE-2014-3466: gnutls: Possible memory corruption during connect Add patch files: CVE-2014-3466.patch ++++ samba: - Fix nmbd denial of service; CVE-2014-0244; (bnc#880962). ++++ openssl: - Fixed bug[ bnc#880891], prevent buffer overread, by Sebastian Krahmer * Add patch file: prevent_buffer_overread.patch - Fixed bug[ bnc#880891], multiple OpenSSL CVE issues Add patch files: CVE-2014-3470.patch, CVE-2014-0221.patch, CVE-2014-0224.patch ------------------------------------------------------------------ ------------------ 2014-5-30 - May 30 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - KVM: ioapic: fix assignment of ioapic->rtc_status.pending_eoi (CVE-2014-0155) (bnc#872540). - commit 88fb36c ++++ xorg-x11-server: - u_mi-cursor-Destroy-and-recreate-pixmap-to-save-cursor-background.patch * Free software cursor backing pixmap when transition between screens. This fixes a crash in multi screen support when an assert gets hit (bnc#880835). ------------------------------------------------------------------ ------------------ 2014-5-29 - May 29 2014 ------------------- ------------------------------------------------------------------ ++++ util-linux: - sfdisk: Suppress warning irrelevant for Linux (bnc#871698#c49, util-linux-sfdisk-suppress-irrelevant-warnings.patch from petr.uzel@suse.cz). ------------------------------------------------------------------ ------------------ 2014-5-27 - May 27 2014 ------------------- ------------------------------------------------------------------ ++++ ant: - include a modern-style language encoding flag in headers, this should fix problems when extracting files with non-ascii names (bnc#875206, L3 40829) ++++ kernel-docs: - Don't lose sockets when nfsd shutdown races with connection timeout (bnc#871854). - commit 2445a77 ------------------------------------------------------------------ ------------------ 2014-5-26 - May 26 2014 ------------------- ------------------------------------------------------------------ ++++ util-linux: - blkid-stop-scanning-on-I-O-error.patch blkid-convert-superblocks-to-new-calling-convention.patch - make blkid issue only one READ on faulty device - from hare@suse.de (bnc#859062) by dmair@suse.de - fsck: added option -r to dump a few resource statistics after each successful fsck run (bnc#761815) by barendartchuk@suse.de ------------------------------------------------------------------ ------------------ 2014-5-25 - May 25 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.suse/0015-vfs-use-lockref-dead-flag-to-mark-unrecoverably-dead.patch. - commit af7f954 ------------------------------------------------------------------ ------------------ 2014-5-23 - May 23 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - qla2xxx: Poll during initialization for ISP25xx and ISP83xx (bnc#837563). - commit bd1c1f5 - lpfc 8.3.41: Fixed SLI3 failing FCP write on check-condition no-sense with residual zero (bnc#850915). - commit faf084b ++++ kiwi: - v5.05.74 released - Make sure the auto inclusion of a system strip section according to the bootincluded packages happens before image.sh is called - Better error message * if no rpm db was found tell us where we searched for it - Removed code duplication for calling images.sh ++++ libxml2: - update the libxml2-CVE-2014-0191.patch, because it caused xmllint breakage ++++ timezone-java: - revert 'zic' patch to improve handling of low-valued time stamps as it breaks applications that read the binary files directly (bnc#879680, bnc#879512, bnc#879073) ------------------------------------------------------------------ ------------------ 2014-5-22 - May 22 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r210846). * Includes GCC 4.8.3 release. * Fixes ppc64le HTM ttest code generation. [bnc#879504] - Fix libstdc++48-doc build conditional to really only build from libgcj48.spec. ++++ kiwi: - v5.05.73 released - Fixed syntax typo in warning call - v5.05.72 released - Make sure tools in bootincluded packages and archives automatically stay inside the boot image (initrd) without having the need for an additional section ++++ samba: - Fix printer job purging; (bso#10612); (bnc#879390). ------------------------------------------------------------------ ------------------ 2014-5-21 - May 21 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - reiserfs: call truncate_setsize under tailpack mutex (bnc#878115). - commit f20c633 - reiserfs: drop vmtruncate (bnc#878115). - commit 2a8dc40 - Update (fix build on archs with CONFIG_IP_VS && !CONFIG_IP_VS_IPV6) patches.fixes/ipvs-handle-IPv6-fragments-with-one-packet-schedulin.patch. - commit da1edf0 - xfrm: check peer pointer for null before calling inet_putpeer() (bnc#877775). - commit ada70d1 - ipvs: handle IPv6 fragments with one-packet scheduling (bnc#861980). - kabi: hide modifications of struct sk_buff done by bnc#861980 fix (bnc#861980). - netfilter: reuse skb->nfct_reasm for ipvs conn reference (bnc#861980). - commit 82d3435 - [SCSI] qla2xxx: Fix request queue null dereference (bnc#859840). - commit 8782f4c - loop: remove the incorrect write_begin/write_end shortcut (bnc#878123). The removed code causes problems particularly with lustre - commit 7c3d8ad ++++ mvapich2: - Use buildroot instead of RPM_BUILD_ROOT. - Add mvapich2-return_value.patch to fix three places where functions declared as returning a value did not do so. ------------------------------------------------------------------ ------------------ 2014-5-20 - May 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - watchdog: hpwdt patch to display informative string (bnc#862934). - watchdog: hpwdt: Patch to ignore auxilary iLO devices (bnc#862934). - watchdog: hpwdt: Add check for UEFI bits (bnc#862934). - watchdog: hpwdt.c: Increase version string (bnc#862934). - commit 720bb59 - hpilo: Correct panic when an AUX iLO is detected (bnc#837563). - commit 808cd6e ++++ libgadu: - Fix buffer overflow with remote code execution potential. Only triggerable by a Gadu-Gadu server or a man-in-the-middle. CVE-2013-6487 (bnc#861019, bnc#878540) ++++ poppler: - Fix CVE-2010-5110 bnc#845765 * poppler-CVE-2010-5110.patch ++++ struts: - bug-875455_struts-1.2.9-CVE-2014-0114.patch: Fixed ActionForm classloader code injection problem. (bnc#875455 CVE-2014-0114) ------------------------------------------------------------------ ------------------ 2014-5-19 - May 19 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - x86/mce: Fix CMCI preemption bugs (bnc#786450). - x86, CMCI: Add proper detection of end of CMCI storms (bnc#786450). - commit c0c59b4 ++++ rubygem-actionpack-3_2: - fix CVE-2014-0130: rubygem-actionpack: directory traversal issue (bnc#876714) CVE-2014-0130.patch: contains the fix ------------------------------------------------------------------ ------------------ 2014-5-16 - May 16 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r210488). * pulls GCC 4.8.3 release candidate * pulls fix for ppc64le ABI incompatibility with s390 for HTM. [bnc#878065] ++++ kernel-docs: - xen: disable lockref on Xen - commit f33b8cb - locking/mutexes: Introduce cancelable MCS lock for adaptive spinning (FATE#317271). - commit 7ee0623 - locking/mutexes: Modify the way optimistic spinners are queued (FATE#317271). - commit 94d54cf - locking/mutexes: Return false if task need_resched() in mutex_can_spin_on_owner() (FATE#317271). - commit a6d3f89 - mutex: Enable the queuing of mutex spinners with MCS lock (FATE#317271). config: disabled on all flavors - commit f6c5150 - mutex: Queue mutex spinners with MCS lock to reduce cacheline contention (FATE#317271). - commit 7d7d1f8 - memcg: deprecate memory.force_empty knob (bnc#878274). - commit 948e0e6 - kabi: protect struct net from bnc#877013 changes (bnc#877013). - netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue (bnc#877013). - netfilter: make /proc/net/netfilter pernet (bnc#877013). - commit df56997 - mm: per-thread vma caching (FATE#317271). config: enable CONFIG_VMA_CACHE for x86_64/bigsmp - commit cf33d57 - SELinux: Increase ebitmap_node size for 64-bit configuration (FATE#317271). - SELinux: Reduce overhead of mls_level_isvalid() function call (FATE#317271). - commit 70b5e52 - mutex: Fix debug_mutexes (FATE#317271). - mutex: Fix debug checks (FATE#317271). - locking/mutexes: Unlock the mutex without the wait_lock (FATE#317271). - commit 5f8a063 - mm, hugetlb: improve page-fault scalability (FATE#317271). - commit 9bf77b9 - epoll: do not take the nested ep->mtx on EPOLL_CTL_DEL (FATE#317271). - epoll: do not take global 'epmutex' for simple topologies (FATE#317271). - epoll: optimize EPOLL_CTL_DEL using rcu (FATE#317271). - commit c827414 - dcache: kABI fixes for lockref dentries (FATE#317271). - vfs: make sure we don't have a stale root path if unlazy_walk() fails (FATE#317271). - vfs: fix dentry RCU to refcounting possibly sleeping dput() (FATE#317271). - vfs: use lockref "dead" flag to mark unrecoverably dead dentries (FATE#317271). - vfs: reimplement d_rcu_to_refcount() using lockref_get_or_lock() (FATE#317271). - vfs: Remove second variable named error in __dentry_path (FATE#317271). - make prepend_name() work correctly when called with negative *buflen (FATE#317271). - prepend_path() needs to reinitialize dentry/vfsmount on restarts (FATE#317271). - commit a738a09 - dcache: get/release read lock in read_seqbegin_or_lock() & friend (FATE#317271). - seqlock: Add a new locking reader type (FATE#317271). - dcache: Translating dentry into pathname without taking rename_lock (FATE#317271). - commit 0decfed - vfs: make the dentry cache use the lockref infrastructure (FATE#317271). - VFS: Remove dentry->d_lock locking from shrink_dcache_for_umount_subtree() (FATE#317271). - vfs: use lockref_get_not_zero() for optimistic lockless dget_parent() (FATE#317271). - vfs: constify dentry parameter in d_count() (FATE#317271). - helper for reading ->d_count (FATE#317271). - lockref: use arch_mutex_cpu_relax() in CMPXCHG_LOOP() (FATE#317271). - lockref: allow relaxed cmpxchg64 variant for lockless updates (FATE#317271). - lockref: use cmpxchg64 explicitly for lockless updates (FATE#317271). - lockref: add ability to mark lockrefs "dead" (FATE#317271). - lockref: fix docbook argument names (FATE#317271). - lockref: Relax in cmpxchg loop (FATE#317271). - lockref: implement lockless reference count updates using cmpxchg() (FATE#317271). - lockref: uninline lockref helper functions (FATE#317271). - lockref: add 'lockref_get_or_lock() helper (FATE#317271). - Add new lockref infrastructure reference implementation (FATE#317271). - commit 1562fef - config.conf: add new x86_64/bigsmp flavor with MCS locking enabled - commit 49c7eba ++++ tsclient: - Add support for freerdp (bnc#829415) + Added patch tsclient-freerdp-support.patch ++++ xorg-x11-server: - U_xfree86-belately-init-RandR12-if-xinerama-fails.-24627.patch * Fix crash when Xinerama gets disabled after RanR12 is initialized (bnc#878433). ------------------------------------------------------------------ ------------------ 2014-5-15 - May 15 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - supported.conf: Add firewire/nosy as supported This driver is the replacement for the ieee1394/pcilynx driver, which was supported. - commit b351c7b - NFSv4: don't put ACCESS in OPEN compound if O_EXCL (bnc#870958). - commit 1b1d5a9 ++++ kiwi: - v5.05.71 released ++++ libyaml: - fix specfile and use Patch0: instead of only Patch: ------------------------------------------------------------------ ------------------ 2014-5-14 - May 14 2014 ------------------- ------------------------------------------------------------------ ++++ glibc: - alloca-use.patch: fix various alloca uses ++++ java-1_7_1-ibm: - Version bump to 7.1-1.0 (bnc#877465): * support for ppc64le * zEC12 and System z hardware compression acceleration support * Improved workload management facilities on z/OS * Native record processing with Data Access Accelerator * see http://www-01.ibm.com/support/docview.wss?uid=swg21657707 ++++ kernel-docs: - Update patches.drivers/0001-xhci-extend-quirk-for-Renesas-cards.patch (bnc#877503). - commit 261581a - xhci: extend quirk for Renesas cards (bnc#877497). - commit 18b8c82 ++++ kiwi: - Fixed invalid entries in /etc/mtab On systems with /etc/mtab as a file and not as a link to proc kiwi left entries from the host system in the file which are wrong when the image boots up ++++ libsatsolver: - use sed instead of grep to get rid of the line to parse files with no newlines [bnc#876297] - 0.17.8 ------------------------------------------------------------------ ------------------ 2014-5-13 - May 13 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Build libstdc++48-doc package from the libgcj48 build and build the libstdc++ API reference, build-requiring doxygen and graphviz. Add patch gcc48-libstdc++-api-reference.patch to refer to that instead of the online version. [bnc#871501] ++++ daps: Version 1.1.9 (Bugfix release): - Fixed XPath for target productinfo ++++ glibc: - nss-nis-stack-use.patch: avoid unbound stack use in nis nss module ++++ kernel-docs: - spinlock: fix system hang with spin_retry <= 0 (bnc#874145, LTC#110189). - commit 3e29be2 - crypto: s390 - fix aes,des ctr mode concurrency finding (bnc#874145, LTC#110078). - commit 177009b - s390/cio: fix unlocked access of global bitmap (bnc#874145, LTC#109378). - commit 296e47e - s390/css: stop stsch loop after cc 3 (bnc#874145, LTC#109378). - commit bf81310 - s390/pci: add kmsg man page (bnc#874145, LTC#109224). - commit 2a865a5 - qeth: postpone freeing of qdio memory (bnc#874145, LTC#107873). - commit 8d42cf4 - Revert "NFS: revalidate on open if dcache is negative (bnc#876463)." This reverts commit cc3a17687b59d4bf8939c73515573644c32be832. It turns out this is a feature, not a bug, so it shouldn't be fixed. The 'lookupcache' setting can be used if revalidating negative dentries is required. - commit 3429215 ++++ timezone-java: - update to 2014c (bnc#877535): * Egypt observes DST starting 2014-05-15 at 24:00 - update to 2014b (bnc#870375, bnc#871594): * Crimea switches to Moscow time on 2014-03-30 at 02:00 local time * New entry for Troll station, Antarctica ------------------------------------------------------------------ ------------------ 2014-5-12 - May 12 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Fix race between starved list and device removal (bnc#861636). - Delete patches.fixes/scsi-fix-race-between-starved-list-processing.patch. - commit f6da5ee - namei.h: include errno.h (bnc#876463). - commit fc36754 - vfs: make lremovexattr retry once on ESTALE error (bnc#876463). - vfs: make removexattr retry once on ESTALE (bnc#876463). - vfs: make llistxattr retry once on ESTALE error (bnc#876463). - vfs: make listxattr retry once on ESTALE error (bnc#876463). - vfs: make lgetxattr retry once on ESTALE (bnc#876463). - vfs: make getxattr retry once on an ESTALE error (bnc#876463). - vfs: allow lsetxattr() to retry once on ESTALE errors (bnc#876463). - vfs: allow setxattr to retry once on ESTALE errors (bnc#876463). - vfs: allow utimensat() calls to retry once on an ESTALE error (bnc#876463). - vfs: fix user_statfs to retry once on ESTALE errors (bnc#876463). - vfs: make fchownat retry once on ESTALE errors (bnc#876463). - vfs: make fchmodat retry once on ESTALE errors (bnc#876463). - vfs: have chroot retry once on ESTALE error (bnc#876463). - vfs: have chdir retry lookup and call once on ESTALE error (bnc#876463). - vfs: have faccessat retry once on an ESTALE error (bnc#876463). - vfs: have do_sys_truncate retry once on an ESTALE error (bnc#876463). - vfs: fix renameat to retry on ESTALE errors (bnc#876463). - vfs: make do_unlinkat retry once on ESTALE errors (bnc#876463). - vfs: make do_rmdir retry once on ESTALE errors (bnc#876463). - vfs: fix linkat to retry once on ESTALE errors (bnc#876463). - vfs: fix symlinkat to retry on ESTALE errors (bnc#876463). - vfs: fix mkdirat to retry once on an ESTALE error (bnc#876463). - vfs: fix mknodat to retry on ESTALE errors (bnc#876463). - vfs: add a flags argument to user_path_parent (bnc#876463). - vfs: fix readlinkat to retry on ESTALE (bnc#876463). - vfs: make fstatat retry on ESTALE errors from getattr call (bnc#876463). - vfs: add a retry_estale helper function to handle retries on ESTALE (bnc#876463). - NFS: revalidate on open if dcache is negative (bnc#876463). - NFSD add module parameter to disable delegations (bnc#876463). - commit 79fef9a ------------------------------------------------------------------ ------------------ 2014-5-10 - May 10 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ALSA: hda - Implement bind mixer ctls for Conexant (bnc#872188). - commit ab02b3b ------------------------------------------------------------------ ------------------ 2014-5-9 - May 9 2014 ------------------- ------------------------------------------------------------------ ++++ infinipath-psm: - Bring up-to-date as far as possible for fate#316794. - Add Supplements: to get the package automatically installed. ++++ kernel-docs: - tcp: clear xmit timers in tcp_v4_syn_recv_sock() (bnc#862429). - net: add missing bh_unlock_sock() calls (bnc#862429). - commit e1b4873 ++++ mvapich2: - Testsuite needs network and mvapich2 installed so do not build/run 'make testing' and remove mvapich2-testsuite. ++++ openmpi: - Support for udapl was dropped beginning with 1.7 so remove all traces in the spec file. ++++ php53: - security update * CVE-2014-2497.patch [bnc#868624] ++++ xorg-x11-libs: - u_0001-CVE-2014-0209-integer-overflow-of-realloc-size-in-Fo.patch, u_0002-CVE-2014-0209-integer-overflow-of-realloc-size-in-le.patch, u_0003-CVE-2014-0210-unvalidated-length-in-_fs_recv_conn_se.patch, u_0004-CVE-2014-0210-unvalidated-lengths-when-reading-repli.patch, u_0005-CVE-2014-0211-Integer-overflow-in-fs_get_reply-_fs_s.patch, u_0006-CVE-2014-0210-unvalidated-length-fields-in-fs_read_q.patch, u_0007-CVE-2014-0211-integer-overflow-in-fs_read_extent_inf.patch, u_0008-CVE-2014-0211-integer-overflow-in-fs_alloc_glyphs.patch, u_0009-CVE-2014-0210-unvalidated-length-fields-in-fs_read_e.patch, u_0010-CVE-2014-0210-unvalidated-length-fields-in-fs_read_g.patch, u_0011-CVE-2014-0210-unvalidated-length-fields-in-fs_read_l.patch, u_0012-CVE-2014-0210-unvalidated-length-fields-in-fs_read_l.patch * Security fixes. (CVE-2014-0209, CVE-2014-0210, CVE-2014-0211, bnc#857544) ++++ yast2-product-creator: - update to support kiwi version 5.05.57 (fate#317123) - require kiwi and kiwi-schema=5.8 packages - 2.17.59 ------------------------------------------------------------------ ------------------ 2014-5-8 - May 8 2014 ------------------- ------------------------------------------------------------------ ++++ emacs: - Add the patches CVE-2014-3421.patch CVE-2014-3422.patch CVE-2014-3423.patch CVE-2014-3424.patch to avoid several unsecure usage of temporary files (bnc#876847) ++++ pidgin: - Update pidgin-CVE-2014-0020-rebase.patch add SASL_LIBS to irc make to solve the regression bug. ++++ kernel-docs: - Re-enable patches.drivers/megaraid_sas-0031-fix-BUG_ON-from-incorrect-use-of-delayed-wo.patch. - commit cb284ad - x86/UV: Set n_lshift based on GAM_GR_CONFIG MMR for UV3 (bnc#876176). - commit 7d0af0c ++++ kiwi: - v5.05.70 released - Added rpm conflict for: yast2-product-creator <= 2.17.58 - Added kiwi-schema metadata provides to spec file This was requested by the slepos team to be able to require the right kiwi version and schema to yast2-product-creator - Update package helper tools to auto update the kiwi-schema provides in the spec file if the kiwi RNC schema has changed - Added compatibility fix for fetchFile function * Instead of matching for the exact value 'uncompressed' the function treats all values matching the expression '^uncomp' as a statement to indicate an uncompressed image ++++ mvapich2: - Create a new sub package mvapich2-psm that is x86 only and uses PSM for communication (fate#316794). - Create internal package mvapich2-testsuite that runs "make check" - Add mvapich2-fix_quoting_in_configure.patch to fix the quoting in configure code. - Add mvapich-no_implicit_decls.patch that fixes all places where functions were declared implicitely. - set CXXFLAGS and F90FLAGS to RPM_OPT_FLAGS so that the options are also used for the C++ and Fortran code. Fixes the static libraries with fortran and C++ code not having debug information. - Hard code the names of tarball and directory so that the spec works for all three packages. ++++ xen: - Upstream patches from Jan 28674-x86-mm-fix-checks-against-max_mapped_pfn.patch 28732-x86-AMD-feature-masking-is-unavailable-on-Fam11.patch 28780-x86-nested-HAP-don-t-BUG-on-legitimate-error.patch 28782-x86-HAP-also-flush-TLB-when-altering-a-present-1G-or-intermediate-entry.patch 28801-x86-MSI-drop-workaround-for-insecure-Dom0-kernels.patch 28836-x86-add-missing-break-in-dom0_pit_access.patch 28860-VT-d-suppress-UR-signaling-for-server-chipsets.patch 28861-VT-d-suppress-UR-signaling-for-desktop-chipsets.patch 28862-passthrough-allow-to-suppress-SERR-and-PERR-signaling.patch 28865-x86-HVM-correct-the-SMEP-logic-for-HVM_CR0_GUEST_RESERVED_BITS.patch 28866-x86-HVM-restrict-HVMOP_set_mem_type.patch 28879-hvm_set_ioreq_page-releases-wrong-page-in-error-path.patch 28888-x86-fix-guest-CPUID-handling.patch ------------------------------------------------------------------ ------------------ 2014-5-7 - May 7 2014 ------------------- ------------------------------------------------------------------ ++++ augeas: - Add fix for augtool saving (bnc#876044) * patch bnc-876044-augtool-save.patch ++++ glibc: - mcount-atomic.patch: fix crash in profiling (bnc#872832) - fix-locking-in-_IO_cleanup.patch: fix PLT reference ++++ infinipath-psm: - Apply infinipath-psm-cflags.patch from sles12 to use distribution wide compiler flags. ++++ kernel-docs: - intel-iommu: fix off-by-one in pagetable freeing (bnc#874577). - commit 16ed619 - net: sctp: fix sctp_sf_do_5_1D_ce to verify if we/peer is AUTH (bnc#866102, CVE-2014-0101). - commit 678f785 - Update Patch-mainline patches.fixes/netfilter-ip6t_LOG-fix-logging-of-packet-mark.patch. - Update Patch-mainline patches.fixes/xfrm-fix-freed-block-size-calculation-in-xfrm_policy.patch. - commit 428c122 - [IA64] Change default PSR.ac from '1' to '0' (Fix erratum #237) (bnc#874108). - Refresh patches.suse/kdb-v4.4-3.1-ia64-1. - commit 4c39316 - ALSA: hda - Fix invalid Auto-Mute Mode enum from cxt codecs (bnc#872188). - commit 2c827d2 ++++ kiwi: - v5.05.69 released - v5.05.68 released ++++ libxml2: - fix for CVE-2014-0191 (bnc#876652) * libxml2: external parameter entity loaded when entity substitution is disabled * added libxml2-CVE-2014-0191.patch ------------------------------------------------------------------ ------------------ 2014-5-6 - May 6 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ALSA: hda - Fix conflicting Capture Source on cxt codecs (bnc#872188). - commit b05a890 - powerpc: Bring all threads online prior to migration/hibernation (bnc#870591). - commit 3326fed - powerpc/pseries: Update dynamic cache nodes for suspend/resume operation (bnc#873463). - powerpc/pseries: Device tree should only be updated once after suspend/migrate (bnc#873463). - powerpc/pseries: Expose in kernel device tree update to drmgr (bnc#873463). - powerpc: Add second POWER8 PVR entry (bnc#874440). - commit 419d27b - floppy: ignore kernel-only members in FDRAWCMD ioctl input (bnc#875798 CVE-2014-1737 CVE-2014-1738). - floppy: don't write kernel-only members to FDRAWCMD ioctl output (bnc#875798 CVE-2014-1737 CVE-2014-1738). - floppy: ignore kernel-only members in FDRAWCMD ioctl input (bnc#875798 CVE-2014-1737 CVE-2014-1738). - floppy: don't write kernel-only members to FDRAWCMD ioctl output (bnc#875798 CVE-2014-1737 CVE-2014-1738). - commit b960221 - mm: try_to_unmap_cluster() should lock_page() before mlocking (bnc#876102, CVE-2014-3122). - commit c78feaa - Refresh patches.fixes/md-strange-spin.fix. Remove some changes that could not have been relevant. - commit 5e9bc72 ++++ kiwi: - Fixed directory check in cleanMount If no repo alias is set the repo uri is also used as name for the mount point directory. In this case the name could contain quoted characters. Perl's test operator can't deal with shell escaped directory names. Thus we check with the shell test built-in if the mount point directory exists ++++ xorg-x11-server: - U_xkb-swap-correct-members.patch * Fix swapping in XkbGetDeviceInfo. (bnc#874903) ------------------------------------------------------------------ ------------------ 2014-5-5 - May 5 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/writeback-do-not-sync-data-dirtied-after-sync-start.patch: Remove the patch since sync(2) can skip inodes with it. - commit 01010f6 - Drop bogus Git-commit: headers from xhci patches - patches.fixes/0001-Do-not-switch-webcam-for-HP-EB-8580w.patch - patches.fixes/0001-Do-not-switch-webcams-in-some-HP-ProBooks-to-XHCI.patch - patches.fixes/0001-Don-t-switch-camera-on-HP-EB-820-G1.patch - patches.fixes/0001-Don-t-switch-camera-on-HP-EB-8780.patch - patches.fixes/0001-don-t-switch-cam-port-on-HP-EliteBook-840.patch - patches.fixes/0001-xhci-set-device-to-D3Cold-on-shutdown.patch - patches.fixes/avoid_ehci_xhci_switch_for_BT_PB430.patch - patches.suse/0001-xhci-directly-calling-_PS3-on-suspend.patch - commit a320c17 - Fix Git-commit header in patches.fixes/0001-usbhid-fix-error-handling-of-not-enough-bandwidth.patch. - commit 772751b - Refresh patches.drivers/fnic-FIP-VLAN-Discovery-Feature-Support.patch from upstream - Delete patches.drivers/fnic-Fix-memory-leak-issue-in-Vlan-Discovery.patch. - commit 9b85326 - Update patches.drivers/0001-ACPI-remove-panic-in-case-hardware-has-changed-after.patch from upstream - commit e4478d5 - patches.drivers/storvsc-null-pointer-dereference-fix: Updated Git-commit header - commit d6f90f5 - supported.conf: generic_bl is supported Driver corgi_bl was renamed to generic_bl in kernel 2.6.29, adjust supported.conf accordingly. - commit a4fe430 - n_tty: Fix n_tty_write crash when echoing in raw mode (bnc#871252 bnc#875690 CVE-2014-0196). - commit 9ec28a0 - libata/ahci: accommodate tag ordered controllers (bnc#871728) - commit b8a5ff0 - md: try to remove cause of a spinning md thread (bnc#875386). - commit e6234d7 ++++ kiwi: - v5.05.67 released - Fixed check for .repo file The repo path is stored quoted for use use with the shell but the perl test operator can't deal with shell escaped characters and failed. Thus shell's test built-in is used instead ++++ libvirt: - CVE-2014-0179: Don't expand entities when parsing XML d6b27d3e-CVE-2014-0179.patch bnc#873705 ++++ openmpi: - Include a file only for x86 and x86_64. - Fix source URL. - Fix file list for devel package. ++++ yast2-slp-server: - parse config file case sensitive (bnc#291301, bnc#868231) - improved fix for bnc#291301 (write also values that haven't been read) - 2.17.6 ------------------------------------------------------------------ ------------------ 2014-5-2 - May 2 2014 ------------------- ------------------------------------------------------------------ ++++ kiwi: - Fixed suseService function * Use of undefined variable $action where it should be $target ++++ python-base: - updated `urlparse` module to correctly parse IPv6 addresses (bnc#872848) ------------------------------------------------------------------ ------------------ 2014-5-1 - May 1 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.fixes/0001-NFSv4-Allow-the-state-manager-to-mark-an-open_owner-.patch. - Refresh patches.fixes/0005-NFSv4-Ensure-delegation-recall-and-byte-range-lock-r.patch. Fix kabi breakage. Modules would never allocate this struct, and don't need to know about new fields. - commit 69fd76f - NFSv4: Fix a reboot recovery race when opening a file (bnc#864404). - NFSv4: Ensure delegation recall and byte range lock removal don't conflict (bnc#864404). - NFSv4: Fix up the return values of nfs4_open_delegation_recall (bnc#864404). - NFSv4.1: Don't lose locks when a server reboots during delegation return (bnc#864404). - NFSv4.1: Prevent deadlocks between state recovery and file locking (bnc#864404). - NFSv4: Allow the state manager to mark an open_owner as being recovered (bnc#864404). - NFS: nfs_inode_return_delegation() should always flush dirty data (bnc#864404). - NFSv4: nfs_client_return_marked_delegations can't flush data (bnc#864404). - seqlock: add 'raw_seqcount_begin()' function (bnc#864404). - commit 0b341df ++++ ocaml: - Enable opt for ppc64le (ocaml-ppc64le.patch) ------------------------------------------------------------------ ------------------ 2014-4-30 - Apr 30 2014 ------------------- ------------------------------------------------------------------ ++++ crash: - crash-x86_64-nested-nmi.patch: Fix NMI backtrace for kernels patched to handle nested NMIs (bnc#874179). ++++ kernel-docs: - timer: Prevent overflow in apply_slack (bnc#873061). - commit 685b42f - Update patches.fixes/x86-Add-workaround-to-NMI-iret-woes.patch. Add proof that that page fault really might happen when dumping trace. Thanks to Michal Hock for the idea of the test. - commit f9c603f - NFS: avoid excessive GETATTR request when attributes expired but cached directory is valid (bnc#857926). - commit 05ec2e8 ++++ util-linux: - Prevent excessive clock drift calculations (bnc#871698, util-linux-hwclock-drift-check.patch). - Check /etc/adjtime drift factor (bnc#871698, util-linux-hwclock-adjtime-check.patch). - Prevent hang in exact hwclock adjustment (bnc#871698, util-linux-hwclock-prevent-hang.patch). ++++ openmpi: - Fix file list for devel package. ------------------------------------------------------------------ ------------------ 2014-4-29 - Apr 29 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 24.5.0 (bnc#875378) * MFSA 2014-34/CVE-2014-1518 (bmo#986843, bmo#944353, bmo#966630, bmo#952022, bmo#986678, bmo#980537, bmo#991471, bmo#993546, bmo#992968) Miscellaneous memory safety hazards * MFSA 2014-37/CVE-2014-1523 (bmo#969226) Out of bounds read while decoding JPG images * MFSA 2014-38/CVE-2014-1524 (bmo#989183) Buffer overflow when using non-XBL object as XBL * MFSA 2014-42/CVE-2014-1529 (bmo#987003) Privilege escalation through Web Notification API * MFSA 2014-43/CVE-2014-1530 (bmo#895557) Cross-site scripting (XSS) using history navigations * MFSA 2014-44/CVE-2014-1531 (bmo#987140) Use-after-free in imgLoader while resizing images * MFSA 2014-46/CVE-2014-1532 (bmo#966006) Use-after-free in nsHostResolver ++++ kiwi: - v5.05.66 released - Make sure wpa_supplicant stay as tool in the initrd ++++ openmpi: - Split off everything that is only needed for developing code using OpenMPI into openmpi-devel, including stuff like the wrapper scripts for the compilers. - The openmpi-testsuite package now creates a package that only contains the test log. - Add openmpi-no_network_in_build.patch to not run the nfs based test inside the buildroot. ------------------------------------------------------------------ ------------------ 2014-4-28 - Apr 28 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.fixes/ipmi-fix-a-race-restarting-the-timer.patch. - Refresh patches.fixes/ipmi-reset-the-KCS-timeout-when-starting-error-recovery.patch. Add upstream references. - commit fa3ac75 - mei: me: do not load the driver if the FW doesn't support MEI interface (bnc#821619). - commit 8f88be7 - hugetlb: ensure hugepage access is denied if hugepages are not supported (PowerKVM crash when mounting hugetlbfs without hugepage support (bnc#870498)). - commit 4894c37 ++++ mozilla-nss: - update to 3.16 (bnc#869827) * required for Firefox 29 * bmo#903885 - (CVE-2014-1492) In a wildcard certificate, the wildcard character should not be embedded within the U-label of an internationalized domain name. See the last bullet point in RFC 6125, Section 7.2. * Supports the Linux x32 ABI. To build for the Linux x32 target, set the environment variable USE_X32=1 when building NSS. New Functions: * NSS_CMSSignerInfo_Verify New Macros * TLS_RSA_WITH_RC4_128_SHA, TLS_RSA_WITH_3DES_EDE_CBC_SHA, etc., cipher suites that were first defined in SSL 3.0 can now be referred to with their official IANA names in TLS, with the TLS_ prefix. Previously, they had to be referred to with their names in SSL 3.0, with the SSL_ prefix. Notable Changes: * ECC is enabled by default. It is no longer necessary to set the environment variable NSS_ENABLE_ECC=1 when building NSS. To disable ECC, set the environment variable NSS_DISABLE_ECC=1 when building NSS. * libpkix should not include the common name of CA as DNS names when evaluating name constraints. * AESKeyWrap_Decrypt should not return SECSuccess for invalid keys. * Fix a memory corruption in sec_pkcs12_new_asafe. * If the NSS_SDB_USE_CACHE environment variable is set, skip the runtime test sdb_measureAccess. * The built-in roots module has been updated to version 1.97, which adds, removes, and distrusts several certificates. * The atob utility has been improved to automatically ignore lines of text that aren't in base64 format. * The certutil utility has been improved to support creation of version 1 and version 2 certificates, in addition to the existing version 3 support. - update to 3.15.5 * required for Firefox 28 * export FREEBL_LOWHASH to get the correct default headers (bnc#865539) New functionality * Added support for the TLS application layer protocol negotiation (ALPN) extension. Two SSL socket options, SSL_ENABLE_NPN and SSL_ENABLE_ALPN, can be used to control whether NPN or ALPN (or both) should be used for application layer protocol negotiation. * Added the TLS padding extension. The extension type value is 35655, which may change when an official extension type value is assigned by IANA. NSS automatically adds the padding extension to ClientHello when necessary. * Added a new macro CERT_LIST_TAIL, defined in certt.h, for getting the tail of a CERTCertList. Notable Changes * bmo#950129: Improve the OCSP fetching policy when verifying OCSP responses * bmo#949060: Validate the iov input argument (an array of PRIOVec structures) of ssl_WriteV (called via PR_Writev). Applications should still take care when converting struct iov to PRIOVec because the iov_len members of the two structures have different types (size_t vs. int). size_t is unsigned and may be larger than int. ------------------------------------------------------------------ ------------------ 2014-4-26 - Apr 26 2014 ------------------- ------------------------------------------------------------------ ++++ apparmor: - apparmor-parser requires insserv for post/postun (bnc#868026). ------------------------------------------------------------------ ------------------ 2014-4-25 - Apr 25 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.drm/drm-i915-Break-encoder-crtc-link-separately-in-intel_sanitize_crtc.patch. - commit ca75f03 - drm/i915: Break encoder->crtc link separately in intel_sanitize_crtc() (bnc#855126). - commit 6096785 ++++ postgresql94-libs: - Update to 9.3.4 * Fix WAL replay of locking an already-updated tuple * Restore GIN metapages unconditionally to avoid torn-page risk * Avoid race condition in checking transaction commit status during receipt of a NOTIFY message * Allow materialized views to be referenced in UPDATE and DELETE commands * Allow regular-expression operators to be terminated early by query cancel requests * Remove incorrect code that tried to allow OVERLAPS with single-element row arguments * Avoid getting more than AccessShareLock when de-parsing a rule or view * Improve performance of index endpoint probes during planning * Use non-default selectivity estimates for value IN (list) and value operator ANY (array) expressions when the righthand side is a stable expression * Remove the correct per-database statistics file during DROP DATABASE * Fix walsender ping logic to avoid inappropriate disconnects under continuous load * Fix walsender's failure to shut down cleanly when client is pg_receivexlog * See release notes for a full list of changes: http://www.postgresql.org/docs/9.3/static/release-9-3-4.html /usr/share/doc/packages/postgresql93/HISTORY ------------------------------------------------------------------ ------------------ 2014-4-24 - Apr 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Allow nfsdv4 to work when fips=1 (bnc#868488). - commit 0d2a326 - NFSv4: Add ACCESS operation to OPEN compound (bnc#870958). - NFSv4: Fix unnecessary delegation returns in nfs4_do_open (bnc#870958). - commit a45e24f ++++ kiwi: - v5.05.65 released - Make git a recommended package in the spec file - v5.05.64 released - Use existing credentials name for repositories * Don't add a credentials name to repositories if there is already one - Fixed pxePartitionInputGeneric In case of a raid setup via pxeboot the required partition type 'fd' is not explicitly provided in the PART line of the client config. Instead the raid information is given in an additional RAID variable. Thus the pxePartitionInputGeneric function has to set the partition type 'fd' if the RAID variable is set too. ------------------------------------------------------------------ ------------------ 2014-4-23 - Apr 23 2014 ------------------- ------------------------------------------------------------------ ++++ cmake: - fix build on SLE11 - remove dependency on system curl: this is not a security senstive app and the system curl comes quite late in the build cycle - remove nonsensical checks for %{sles_version} ++++ kernel-docs: - netfilter: xt_hashlimit: fix proc entry leak in netns destroy path (bnc#871634). - netfilter: xt_hashlimit: fix namespace destroy path (bnc#871634). - commit d5551f8 ++++ kiwi: - v5.05.63 released - Make partedGetPartitionID more robust * If we can't find a partition label for the disk don't proceed checking for a partition ID and return an unknown ID 'xx' - v5.05.62 released - Use suse parted 'type' command extension to setup swap partition type. This is done because the upstream way of setting swap type is broken in the suse parted. ++++ openmpi: - Update to 1.8.1: - Fix serious bug where running mpi bugs as root deletes files in /. ------------------------------------------------------------------ ------------------ 2014-4-22 - Apr 22 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/linux-3.0.0-fix-strim.txt: Updated Patch-mainline header and patch description - commit 990bd81 - mm: vmscan: Do not throttle based on pfmemalloc reserves if node has no ZONE_NORMAL (bnc#870496). - commit 0d50f31 ++++ kiwi: - Fixed message displayed when the partition table is created/updated. Even in the case of creating a new partition table the message said something about repartition of the disk which is misleading. Thus the message changed to just tell the user about a partition process happening now ++++ libpng12-0: - security update: * CVE-2013-7353.patch [bnc#873124] * CVE-2013-7354.patch [bnc#873123] ------------------------------------------------------------------ ------------------ 2014-4-20 - Apr 20 2014 ------------------- ------------------------------------------------------------------ ++++ kiwi: - v5.05.61 released - Fixed --bootcd post processing mode - Fixed --bootusb post processing mode ------------------------------------------------------------------ ------------------ 2014-4-17 - Apr 17 2014 ------------------- ------------------------------------------------------------------ ++++ Mesa: - reenable build and packaging of OSMesa libs (bnc#874107) ++++ kernel-docs: - Refresh patches.fixes/x86-Add-workaround-to-NMI-iret-woes.patch. changelog clarification - commit 4f8c4c6 - netfilter: nf_queue: reject NF_STOLEN verdicts from userspace (bnc#870877). - netfilter: avoid double free in nf_reinject (bnc#870877). - commit 6224a68 ++++ kiwi: - v5.05.60 released - Fixed __hasBootDescription() runtime check for pxe type The type in the XML is 'pxe' but the boot description is named 'netboot' - Update service support functions * remove obsolete suseCloneRunlevel and suseActivateServices * use chkconfig instead of insserv * enhance suseService to be called with on|off and sysVInit runlevels like chkconfig supports it. For systemd this value would be ignored - Update baseSetRunlevel() function * support custom systemd target names ++++ python-imaging: - CVE-2014-1932, CVE-2014-1933: insecure temporary file creation CVE-2014-1932-mktemp.patch, bnc#863541 ------------------------------------------------------------------ ------------------ 2014-4-16 - Apr 16 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ipmi: Reset the KCS timeout when starting error recovery (bnc#870618). - ipmi: Fix a race restarting the timer (bnc#870618). - ipmi: increase KCS timeouts (bnc#870618). - commit 3dc47ba - supported.conf: Add drivers/of/of_mdio That was a missing dependency for mdio-gpio on ppc64. - commit 5926199 - supported.conf: Fix mdio-gpio module name Module mdio-ofgpio was renamed to mdio-gpio in kernel 2.6.29, this should have been reflected in supported.conf. - commit c033ed6 ++++ kiwi: - v5.05.59 released ------------------------------------------------------------------ ------------------ 2014-4-15 - Apr 15 2014 ------------------- ------------------------------------------------------------------ ++++ crash: - crash-Use-cpu-count-to-limit-cpu-id.patch: Use cpu count to limit cpu id (bnc#847353). - crash-raise-44bit-physaddr-limit.patch: fix max_mapnr issue on system has over 44-bit addressing (bnc#841145). ++++ kernel-docs: - x86: Enable multiple CPUs in crash kernel (bnc#846690). - commit f8682f7 - patches.arch/s390-18-03-linkage-stack.patch: Add CVE number Also add upstream reference. - commit 7459364 - kabi: hide modifications of struct inet_peer done by bnc#867953 fix (bnc#867953). - inetpeer: prevent unlinking from unused list twice (bnc#867953). - commit cc0267c - sched: Make scale_rt_power() deal with backward clocks (bnc#865310). - commit db73099 - sched: Use CPUPRI_NR_PRIORITIES instead of MAX_RT_PRIO in cpupri check (bnc#871861). - commit de17713 - Update patches.fixes/sched-update_rq_clock-must-skip-ONE-update.patch (bnc#868528, bnc#869033). - commit 3c3cb73 ++++ curl: - Enable ldaps support (as we already have ldap support enabled). ++++ makedumpfile: - makedumpfile-raise-44bit-physaddr-limit.patch: fix max_mapnr issue on system has over 44-bit addressing (bnc#841145, FATE#316838). - makedumpfile-dmesg-Xen.patch: Allow --dump-dmesg for Xen vmcores (bnc#864910, bnc#829646). - makedumpfile-alt-dom0_mapnr.patch: Get Dom0 max_pfn using pfn_mfn_frame_list if max_pfn unavailable (bnc#864910, bnc#829646). - makedumpfile-dom0_mapnr-early.patch: Earlier initialization of dom0_mapnr (bnc#864910, bnc#829646). - makedumpfile-smp-cyclic-buffer-size.patch: calculate cyclic buffer size according to info->num_dumpfile (bnc#854600). ------------------------------------------------------------------ ------------------ 2014-4-14 - Apr 14 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ipv6: do not overwrite inetpeer metrics prematurely (bnc#867362). - commit 05bd711 ++++ kiwi: - v5.05.58 released - Fixed message logging * don't log message to already closed file descriptor - Removed done statement from last Kiwi message * The Done message at the last line was confusing, especially when KIWI exited with errors. To keep consistency and since the done message wasn't really needed because the last message is not a task it was also removed for the success messages. Added __hasBootDescription runtime check Code written by Tim Hardeck. The test looks up the required boot image description according to the selected build type if no such description exists the build exit with an error telling the user which rpm package is missing on the build machine - Fixed tests for KIWIRuntimeChecker code * for each test call the corresponding runtime checker function and not the container method which always calls all of them * added variable KIWI_NO_FS which allows to switch off runtime checks which accesses the filesystem. They can only be safely called if the filesystem environment is controlled too - Fixed __hasBootLoaderTools() runtime check to check for the bootloader tool if 'grub' is selected ++++ ruby: - CVE-2013-1821: ruby: entity expansion DoS vulnerability in REXML (bnc#808137) - added patches: * CVE-2013-1821.patch ------------------------------------------------------------------ ------------------ 2014-4-11 - Apr 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Ignore selected taints for tracepoint modules (bnc#870450, FATE#317134). - Use 'E' instead of 'X' for unsigned module taint flag (bnc#870450,FATE#317134). - Fix: module signature vs tracepoints: add new TAINT_UNSIGNED_MODULE (bnc#870450,FATE#317134). - commit adc81ba - futex: avoid race between requeue and wake (bnc#851603). - commit 04ae5b9 ++++ samba: - Fix malformed FSCTL_SRV_ENUMERATE_SNAPSHOTS response; CVE-2014-0178; (bso#10549); (bnc#872396). ++++ python-pexpect: - fix license (ISC) ------------------------------------------------------------------ ------------------ 2014-4-10 - Apr 10 2014 ------------------- ------------------------------------------------------------------ ++++ curl: - don't fail on invalid certificates when called with --insecure * bnc#870444 * added curl-dont_fail_with--insecure.patch ------------------------------------------------------------------ ------------------ 2014-4-9 - Apr 9 2014 ------------------- ------------------------------------------------------------------ ++++ mono-core: - mono-accept-sha2hashes.patch: Support SHA2 signature hashes in X509 certificates bnc#871362 - mono-ignorerevocation.patch: If there is no revocation list, do not do revocation. bnc#810747 / bnc#606002 ++++ kernel-docs: - pciback: fix memory leak in __xen_pcibk_add_pci_dev(). - Refresh patches.xen/xen-clockevents (bnc#816446). - Refresh other Xen patches. - commit 347ea69 ++++ pam: - Fix CVE-2014-2583: pam_timestamp path injection (bnc#870433) bug-870433_pam_timestamp-fix-directory-traversal.patch - pam_pwhistory: fix enforce root to password change history when resetting non-root user's password (bnc#848417) bug-848417_pam_pwhistory-fix-enforce-for-root.patch This changes the broken default behavior of pam_pwhistory to not enforce checks when the root user requests password changes. In order to enforce pwhistory checks on the root user, the enforce_for_root parameter needs to be set for the pam_pwhistory.so module. ++++ python-setuptools: - Use the system root certificates in SLES by default. (bnc#843759) ------------------------------------------------------------------ ------------------ 2014-4-8 - Apr 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - virtio_balloon: don't softlockup on huge balloon changes (bnc#871899). - commit 2618b9b - ch: add refcounting (bnc#867517). - commit 7d00daa - scsi: return target failure on EMC inactive snapshot (bnc#840524). - commit b7115ea ------------------------------------------------------------------ ------------------ 2014-4-7 - Apr 7 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-brach head (r209122). * pulls official backport of ppc64le support * drops gcc48-ibm-power8.diff, gcc48-ibm-power8-testsuite.diff, gcc48-ibm-power8-other.diff, gcc48-pr59844.diff, gcc48-ibm-power8-fixes1.diff, gcc48-ibm-power8-fixes2.diff, gcc48-ibm-power8-disable-sanitizer.diff, gcc48-ibm-power8-testsuite-fixes1.diff and gcc48-ibm-power8-fixes3.diff - tls-no-direct.diff, fix to only affect %ix86 similar to SLE11. [bnc#185782] - refresh gcc41-ppc32-retaddr.patch - Drop old compatibility provide and conflict of/with libgcc%{libgcc_s} ++++ kernel-docs: - Delete patches.fixes/mm-swap-use-files-priority-order.patch. - commit 8e350f4 - Update patches.fixes/inet-Pass-inetpeer-root-into-inet_getpeer-interfaces.patch (bnc#864833 bnc#870801). - Refresh patches.fixes/inet-Hide-route-peer-accesses-behind-helpers.patch. - commit 172cdff - inet: handle rt{,6}_bind_peer() failure correctly (bnc#870801). - commit 6e73c0e ++++ sg3_utils: - Drop withspaces in inquiry fields (bnc#863357). add: sg3_utils-sginfo-strip-trailing-spaces.patch ++++ xen: - bnc#862608 - SLES 11 SP3 vm-install should get RHEL 7 support when released 28489-pygrub-support-linux16-and-initrd16.patch ------------------------------------------------------------------ ------------------ 2014-4-4 - Apr 4 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - gcc48-ibm-power8-bnc871635.diff, fix glibc math testsuite. [bnc#871635] - gcc48-lto-plugin-short-readwrite.diff, backport lto-plugin changes to work more reliably in virtualized environments. ++++ kiwi: - Fixed runtime check __hasBootLoaderTools check for grub2-bios-setup only if the firmare is set to: bios ------------------------------------------------------------------ ------------------ 2014-4-3 - Apr 3 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - sched: update_rq_clock() must skip ONE update (bnc#869033, bnc#868528). - commit a21b155 - Update config files: disable all of Timberdale support Timberdale is a companion chip for Atom CPUs in embedded in-car infotainment systems. We don't need that in SLE, really. - commit 44e5713 ++++ udev: - udev: increase result size for stdout (bnc#867840). add: udev-147-increase-result-size-for-programs.patch ++++ openmpi: - Update to 1.8. Changes since 1.7.5: * Commit upstream ROMIO fix for mixed NFS+local filesystem environments. * Several fixes for MPI-3 one-sided support. For example, arbitrary-length datatypes are now supported. * Add config support for the Mellanox ConnectX 4 card. * Add missing MPI_COMM_GET|SET_INFO functions, and missing MPI_WEIGHTS_EMPTY and MPI_ERR_RMA_SHARED constants. Thanks to Lisandro Dalcin for pointing out the issue. * Update some help messages in OSHMEM, the usnic BTL, the TCP BTL, and ORTE, and update documentation about ompi_info's --level option. * Fix some compiler warnings. * Ensure that ORTE daemons are not bound to a single processor if TaskAffinity is set on by default in Slurm. Thanks to Artem Polyakov for identifying the problem and providing a patch - fix ifarch test for intel/amd. ++++ python-pexpect: - update to 3.1: * Fix an issue that prevented importing pexpect on Python 3 when ``sys.stdout`` was reassigned * Improve prompt synchronisation in :mod:`~pexpect.pxssh` * Fix pickling exception instances * Fix handling exceptions from :func:`select.select` on Python 3 * A new :ref:`unicode API ` was introduced. * Python 3 is now supported, using a single codebase. * Pexpect now requires at least Python 2.6 or 3.2. * The modules other than pexpect, such as :mod:`pexpect.fdpexpect` and * Ignoring ``SIGHUP`` is now optional ++++ xen: - bnc#867910 - VUL-0: CVE-2014-2599: xen: XSA-89: HVMOP_set_mem_access is not preemptible 28620-x86-enforce-preemption-in-HVM_set_mem_access-p2m_set_mem_access.patch - dropped xsa89.patch 28429-mm-ensure-useful-progress-in-decrease_reservation.patch - Upstream patches from Jan 28507-common-make-hypercall-preemption-checks-consistent.patch 28508-x86-make-hypercall-preemption-checks-consistent.patch 28541-VT-d-fix-RMRR-handling.patch 28542-x86-Intel-work-around-Xeon-7400-series-erratum-AAI65.patch 28616-x86-fix-determination-of-bit-count-for-struct-domain-allocations.patch 28637-x86-HVM-correct-CPUID-leaf-80000008-handling.patch 28641-x86-EPT-relax-treatment-of-APIC-MFN.patch 28662-VMX-fix-PAT-value-seen-by-guest.patch ++++ yast2-ncurses: - Display menu (function keys) correctly in non UTF-8 environment (bnc #865597) - V 2.17.23 ------------------------------------------------------------------ ------------------ 2014-4-2 - Apr 2 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - supported.conf: Adjust radio-si470x module name In kernel 2.6.32, module radio-si470x was split into two distinct modules, radio-usb-si470x for the USB access and radio-i2c-si470x for I2C access. USB access is what the original module was implementing so we should keep supporting radio-usb-si470x. I2C access was not implemented before and I suspect it's only needed on embedded systems so we shouldn't build it at all. - commit e44b08a - ALSA: usb-audio: Fix NULL dereference while quick replugging (bnc#870335). - commit 4055206 ++++ curl: - fixes for two security vulnerabilities: * CVE-2014-138 (bnc#868627) - curl: wrong re-use of connections - added curl-CVE-2014-0138.patch * CVE-2014-139 (bnc#868629) - curl: IP address wildcard certificate validation - curl-CVE-2014-0139.patch ------------------------------------------------------------------ ------------------ 2014-4-1 - Apr 1 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update config files: CONFIG_CRYPTO_TWOFISH_COMMON=m Missing dependency, sorry. - commit f62c7eb - Update config files: re-enable twofish crypto support Twofish crypto support was accidentally disabled on IA64 and PPC since SLES11 GA. Additionally, in SLES11 SP2, the software twofish implementation was renamed from twofish to twofish_generic, but supported.conf was not updated accordingly, so S/390 was without a supported twofish crypto implementation as well. Re-enable software twofish crypto support on IA64 and PPC, and adjust supported.conf to reflect the name change (bnc#871325). - commit afaafd6 - btrfs: don't loop on large offsets in readdir (bnc#863300) - commit 1dab17d ++++ curl: - Build a libcurl4-openssl1 package against libopenssl1 for libssl.so.1 compatibility. Build only the library package as "libcurl4-openssl1". bnc#861014 / bnc#864912 / FATE#316898 ++++ openmpi: - fixed specfile, adopted version to 1.8 rc1 ++++ xen: - bnc#842006 - VUL-1: CVE-2013-4344: XSA-65: xen: qemu SCSI REPORT LUNS buffer overflow 0009-allocate-scsi-targetreq-rbuf-dynamically.patch ------------------------------------------------------------------ ------------------ 2014-3-31 - Mar 31 2014 ------------------- ------------------------------------------------------------------ ++++ a2ps: - Add patch CVE-2014-0466.diff to fix bnc#871097 - CVE-2014-0466: fixps does not use -dSAFER ++++ glibc: - getaddrinfo-overflow2.patch: fix stack frame overflow flaw (CVE-2013-4458, bnc#847227) - nss-file-large-file.patch: fix reading large /etc/hosts (CVE-2013-4357, bnc#844309) - nss-dns-memleak.patch: fix memory leak in nss_dns (bnc#863499) - nss-dns-retry.patch: properly retry after insufficient buffer space (bnc#863499) - sched-cpu-ppc-vdso.patch: implement VDSO support for sched_getcpu (bnc#854445) - gettimeofday-ppc-ifunc.patch: implement VDSO support for gettimeofday (bnc#854445) - allocatestack-fork-race.patch: avoid race between {,__de}allocate_stack and __reclaim_stacks during fork (bnc#836746) ++++ hwinfo: - fix dbus usage (bnc #870660) ++++ snapper: - fixed setuid bit during undochange (bnc#862964) - fixed segmentation fault with DBus (bnc#860119) ++++ libzypp: - Use dummy licenses in test data (bnc#862471) - Install zypp-NameReqPrv helper for evaluating testcases. - version 9.37.7 (8) ++++ openmpi: - Update to 1.8 rc1. ------------------------------------------------------------------ ------------------ 2014-3-28 - Mar 28 2014 ------------------- ------------------------------------------------------------------ ++++ lxc: - add lxc-pty-permissions.patch: fix bug bnc#869663 ++++ nagios: - fix stack-based buffer overflow in the cmd_submitf function in cgi/cmd.c - CVE-2014-1878 (bnc#864843) nagios-CVE-2014-1878.patch ++++ openldap2: - Fixed: tls_checkpeer does not work with IPv6 address as Subject Alternative Name 0029-ITS-7194-fix_IPv6_URL_detection.patch / bnc#862623 - Fixed: getaddrinfo does not return if ldap is used for host lookups in IPv6 environment 0030-ldap_pvt_get_fqdn_getaddrinfo.patch / bnc#843697 ++++ openldap2-client: - Fixed: tls_checkpeer does not work with IPv6 address as Subject Alternative Name 0029-ITS-7194-fix_IPv6_URL_detection.patch / bnc#862623 - Fixed: getaddrinfo does not return if ldap is used for host lookups in IPv6 environment 0030-ldap_pvt_get_fqdn_getaddrinfo.patch / bnc#843697 ++++ python-base: - CVE-2014-1912-recvfrom_into.patch - potential buffer overflow in socket.recvfrom_into (CVE-2014-1912, bnc#863741) ++++ subversion: - security update [bnc#862459] * CVE-2014-0032.patch ------------------------------------------------------------------ ------------------ 2014-3-27 - Mar 27 2014 ------------------- ------------------------------------------------------------------ ++++ hwinfo: - xen vm: use memory settings from /proc/xen/balloon (bnc #867915) ++++ mtx: - fix problem with large number of slots in virtual tape library (bnc#857901) mtx-1.3.11-large-slots.patch ------------------------------------------------------------------ ------------------ 2014-3-26 - Mar 26 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - netfilter: ctnetlink: fix race between delete and timeout expiration (bnc#863410). - commit 544208c - Btrfs: unset DCACHE_DISCONNECTED when mounting default subvol (bnc#866615). - commit 67a05e2 ++++ yast2-network: - Ported fixes from OpenSUSE: - check size of alias label (OS: bnc#467087, sles: bnc#869695) - Refactoring editing interface names. - Added nic name checking according bnc#784952 (OpenSUSE) - 2.17.198 ------------------------------------------------------------------ ------------------ 2014-3-25 - Mar 25 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update ec2 config files: disable CONFIG_INPUT_FF_MEMLESS This helper module is useless on EC2. - commit 950a6ce - Refresh patches.fixes/NFSv4-The-NFSv4.0-client-must-send-RENEW-calls-if-it.patch. - avoid kABI breakage. - commit edb95eb ++++ openssl: - Fix bug[ bnc#870192], Some libraries like libcrypto.so.0.9.8 (32bit) has the execstack flag set Add compile option "-Wa,--noexecstack" to make the stack non-executable - Fix bug[ bnc#869945] CVE-2014-0076: openssl: Recovering OpenSSL ECDSA Nonces Using the FLUSH+RELOAD Cache Side-channel Attack Add file: CVE-2014-0076.patch ++++ yast2: - better check for running chef-client (bnc#868483) - 2.17.135 ------------------------------------------------------------------ ------------------ 2014-3-24 - Mar 24 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-brach head (r208789). * pulls latest fixes ++++ kernel-docs: - SELinux: Fix kernel BUG on empty security contexts (bnc#863335,CVE-2014-1874). - commit d91a02f - hamradio/yam: fix info leak in ioctl (bnc#858872,CVE-2014-1446). - commit 577a380 - wanxl: fix info leak in ioctl (bnc#858870,CVE-2014-1445). - commit 26da9e8 - farsync: fix info leak in ioctl (bnc#858869,CVE-2014-1444). - commit 8301f67 - netfilter: nf_conntrack_dccp: fix skb_header_pointer API usages (bnc#868653 CVE-2014-2523). - commit da47896 - Fix POWER7 futex regression stemming from bnc#851603 scalability fixes. futex: revert back to the explicit waiter counting code (bnc#851603). - commit 782458f - NFSv4: The NFSv4.0 client must send RENEW calls if it holds a delegation (bnc#863873). - NFSv4: nfs4_proc_renew should be declared static (bnc#863873). - commit 55baca7 ++++ kiwi: - v5.05.57 released - Revert "- use ext4 filesystem for clic'ed live iso's" ext4 seems not supported on SLE11 but Studio uses clicfs to build live images. This reverts commit fbeff95f4724. ++++ wireshark: - update to 1.8.13 [bnc#867485] + vulnerabilities fixed: * The NFS dissector could crash wnpa-sec-2014-01 CVE-2014-2281 * The RLC dissector could crash wnpa-sec-2014-03 CVE-2014-2283 * The MPEG file parser could overflow a buffer wnpa-sec-2014-04 CVE-2014-2299 + Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.8.13.html - remove patch for CVE-2013-7113, already included in 1.8.13 - wireshark-CVE-2013-7113.patch ------------------------------------------------------------------ ------------------ 2014-3-23 - Mar 23 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Use power8 code generation only for ppc64le. ------------------------------------------------------------------ ------------------ 2014-3-22 - Mar 22 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - storvsc: NULL pointer dereference fix (bnc#865330). - commit 64e08f4 ------------------------------------------------------------------ ------------------ 2014-3-21 - Mar 21 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ath9k_htc: properly set MAC address and BSSID mask (bnc#851426,CVE-2013-4579). - commit e3a1ae5 ++++ libqb: - ipcc: Properly timeout during recv when timeout value is provided - Upstream version cs: c6f4fcd778248c41e5b108159d00cf1798a296d4 ------------------------------------------------------------------ ------------------ 2014-3-20 - Mar 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - rds: prevent BUG_ON triggered on congestion update to loopback (bnc#767610, CVE-2012-2372). - Delete patches.drivers/rds-no-bug-in-xmit-for-loopback.patch. - commit 68b7666 - drm/ttm: don't oops if no invalidate_caches() (bnc#869414). - commit 2d24b2c ++++ python-m2crypto: - update to 0.21.1 (bnc#868901, fate#316973) ++++ rubygem-rack-ssl: - fix CVE-2014-2538: rubygem-rack-ssl: XSS in error page (bnc#869162) - added patches: * CVE-2014-2538-src.patch ------------------------------------------------------------------ ------------------ 2014-3-19 - Mar 19 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - md: fix up plugging (again) (bnc#866800). - commit 237b08b - cio: Fix missing subchannels after CHPID configure on (bnc#866081, LTC#104808). - commit ea262f1 - cio: Fix process hangs during subchannel scan (bnc#866081, LTC#104805). - commit e3c845d - s390/pci/dma: use correct segment boundary size (bnc#866081, LTC#104566). - commit 76a736b - cio: fix unusable device (bnc#866081, LTC#104168). - commit 12e9b6b ++++ kiwi: - v5.05.56 released - Fixed block size used to check for boot sector code in the MBR after legacy grub has finished the installation ++++ libyaml: - fix CVE-2014-2525: libyaml: heap overflow during parsing (bnc#868944) - added patches: * CVE-2014-2525.patch ++++ trousers: - trousers-wrap_large_key_overflow.patch: do not wrap keys larger than 2048 bit, as we do not have more space. (bnc#868933) ------------------------------------------------------------------ ------------------ 2014-3-18 - Mar 18 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Unlock the rename_lock in dentry_path() in the case when path is too long (bnc#868748). - commit d0d96e9 ++++ lighttpd: - added lighttpd-1.4.x-hostname_parsing_and_sql_injection.patch: Fix the parsing of the Host header and properly quote the hostname value in mod_mysql_vhost (bnc#867350) CVE-2014-2323 CVE-2014-2324 ------------------------------------------------------------------ ------------------ 2014-3-17 - Mar 17 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 24.4.0 (bnc#868603) * MFSA 2014-15/CVE-2014-1493/CVE-2014-1494 (bmo#963974, bmo#958867, bmo#965982, bmo#977538, bmo#967341, bmo#960145, bmo#896268, bmo#933219, bmo#964462, bmo#938626, bmo#909586, bmo#627295, bmo#927579, bmo#938615, bmo#932496, bmo#949843) Miscellaneous memory safety hazards * MFSA 2014-17/CVE-2014-1497 (bmo#966311) Out of bounds read during WAV file decoding * MFSA 2014-26/CVE-2014-1508 (bmo#963198) Information disclosure through polygon rendering in MathML * MFSA 2014-27/CVE-2014-1509 (bmo#966021) Memory corruption in Cairo during PDF font rendering * MFSA 2014-28/CVE-2014-1505 (bmo#941887) SVG filters information disclosure through feDisplacementMap * MFSA 2014-29/CVE-2014-1510/CVE-2014-1511 (bmo#982906, bmo#982909) Privilege escalation using WebIDL-implemented APIs * MFSA 2014-30/CVE-2014-1512 (bmo#982957) Use-after-free in TypeObject * MFSA 2014-31/CVE-2014-1513 (bmo#982974) Out-of-bounds read/write through neutering ArrayBuffer objects * MFSA 2014-32/CVE-2014-1514 (bmo#983344) Out-of-bounds write through TypedArrayObject after neutering ++++ device-mapper: - bnc#862817, thinly provisioned LVM VGs not activating after deactivation ++++ file: - Add patch file-4.24-notexist-fix.dif from Ales Novak to fix bnc#863450 - "file" command does not set return code on non-existing files - Add patch 0001-off-by-one-in-out-of-bounds-calculations-Jan-Kaluza.patch to finally fix bnc#866750 ++++ kernel-docs: - mm: fix off-by-one bug in print_nodes_state() (bnc#792271). - commit 8a82cef - Delete patches.drivers/qla2xxx-0159-Only-enable-link-up-on-the-correct-inte.patch.patch(bnc#866608). - commit db584e7 ++++ mozilla-nspr: - update to version 4.10.4 (bnc#868603) * bmo#767759: Add support for new x32 abi * bmo#844784: Thread data race in PR_EnterMonitor * bmo#939786: data race nsprpub/pr/src/pthreads/ptthread.c:137 _pt_root * bmo#958796: Users of _beginthreadex that set a custom stack size may not be getting the behavior they want * bmo#963033: AArch64 support update for NSPR * bmo#969061: Incorrect end-of-list test when iterating over a PRCList in prcountr.c and prtrace.c * bmo#971152: IPv6 detection on linux depends on availability of /proc/net/if_inet6 - update to version 4.10.3 * bmo#749849: ensure we'll free the thread-specific data key. * bmo#941461: don't compile android with unaligned memory access. * bmo#932398: Add PR_SyncMemMap, a portable version of msync/FlushViewOfFile. * bmo#952621: Fix a thread-unsafe access to lock->owner in PR_Lock. * bmo#957458: Fix several bugs in the lock rank checking code. * bmo#936320: Use an alternative test for IPv6 support on Linux to avoid opening a socket. ++++ python-keyring: - Update to version 3.6: * Add support for packages that wish to bundle keyring by using relative imports throughout. - Changes from version 3.5: * Issue #49: Give the backend priorities a 1.5 multiplier bump when an XDG_CURRENT_DESKTOP environment variable matches the keyring's target environment. * Issue #99: Clarified documentation on location of config and data files. Prepared the code base to treat the two differently on Unix-based systems. For now, the behavior is unchanged. - Changes from version 3.4: * Extracted FileBacked and Encrypted base classes. * Add a pyinstaller hook to expose backend modules. Ref #124 * Pull request #41: Use errno module instead of hardcoding error codes. * SecretService backend: correctly handle cases when user dismissed the collection creation or unlock prompt. ++++ release-notes-sdk: - 11.3.14: - Update SP3 release notes from FATE. - New entry: Ruby on Rails 2.1, 2.3, and 3.1 discontinued; fate#316975. ------------------------------------------------------------------ ------------------ 2014-3-15 - Mar 15 2014 ------------------- ------------------------------------------------------------------ ++++ kiwi: - v5.05.55 released ------------------------------------------------------------------ ------------------ 2014-3-14 - Mar 14 2014 ------------------- ------------------------------------------------------------------ ++++ pidgin: - Add pidgin-CVE-2012-6152-rebase.patch pidgin-CVE-2013-6477.patch pidgin-CVE-2013-6478.patch pidgin-CVE-2013-6479-rebase.patch pidgin-CVE-2013-6481.patch pidgin-CVE-2013-6482-msn-head-rebase.patch pidgin-CVE-2013-6482-msn-oim-rebase.patch pidgin-CVE-2013-6482-oim-soup.patch pidgin-CVE-2013-6483-rebase.patch pidgin-CVE-2013-6484.patch pidgin-CVE-2013-6485.patch pidgin-CVE-2013-6486-rebase.patch pidgin-CVE-2013-6487-rebase.patch pidgin-CVE-2013-6489-rebase.patch pidgin-CVE-2013-6490.patch pidgin-CVE-2014-0020-rebase.patch (bnc#861019) ++++ kernel-docs: - Refresh patches.xen/xen-x86-EFI (bnc#864253). - Refresh other Xen patches. - commit 24fb7ef - ncpfs: fix rmdir returns Device or resource busy (bnc#864880). - commit 14493f1 ------------------------------------------------------------------ ------------------ 2014-3-13 - Mar 13 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - IPv6 routing, NLM_F_* flag support: REPLACE and EXCL flags support, warn about missing CREATE flag (bnc#865783). - commit ad5cf06 - kabi: protect symbols modified by bnc#864833 fix (bnc#864833). - inet: Avoid potential NULL peer dereference (bnc#864833). - inet: Hide route peer accesses behind helpers (bnc#864833). - inet: Pass inetpeer root into inet_getpeer*() interfaces (bnc#864833). - commit 4c3acce - supported.conf: Support the AD7879 touchscreen again ad7879 was originally a standalone driver, that could be built to support either I2C or SPI access. In kernel 2.6.36, it was split into a helper module (ad7879) and two device drivers, one for I2C access (ad7879-i2c) and one for SPI access (ad7879-spi.) So in order to fully support the AD7879 touchscreen over I2C as we used to, we must support both ad7879 and ad7879-i2c. - commit 9177714 - inet: fix addr_len/msg->msg_namelen assignment in recv_error and rxpmtu functions (bnc#857643 CVE-2013-7263 CVE-2013-7264 CVE-2013-7265). - inet: prevent leakage of uninitialized memory to user in recv syscalls (bnc#857643 CVE-2013-7263 CVE-2013-7264 CVE-2013-7265). - commit f8ad80c ++++ kiwi: - v5.05.54 released - added compatibility mode for EFI images on SLE11 * SLE11 supports EFI only via the elilo bootloader with one exception which is secure boot. In that mode the grub2 signed module is used and the functionality is hidden behind an elilo wrapper program so that all tools e.g yast doesn't have to really support grub2. In order to leave a SLES image in a supported state it was required to adapt to this layout in kiwi ++++ net-snmp: - added net-snmp-5.4.x_fix-icmp-mib-table-handling.patch: fix potential remote denial of service problem within the Linux ICMP-MIB implementation (CVE-2014-2284)(bnc#866942) - added net-snmp-5.4.x_fix-perl-trap-handler.patch: fix potential remote denial of service problem inside the snmptrapd Perl trap handler (CVE-2014-2285)(bnc#866942) - added net-snmp-5.4.x_fix-agentx-subagent-multiple-object-issue.patch: fix potential remote denial of service issue with AgentX subagent when a manager sends a multi-object request with a different number of subids (CVE-2014-2310)(bnc#867349) ++++ xen: - bnc#867910 - VUL-0: EMBARGOED: xen: XSA-89: HVMOP_set_mem_access is not preemptible xsa89.patch - bnc#858178 - [HP HPS Bug]: SLES11sp3 XEN kiso version cause softlockup on 8 blades npar(480 cpu) 28430-IOMMU-generalize-and-correct-softirq-processing.patch - Upstream patches from Jan 28383-x86-pci-Store-VF-s-memory-space-displacement-64bit.patch 28397-x86-MCE-Fix-race-condition-in-mctelem_reserve.patch 28399-Nested-VMX-update-nested-paging-mode-on-vmexit.patch 28400-x86-MSI-don-t-risk-division-by-zero.patch 28411-x86-mce-Reduce-boot-time-logspam.patch 28429-mm-ensure-useful-progress-in-decrease_reservation.patch 28435-x86-ACPI-also-print-address-space-for-PM1x-fields.patch 28452-x86-hvm-refine-the-judgment-on-IDENT_PT-for-EMT.patch 28453-x86-HVM-fix-memory-type-merging-in-epte_get_entry_emt.patch 28454-x86-HVM-consolidate-passthrough-handling-in-epte_get_entry_emt.patch ------------------------------------------------------------------ ------------------ 2014-3-12 - Mar 12 2014 ------------------- ------------------------------------------------------------------ ++++ ctdb: - Avoid lockwait congestion by using an overflow queue; (bnc#867815). ++++ kernel-docs: - Refresh patches.suse/mm-page-writeback.c-do-not-count-anon-pages-as-dirtyable-memory.patch. - commit a1d10df ++++ samba: - Depend only on %version with all manual Provides and Requires; (bnc#844307). ++++ yast2-dns-server: - Fixed splitting/joining longer TXT and SPF records (bnc#867596) - 2.17.23 ------------------------------------------------------------------ ------------------ 2014-3-11 - Mar 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Delete patches.drivers/watchdog-get-rid-of-module_alias_miscdev-statements.patch This change caused more harm than good (bnc#867139, bnc#867255). - commit 202d601 ++++ samba: - Password lockout not enforced for SAMR password changes; CVE-2013-4496; (bnc#849224). ------------------------------------------------------------------ ------------------ 2014-3-10 - Mar 10 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Revert "kernel/sys.c: call disable_nonboot_cpus() in kernel_restart()" (Reduce time to shutdown large machines (bnc#865442)). - Revert "PM / reboot: call syscore_shutdown() after disable_nonboot_cpus()" (Reduce time to shutdown large machines (bnc#865442)). - commit edd2919 - mm: mempolicy: fix mbind_range() && vma_adjust() interaction (VM Functionality (bnc#866428)). - mm: merging memory blocks resets mempolicy (VM Functionality (bnc#866428)). - commit 8e29a82 ++++ timezone-java: - update to 2014a (bnc#867679): * Turkey begins DST on 2014-03-31, not 03-30 * Misc changes affecting past time stamps * An uninitialized-storage bug in 'localtime' has been fixed ------------------------------------------------------------------ ------------------ 2014-3-9 - Mar 9 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - mm/page-writeback.c: do not count anon pages as dirtyable memory (High memory utilisation performance (bnc#859225)). - mm: vmscan: Do not force reclaim file pages until it exceeds anon (High memory utilisation performance (bnc#859225)). - mm: vmscan: fix endless loop in kswapd balancing (High memory utilisation performance (bnc#859225)). - mm: vmscan: Update rotated and scanned when force reclaimed (High memory utilisation performance (bnc#859225)). - commit 2274ef6 ------------------------------------------------------------------ ------------------ 2014-3-8 - Mar 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - tcp: syncookies: reduce cookie lifetime to 128 seconds (bnc#833968). - tcp: syncookies: reduce mss table to four values (bnc#833968). - commit bf2a15b ------------------------------------------------------------------ ------------------ 2014-3-7 - Mar 7 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - rpm/mkspec: Generate a per-architecture per-package _constraints file - commit ca28bf5 - Refresh patches.suse/btrfs-8217-refuse-to-remount-read-write-after-abort.patch - commit 871bb73 ------------------------------------------------------------------ ------------------ 2014-3-6 - Mar 6 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r208375). * fixes issues with transactional memory support - Backport patch to disable sanitizer support for powerpc64le, gcc48-ibm-power8-disable-sanitizer.diff - Document IBM svn branch revision range for gcc48-ibm-power8-fixes2.diff. - Change -Wunprototyped-calls from being enabled by default to be enabled with -Wall to solve GCC testsuite fallout. - Cherry-pick testsuite fix from IBM svn branch, gcc48-ibm-power8-testsuite-fixes1.diff - Pickup more fixes from IBM svn branch, up to r208288, gcc48-ibm-power8-fixes3.diff ++++ kernel-docs: - NFSD/sunrpc: avoid deadlock on TCP connection due to memory pressure (bnc#853455). - commit 95a9a9c ++++ release-notes-sdk: - 11.3.13: - Update SP3 release notes from FATE. - Use suse2013 stylesheets (bnc#866875). ++++ xen: - bnc#865682 - Local attach support for PHY backends using scripts local_attach_support_for_phy.patch ------------------------------------------------------------------ ------------------ 2014-3-5 - Mar 5 2014 ------------------- ------------------------------------------------------------------ ++++ java-1_7_1-ibm: - Fix build on i586 and s390 * Remove bogus dependency on libstdc++33 ++++ kernel-docs: - btrfs: Add btrfs: prefix to kernel log output - btrfs: fix get set label blocking against balance. - Btrfs: fix possible memory leak in find_parent_nodes(). - Btrfs: actually limit the size of delalloc range. - Btrfs: actually log directory we are fsync()'ing. - Btrfs: check roots last log commit when checking if an inode has been logged. - Btrfs: replay dir_index items before other items. - Btrfs: drop dir i_size when adding new names on replay. - Revert "Btrfs: rework the overcommit logic to be based on the total size". - Btrfs: fix worst case calculator for space usage. - Btrfs: iput inode on allocation failure. - Btrfs: btrfs_ioctl_default_subvol: Revert back to toplevel subvolume when arg is 0. - btrfs: refuse to remount read-write after abort. - Btrfs: dir_inode_operations should use btrfs_update_time also. - Btrfs: fix transid verify errors when recovering log tree. - Btrfs: use right root when checking for hash collision. - Btrfs: release path before starting transaction in can_nocow_extent. - Refresh patches.suse/btrfs-8189-fix-the-wrong-nocow-range-check.patch. - Delete patches.suse/btrfs-8021-Prefix-mount-messages-with-btrfs-for-clarity.patch. - Delete patches.suse/btrfs-fix-get-set-label-blocking-against-balance.patch. - commit 79ad39f - x86: Save cr2 in NMI in case NMIs take a page fault (follow-up for patches.fixes/x86-Add-workaround-to-NMI-iret-woes.patch). - Refresh patches.arch/x86_64-unwind-annotations. - commit 2804fdf ++++ openmpi: - Compile with PSM support on i686 and c86_64 (fate#315889) ++++ python-httplib2: - Modify httplib2-use-system-certs.patch to not depend on a generated bundle. OpenSSL has everything built in to do the cert verification, we do not need to pass a cert bundle file ------------------------------------------------------------------ ------------------ 2014-3-4 - Mar 4 2014 ------------------- ------------------------------------------------------------------ ++++ file: - Add the upstream patch 0001-PR-313-Aaron-Reffett-Check-properly-for-exceeding-th.patch to solve bnc#866750 - file: crash when parsing some PE executables ++++ kernel-docs: - Remove misguided/buggy patch (bnc#862023). It will come back in a diferent form once patchlet queued by peterz lands upstream. - patches.fixes/sched-harden-rq-rt-usage-accounting.patch. Delete. - commit 83d2984 ++++ libvirt: - CVE-2013-6456: unsafe usage of paths under /proc/$PID/root. bnc#857490. 1754c7f-CVE-2013-6456.patch 1cadeaf-CVE-2013-6456.patch 2c2bec9-CVE-2013-6456.patch 4dd3a7d-CVE-2013-6456.patch 5fc590a-CVE-2013-6456.patch 7a44af9-CVE-2013-6456.patch 7c72ef6-CVE-2013-6456.patch 7fba01c-CVE-2013-6456.patch a537827-CVE-2013-6456.patch aebbcdd-CVE-2013-6456.patch c321bfc-CVE-2013-6456.patch c364897-CVE-2013-6456.patch c3eb12c-CVE-2013-6456.patch d24e6b8-CVE-2013-6456.patch ++++ wireshark: - CVE-2013-7113 [bnc#856495] wireshark-CVE-2013-7113.patch ------------------------------------------------------------------ ------------------ 2014-3-3 - Mar 3 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.suse/btrfs-update-message-levels.patch. - commit 1ce809e - Btrfs: fix transaction abortion when remounting btrfs from RW to RO. - commit 976b7a6 - inet: fix possible memory corruption with UDP_CORK and UFO (bnc#847672 CVE-2013-4470). - Refresh patches.fixes/net-add-APIs-for-manipulating-skb-page-fragments.patch. - commit 18419b8 - ipv6: send router reachability probe if route has an unreachable gateway (bnc#853162). - commit e07311f ++++ libssh: - CVE-2014-0017: Fix PRNG reseed vulnerability: (bnc#866278). ------------------------------------------------------------------ ------------------ 2014-3-2 - Mar 2 2014 ------------------- ------------------------------------------------------------------ ++++ postgresql94-libs: - make postgresql-init a buildrequire. requires(pre) are used during build, but do not cause a rebuild trigger. But to make the depencency visible for bootstrapping, mark it as real buildrequire ------------------------------------------------------------------ ------------------ 2014-2-28 - Feb 28 2014 ------------------- ------------------------------------------------------------------ ++++ freeradius-server: - fix for CVE-2014-2015 (bnc#864576) * denial of service in rlm_pap hash processing * added freeradius-server-CVE-2014-2015.patch ++++ kernel-docs: - scsi_dh_alua: fixup RTPG retry delay miscalculation (bnc#854025). - scsi_dh_alua: Simplify state machine (bnc#854025). - commit 17ee596 - xhci: Fix resume issues on Renesas chips in Samsung laptops (bnc#866253). - commit 77716c9 ------------------------------------------------------------------ ------------------ 2014-2-27 - Feb 27 2014 ------------------- ------------------------------------------------------------------ ++++ autoconf: - Add autoconf-fortran_cray.patch to filter out compiler options that lead to errors with Cray compiler (bnc#857251). ++++ gcc48: - Fix typo in libgcj_bc suffix computation. ++++ kernel-docs: - bonding: disallow enslaving a bond to itself (bnc#599263). - commit 4cb9443 - USB: hub: handle -ETIMEDOUT during enumeration (bnc#855825). - commit a7e08ef ++++ gnutls: - Fix bug[ bnc#865993] - incorrect handling of V1 intermediate certificates CVE-2009-5138.patch - Fix bug[ bnc#835760] gnutls appears to have memory leak in SLES11SP3 Add patch file: 001-mem-leak-psk-auth.patch - Fix bug[ bnc#865804] CVE-2014-0092: gnutls: insufficient X.509 certificate verification Add patch file: CVE-2014-0092.patch ------------------------------------------------------------------ ------------------ 2014-2-26 - Feb 26 2014 ------------------- ------------------------------------------------------------------ ++++ daps: Version 1.1.8 (Bugfix release): - Package-jsp: * did not build due to an error on creating the tarball (fixed) * now supports the --css parameter - online-docs: epub. pdf and single HTML archive were not correctly build (fixed) - significant documentation updates - corrected stylesheet for documentation ++++ kdegraphics4: - Fix landscape printing in okular (bnc#855643) - added patches: * fix_print_with_landscape.diff ++++ kernel-docs: - Btrfs: fix max_inline mount option. - Btrfs: setup inode location during btrfs_init_inode_locked. - Btrfs: don't use ram_bytes for uncompressed inline items. - Btrfs: fix btrfs_search_slot_for_read backwards iteration. - Btrfs: fix to catch all errors when resolving indirect ref. - Btrfs: fix protection between walking backrefs and root deletion. - btrfs: fix warning while merging two adjacent extents. - btrfs: fix defrag 32-bit integer overflow. - btrfs: restrict snapshotting to own subvolumes. - Btrfs: handle EAGAIN case properly in btrfs_drop_snapshot(). - Btrfs: return free space to global_rsv as much as possible. - Btrfs: fix an oops when we fail to relocate tree blocks. - Btrfs: fix the wrong nocow range check. - Btrfs: fix an oops when we fail to merge reloc roots. - fs/btrfs: Integer overflow in btrfs_ioctl_resize(). - Btrfs: improve inode hash function/inode lookup. - Btrfs: fix extent_map block_len after merging. - Btrfs: fix max dir item size calculation. - Btrfs: add missing extent state caching calls. - Btrfs: fix extent boundary check in bio_readpage_error. - commit ef79b50 - powerpc: Add VDSO version of getcpu (fate#316816, bnc#854445). - commit 5ca60b5 - Update patches.fixes/dm-mpath-Do-not-stall-on-invalid-ioctls.patch (bnc#854025). - commit 2ba04d0 - dm-multipath: Do not stall on invalid ioctls (bnc#865342). - scsi_dh_alua: endless STPG retries for a failed LUN (bnc#865342). - commit 0950900 ------------------------------------------------------------------ ------------------ 2014-2-25 - Feb 25 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r208119). * Obsoletes gcc48-pr59860.diff - Add gcc48-ibm-power8-fixes2.diff, more Power8 fixes from IBM, drop gcc48-ibm-power8-pr60137.diff contained therein. ++++ kernel-docs: - net/mlx4_en: Fix pages never dma unmapped on rx (bnc#858604). - commit 4e88c5b - mm: exclude memory less nodes from zone_reclaim (bnc#863526). - commit 983cecc ++++ samba: - Fix problem with server taking too long to respond to a MSG_PRINTER_DRVUPGRADE message; (bso#9942); (bnc#863748). - Fix memory leak in printer_list_get_printer(); (bso#9993); (bnc#865561). ++++ xen: - bnc#798770 - Improve multipath support for npiv devices block-npiv block-npiv-common.sh ------------------------------------------------------------------ ------------------ 2014-2-24 - Feb 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - privcmd: allow preempting long running user-mode originating hypercalls (bnc#861093). - Refresh patches.xen/1242-console-add-preferred.patch. - Refresh other Xen patches. - commit d585fc5 ++++ rubygem-i18n-0_6: - fix rubygem patches are not applied to the gem but only to the tree (bnc#864873) ------------------------------------------------------------------ ------------------ 2014-2-21 - Feb 21 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - audit: dynamically allocate audit_names when not enough space is in the names array (bnc#857358). - audit: make filetype matching consistent with other filters (bnc#857358). - commit e384764 - Refresh patches.suse/btrfs-8888-add-allow_unsupported-module-parameter.patch. - commit ead9a95 - x86, cpu, amd: Add workaround for family 16h, erratum 793 (bnc#852967 CVE-2013-6885). - commit 55594ac ++++ samba: - Depend on %version-%release with all manual Provides and Requires; (bnc#844307). ++++ postgresql94-libs: - Security and bugfix release 9.3.3: * Shore up GRANT ... WITH ADMIN OPTION restrictions (CVE-2014-0060, bnc#864845) * Prevent privilege escalation via manual calls to PL validator functions (CVE-2014-0061, bnc#864846) * Avoid multiple name lookups during table and index DDL (CVE-2014-0062, bnc#864847) * Prevent buffer overrun with long datetime strings (CVE-2014-0063, bnc#864850) * Prevent buffer overrun due to integer overflow in size calculations (CVE-2014-0064, bnc#864851) * Prevent overruns of fixed-size buffers (CVE-2014-0065, bnc#864852) * Avoid crashing if crypt() returns NULL (CVE-2014-0066, bnc#864853) * Document risks of make check in the regression testing instructions (CVE-2014-0067) * Rework tuple freezing protocol. The logic for tuple freezing was unable to handle some cases involving freezing of multixact IDs, with the practical effect that shared row-level locks might be forgotten once old enough. Fixing this required changing the WAL record format for tuple freezing. While this is no issue for standalone servers, when using replication it means that STANDBY SERVERS MUST BE UPGRADED TO 9.3.3 OR LATER BEFORE THEIR MASTERS ARE. * For the other (many!) bug fixes, see the release notes: http://www.postgresql.org/docs/9.3/static/release-9-3-3.html /usr/share/doc/packages/postgresql93/HISTORY ++++ rubygem-actionmailer-3_2: - fix rubygem patches are not applied to the gem but only to the tree (bnc#864873) ++++ rubygem-actionpack-3_2: - fix rubygem patches are not applied to the gem but only to the tree (bnc#864873) ++++ rubygem-activerecord-3_2: - fix rubygem patches are not applied to the gem but only to the tree (bnc#864873) ++++ rubygem-activesupport-3_2: - fix rubygem patches are not applied to the gem but only to the tree (bnc#864873) ------------------------------------------------------------------ ------------------ 2014-2-20 - Feb 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/xfs-underflow-bug-in-xfs_attrlist_by_handle.patch: xfs: underflow bug in xfs_attrlist_by_handle() (bnc#852553, CVE-2013-6382). - commit 2dfeb50 - FS-Cache: Handle removal of unadded object to the fscache_object_list rb tree (bnc#855885). - commit a92ba96 ++++ libqb: - Bump version to 0.17.0 - ipc_socket: further optimize max msg size calculations for fbsd portability tests - ipc_socket: Allow socket max msg size to be calculated more accurately - Upstream version cs: 78978d07ac2f19a801ebde61379ac55359cc17f3 ------------------------------------------------------------------ ------------------ 2014-2-19 - Feb 19 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Drop sap303956-uchar.diff to not shadow full uchar.h provided by glibc since version 2.16. ++++ phonon: - When phonon has to fallback to another device and PulseAudio is used, change the device priority in the configuration so a notification is not shown in every desktop login (bnc#853986) ++++ rubygem-actionpack-3_2: - fix CVE-2014-0081: XSS Vulnerability in number_to_currency, number_to_percentage and number_to_human (bnc#864433) - fix CVE-2014-0082: Denial of Service Vulnerability in Action View when using render :text (bnc#864431) - added patches: * CVE-2014-0081.patch: contains fix for CVE-2014-0081 * CVE-2014-0082.patch: contains fix for CVE-2014-0082 ++++ xen: - Upstream patch from Jan 27691-x86-percpu-Force-INVALID_PERCPU_AREA-into-the-non-canonical-address-region.patch 28304-x86-don-t-drop-guest-visible-state-updates-when-64-bit-PV-guest-is-in-user-mode.patch ------------------------------------------------------------------ ------------------ 2014-2-18 - Feb 18 2014 ------------------- ------------------------------------------------------------------ ++++ ImageMagick: - security update, fixes [bnc#863838] - added patches: * ImageMagick-6.4.3.6-CVE-2014-1947.patch - modified patches: * ImageMagick-6.4.3.6-doc.patch (refreshed) ++++ cmake: - Add ppc64le to FindJNI (cmake-jni-ppc64le.patch) ++++ samba: - Remove superfluous obsoletes *-64bit in the ifarch ppc64 case; (bnc#437293). ++++ xen: - Update to Xen version 4.2.4 c/s 26280 xen-4.2.4-testing-src.tar.bz2 qemu-xen-traditional-dir-remote.tar.bz2 qemu-xen-dir-remote.tar.bz2 - bnc#861256 - VUL-0: xen: XSA-88: use-after-free in xc_cpupool_getinfo() under memory pressure. (fix included with update) - Dropped 78 patches now found in the tarballs. ------------------------------------------------------------------ ------------------ 2014-2-17 - Feb 17 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Enable profiledbootstrap for x86_64, s390x and ppc64le. [bnc#863962] ++++ java-1_7_1-ibm: - Limit package to sle12 compatible architectures - Use SUSE-NonFree License as suggested by legal team - Adapt filelist to much stricter rpm in SLE12 ++++ kernel-docs: - cifs: ensure that uncached writes handle unmapped areas correctly (bnc#864025 CVE-2014-00691). - commit fb9730e - net: change type of virtio_chan->p9_max_pages (bnc#864058). - vmscan: change type of vm_total_pages to unsigned long (bnc#864058). - fs/nfsd: change type of max_delegations, nfsd_drc_max_mem and nfsd_drc_mem_used (bnc#864058). - fs/buffer.c: change type of max_buffer_heads to unsigned long (bnc#864058). - mm: fix return type for functions nr_free_*_pages kabi fixup (bnc#864058). - mm: fix return type for functions nr_free_*_pages (bnc#864058). - commit 63dfde5 - Refresh patches.fixes/nfs-sock-timeout.fix. Enhance patch to match upstream recommendations - commit 8d7c322 ------------------------------------------------------------------ ------------------ 2014-2-14 - Feb 14 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update patches.arch/s390-3270-asynchronous-size-sensing.patch (bnc#792991, LTC#87621, bnc#851597). - commit 2c0b7a4 ++++ nfsidmap: - actually enable the umich_ldap module. bnc#859625 ++++ python-logilab-common: - added patches (bnc#861822): * 2c4fd6f35674.patch (CVE-2014-1839) * 9c28b5b35b38.patch (CVE-2014-1838) ------------------------------------------------------------------ ------------------ 2014-2-13 - Feb 13 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - mm: swap: Use swapfiles in priority order (Use swap files in priority order (bnc#862957)). - commit 72fb77c ++++ python-httplib2: - Include in SLE 12 (FATE #316168) ------------------------------------------------------------------ ------------------ 2014-2-12 - Feb 12 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Add gcc48-ibm-power8-pr60137.diff from IBM to fix ICE with - mno-vsx on Power8. [bnc#863462] ++++ kernel-docs: - Fix return value from lockspace_busy() (https://bugzilla.novell.com/show_bug.cgi?id=827670#c43). - commit eaa650c - ipvs: fix AF assignment in ip_vs_conn_new() (bnc#856848). - commit 32eb20d - Refresh patches.fixes/nfs-state-fix. add to series.conf - commit 4b6df65 - patches.fixes/nfs-state-fix: NFS: don't try to use lock state when we hold a delegation (bnc#831029) - add to series.conf - commit ffb87a0 ++++ samba: - Fix Winbind 100% CPU utilization caused by domain list corruption; (bso#10358); (bnc#786677). ++++ openmpi: - Update to 1.7.4, i.e. a version with support for MPI-3 (fate#316375, fate#314327, fate#314835): The list of features and bug fixes since 1.7.2 is far too long to list here. See the file NEWS in the package documentation for a detailed listing. - Add the files NEWS, LICENSE, AUTHORS, README and README.JAVA.txt as ackagwe documentation. - Create openmpi-testsuite.spec to run the opnmpi testsuite. - Because of one yet unfixed bug running the test suite will always succeed. ++++ postgresql94-libs: - remove postgresql-tas-aarch64.patch: Fix build for aarch64 ------------------------------------------------------------------ ------------------ 2014-2-11 - Feb 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/nfs-reval-dot.fix: Fix patch tags - commit 5f9363d - arch/x86/mm/srat: Skip NUMA_NO_NODE while parsing SLIT (bnc#863178). - commit acceaef - Delete unused patches.fixes/megaraid-sas-kdump-crash-on-dell - commit 6ae63ea - Delete commented-out patches.fixes/nfsd-do-not-reg-v3-for-IPv6 - commit 90212fb ++++ btrfsprogs: - fix udev detection rule with LVM (bnc#842510) ++++ xen: - bnc#863297: xend/pvscsi: recognize also SCSI CDROM devices xend-pvscsi-recognize-also-SCSI-CDROM-devices.patch ------------------------------------------------------------------ ------------------ 2014-2-10 - Feb 10 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.arch/iommu-vt-d-add-quirk-for-broken-interrupt.patch: Fix incorrect config symbol in #ifdef (bnc#844513). - patches.arch/iommu-vt-d-expand-interrupt-remapping-quirk.patch: Refresh. - commit d5b104b - Fix broken CONFIG_SCHED_DEBUG dependencies - Refresh patches.fixes/sched-reinstate-sched_compat_yield.patch. - Refresh patches.fixes/sched-throttle-nohz.patch. - commit e978e4f ++++ kiwi: - v5.05.53 released - Incorporate KIWICollect patch by ro@suse.de downgrade isohybrid error to warning, this does not work on all architectures ++++ openmpi: - Added infinipath-psm-devel to BuildRequires ------------------------------------------------------------------ ------------------ 2014-2-8 - Feb 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.fixes/dlm-set-zero-linger-time-on-sctp-socket.patch. - commit cb36753 ++++ libqb: - ipcs: Prevent ipc server use after free. - Upstream version cs: 29bbe615b5fe6da17db3d6774df557960ae78bbb ------------------------------------------------------------------ ------------------ 2014-2-7 - Feb 7 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - crypto: s390 - fix des and des3_ede ctr concurrency issue (bnc#862796, LTC#103744). - commit 8e3cc76 - crypto: s390 - fix des and des3_ede cbc concurrency issue (bnc#862796, LTC#103743). - commit bc439d1 - kernel: oops due to linkage stack instructions (bnc#862796, LTC#103860). - commit 4fa2eb7 - crypto: s390 - fix concurrency issue in aes-ctr mode (bnc#862796, LTC#103742). - commit e780878 - dump: Fix dump memory detection (bnc#862796,LTC#103575). - commit fd1b31f - Refresh patches.fixes/nfs-lockd.fix. bug fix - commit 0ab49fa ++++ kiwi: - v5.05.52 released ++++ openssl: - openssl-0.9.8b-ipv6-apps.patch: enable ipv6 in the openssl commandline tool. bnc#859228 - openssl-enable-ecdh.patch: Enable ECDH / ECDHE key exchanges. (already available, but previously disabled as it was only a draft standard). bnc#859924 - openssl-0.9.8j-c_rehash-with-openssl1.patch: If we have an (optional) openssl1 binary installed, use this to generate both openssl 0 and openssl 1 style certificate hashes. bnc#862181 ++++ libyaml: - fix CVE-2013-6393: libyaml: heap based buffer, overflow due to integer misuse, bnc#860617 - added patches: * CVE-2013-6393.patch ------------------------------------------------------------------ ------------------ 2014-2-6 - Feb 6 2014 ------------------- ------------------------------------------------------------------ ++++ docbook-xsl-stylesheets: - Fixed bnc#842844 and added upstream patch from r9847 of docbook#1313 (File docbook-xsl-stylesheets-manpages-other-r9847.patch) - .spec: syntax fix. ++++ kernel-docs: - Avoid occasional hang with NFS (bnc#852488). - commit 6a4b4e2 - lockd: send correct lock when granting a delayed lock (bnc#859342). - commit 289ba39 ++++ libzypp: - Remove license text from test data (bnc#862471) - version 9.37.6 (8) ++++ python: - security-only update to 2.6.9, see python-base.changes for details - drop upstreamed patch CVE-2013-4238_py26.patch - ssl-accept-partial-writes.diff turns off OpenSSL's aggressive optimizations that conflict with Python's GC (bnc#859068) - python-2.6.8-fips-mode.patch - fix usage of MD5 in hmac module when the cipher is not available (bnc#847135) ++++ python-base: - update to 2.6.9 - *only contains* the following security fixes: * CVE-2013-4238 (NULL bytes in SSL certs, bnc#834601) * CVE-2013-1752 (read limits in stdlib, bnc#856836) * enforce security of .netrc reads (issue14984) http://bugs.python.org/issue14984 * execution of untrusted Python code in tkinter (issue16248) http://bugs.python.org/issue16248 - python-2.6.8-fips-mode.patch - fix usage of MD5 in hmac module when the cipher is not available (bnc#847135) ++++ python-doc: - update to build against 2.6.9 (see python-base.changes) ------------------------------------------------------------------ ------------------ 2014-2-5 - Feb 5 2014 ------------------- ------------------------------------------------------------------ ++++ openldap2: - Build a openldap2-client package against libopenssl1 for libssl.so.1 compatibility. Build only the library package as "libldap-openssl1-2_4-2". bnc#861014 / bnc#864912 / FATE#316898 ++++ openldap2-client: - Build a openldap2-client package against libopenssl1 for libssl.so.1 compatibility. Build only the library package as "libldap-openssl1-2_4-2". bnc#861014 / bnc#864912 / FATE#316898 ++++ yast2: - Check for Chef outside in the yast2 shell script to catch modules not using CommandLine (bnc#803358) - 2.17.134 ------------------------------------------------------------------ ------------------ 2014-2-4 - Feb 4 2014 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 24.3.0esr (bnc#861847) * MFSA 2014-01/CVE-2014-1477/CVE-2014-1478 (bmo#921470, bmo#937697, bmo#951366, bmo#953114, bmo#945939, bmo#950000, bmo#950438, bmo#925896, bmo#937132, bmo#936808, bmo#945334, bmo#944321, bmo#911707, bmo#938431, bmo#944278, bmo#922603, bmo#925308, bmo#950452, bmo#939472, bmo#944851, bmo#924348, bmo#942152, bmo#932162, bmo#942940, bmo#945585, bmo#946733, bmo#953373, bmo#867597, bmo#911845, bmo#916635) Miscellaneous memory safety hazards (rv:27.0 / rv:24.3) * MFSA 2014-02/CVE-2014-1479 (bmo#911864) Clone protected content with XBL scopes * MFSA 2014-04/CVE-2014-1482 (bmo#943803) Incorrect use of discarded images by RasterImage * MFSA 2014-08/CVE-2014-1486 (bmo#942164) Use-after-free with imgRequestProxy and image proccessing * MFSA 2014-09/CVE-2014-1487 (bmo#947592) Cross-origin information leak through web workers * MFSA 2014-12/CVE-2014-1490/CVE-2014-1491 (bmo#934545, bmo#930874, bmo#930857) NSS ticket handling issues * MFSA 2014-13/CVE-2014-1481 (bmo#936056) Inconsistent JavaScript handling of access to Window objects - require NSS 3.15.4 (bnc#859055) ++++ augeas: - backport memory access fix (bnc#849252) for a bug exposed by rubygem-ruby-augeas and puppet - enable build time tests; patch them because of our grub patch (bnc#849252) ++++ gcc48: - stack-protector-aarch64.patch: enable support for -fstack-protector on arm64 - function-profiling-aarch64.patch: enable support for function profiling on arm64 ++++ curl: - fixed timestamp of test172 to work after February 1st 2014. bnc#862144 ++++ mozilla-nss: - update to 3.15.4 (bnc#861847, bnc#859055) * required for Firefox 27 * regular CA root store update (1.96) * some OSCP improvments * other bugfixes - removed obsolete char.patch ------------------------------------------------------------------ ------------------ 2014-2-3 - Feb 3 2014 ------------------- ------------------------------------------------------------------ ++++ avahi: - avahi-set-thread-running.patch: Fix setting of thread_running flag (bnc#725386). ++++ kernel-docs: - Refresh patches.suse/btrfs-8173-introduce-lock_ref-unlock_ref.patch. - commit 70e1555 - Btrfs: introduce lock_ref/unlock_ref (FATE#312888). - Btrfs: move the extent buffer radix tree into the fs_info (FATE#312888). - Btrfs: use a bit to track if we're in the radix tree (FATE#312888). - Btrfs: deal with io_tree->mapping being NULL (FATE#312888). - Btrfs: Simplify the logic in alloc_extent_buffer() for existing extent buffer case (FATE#312888). - commit 3e80cc1 ------------------------------------------------------------------ ------------------ 2014-2-1 - Feb 1 2014 ------------------- ------------------------------------------------------------------ ++++ ocaml: - Disable opt on aarch64 ------------------------------------------------------------------ ------------------ 2014-1-31 - Jan 31 2014 ------------------- ------------------------------------------------------------------ ++++ fontconfig: - fix fontconfig crash for special bdf font [bnc#860596] * added fontconfig-crash-bdf.patch ++++ gimp: - modified patches: * gimp-853425-CVE-2013-1978.patch - add missing piece. ++++ kernel-docs: - Btrfs: introduce qgroup_ulist to avoid frequently allocating/freeing ulist (FATE#312888). - Btrfs: fix memory patcher through fs_info->qgroup_ulist (FATE#312888). - Btrfs: avoid double free of fs_info->qgroup_ulist (FATE#312888). - Btrfs: fix crash regarding to ulist_add_merge (FATE#312888). - Refresh patches.suse/btrfs-8109-fix-qgroup-rescan-resume-on-mount.patch. - Refresh patches.suse/btrfs-8162-fix-oops-when-writing-dirty-qgroups-to-disk.patch. - commit 5511b82 - Delete patches.suse/btrfs-8019-let-fiemap-flag-compressed-extents.patch. - Delete patches.suse/btrfs-8022-forced-readonly-when-free_log_tree-fails.patch. - Delete patches.suse/fs-FIEMAP-add-flag-for-compressed-extent.patch. - commit d31147f - mpt2sas: Fix unsafe using smp_processor_id() in preemptible (bnc#853166). - commit ed97f1b ++++ kiwi: - don't limit suseInsertService to .service suffix for systemd * The service file is now searched in several directories and as suffix .system and .mount is allowed - Make sure image is filled with random data prior to the creation of a luksFormat on it - Added __hasBootLoaderTools runtime check With this check we test if the tool chain to install the requested bootloader is installed on the image build machine - added type attribute This attribute allows to select a specific set of options passed to the cryptsetup call in order to create a consistent luks format supported by the capabilities of the selected distribution. With this commit luksOS="sle11" will be supported ------------------------------------------------------------------ ------------------ 2014-1-30 - Jan 30 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - balloon: don't crash in HVM-with-PoD guests. - hwmon: (coretemp) Fix truncated name of alarm attributes. - Refresh patches.xen/1232-backends-reject-ring-overruns.patch (bnc#842553). - Refresh patches.xen/xen-blkfront-discard, patches.xen/xen-blkfront-discard-secure (bnc#859009). - Refresh other Xen patches. - commit 02d1968 ++++ ocaml: - Provide ocaml(ocaml.opt)==version if available ++++ sg3_utils: - Update sg_xcopy to version 0.41 (bnc#852420) - Update rescan-scsi-bus.sh to latest version from upstream (bnc#846660,bnc#829642) ------------------------------------------------------------------ ------------------ 2014-1-29 - Jan 29 2014 ------------------- ------------------------------------------------------------------ ++++ kiwi: - v5.05.51 released - v5.05.50 released ++++ x11-input-wacom: - u_Fixup-namespace-for-debugging-and-logging-code.patch: Fix namespace of non-static driver functions to not conflict with other drivers. - u_Amend-man-page-for-new-driver-options.patch Add new options to wacom(4). (bnc#869431, bnc#860803, FATE#316712) ++++ xen: - bnc#858496 - Xen: XSA-83: Out-of-memory condition yielding memory corruption during IRQ setup 28305-x86-irq-avoid-use-after-free-on-error-path-in-pirq_guest_bind.patch (Replaces xsa83.patch) - bnc#860163 - VUL-0: xen: XSA-84: integer overflow in several XSM/Flask hypercalls xsa84.patch - bnc#860165 - VUL-0: xen: XSA-85: Off-by-one error in FLASK_AVC_CACHESTAT hypercall xsa85.patch - bnc#860300 - VUL-1: xen: XSA-86: libvchan failure handling malicious ring indexes xsa86.patch - bnc#860302 - VUL-0: CVE-2014-1666: xen: XSA-87: PHYSDEVOP_{prepare,release}_msix exposed to unprivileged guests 28307-x86-PHYSDEVOP-prepare-release-msix-are-privileged.patch - Upstream patches from Jan 28296-mce-fix-race-condition-in-mctelem_xchg_head.patch 28297-nested-EPT-fixing-wrong-handling-for-L2-guest-s-direct-mmio-access.patch 28299-common-sysctl-Don-t-leak-status-in-SYSCTL_page_offline_op.patch 28302-Nested-VMX-prohibit-virtual-vmentry-vmexit-during-IO-emulation.patch ------------------------------------------------------------------ ------------------ 2014-1-28 - Jan 28 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Pull gcc48-ibm-power8.diff from IBM to fix quad-word memory accesses for litte endian power8 for real. [bnc#860405] - Revert previous changes to gcc48-ibm-power8.diff. ++++ kernel-docs: - Refresh patches.drm/drm-mgag200-Added-resolution-and-bandwidth-limits-for-various-G200e-products.patch. Add mainline version. - commit d5dc689 ++++ samba: - Make winbindd print the interface version when it gets an INTERFACE_VERSION request; (bnc#726937). ------------------------------------------------------------------ ------------------ 2014-1-27 - Jan 27 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - NOHZ: Check for nohz active instead of nohz enabled (bnc#846790). - nohz: Fix another inconsistency between CONFIG_NO_HZ=n and nohz=off (bnc#846790). - commit b961729 ++++ kiwi: - v5.05.49 released ------------------------------------------------------------------ ------------------ 2014-1-26 - Jan 26 2014 ------------------- ------------------------------------------------------------------ ++++ gimp: - Add gimp-853423-CVE-2013-1913.patch to fix bnc#853423 VUL-0: CVE-2013-1913: gimp: xwd plugin g_new() integer overflow - Add gimp-853425-CVE-2013-1978.patch to fix bnc#853425 VUL-0: CVE-2013-1978: gimp: XWD plugin color map heap-based buffer overflow ++++ pwlib: - Add pwlib-809917-billion-laughs-CVE-2013-1864.patch to fix bnc#809917 Backport from upstream, changes the source code to make it work in pwlib-1.10. ------------------------------------------------------------------ ------------------ 2014-1-24 - Jan 24 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - hwmon: (coretemp) Fix truncated name of alarm attributes - commit e024645 ++++ libvirt: - Update to libvirt 1.0.5.9 stable release - http://wiki.libvirt.org/page/Maintenance_Releases#1.0.5_series contains complete changelog - CVE-2013-6458, CVE-2014-1447 - Dropped upstream patches f8c1cb90-CVE-2013-6436.patch, 9faf3f29-LXC-memtune.patch - bnc#857492, bnc#858817 ------------------------------------------------------------------ ------------------ 2014-1-23 - Jan 23 2014 ------------------- ------------------------------------------------------------------ ++++ openssl: - Fix bug[ bnc#860332] openssl cmdline does not check certs Add file: bug860332-cmdline-check-certs.patch ++++ x11-input-wacom: - Update driver to version 0.9.8 - Add fixes for DFS: * u_Fix-logging-of-serial-number-of-devices.patch: Make sure serial number is available for proximity event logging * u_01-Remove-code-which-discards-the-first-two-event-sequences-on-USB-devices.patch u_15-Add-option-to-disable-pressure-recalibration.patch: These address the 'lost button event' issue when pen hits the tablet too fast. * u_02-Add-option-to-enable-logging.patch u_03-Back-out-some-CUSTOM_DEBUG-specific-code.patch u_04-Move-CUSTOM_DEBUG-function-defines-to-a-header.patch u_05-Change-format-of-time-stamp-string.patch u_06-Always-build-wcmCustomDebug.c.patch u_07-Do-not-spam-with-CUSTOM_DEBUG-messages-when-this-debug-mode-is-disabled.patch u_08-Consolidate-code-that-warns-about-worn-out-pressure-sensors.patch u_09-Add-logging-for-proximity.patch u_10-Change-LastPenSerial-LastToolSerial.patch u_11-Log-pressure-events.patch u_12-Log-button-events.patch u_13-Add-more-messaging-in-code-which-handles-abnormal-situations.patch u_14-Simplify-detectChannelChange.patch: These fixes impelment logging of events and fix up some of the existing debug messages in the driver. * set configure option --enable-customdebug (bnc#869431, bnc#860803, FATE#316712) ------------------------------------------------------------------ ------------------ 2014-1-22 - Jan 22 2014 ------------------- ------------------------------------------------------------------ ++++ bind: - Update to version 9.9.4P2 * Fixes named crash when handling malformed NSEC3-signed zones (CVE-2014-0591, bnc#858639) * Supports rate limiting --enable-rrl. ++++ kernel-docs: - Delete patches.arch/iommu-vt-d-only-warn-on-broken-irq-remapping.patch This restores upstream (and SLE12) behavior when interrupt remapping is enabled on faulty hardware. That's what the customer wants (bnc#844513). - commit 5c01f4e - scsi_dh_rdac: Add new IBM 1813 product id to rdac devlist (bnc#846654). - commit 67a6019 ++++ libvirt: - Add CAP_SYS_PACCT capability to libvirtd AppArmor profile Modified install-apparmor-profiles.patch bnc#817407 ------------------------------------------------------------------ ------------------ 2014-1-21 - Jan 21 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - rtc-cmos: Add an alarm disable quirk (bnc#805740). - Delete patches.fixes/rtc-add-an-alarm-disable-quirk.patch. Add the backported upstream version. - commit b26a51a - Add fix to futex scalability series ((bnc#851603), and update headers now that they're upstream. - futexes: Fix futex_hashsize initialization (bnc#851603). - Refresh patches.fixes/futex-Avoid-taking-the-hb-lock-if-there-is-nothing-to-wake-up.patch. - Refresh patches.fixes/futex-Clean-up-various-details.patch. - Refresh patches.fixes/futex-Document-multiprocessor-ordering-guarantees.patch. - Refresh patches.fixes/futex-Increase-hash-table-size-for-better-performance.patch. - commit ba49ee7 - Refresh patches.fixes/nfs-reval-dot.fix. fix Git-commit tag - commit eb998d3 - patches.fixes/md-readd-fix: md: Change handling of save_raid_disk and metadata update during recovery (bnc#849364). - commit e2e45cd ++++ kiwi: - add PostgreSQL support to KIWIAnalyseCustomData to check for running databases and if they are available try to export the entire content. - add PostgreSQL support to KIWIConfig.sh to import previously dumped databases during image building. ++++ yast2: - bnc#827031 - fixed /sbin/yast2 to start correctly in non UTF-8 environment - 2.17.133 ------------------------------------------------------------------ ------------------ 2014-1-20 - Jan 20 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Delete patches.drivers/libata-ahci-aspire-3810t-noncq This has been fixed in upstream properly, the patch just needlessly disables NCQ on the affected system. - commit 6064ead ++++ kiwi: - This is a combination of the following commits authored by Marcus and Robert to address EC2 build issues, commit ids from master + af10ecce8622a1a7aa11cc1ea9ca6dea4d01de63 + 086c2a2bbb763bdd266274d13310f03950be92ed + e8c9cb2f97e0efe6722035a2817390012bc5b959 + 87b49253440edacad78354170a9e839edbe2a986 + 2ea8ea61980595b84870dccbf6b706f38724c524 + 1293f3d6af18eb96973bdc39253c7ea729d82cdd + 8f1f4ca176a76b51380394e068f8672ff5326838 + 9d43e03a812dd056ae9bcbaff9e967d3261991e2 + 50b72353b14e7c15044be7dc193af953d41420ea + 6741d23cfd282faf9f2acfa84e162536391b6124 + aba2000d946e1cf5d577a625c1cbfcab218fad7d - Change the way we create an EC2 image + Previously we created an EC2 image as a flat filesystem image this requred some special codeing and we ended up calling mkinitrd from within kiwi. As mkinitrd evolved to require a live root filesystem and with the impending move to dracut we need to start using a kiwi generated initrd. Therefore, EC2 image will now be created as disk images just like other vmx images. We also drop the use of the external ec2-ami-tools. Creating abundle is relatively easy and this functionality requires people to add thei EC2 credentials to the config file. That makes it easy to accidentally share private information. + Remove XML elemnts ec2config and its children ec2accountnr, ec2certfile, ec2privatekeyfile, ec2region + Introduce "ec2" as a firmware option we need this to set the partition table to be gpt instead of msdos + Print an error message for format="ec2" during XML validation we maintain format="ec2" in the schema for now to allow us to generate a more sensible error message than the parser would. This is an incompatible schema change + Remove EC2 region check in Validator + Remove KIWIEC2Region.txt + Update unit tests + Properly pass the boottimeout setting to the initrd config + Remove the XMLEC2Data object and its unit tests + Remove special code for EC2 initrd creation calling mkinitrd - added ec2Flavour profile to create EC2 VMX disk image types along with this change the examples using format="ec2" were adapted to disk layout instead of flat (filesystem) layout too - Fixed ec2 kernel profile for 13.1 and SLE11 the required xen drivers were not added when using ec2 profile the xen package must not be installed when using ec2 profile - Update oem/vmx boot image descriptions to allow selecting an ec2 setup profile and an ec2 kernel profile - Fixed vmx type definition for EC2 usage in all templates * use ec2 and ec2k boot and kernel profiles - fix spelling EC2 not Ec2 - update the documentation for the EC2 image build + document new commands to use for uploading images aws-cli vs ec2-* commands + changes due to the new way of building images - we no longer create the bundle in kiwi _ adjust for removed XML elements - update the examples to reflect the new type element setup for EC2 - final touches for EC2 changes + let kiwi add root= to the kernel command line for EC2 images this is needed to get the drivers to load properly + consider installfailsafe setting for grub vmx images - Fixed docbook syntax for changes recently done in kiwi-doc-ec2.xml - ec2 example for 13.1 + forgot to commit this with the doc changes in 87b49253440eda - Allow vmxboot to boot Xen EC2 instances In order to do that the boot device setup code now also searches for the presence of the 'root=...' information from cmdline as it is passed when booting via EC2. If found the given device is used and the system boots in LOCAL_BOOT mode ------------------------------------------------------------------ ------------------ 2014-1-19 - Jan 19 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Disable quad-word memory accesses for little endian power8 (modified patches: gcc48-ibm-power8.diff) - Enable power8 code generation for repos named "power8". ++++ libzypp: - Fix missing priority in RepoInfo::dumpAsXML (bnc#855845) - version 9.37.5 (8) ------------------------------------------------------------------ ------------------ 2014-1-17 - Jan 17 2014 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r206703). * pulls fixes for PR58139 (ppc64le) and PR59803 (s390x) * reverts change causing x86 ABI breakage - gcc48-pr59844.diff: Add backport fixing power8 ppc64le bootstrap issue. - gcc48-pr59860.diff: Add backport fixing s390x ICEs. ++++ kernel-docs: - Fixed git-commit -> Git-commit, updated some Patch-mainline, as needed. - commit 7b05a3c - patches.fixes/cifs-cleanup-cifs_filldir.patch - patches.fixes/cifs-don-t-instantiate-new-dentries-in-readdir-for-i.patch - patches.fixes/cifs-get-rid-of-blind-d_drop-in-readdir.patch - patches.fixes/cifs-rename-cifs_readdir_lookup-to-cifs_prime_dcache.patch - patches.fixes/cifs-revalidate-directories-instiantiated-via-FIND_-in-or.patch Add missing Git-commit tags. - commit 17a91cd - Update s390 kabi files (bnc#848335) - commit 3c612b5 - Revert "HID: multitouch: Add support for NextWindow 0340 touchscreen" This reverts commit 5fa212b283950fd46819cb062337f86865af7449. The device turned out to be incompatible with Win8 standard. - commit 6049ed6 - S390: Avoid kabi change due to newly visible structures. - commit e8f693f - Import kabi files from 3.0.101-0.8 - commit bd6ba1f - Refresh to v3.13 patch - X.509: Fix certificate gathering (bnc#805114). - Delete patches.fixes/0001-MODSIGN-Fix-including-certificate-twice-when-the-si.patch. - commit 7372528 - Update GIT commit headers. - Refresh patches.fixes/bug-722429_0001-add-device-entry-for-Broadcom-Valentine-combo-card.patch - commit d3bb2ab - patches.drivers/ibmvfc-fix-for-offlining-devices.patch: Update patch header. - commit 3b54be6 - HID: multitouch: Add support for NextWindow 0340 touchscreen (bnc#849855). - HID: multitouch: Add support for Qaunta 3027 touchscreen (bnc#854516). - HID: multitouch: add support for Atmel 212c touchscreen (bnc#793727). - HID: multitouch: partial support of win8 devices (bnc#854516,bnc#793727,bnc#849855). - HID: hid-multitouch: add support for the IDEACOM 6650 chip (bnc#854516,bnc#793727,bnc#849855). - commit 5fa212b ++++ libqt4: - Mitigate performance regression in isExpandedEntityValueTooLarge() (bnc#859158) * added libqt4-mitigate-performance-regression-isExpandedEntityValueTooLarge.patch ++++ libqb: - ipc: Remove ipc connection reference given to dispatch functions (bnc#857779) - ipc: Fixes memory leak in server connection accept when client partially connects (bnc#857779) - Upstream version cs: d9706f75619976e334a109d0dbfdeac3b1074fe4 ++++ libqt4-devel-doc: - Mitigate performance regression in isExpandedEntityValueTooLarge() (bnc#859158) * added libqt4-mitigate-performance-regression-isExpandedEntityValueTooLarge.patch ++++ libqt4-devel-doc-data: - Mitigate performance regression in isExpandedEntityValueTooLarge() (bnc#859158) * added libqt4-mitigate-performance-regression-isExpandedEntityValueTooLarge.patch ++++ libqt4-sql-plugins: - Mitigate performance regression in isExpandedEntityValueTooLarge() (bnc#859158) * added libqt4-mitigate-performance-regression-isExpandedEntityValueTooLarge.patch ------------------------------------------------------------------ ------------------ 2014-1-16 - Jan 16 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/X.509-time-h-include: Replace with upstream version - commit eeaa6d5 - Update git-commit and patch-mainline tags patches.arch/x86-check-for-valid-irq_cfg-pointer-in-smp_irq_move_cleanup_interrupt.patch patches.arch/x86-kdump-ioapic_reset-remote-IRR-in-clear_IO_APIC.patch patches.arch/x86-pci-Increase-the-number-of-iommus-supported-to-be-MAX_IO_APICS.patch patches.arch/x86_PCI-Preserve-existing-pci_bfsort-whitelist-for-Dell-systems.patch patches.drivers/pci-introduce-option-to-disable-ARI.patch patches.fixes/Documentation-fix-typo-in-freezer-subsystem_txt.patch patches.fixes/pci-pciehp-fix-pcied_cleanup.patch - commit c7b8752 - Refresh patches.fixes/0001-pciehp-By-default-handle-resume.patch. - commit 41f1ee7 - Delete patches.arch/ppc-fate-312285-1. It only #defines PCIE_DEVICE_ID_NEO_2_OX_IBM in include/linux/pci_ids.h, but with linux-3.0, that definition has also made it into drivers/tty/serial/8250_pci.c - commit 4f845b6 - Refresh patches.fixes/0001-USB-sd-sd_start_stop_device-proper-error-codes.patch. - Refresh patches.fixes/SCSI-sd-error-handling-in-sd_sync_cache.patch. - commit 664d83a - Refresh patches.drivers/rt2x00-Fix-rfkill_polling-register-function. Update git-commit and patch-mainline tags - commit 9c7eee6 - Refresh patches.drivers/rt2x00-fix_rt3290_resuming.patch. Update git-commit and patch-mainline tags - commit c169b28 - Refresh patches.drivers/0017-rt2x00-Fix-PCI-interrupt-processing-race-on-SMP-syst.patch. Add missing commit-id tag - commit 86c1e62 - patches.drivers/0005-modify-hub-to-detect-unplugs-in-all-states.patch: (bnc#807560). - Refresh patches.drivers/usb-storage-add-quirk-for-mandatory-READ_CAPACITY_16.patch. - Refresh patches.fixes/0003-SCSI-sd-sd_start_stop_device-error-handling.patch. - commit 0e2e43d - Refresh patches.drivers/btusb-add-mt76x0e.patch. - commit 28b82d8 - Refresh patches.drivers/0001-xhci-endianness-xhci_calculate_intel_u2_timeout.patch. - commit 31f3809 - Replaced lpfc patches with official version (bnc#818064) - No functional change, only version update. - Added: * patches.drivers/lpfc-8.3.7.10.6p-Fix-Crash-in-lpfc_els_timeout_handler.patch * patches.drivers/lpfc-8.3.7.10.6p-Fix-kernel-panic-from-corrupted-ndlp-list.patch * patches.drivers/lpfc-8.3.7.10.6p-Update-lpfc-version-for-8.3.7.10.7p-driver-release.patch - Deleted: patches.drivers/lpfc-correct-an-issue-with-rrq-processing.patch. patches.drivers/lpfc-correct-some-issues-with-txcomplq-processing.patch. - commit 1ab2688 - Delete patches.fixes/dm-mpath-abort-all-requests-when-failing-a-path.patch. - commit b9b9940 - Refresh patches.suse/md-Do-not-block-when-displaying-info.patch. git-commit update. - commit ae3b485 ++++ openmpi: - Create openmpi-testsuite.spec to run the openmpi testsuite. - Because of one yet unfixed bug running the test suite will always succeed. ------------------------------------------------------------------ ------------------ 2014-1-15 - Jan 15 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - s390/pci: remove PCI/MSI interruption class (FATE#83037, LTC#94737). - commit b430c5a - Fill in more upstream headers. - commit e59c904 - mm: reschedule to avoid RCU stall triggering during boot of large machines (bnc#820434,bnc#852153). - commit 19627ce - efifb: prevent null-deref when iterating dmi_list (bnc#848055). - commit c8cce5f - x86/PCI: reduce severity of host bridge window conflict warnings (bnc#858534). - commit 6bcd247 - scsi_dh_alua: fixup misplaced brace in alua_initialize() (bnc#858831). - commit fc09d03 - Refresh Xen patches (bnc#807434, bnc#848652, bnc#852624). - commit 0e621ee - Update Git-commit: headers - Refresh patches.fixes/dcache-soft-lockup.fix. - Refresh patches.fixes/net-sunrpc-xpt_auth_cache-should-be-ignored-when-exp.patch. - Refresh patches.fixes/nfs-slot-table-alloc. - Refresh patches.fixes/sunrpc-cache-ensure-items-removed-from-cache-do-not-.patch. - Refresh patches.fixes/sunrpc-cache-remove-races-with-queuing-an-upcall.patch. - Refresh patches.fixes/sunrpc-cache-use-cache_fresh_unlocked-consistently-a.patch. - commit 0146711 ++++ kiwi: - Fixed grub2 prefix setup in grub.cfg. if $root is changed by a search it's important to update the prefix accordingly - Fixed grub2-bios-setup call If the install disk is loop mounted while calling grub2-bios-setup the call fails the install command can't deal with disk devices mapped in /dev/mapper ++++ postgresql94-libs: - Fix handling of alternatives in the file lists. ------------------------------------------------------------------ ------------------ 2014-1-14 - Jan 14 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Merge patches.arch/x86-mce-xeon75xx-fix-typo-causing-a-kernel-crash.patch, patches.arch/x86_mce_intel_decode_physical_address_compile_fix.patch and patches.arch/x86_mce_intel_decode_physical_address_rename_fix.patch into patches.arch/x86_mce_intel_decode_physical_address.patch. These are not upstream so there is no point in keeping seperate patches for the bugfixes. - commit 3e653e3 - Add mainline tags to some IBM patches (ipr, ppc, s390). - commit 6861613 - Futex scalability (bnc#851603) - futex: move user address verification up to common code (bnc#851603). - futexes: Clean up various details (bnc#851603). - futexes: Increase hash table size for better performance (bnc#851603). - futexes: Document multiprocessor ordering guarantees (bnc#851603). - futexes: Avoid taking the hb->lock if there's nothing to wake up (bnc#851603). - commit 7943354 ++++ curl: - fix for CVE-2014-0015 (bnc#858673) * re-use of wrong HTTP NTLM connection in libcurl * added curl-CVE-2014-0015-NTLM_connection_reuse.patch ++++ udev: - rules: add cciss by-id links when using hpsa module (bnc#858663) add: udev-147-cciss_compat-create-by_id-symlinks.patch ------------------------------------------------------------------ ------------------ 2014-1-13 - Jan 13 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh patches.drivers/bnx2x-0003-broadcom-Move-the-Broadcom-drivers.patch. - Delete patches.drivers/bnx2x-remove-WARN_ON.patch. The removed patch made it upstream in the form of the already present patches.drivers/bnx2x-0031-bnx2x-remove-false-warning-regarding-interrupt-numbe.patch - commit e1210b6 - Delete patches.suse/drivers-net-Add-README-about-driver-re-organization.patch. Used to document that the network driver subdirectory reorganisation done in 3.2 was backported to SP3. It was there to help partners do the backports I think. I've removed it now, as it's not really needed anymore. - commit de8dfa9 - patches.drivers/bnx2x-remove-false-warning-regarding-interrupt-numbe.patch: bnx2x: remove false warning regarding interrupt number (bnc#769035). - patches.drivers/bnx2x-remove-WARN_ON.patch: Delete. - commit 735ad98 - Refresh Xen patches (bnc#807434, bnc#848652, bnc#852624). - commit 431e4cb - Update patch headers with correct commit IDs * patches.drivers/0032-fcoe-libfcoe-Move-common-code-for-fcoe_get_lesb-to-f.patch. * patches.drivers/0040-be2iscsi-Fix-MSI-X-Interrupt-Names.patch. * patches.drivers/be2net-0146-be2net-enable-interrupts-in-be_probe-RoCE-and-other-.patch. * patches.drivers/be2net-0147-Use-new-F-W-mailbox-cmd-to-manipulate-interru.patch. * patches.drivers/fcoe-0063-libfcoe-check-for-unuseable-fcfs.patch. * patches.drivers/fcoe-0064-libfcoe-handle-cvl-while-waiting.patch. * patches.drivers/fnic-FIP-VLAN-Discovery-Feature-Support.patch. * patches.drivers/fnic-Fix-memory-leak-issue-in-Vlan-Discovery.patch. * patches.drivers/fnic-Fnic-Trace-Utility.patch. * patches.drivers/fnic-Incremented-driver-version.patch. * patches.drivers/fnic-Kernel-panic-due-to-FIP-mode-misconfiguration.patch. * patches.drivers/fnic-New-debug-flags-and-debug-log-messages.patch. * patches.drivers/fnic-fnic-driver-may-hit-BUG_ON-on-device-reset.patch. * patches.drivers/fnic-updated-MAINTAINERS-list.patch. * patches.drivers/libata-ahci-aspire-3810t-noncq. * patches.drivers/mpt2sas-EEH_recovery-for-sles11-sp3.patch. * patches.drivers/xhci_bad_pci_irq.patch. * block: fix max discard sectors limit (bnc#813643). * patches.fixes/scsi-check-host-lookup-failure. * patches.fixes/scsi-dh-fixup-kernel-doc. * patches.fixes/scsi-handle-MLQUEUE-busy-response-in-scsi_send_eh_cmnd.patch. * patches.fixes/sd-avoid-deadlocks-when-running-under-multipath.patch. * patches.suse/dasd-Abort-all-requests-from-ioctl.patch. * patches.suse/dasd-Clarify-comment.patch. * patches.suse/dasd-Disable-block-timeouts-per-default.patch. * patches.suse/dasd-Implement-failfast_retries.patch. * patches.suse/dasd-Reduce-amount-of-messages-for-specific-errors.patch. * patches.suse/dasd-Rename-ioctls.patch. * patches.suse/dasd-blk-timeout.patch. * patches.suse/dasd-continue-device-tasklet.patch. * patches.suse/dasd-detailed-io-errors.patch. * patches.suse/dasd-fail-all-requests-after-timeout.patch. * patches.suse/dasd-lock-ccw-queue-in-dasd_times_out.patch. * patches.suse/dasd-make-DASD_FLAG_TIMEOUT-setting-more-robust.patch. * patches.suse/dasd-make-number-of-retries-configurable.patch. * patches.suse/dasd-rename-flag-to-abortall.patch. * patches.suse/dasd-timeout-attribute.patch. - commit f7a4d1e - patches.fixes/sched-rt-Fix-rq-cpupri-leak-while-enqueue-dequeue-child-RT.patch: sched/rt: Fix rq's cpupri leak while enqueue/dequeue child RT entities. - commit ab54c42 - patches.fixes/sched-rt-Use-root_domain-of-rt_rq-not-current-processor.patch: sched/rt: Use root_domain of rt_rq not current processor (bnx#857919). - commit 7ef046e - Update some git-commit headers - commit 5924b3b ------------------------------------------------------------------ ------------------ 2014-1-11 - Jan 11 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Fixing git-commit and patch-mainline tags - commit 5c3a461 - Update patch headers: patches.arch/ppc-efika-mpc52xx-ac97.patch patches.arch/ppc-efika-psc-console-autodetection.patch patches.arch/ppc64-xmon-dmesg-printing.patch patches.drivers/ehea-modinfo.patch patches.suse/apm_setup_UP.diff patches.suse/mkinitrd-scsi_host_template-proc_name.patch patches.suse/nameif-track-rename.patch patches.suse/radeon-monitor-jsxx-quirk.patch patches.suse/suse-hv-HV_DRV_VERSION.patch patches.suse/suse-hv-bind-hv_blkkvsc-to-hv_storvsc.patch patches.suse/suse-hv-bind-hv_mouse-to-hid-hyperv.patch patches.suse/suse-hv-guest-os-id.patch patches.suse/suse-hv-hv_kvp-sles11sp2-negotiate-serveral-versions.patch patches.suse/suse-hv-storvsc-scsi-proc_name.patch - commit e567845 ------------------------------------------------------------------ ------------------ 2014-1-10 - Jan 10 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - ceph: update patch tags Many of the patches were missing Git-commit tags and the majority of the Patch-mainline tags were inaccurate. - commit 247baaa - Fix patch header whitespace. - commit 356dd28 - Updated patch tags. - commit 8f2f4e7 - Refresh patches.drivers/hp_accel-ignore-resume-error. - Refresh patches.fixes/0001-xhci-Fix-spurious-wakeups-after-S5-on-Haswell.patch. - commit 2e5c1e6 - rpm/mkspec: Fix for older Perl - commit 87563ea - rpm/mkspec: Stop generating _constraints.changes - commit c7a74fa - Refresh patches.drivers/alsa-sp3-0012-Re-setup-HDMI-pin-and-audio-infoframe-on-st. - Refresh patches.drivers/alsa-sp3-0014-load-EQ-params-into-IDT-codec-on-HP-bNB13. - Refresh patches.drm/3299-drm-i915-Disable-GGTT-PTEs-on-GEN6-suspend. - commit 85a64b5 - Updated patch headers patches.arch/fadump-01-documentation.patch patches.arch/fadump-02-reserve_mem.patch patches.arch/fadump-03-register_dump.patch patches.arch/fadump-04-create_elfcorehdr.patch patches.arch/fadump-05-read_cpudump_data.patch patches.arch/fadump-06-add_vmcoreinfo.patch patches.arch/fadump-07-vmcore_cleanup.patch patches.arch/fadump-08-release_mem.patch patches.arch/fadump-09-shutdown_cleanup.patch patches.arch/fadump-10-remove_phypdump.patch patches.arch/ia64-resvd-overlap - commit e431578 - Refresh patches.suse/0001-elousb-some-systems-cannot-stomach-work-around.patch. - commit 588b110 - refresh patches.suse/bug-853428-scsi_device-fix-kabi.patch - commit 6ddecbc - Refresh patches.suse/0002-xhci-hub.c-preserved-kABI.patch. - commit 7edee1b - Refresh patches.suse/0001-storage-SMI-Corporation-usb-key-added-to-READ_CAPACI.patch. - commit 970ba1c - Refresh patches.drivers/0001-uvc-increase-number-of-buffers.patch. - commit 2fa2c8c - Refresh patches.suse/0001-elousb-really-long-delays-for-broken-devices.patch. - commit 83a8f59 - Refresh patches.drivers/0001-uvc-increase-number-of-buffers.patch. - commit f9cfb93 - Updated patch headers patches.fixes/writeback-do-not-sync-data-dirtied-after-sync-start.patch. - commit f491dbc - Refresh patches.fixes/mm-oom-fix-totalpages-calculation.patch. - commit 6fddd07 - Updated patch header: patches.fixes/reiserfs-writeback-buffer-lock.patch. - commit dae7e53 - Updated patch headers: - Refresh patches.fixes/jbd-Issue-cache-flush-after-checkpointing.patch. - Refresh patches.fixes/large-hash-dcache_init-fix.patch. - Refresh patches.fixes/ocfs2-readpage-livelock.patch. - Refresh patches.fixes/reiserfs-writeback-buffer-lock.patch. - Refresh patches.fixes/writeback-do-not-sort-b_io-list-only-because-of-bloc.patch. - Refresh patches.fixes/writeback-include-all-inodes-in-background.patch. - Refresh patches.fixes/xfs-Fix-WARN_ON-delalloc-in-xfs_vm_releasepage.patch. - Refresh patches.fixes/xfs-backward-alloc-fix.diff. - commit 9ed16de - Corrected Git-commit and Patch-mainline patch tags - commit 815b8bb ++++ libgtop: - Backport libgtop-848603-extend-cpu-size.patch done by Jason Xing. remove libgtop-adjust-max-cpu-number.patch (bnc#848603) ++++ subversion: - fix bnc#850667#c17 - add missing declaration of svn_urlpath__canonicalize * 0003-add-svn_urlpath__canonicalize.patch * add missing include in 0000-mod_dav_svn-use-canonical-path.patch ++++ xen: - bnc#858311 - L3: Server is not booting in kernel XEN after latest updates - (XEN) setup 0000:00:18.0 for d0 failed (-19) 28068-x86-properly-handle-MSI-X-unmask-operation-from-guests.patch - bnc#858496 - Xen: XSA-83: Out-of-memory condition yielding memory corruption during IRQ setup xsa83.patch - Upstream patches from Jan 28201-x86-mm-Prevent-leaking-domain-mappings-in-paging_log_dirty_op.patch 28229-Nested-VMX-Setup-the-virtual-NMI-exiting-info.patch 28235-VMX-apicv-Set-NMI-window-exiting-for-NMI.patch 28248-VTD-DMAR-free-correct-pointer-on-error-from-acpi_parse_one_atsr.patch 28249-AMD-IOMMU-fix-infinite-loop-due-to-ivrs_bdf_entries-larger-than-16-bit-value.patch 28272-hvm_save_one-return-correct-data.patch ------------------------------------------------------------------ ------------------ 2014-1-9 - Jan 9 2014 ------------------- ------------------------------------------------------------------ ++++ apache2: - startup: make sure that the tty from which apache starts has echo mode set to on; otherwise, subsequently checking if echo mode was off results in the false detection that apache is still waiting for a certificate passphrase to be entered, leading to a failure with xen virtual guests that may have the terminal set to -echo. This change applies to /etc/init.d/apache2 (rc.apache2) only. [bnc#852401] - httpd-2.2.x-bnc815621-PR50481-interrupted_read_discarded_input.diff removed: This upstream change has unwanted side effects with large request headers, where the LimitRequestFieldsize option is ignored. [bnc#844212], potential conflict with [bnc#815621]. ++++ gcc48: - Update to gcc-4_8-banch head (r206511). - gcc48-ibm-power8.diff, gcc48-ibm-power8-testsuite.diff, gcc48-ibm-power8-other.diff: Add backport for Power8 support. [fate#315446] - Add support for building for ppc64le. ++++ kernel-docs: - patches.fixes/net-Do-not-enable-tx-nocache-copy-by-default.patch: net: Do not enable tx-nocache-copy by default (bnc#845378). - commit 08ab4c3 - Fixing one last patch with bogus git-commit header - commit d393381 - Fixing git-commit and related patch headers - commit bbae9dc - Refresh patches.suse/readahead-request-tunables.patch CONFIG_KERNEL_DESKTOP is not set for any kernel flavor/arch so get rid of ifdef-ery - commit e2670b5 - Refresh patches.drivers/ixgbe-0317-netvm-propagate-page-pfmemalloc-from-skb_alloc_page-.patch. patches.drivers/ixgbevf-0053-netvm-propagate-page-pfmemalloc-from-skb_alloc_page-.patch. patches.fixes/cpuset-mm-optimise-put_mems_allowed-usage.patch. patches.fixes/memcg-further-prevent-OOM-with-too-many-dirty-pages.patch. patches.fixes/mm-VFS--mount-lock-scalability-for-internal-mounts.patch. patches.fixes/mm-bug-completely-remove-code-generated-by-disabled-VM_BUG_ON.patch. patches.fixes/mm-bug-introduce-BUILD_BUG_ON_INVALID-macro.patch. patches.fixes/mm-compaction-Use-synchronous-compaction-for--proc-sys-vm-compact_memory.patch. patches.fixes/mm-consider-PageReclaim-for-sync-reclaim.patch. patches.fixes/mm-do-not-walk-all-of-system-ram-during-show_mem.patch. patches.fixes/mm-honor-min_free_kbytes-set-by-user.patch. patches.fixes/mm-hugetlb-flush_tlb_range-needs-page_table_lock-when-mmap_sem-is-not-held.patch. patches.fixes/mm-hugetlb.c-undo-change-to-page-mapcount-in-fault-handler.patch. patches.fixes/mm-hugetlbfs-Correctly-detect-if-page-tables-have-just-been-shared.patch. patches.fixes/mm-hugetlbfs-fix-use-after-free-bug-in-quota-handling.patch. patches.fixes/mm-link_mem_sections-touch-nmi-watchdog.patch. patches.fixes/mm-make-snapshotting-pages-for-stable-writes-a-per-bio-operation.patch. patches.fixes/mm-make-swapin-readahead-skip-over-holes.patch. patches.fixes/mm-mempolicy.c-fix-pgoff-in-mbind-vma-merge.patch. patches.fixes/mm-mempolicy.c-refix-mbind_range-vma-issue.patch. patches.fixes/mm-page_alloc-avoid-marking-zones-full-prematurely.patch. patches.fixes/mm-remove-ZAP_BLOCK_SIZE.patch. patches.fixes/mm-stop_machine-implement-stop_machine_from_inactive_cpu.patch. patches.fixes/mm-stop_machine-reorganize-stop_cpus-implementation.patch. patches.fixes/mm-swap-mark-pages-writeback-before-dio.patch. patches.fixes/mm-swap-redirty-page-if-swap-file-write-fails.patch. patches.fixes/mm-swap-token-makes-global-variables-to-function-local.patch. patches.fixes/mm-thp-minor-lock-simplification-in-__khugepaged_exit.patch. patches.fixes/mm-vmscan-Block-kswapd-if-it-is-encountering-pages-under-writeback-fix-2.patch. patches.fixes/mm-vmscan-Block-kswapd-if-it-is-encountering-pages-under-writeback-fix.patch. patches.fixes/mm-vmscan-Block-kswapd-if-it-is-encountering-pages-under-writeback.patch. patches.fixes/mm-vmscan-Check-if-kswapd-should-writepage-once-per-pgdat-scan.patch. patches.fixes/mm-vmscan-Decide-whether-to-compact-the-pgdat-based-on-reclaim-progress.patch. patches.fixes/mm-vmscan-Do-not-allow-kswapd-to-scan-at-maximum-priority.patch. patches.fixes/mm-vmscan-Flatten-kswapd-priority-loop.patch. patches.fixes/mm-vmscan-Have-kswapd-writeback-pages-based-on-dirty-pages-encountered-not-priority.patch. patches.fixes/mm-vmscan-Limit-the-number-of-pages-kswapd-reclaims-at-each-priority.patch. patches.fixes/mm-vmscan-Move-logic-from-balance_pgdat-to-kswapd_shrink_zone.patch. patches.fixes/mm-vmscan-Obey-proportional-scanning-requirements-for-kswapd.patch. patches.fixes/mm-vmscan-do-not-continue-if-aborted-for-compaction.patch. patches.fixes/mm-vmscan-drop-nr_force_scan-from-get_scan_count.patch. patches.fixes/mm-vmscan-move-direct-reclaim-wait_iff_congested-into-shrink_list.patch. patches.fixes/mm-vmscan-set-zone-flags-before-blocking.patch. patches.fixes/mm-vmscan-stall-page-reclaim-after-a-list-of-pages-have-been-processed-v3.patch. patches.fixes/mm-vmscan-stall-page-reclaim-and-writeback-pages-based-on-dirty-writepage-pages-encountered-v3.patch. patches.fixes/mm-vmscan-take-page-buffers-dirty-and-locked-state-into-account-v3-KABI-fix.patch. patches.fixes/mm-vmscan-take-page-buffers-dirty-and-locked-state-into-account-v3-KABI.patch. patches.fixes/mm-vmscan-take-page-buffers-dirty-and-locked-state-into-account-v3.patch. patches.fixes/mm-vmscan-trace-Add-file-info-to-trace_mm_vmscan_lru_isolate.patch. patches.fixes/mm-vmscan-treat-pages-marked-for-immediate-reclaim-as-zone-congestion.patch. patches.fixes/mm-x86,-mtrr-use-stop_machine-APIs-for-doing-MTRR-rendezvous.patch. patches.fixes/mm-x86-Serialize-SMP-bootup-CMOS-accesses-on-rtc_lock.patch. patches.suse/ia64-mm-wire-up-cross-memory-attach-syscalls.patch. patches.suse/mm-Fix-race-in-process_vm_rw_core.patch. patches.suse/mm-aio-vfs-cleanup-of-rw_copy_check_uvector-and-compat_rw_copy_check_uvector.patch. patches.suse/mm-mremap-avoid-sending-one-ipi-per-page.patch. patches.suse/mm-mremap-check-for-overflow-using-deltas.patch. patches.suse/mm-netvm-propagate-page--pfmemalloc-from-netdev_alloc_page-to-skb.patch. patches.suse/mm-thp-mremap-support-and-tlb-optimization.patch. patches.suse/mm-use-cpu_chill-in-spin_trylock_page.patch. patches.suse/mm-vmscan-add-customisable-shrinker-batch-size.patch. patches.suse/s390-fix-compact-wrappers-for-process_vm-fix.patch. patches.suse/s390-fix-compact-wrappers-for-process_vm.patch. patches.suse/s390-mm-wire-up-cross-memory-attach-syscalls.patch. - commit e9f8aa3 - Refresh patches.drivers/0001-USB-Add-helper-macro-for-usb_driver-boilerplate.patch. - Refresh patches.drivers/0001-USB-Add-macros-for-interrupt-endpoint-types.patch. - Refresh patches.drivers/0001-USB-Add-support-to-enable-disable-USB3-link-states.patch. - Refresh patches.drivers/0001-USB-Adding-define-in-hub_configure-and-hcd.c-file.patch. - Refresh patches.drivers/0001-USB-Allow-drivers-to-disable-hub-initiated-LPM.patch. - Refresh patches.drivers/0001-USB-Calculate-USB-3.0-exit-latencies-for-LPM.patch. - Refresh patches.drivers/0001-USB-Disable-USB-3.0-LPM-in-critical-sections.patch. - Refresh patches.drivers/0001-USB-Disable-hub-initiated-LPM-for-comms-devices.patch. - Refresh patches.drivers/0001-USB-Fix-core-compile-with-CONFIG_USB_SUSPEND-n.patch. - Refresh patches.drivers/0001-USB-Make-sure-to-fetch-the-BOS-desc-for-roothubs.patch. - Refresh patches.drivers/0001-USB-Refactor-code-to-set-LPM-support-flag.patch. - Refresh patches.drivers/0001-USB-convert-drivers-bluetooth-to-use-module_usb_driv.patch. - Refresh patches.drivers/0001-USB-convert-drivers-net-to-use-module_usb_driver.patch. - Refresh patches.drivers/0001-USB-convert-some-miscellanies-drivers-to-use-module_.patch. - Refresh patches.drivers/0001-USB-fix-bug-of-device-descriptor-got-from-superspeed.patch. - Refresh patches.drivers/0001-USB-remove-BKL-comments.patch. - Refresh patches.drivers/0001-driver-core-Allow-additional-parameters-for-module_d.patch. - Refresh patches.drivers/0001-drivercore-Generalize-module_platform_driver.patch. - Refresh patches.drivers/0001-kernel-doc-fix-new-warnings-in-device.h.patch. - Refresh patches.drivers/0001-usb-Add-support-for-root-hub-port-status-CAS.patch. - Refresh patches.drivers/0001-usb-ch9-define-Set-SEL-and-Set-Isoch-Delay-macros.patch. - Refresh patches.drivers/0001-usb-host-xhci-Fix-Compliance-Mode-on-SN65LVPE502CP-H.patch. - Refresh patches.drivers/0001-xHCI-Adding-define-values-used-for-hub-descriptor.patch. - Refresh patches.drivers/0001-xHCI-Kick-khubd-when-USB3-resume-really-completes.patch. - Refresh patches.drivers/0001-xhci-Add-Intel-U1-U2-timeout-policy.patch. - Refresh patches.drivers/0001-xhci-Add-infrastructure-for-host-specific-LPM-polici.patch. - Refresh patches.drivers/0001-xhci-Add-roothub-code-to-set-U1-U2-timeouts.patch. - Refresh patches.drivers/0001-xhci-Fix-compile-with-CONFIG_USB_SUSPEND-n.patch. - Refresh patches.drivers/0001-xhci-Remove-scary-warnings-about-transfer-issues.patch. - Refresh patches.drivers/0001-xhci-Remove-warnings-about-MSI-and-MSI-X-capabilitie.patch. - Refresh patches.drivers/0001-xhci-Reserve-one-command-for-USB3-LPM-disable.patch. - Refresh patches.drivers/0001-xhci-Some-Evaluate-Context-commands-must-succeed.patch. - Refresh patches.drivers/0002-USB-xhci-Enable-remote-wakeup-for-USB3-devices.patch. - Refresh patches.drivers/0003-USB-Suspend-functions-before-putting-dev-into-U3.patch. - Refresh patches.drivers/0004-USB-xHCI-Enable-USB-3.0-hub-remote-wakeup.patch. - Refresh patches.drivers/0005-USB-Refactor-hub-remote-wake-handling.patch. - Refresh patches.drivers/0006-USB-xHCI-Support-device-initiated-USB-3.0-resume.patch. - Refresh patches.drivers/0007-USB-Set-wakeup-bits-for-all-children-hubs.patch. - Refresh patches.drivers/0008-USB-Turn-on-auto-suspend-for-USB-3.0-hubs.patch. - Update patches.drivers/usb-storage-add-quirk-for-mandatory-READ_CAPACITY_16.patch (bnc#853428). - Refresh patches.fixes/0001-usbhid-fix-error-handling-of-not-enough-bandwidth.patch. - commit e17fa7d - patches.fixes/dm-mpath-abort-all-requests-when-failing-a-path.patch: Delete; shouldn't be part of the update. - commit 9d22177 - patches.drivers/0030-scsi-Added-support-for-adapter-and-firmware-reset.patch: Refresh. - patches.fixes/dm-mpath-abort-all-requests-when-failing-a-path.patch: dm-multipath: abort all requests when failing a path (bnc#798050). - patches.fixes/scsi-Add-eh_deadline-to-limit-SCSI-EH-runtime.patch: scsi: Add 'eh_deadline' to limit SCSI EH runtime (bnc#798050). - patches.fixes/scsi-Allow-error-handling-timeout-to-be-specified.patch: scsi: Allow error handling timeout to be specified (bnc#798050). - patches.fixes/scsi-Fixup-compilation-warning.patch: scsi: Fixup compilation warning (bnc#798050). - patches.fixes/scsi-Retry-failfast-commands-after-EH.patch: scsi: Retry failfast commands after EH (bnc#798050). - patches.fixes/scsi-Warn-on-invalid-command-completion.patch: scsi: Warn on invalid command completion (bnc#798050). - patches.fixes/scsi-advansys-Remove-last_reset-references.patch: advansys: Remove 'last_reset' references (bnc#798050). - patches.fixes/scsi-cleanup-setting-task-state-in-scsi_error_handler.patch: cleanup setting task state in scsi_error_handler() (bnc#798050). - patches.fixes/scsi-dc395-Move-last_reset-into-internal-host-structure.patch: dc395: Move 'last_reset' into internal host structure (bnc#798050). - patches.fixes/scsi-dpt_i2o-Remove-DPTI_STATE_IOCTL.patch: dpt_i2o: Remove DPTI_STATE_IOCTL (bnc#798050). - patches.fixes/scsi-dpt_i2o-return-SCSI_MLQUEUE_HOST_BUSY-when-in-reset.patch: dpt_i2o: return SCSI_MLQUEUE_HOST_BUSY when in reset (bnc#798050). - patches.fixes/scsi-kABI-fixes.patch: scsi: kABI fixes (bnc#798050). - patches.fixes/scsi-remove-check-for-resetting.patch: scsi: remove check for 'resetting' (bnc#798050). - patches.fixes/scsi-tmscsim-Move-last_reset-into-host-structure.patch: tmscsim: Move 'last_reset' into host structure (bnc#798050). - commit 0bdb320 - Refresh patches.arch/x86-apicv-add-virtual-interrupt-delivery-support.patch. - commit 2cbcc15 - Refresh patches.fixes/crc32-0010-select-an-algorithm-via-Kconfig.patch. - commit c44ef8e - Fix headers - Refresh patches.fixes/perf-Change-and-simplify-ctx-is_active-semantics. - Refresh patches.fixes/perf-Change-close-semantics-for-group-events. - Refresh patches.fixes/perf-Clean-up-ctx-reference-counting. - Refresh patches.fixes/perf-Collect-the-schedule-in-rules-in-one-function. - Refresh patches.fixes/perf-De-schedule-a-task-context-when-removing-the-last-event. - Refresh patches.fixes/perf-Optimize-ctx_sched_out. - Refresh patches.fixes/perf-Optimize-event-scheduling-locking. - Refresh patches.fixes/perf-Remove-task_ctx_sched_in. - Refresh patches.fixes/perf-Simplify-and-fix-__perf_install_in_context. - Refresh patches.fixes/perf-core-Fix-initial-task_ctx-slash-event-installation. - Refresh patches.fixes/perf-events-Fix-slow-and-broken-cgroup-context-switch-code. - commit d337d74 - Update Git-commit ids - Refresh patches.fixes/crc32-0008-bolt-on-crc32c.patch. - Refresh patches.suse/btrfs-0445-do-not-start-delalloc-inodes-during-sync.patch. - Refresh patches.suse/btrfs-0446-fix-repair-code-for-RAID10.patch. - Refresh patches.suse/btrfs-0447-Prevent-root_list-corruption.patch. - Refresh patches.suse/btrfs-0448-fix-block_rsv-and-space_info-lock-ordering.patch. - Refresh patches.suse/btrfs-0449-Fix-space-checking-during-fs-resize.patch. - Refresh patches.suse/btrfs-0450-avoid-deadlocks-from-GFP_KERNEL-allocations-du.patch. - Refresh patches.suse/btrfs-0451-reduce-lock-contention-during-extent-insertion.patch. - Refresh patches.suse/btrfs-0452-Add-properly-locking-around-add_root_to_dirty_.patch. - Refresh patches.suse/btrfs-0453-Fix-mismatching-struct-members-in-ioctl.h.patch. - Refresh patches.suse/btrfs-0983-put-csums-on-the-right-ordered-extent.patch. - Refresh patches.suse/btrfs-enhance-superblock-sanity-checks.patch. - commit 90cb606 - Add Git-commit and Patch-mainline headers: - Refresh patches.arch/s390-35-01-nss-initrd. - Refresh patches.arch/s390-35-03-zfcp-dif-dix-2. - Refresh patches.arch/s390-35-05-qdio-busy_bit. - Refresh patches.arch/s390-35-07-af_iucv-over-hsi. - Refresh patches.drivers/ipr-add-bluehawk-IDs. - Refresh patches.drivers/ipr-implement-iopoll. - Refresh patches.fixes/ipr-eeh-recovery-for-64-bit-adapters. - Refresh patches.fixes/powerpc-migration-vphn-fix. Patch-mainline: no: - Refresh patches.arch/s390-35-02-page-referenced. - Refresh patches.arch/s390-35-04-zfcp-disable-auto-lun-scan. - Refresh patches.arch/s390-35-06-zfcp-kmsg-lun-limit-reached. - commit 975cdf9 - Delete patches.fixes/oom-warning. The additional warning message is not worth carrying. Highorder or atomic allocations which are expected to fail should use __GFP_NOWARN to not pollute logs with allocation failures which are acceptable. - commit 35dfee2 - Delete patches.fixes/do_anonymous_page-race because it is no longer needed because upstream has fixed the same issue with 0ed361dec3694 (mm: fix PageUptodate data race). - commit bda9188 - Fixed malformed Git-commit: headers - patches.drivers/0002-rt2x00-Don-t-disable-G0-PA_PE-bit-in-case-of-BT-coex.patch - patches.drivers/0003-rt2x00-Add-support-for-RT3572-RT3592-RT3592-Bluetoot.patch - patches.drivers/0004-rt2x00-Interface-sequence-lock-doesn-t-have-to-disab.patch - patches.drivers/0014-rt2x00-Implement-tx_frames_pending-mac80211-callback.patch - patches.drivers/0016-rt2x00-Fix-compilation-without-CONFIG_RT2X00_LIB_CRY.patch - patches.drivers/0018-rt2x00-Add-new-chipset-support.patch - patches.fixes/ipv6-unshare-inetpeers.patch - patches.fixes/perf-x86-add-intel-ivybridge-event-scheduling-constraints.patch - patches.fixes/vfs-dont-chain-pipe-anon-sockets-on-superbloc-s_inodes-list - patches.fixes/xprtrdma-transport-should-not-bug-check-when-a-dup-reply-is-received - patches.suse/xor-0005-lib-raid6-Add-SSSE3-optimized-recovery-functions.patch - commit faf9060 - Refresh patches.fixes/cpusets-randomize-node-rotor-used-in-cpuset_mem_spre.patch. - Refresh patches.fixes/memcg-change-memcg_oom_mutex-to-spinlock.patch. - Refresh patches.fixes/mm-do_fault-preallocate-cow-page.patch. - Refresh patches.fixes/mm-vmscan-Block-kswapd-if-it-is-encountering-pages-under-writeback.patch. - Refresh patches.fixes/mm-vmscan-Check-if-kswapd-should-writepage-once-per-pgdat-scan.patch. - Refresh patches.fixes/mm-vmscan-Do-not-allow-kswapd-to-scan-at-maximum-priority.patch. - Refresh patches.fixes/mm-vmscan-Limit-the-number-of-pages-kswapd-reclaims-at-each-priority.patch. - commit d65c364 - Refresh patches.drivers/0004-rt2x00-Interface-sequence-lock-doesn-t-have-to-disab.patch. - commit 3a638f7 - Refresh patches.drivers/0002-rt2x00-Don-t-disable-G0-PA_PE-bit-in-case-of-BT-coex.patch. - commit e506a60 - Fixed patch header: patches.fixes/ipv6-unshare-inetpeers.patch - commit e82fedb - Refresh patches.drivers/btusb-add-mt76x0e.patch. - commit 921c767 - Refresh patches.drivers/export-ktime_get_monotonic_offset. - commit f766d77 - Refresh patches.drivers/0001-xhci-endianness-xhci_calculate_intel_u2_timeout.patch. - commit 867e9c4 - Refresh Adjust git commit id to Linus tree. patches.arch/acpi_remove_warning_for_large_gpe_registers.patch. - commit c509b93 - patches.fixes/perf-Change-and-simplify-ctx-is_active-semantics: Fix email address - commit d05fc52 - Refresh patches.fixes/mm-use-up-free-swap-space-before-reaching-OOM-kill.patch. patches.fixes/mm-vmscan-add-block-plug-for-page-reclaim.patch. - commit a7f4a77 - fixed patch headers * patches.arch/s390-kvm-0001-kvm-handle-tprot-intercepts.patch. * patches.arch/s390-kvm-0002-KVM-provide-synchronous-registers-in-kvm_run.patch. * patches.arch/s390-kvm-0003-KVM-provide-synchronous-registers-in-kvm_run.patch. * patches.arch/s390-kvm-0004-KVM-PPC-Add-generic-single-register-ioctls.patch. * patches.arch/s390-kvm-0005-move-sie-code-to-entry.S.patch. * patches.arch/s390-kvm-0006-kvm-make-sigp-emerg-smp-capable.patch. * patches.arch/s390-kvm-0007-KVM-s390-fix-return-value-of-kvm_arch_init_vm.patch. * patches.arch/s390-kvm-0008-KVM-s390-fix-register-setting.patch. * patches.arch/s390-kvm-0009-KVM-s390-Fix-RUNNING-flag-misinterpretation.patch. * patches.arch/s390-kvm-0010-KVM-s390-implement-sigp-external-call.patch. * patches.arch/s390-kvm-0011-KVM-s390-handle-SIGP-sense-running-intercepts.patch. * patches.arch/s390-kvm-0012-KVM-s390-Fix-tprot-locking.patch. * patches.arch/s390-kvm-0013-KVM-s390-announce-SYNC_MMU.patch. * patches.arch/s390-kvm-0014-KVM-s390-Fix-return-code-for-unknown-ioctl-numbers.patch. * patches.arch/s390-kvm-0015-KVM-s390-rework-code-that-sets-the-prefix.patch. * patches.arch/s390-kvm-0016-KVM-s390-provide-the-prefix-register-via-kvm_run.patch. * patches.arch/s390-kvm-0017-KVM-s390-provide-general-purpose-guest-registers-v.patch. * patches.arch/s390-kvm-0018-KVM-s390-provide-access-guest-registers-via-kvm_ru.patch. * patches.arch/s390-kvm-0019-KVM-s390-Sanitize-fpc-registers-for-KVM_SET_FPU.patch. * patches.arch/s390-kvm-0020-KVM-s390-make-sigp-restart-return-busy-when-stop-p.patch. * patches.arch/s390-kvm-0021-KVM-s390-ignore-sigp-stop-overinitiative.patch. * patches.arch/s390-kvm-0022-KVM-s390-add-stop_on_stop-flag-when-doing-stop-and.patch. * patches.arch/s390-kvm-0023-KVM-s390-provide-control-registers-via-kvm_run.patch. * patches.arch/s390-kvm-0024-KVM-s390-Implement-the-directed-yield-diag-9c-hy.patch. * patches.arch/s390-kvm-0025-KVM-s390-Handle-sckpf-instruction.patch. * patches.arch/s390-kvm-0026-KVM-s390-implement-KVM_CAP_NR-MAX_VCPUS.patch. * patches.arch/s390-kvm-0027-KVM-s390-KVM_GET-SET_ONEREG-for-s390.patch. * patches.arch/s390-kvm-0028-KVM-s390-epoch-difference-and-TOD-programmable-fie.patch. * patches.arch/s390-kvm-0029-KVM-s390-onereg-for-timer-related-registers.patch. * patches.arch/s390-kvm-0030-KVM-s390-Set-CPU-in-stopped-state-on-initial-cpu-r.patch. * patches.arch/s390-kvm-0031-KVM-s390-fix-sigp-set-prefix-status-stored-cases.patch. * patches.arch/s390-kvm-0032-KVM-s390-Fix-sigp-sense-handling.patch. * patches.arch/s390-kvm-0033-KVM-s390-Fix-vcpu_load-handling-in-interrupt-code.patch. * patches.arch/s390-kvm-0034-s390-kvm-Interrupt-injection-bugfix.patch. * patches.arch/s390-kvm-0035-s390-kvm-dont-announce-RRBM-support.patch. * patches.arch/s390-kvm-0036-KVM-s390-Constify-intercept-handler-tables.patch. * patches.arch/s390-kvm-0037-KVM-s390-Decoding-helper-functions.patch. * patches.arch/s390-kvm-0038-KVM-s390-Support-for-I-O-interrupts.patch. * patches.arch/s390-kvm-0039-KVM-s390-Add-support-for-machine-checks.patch. * patches.arch/s390-kvm-0040-KVM-s390-In-kernel-handling-of-I-O-instructions.patch. * patches.arch/s390-kvm-0041-KVM-s390-Base-infrastructure-for-enabling-capabili.patch. * patches.arch/s390-kvm-0042-KVM-s390-Add-support-for-channel-I-O-instructions.patch. * patches.arch/s390-virtio-ccw-0001-KVM-s390-Perform-early-event-mask-processing-durin.patch. * patches.arch/s390-virtio-ccw-0003-s390-Add-a-mechanism-to-get-the-subchannel-id.patch. * patches.arch/s390-virtio-ccw-0004-s390-ccwdev-Include-asm-schid.h.patch. * patches.arch/s390-virtio-ccw-0005-KVM-s390-Add-a-channel-I-O-based-virtio-transport.patch. * patches.arch/s390-virtio-ccw-0006-KVM-s390-Dynamic-allocation-of-virtio-ccw-I-O-data.patch. * patches.arch/s390-virtio-ccw-0007-KVM-s390-Gracefully-handle-busy-conditions-on-ccw_.patch. - commit 18cf380 - fixed patch headers * patches.drivers/be2net-0144-Wait-f-w-POST-until-timeout.patch. * patches.drivers/be2net-0145-use-CSR-BAR-SEMAPHORE-reg-for-BE2-BE3.patch. * patches.drivers/bnx2fc-host-stats-show-the-link-speed-unkno.patch. * patches.drivers/fcoe-0065-libfcoe-Fix-Conflicting-FCFs-issue-in-the-fabric.patch. * patches.drivers/fnic-Fix-SGEs-limit.patch. * patches.drivers/fnic-fix-for-trusted-cos.patch. * patches.drivers/fnic-fixing-issues-in-device-and-firmware-reset-code.patch. * patches.drivers/mtip32xx-0060-fix-a-smatch-warning.patch. * patches.drivers/mtip32xx-0061-mtip32xx-Disable-TRIM-support.patch. * patches.drivers/mtip32xx-0062-Workaround-for-unaligned-writes.patch. * patches.drivers/mtip32xx-0063-fix-null-pointer-dereference-during-module-unload.patch. * patches.drivers/mtip32xx-0064-correctly-handle-bio-bi_idx-0-conditions.patch. * patches.fixes/net-do-not-do-gso-for-CHECKSUM_UNNECESSARY.patch. * patches.fixes/scsi-Add-eh_deadline-to-limit-SCSI-EH-runtime.patch. * patches.fixes/scsi-dh-alua-retry-mode-parameters-changed.patch. * patches.fixes/scsi-libfc-fix-checking-FC_TYPE_BLS.patch. - commit 9f5cd4d - Update GIT commit headers. - Refresh patches.drivers/0009-mmc-sdio-Fix-SDIO-3.0-UHS-I-initialization-sequence.patch. - Refresh patches.drivers/0010-mmc-sdio-print-correct-UHS-mode-during-sdio-card-det.patch. - commit b06919e - Update GIT commit headers. - Refresh patches.arch/0001-Modify-UEFI-anti-bricking-code.patch. - Refresh patches.suse/x509-remove-certificate-date-checks.patch. - commit a3eaa5e - Update GIT commit headers. - Refresh patches.suse/tipc-0001-Convert-fatal-broadcast-sanity-check-to-non-fat.patch. - Refresh patches.suse/tipc-0002-Remove-unused-sanity-test-macro.patch. - Refresh patches.suse/tipc-0003-Standardize-exit-logic-for-message-rejection-ha.patch. - Refresh patches.suse/tipc-0004-Add-sanity-check-to-detect-rejection-of-non-pay.patch. - Refresh patches.suse/tipc-0005-Optimize-routing-of-returned-payload-messages.patch. - Refresh patches.suse/tipc-0006-Optimizations-corrections-to-message-rejection.patch. - Refresh patches.suse/tipc-0007-Eliminate-message-header-routines-for-caching-d.patch. - Refresh patches.suse/tipc-0008-Eliminate-redundant-masking-in-message-header-r.patch. - Refresh patches.suse/tipc-0009-Partition-name-table-instance-array-info-into-t.patch. - Refresh patches.suse/tipc-0010-Convert-name-table-publication-lists-to-standar.patch. - Refresh patches.suse/tipc-0011-Eliminate-checks-for-empty-zone-list-during-nam.patch. - Refresh patches.suse/tipc-0012-Correct-typo-in-link-statistics-output.patch. - Refresh patches.suse/tipc-0013-Eliminate-unused-field-in-bearer-structure.patch. - Refresh patches.suse/tipc-0014-Remove-unnecessary-includes-in-socket-code.patch. - Refresh patches.suse/tipc-0015-Eliminate-useless-check-when-creating-internal-.patch. - Refresh patches.suse/tipc-0016-Cleanup-of-message-header-size-terminology.patch. - Refresh patches.suse/tipc-0017-Optimize-creation-of-FIN-messages.patch. - Refresh patches.suse/tipc-0018-Reject-connection-protocol-message-sent-to-unco.patch. - Refresh patches.suse/tipc-0019-Don-t-create-payload-message-using-connection-p.patch. - Refresh patches.suse/tipc-0020-Optimize-creation-of-connection-protocol-messag.patch. - Refresh patches.suse/tipc-0021-use-linux-atomic.h.patch. - Refresh patches.suse/tipc-0022-Remove-obsolete-manipulation-of-message-re-rout.patch. - Refresh patches.suse/tipc-0023-Eliminate-obsolete-filter-for-unexpected-unicas.patch. - Refresh patches.suse/tipc-0024-Display-meaningful-peer-interface-name-during-l.patch. - Refresh patches.suse/tipc-0025-Initialize-peer-session-field-of-newly-created-.patch. - Refresh patches.suse/tipc-0026-Enhance-filtering-of-out-dated-link-reset-messa.patch. - Refresh patches.suse/tipc-0027-Update-obsolete-references-to-multicast-link.patch. - Refresh patches.suse/tipc-0028-Cosmetic-changes-to-broadcast-bearer-send-routi.patch. - Refresh patches.suse/tipc-0029-Remove-non-executable-code-to-handle-broadcast-.patch. - Refresh patches.suse/tipc-0030-Enhance-cleanup-of-broadcast-link-when-contact-.patch. - Refresh patches.suse/tipc-0031-Prevent-broadcast-link-stalling-when-another-no.patch. - Refresh patches.suse/tipc-0032-Fix-node-lock-problems-during-broadcast-message.patch. - Refresh patches.suse/tipc-0033-Remove-deferred-queue-head-caching-during-broad.patch. - Refresh patches.suse/tipc-0034-Discard-incoming-broadcast-messages-that-are-un.patch. - Refresh patches.suse/tipc-0035-Remove-obsolete-congestion-handling-when-sendin.patch. - Refresh patches.suse/tipc-0036-Eliminate-redundant-check-when-sending-messages.patch. - Refresh patches.suse/tipc-0037-Prevent-rounding-issues-when-saving-connect-tim.patch. - Refresh patches.suse/tipc-0038-Ensure-congested-links-receive-bearer-status-up.patch. - Refresh patches.suse/tipc-0039-Ensure-both-nodes-recognize-loss-of-contact-bet.patch. - Refresh patches.suse/tipc-0042-Lower-limits-for-number-of-bearers-and-media-ty.patch. - Refresh patches.suse/tipc-0043-Prevent-fragmented-messages-during-initial-name.patch. - Refresh patches.suse/tipc-0044-relocate-coalesce-node-cast-in-tipc_named_node_.patch. - Refresh patches.suse/tipc-0045-Enhance-sending-of-bulk-name-table-messages.patch. - Refresh patches.suse/tipc-0046-Add-support-for-SO_SNDTIMEO-socket-option.patch. - Refresh patches.suse/tipc-0047-Simplify-prohibition-of-listen-and-accept-for-c.patch. - Refresh patches.suse/tipc-0048-Remove-callback-field-from-subscription-structu.patch. - Refresh patches.suse/tipc-0049-Remove-unused-link-event-tracking-code.patch. - Refresh patches.suse/tipc-0050-Fix-files-explicitly-needing-to-include-module.h.patch. - Refresh patches.suse/tipc-0051-two-vzalloc-cleanups.patch. - Refresh patches.suse/tipc-0052-Enable-use-by-containers-having-their-own-netwo.patch. - Refresh patches.suse/tipc-0053-Register-new-media-using-pre-compiled-structure.patch. - Refresh patches.suse/tipc-0054-Optimize-detection-of-duplicate-media-registrat.patch. - Refresh patches.suse/tipc-0055-Eliminate-duplication-of-media-structures.patch. - Refresh patches.suse/tipc-0056-Streamline-media-registration-error-checking.patch. - Refresh patches.suse/tipc-0057-Improve-handling-of-media-address-printing-erro.patch. - Refresh patches.suse/tipc-0058-Add-new-address-conversion-routines-for-Etherne.patch. - Refresh patches.suse/tipc-0060-Ignore-neighbor-discovery-messages-containing-i.patch. - Refresh patches.suse/tipc-0061-Allow-run-time-alteration-of-default-link-setti.patch. - Refresh patches.suse/tipc-0062-Revise-comment-justifying-release-of-configurat.patch. - Refresh patches.suse/tipc-0063-Minor-optimization-to-deactivation-of-Ethernet-.patch. - Refresh patches.suse/tipc-0065-Eliminate-useless-memset-operations-in-Ethernet.patch. - Refresh patches.suse/tipc-0066-Minor-correction-to-TIPC-module-unloading.patch. - Refresh patches.suse/tipc-0067-Eliminate-useless-check-when-network-address-is.patch. - Refresh patches.suse/tipc-0068-Eliminate-dynamic-allocation-of-broadcast-link-.patch. - Refresh patches.suse/tipc-0069-Ensure-broadcast-link-spinlock-is-held-when-upd.patch. - Refresh patches.suse/tipc-0070-Handle-broadcast-attempt-when-no-neighboring-no.patch. - Refresh patches.suse/tipc-0071-Minor-optimization-of-broadcast-link-transmit-q.patch. - Refresh patches.suse/tipc-0072-Flush-unsent-broadcast-messages-when-contact-wi.patch. - Refresh patches.suse/tipc-0073-Ignore-broadcast-acknowledgements-that-are-out-.patch. - Refresh patches.suse/tipc-0074-Allow-use-of-buf_seqno-helper-routine-by-unicas.patch. - Refresh patches.suse/tipc-0075-rename-struct-media-to-struct-tipc_media.patch. - Refresh patches.suse/tipc-0076-rename-struct-port_list-to-struct-tipc_port_lis.patch. - Refresh patches.suse/tipc-0077-rename-struct-subscription-to-struct-tipc_subsc.patch. - Refresh patches.suse/tipc-0078-rename-struct-subscriber-to-struct-tipc_subscri.patch. - Refresh patches.suse/tipc-0079-rename-struct-bclink-to-struct-tipc_bclink.patch. - Refresh patches.suse/tipc-0080-rename-struct-bcbearer-to-tipc_bcbearer.patch. - Refresh patches.suse/tipc-0081-rename-struct-link-to-struct-tipc_link.patch. - Refresh patches.suse/tipc-0082-rename-struct-bearer_name-to-struct-tipc_bearer.patch. - Refresh patches.suse/tipc-0083-improve-the-link-deferred-queue-insertion-algor.patch. - Refresh patches.suse/tipc-0084-Prevent-transmission-of-outdated-link-protocol-.patch. - Refresh patches.suse/tipc-0085-Prevent-broadcast-link-stalling-in-dual-LAN-env.patch. - Refresh patches.suse/tipc-0086-Ensure-broadcast-link-re-acquires-node-after-li.patch. - Refresh patches.suse/tipc-0087-Fix-problem-with-broadcast-link-synchronization.patch. - Refresh patches.suse/tipc-0088-Add-missing-broadcast-link-lock-when-sending-NA.patch. - Refresh patches.suse/tipc-0089-Fix-node-lock-reclamation-issues-in-broadcast-l.patch. - Refresh patches.suse/tipc-0090-Fix-bug-in-broadcast-link-duplicate-message-sta.patch. - Refresh patches.suse/tipc-0091-Add-missing-locks-in-broadcast-link-statistics-.patch. - Refresh patches.suse/tipc-0092-Major-redesign-of-broadcast-link-ACK-NACK-algor.patch. - Refresh patches.suse/tipc-0093-Remove-obsolete-broadcast-tag-capability.patch. - Refresh patches.suse/tipc-0094-Prevent-loss-of-fragmented-messages-over-unicas.patch. - Refresh patches.suse/tipc-0095-Prevent-loss-of-fragmented-messages-over-broadc.patch. - Refresh patches.suse/tipc-0096-Eliminate-alteration-of-publication-key-during-.patch. - Refresh patches.suse/tipc-0097-Minor-optimization-to-rejection-of-connection-b.patch. - Refresh patches.suse/tipc-0098-Introduce-node-signature-field-in-neighbor-disc.patch. - Refresh patches.suse/tipc-0099-Detect-duplicate-nodes-using-different-network-.patch. - Refresh patches.suse/tipc-0100-Remove-duplicate-check-of-message-destination-n.patch. - Refresh patches.suse/tipc-0101-Simplify-enforcement-of-reserved-name-type-proh.patch. - Refresh patches.suse/tipc-0102-Add-check-to-prevent-insertion-of-duplicate-nam.patch. - Refresh patches.suse/tipc-0103-nuke-the-delimit-static-inline-function.patch. - Refresh patches.suse/tipc-0104-Eliminate-a-test-for-negative-unsigned-quantiti.patch. - Refresh patches.suse/tipc-0105-Hide-internal-details-of-node-table-implementat.patch. - Refresh patches.suse/tipc-0106-Eliminate-trivial-buffer-manipulation-helper-ro.patch. - Refresh patches.suse/tipc-0107-Remove-obsolete-comments-about-routing-table-up.patch. - Refresh patches.suse/tipc-0108-Minor-optimization-to-broadcast-link-synchroniz.patch. - Refresh patches.suse/tipc-0109-Revert-name-table-translation-optimization.patch. - Refresh patches.suse/tipc-0110-Eliminate-obsolete-support-for-not-running-mode.patch. - Refresh patches.suse/tipc-0111-Eliminate-support-for-tipc_mode-global-variable.patch. - Refresh patches.suse/tipc-0112-Un-inline-port-routine-for-processing-incoming-.patch. - Refresh patches.suse/tipc-0113-Eliminate-obsolete-code-for-re-sending-a-messag.patch. - Refresh patches.suse/tipc-0114-Optimize-setting-of-immutable-payload-message-h.patch. - Refresh patches.suse/tipc-0115-cleanup-unsigned-to-unsigned-int.patch. - Refresh patches.suse/tipc-0116-introduce-publication-lists-struct.patch. - Refresh patches.suse/tipc-0117-Factor-out-name-publication-code-to-a-separate-.patch. - Refresh patches.suse/tipc-0118-Separate-cluster-scope-and-zone-scope-names-int.patch. - Refresh patches.suse/tipc-0119-Update-node-scope-publications-when-network-add.patch. - Refresh patches.suse/tipc-0120-Don-t-record-failed-publication-attempt-as-a-su.patch. - Refresh patches.suse/tipc-0121-Add-routines-for-safe-checking-of-node-s-networ.patch. - Refresh patches.suse/tipc-0122-Ensure-network-address-change-doesn-t-impact-na.patch. - Refresh patches.suse/tipc-0123-Optimize-re-initialization-of-port-message-head.patch. - Refresh patches.suse/tipc-0124-Ensure-network-address-change-doesn-t-impact-ne.patch. - Refresh patches.suse/tipc-0125-delete-duplicate-peerport-peernode-helper-funct.patch. - Refresh patches.suse/tipc-0126-Ensure-network-address-change-doesn-t-impact-lo.patch. - Refresh patches.suse/tipc-0127-take-lock-while-updating-node-network-address.patch. - Refresh patches.suse/tipc-0128-properly-handle-off-node-send-requests-with-inv.patch. - Refresh patches.suse/tipc-0129-handle-0.0.0-as-an-alias-for-this-node-on-outgo.patch. - Refresh patches.suse/tipc-0130-Ensure-network-address-change-doesn-t-impact-re.patch. - Refresh patches.suse/tipc-0131-Ensure-network-address-change-doesn-t-impact-co.patch. - Refresh patches.suse/tipc-0132-remove-inline-instances-from-C-source-files.patch. - Refresh patches.suse/tipc-0133-Optimize-re-initialization-of-configuration-ser.patch. - Refresh patches.suse/tipc-0134-Optimize-initialization-of-configuration-servic.patch. - Refresh patches.suse/tipc-0135-Optimize-termination-of-configuration-service.patch. - Refresh patches.suse/tipc-0136-Enhance-re-initialization-of-network-topology-s.patch. - Refresh patches.suse/tipc-0137-Optimize-initialization-of-network-topology-ser.patch. - Refresh patches.suse/tipc-0138-remove-redundant-memset-and-stale-comment-from-.patch. - Refresh patches.suse/tipc-0139-Create-helper-routine-to-delete-unused-name-seq.patch. - Refresh patches.suse/tipc-0140-Enhance-error-checking-of-published-names.patch. - Refresh patches.suse/tipc-0141-Reject-payload-messages-with-invalid-message-ty.patch. - Refresh patches.suse/tipc-0143-Remove-casts-to-same-type.patch. - Refresh patches.suse/tipc-0144-Fix-nearly-kernel-doc-comments-for-various-funct.patch. - Refresh patches.suse/tipc-0145-Fix-non-kernel-doc-comments-with-kernel-doc-star.patch. - Refresh patches.suse/tipc-0146-factor-stats-struct-out-of-the-larger-link-stru.patch. - Refresh patches.suse/tipc-0147-limit-error-messages-relating-to-memory-leak-to.patch. - Refresh patches.suse/tipc-0148-use-standard-printk-shortcut-macros-pr_err-etc.patch. - Refresh patches.suse/tipc-0149-remove-TIPC-packet-debugging-functions-and-macr.patch. - Refresh patches.suse/tipc-0150-simplify-link_print-by-divorcing-it-from-using-.patch. - Refresh patches.suse/tipc-0151-simplify-print-buffer-handling-in-tipc_printf.patch. - Refresh patches.suse/tipc-0152-phase-out-most-of-the-struct-print_buf-usage.patch. - Refresh patches.suse/tipc-0153-remove-print_buf-and-deprecated-log-buffer-code.patch. - Refresh patches.suse/tipc-0154-optimize-the-initialization-of-network-device-n.patch. - Refresh patches.suse/tipc-0156-remove-pointless-name-sanity-check-and-tipc_alp.patch. - Refresh patches.suse/tipc-0157-manually-inline-single-use-media_name_valid-rou.patch. - Refresh patches.suse/tipc-0158-change-tipc_net_start-routine-return-value-type.patch. - Refresh patches.suse/tipc-0159-convert-tipc_nametbl_size-type-from-variable-to.patch. - Refresh patches.suse/tipc-0160-add-__read_mostly-annotations-to-several-global.patch. - Refresh patches.suse/tipc-0161-eliminate-configuration-for-maximum-number-of-n.patch. - Refresh patches.suse/tipc-0162-eliminate-configuration-for-maximum-number-of-n.patch. - Refresh patches.suse/tipc-0163-tipc-name_table.c-Remove-unecessary-semicolon.patch. - Refresh patches.suse/tipc-0164-prevent-dropped-connections-due-to-rcvbuf-overf.patch. - Refresh patches.suse/tipc-0165-do-not-use-tasklet_disable-before-tasklet_kill.patch. - Refresh patches.suse/tipc-0166-fix-race-inefficiencies-in-poll-wait-behaviour.patch. - Refresh patches.suse/tipc-0167-return-POLLOUT-for-sockets-in-an-unconnected-st.patch. - Refresh patches.suse/tipc-0168-wake-up-all-waiting-threads-at-socket-shutdown.patch. - Refresh patches.suse/tipc-0169-remove-the-bearer-congestion-mechanism.patch. - Refresh patches.suse/tipc-0170-remove-supportable-flag-from-bclink-structure.patch. - Refresh patches.suse/tipc-0171-rename-supported-flag-to-recv_permitted.patch. - Refresh patches.suse/tipc-0172-introduce-message-to-synchronize-broadcast-link.patch. - Refresh patches.suse/tipc-0173-eliminate-an-unnecessary-cast-of-node-variable.patch. - Refresh patches.suse/tipc-0174-delete-TIPC_ADVANCED-Kconfig-variable.patch. - Refresh patches.suse/tipc-0175-remove-obsolete-flush-of-stale-reassembly-buffe.patch. - Refresh patches.suse/tipc-0176-eliminate-aggregate-sk_receive_queue-limit.patch. - Refresh patches.suse/tipc-0177-change-sk_receive_queue-upper-limit.patch. - Refresh patches.suse/tipc-0178-standardize-across-connect-disconnect-function-.patch. - Refresh patches.suse/tipc-0179-consolidate-connection-oriented-message-recepti.patch. - Refresh patches.suse/tipc-0180-introduce-non-blocking-socket-connect.patch. - Refresh patches.suse/tipc-0181-eliminate-connection-setup-for-implied-connect-.patch. - Refresh patches.suse/tipc-0182-add-lock-nesting-notation-to-quiet-lockdep-warn.patch. - Refresh patches.suse/tipc-0183-refactor-accept-code-for-improved-readability.patch. - commit 6fb3ee9 ++++ libqb: - IPC: Increase the listen backlog of IPC server (bnc#857779) - Upstream version cs: b579f7af151f453a870bbaac037084df13b45ef9 ------------------------------------------------------------------ ------------------ 2014-1-8 - Jan 8 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Refresh Git-commit: headers patches.drivers/mlx4_en-fix-allocation-of-CPU-affinity-reverse-map.patch. - Refresh patches.drivers/mlx4_en-fix-allocation-of-device-tx_cq.patch. - Refresh patches.drivers/net-mlx4_en-Disable-RFS-when-running-in-SRIOV-mode.patch. - commit 9612b48 - Fixed Git-commit reference in patches.fixes/ext4-race-condition-protection-for-ext4_convert_unwr.patch. - commit 26a8e96 - Fix Git-commit: headers - Refresh patches.drm/0503-swiotlb-expose-swiotlb_nr_tlb-function-to-modules. - Refresh patches.xen/xen3-0503-swiotlb-expose-swiotlb_nr_tlb-function-to-modules. - commit 30f9a15 - Fix Git-commit header for patches.fixes/nfs-increase-callback-threads - commit 12d10dd - Fix Git-commit: headers - Refresh patches.drivers/0004-netxen-add-fw-version-compatibility-check.patch. - Refresh patches.fixes/0002-KEYS-Load-.x509-files-into-kernel-keyring.patch. - commit ccd7979 - Delete patches.fixes/ocfs2-add-bits_wanted-to-ocfs2_calc_extend_credits.patch. This patch was removed from mainline. Alternatively, we can use 06f9da6e826a0b459652b98a21541bca274bd440, but that is just cosmentic. - commit fd619ec - Refresh patches.drivers/drm-edid-Don-t-print-messages-regarding-stereo-or-csync-by-default.patch. - commit 815eecb - Update Git-commit for patches.drivers/bnx2x-multiple-concurrent-l2-traffic-classes. - commit c3ad986 - Update headers: - Refresh patches.drivers/igb-fix-phc-stopping-on-max-freq.patch. - Refresh patches.drivers/net-export-the-receive-time-stamping-hook-for-non-na.patch. - Refresh patches.drivers/net-export-time-stamp-utility-function-for-ethernet-.patch. - Refresh patches.drivers/net-introduce-ptp-one-step-time-stamp-mode-for-sync-.patch. - commit 37b3830 - Refresh patches.drivers/ipr-add-MSI-X-and-distributed-completion. - Refresh patches.drivers/ipr-add-more-crocodile-IDs. - Refresh patches.drivers/ipr-handle-ID-malloc-fail. - Refresh patches.drivers/ipr-reduce-lock-contention. - Refresh patches.drivers/ipr-resource-path-error-logging-cleanup. - Those commit IDs changed due to a rebase. - commit 409528c - Update commit id tags patches.drm/3292-drm-i915-split-aux_clock_divider-logic-in-a-separate patches.drm/3293-drm-i915-Retry-DP-aux_ch-communications-with-a-diffe - commit bdcbeff - Refresh patches.arch/x86-mm-send-tlb-flush-ipis-to-online-cpus-only.patch. - Refresh patches.fixes/rtc-add-an-alarm-disable-quirk.patch. - commit d9849c9 - Update kabi files (bnc#856307). - commit c1d6911 ++++ xorg-x11-libs: - U_CVE-2013-6462-unlimited-sscanf-overflows-stack-buffe.patch * unlimited sscanf overflows stack buffer in bdfReadCharacters() (CVE-2013-6462, bnc#854915) ------------------------------------------------------------------ ------------------ 2014-1-7 - Jan 7 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.suse/bug-853428-scsi_device-fix-kabi.patch: (bnc#853428). - Add READ_CAPACITY_16 quirk (bnc#853428) - SCSI & usb-storage: add try_rc_10_first flag (bnc#853428). - commit 9def9c9 - patches.fixes/tcp-bind-fix-autoselection-to-share-ports.patch: tcp: bind() fix autoselection to share ports (bnc#823618). - patches.fixes/tcp-bind-use-stronger-condition-for-bind_conflict.patch: tcp: bind() use stronger condition for bind_conflict (bnc#823618). - patches.fixes/tcp-ipv6-bind-use-stronger-condition-for-bind_confli.patch: tcp: ipv6: bind() use stronger condition for bind_conflict (bnc#823618). - patches.kabi/kabi-protect-bind_conflict-callback-in-struct-inet_c.patch: kabi: protect bind_conflict callback in struct inet_connection_sock_af_ops (bnc#823618). - commit fc487d9 - patches.fixes/kvm-x86-convert-vapic-synchronization-to-cached-functions-cve-2013-6368.patch: KVM: x86: Convert vapic synchronization to _cached functions (CVE-2013-6368) (bnc#853052 CVE-2013-6368). - commit 91ed8f0 - patches.fixes/block-factor-out-vector-mergeable-decision-to-a-help.patch: block: factor out vector mergeable decision to a helper function (bnc#769644). - patches.fixes/block-modify-__bio_add_page-check-to-accept-pages-th.patch: block: modify __bio_add_page check to accept pages that don't start a new segment (bnc#769644). - commit bbce416 - ipv6: fix race condition regarding dst->expires and dst->from (bnc#843185). - commit 8207b01 - Revert kABI changes of 'libfcoe: Make fcoe_sysfs optional' (bnc#837206). - libfcoe: Make fcoe_sysfs optional / fix fnic NULL exception (bnc#837206). - commit a98e8a2 - patches.fixes/macvlan-introduce-IFF_MACVLAN-flag-and-helper-functi.patch: macvlan: introduce IFF_MACVLAN flag and helper function (bnc#846984). - patches.fixes/macvlan-introduce-macvlan_dev_real_dev-helper-functi.patch: macvlan: introduce macvlan_dev_real_dev() helper function (bnc#846984). - patches.fixes/macvlan-disable-LRO-on-lower-device-instead-of-macvl.patch: macvlan: disable LRO on lower device instead of macvlan (bnc#846984). - commit c3e7ab8 ++++ udev: - rules: rewrite CPU/memory hotplug rules to make it more robust (bnc#849840). add: udev-147-rewrite-cpu_memory-hotplug-rule.patch ------------------------------------------------------------------ ------------------ 2014-1-6 - Jan 6 2014 ------------------- ------------------------------------------------------------------ ++++ hal: - Re-work hal-ignore-block.patch to properly disable probing for coldplug and hotplug block devices. (bnc#847425). - Re-work how we use hal sysconfig configuration file and init script to properly handle enable/disable block probing. (bnc#808462). ++++ kernel-docs: - patches.fixes/x86-dumpstack-Fix-printk_address-for-direct-addresse.patch: x86/dumpstack: Fix printk_address for direct addresses (bnc#845621). - patches.suse/stack-unwind: Refresh. - patches.xen/xen3-x86-dumpstack-Fix-printk_address-for-direct-addresse.patch: x86/dumpstack: Fix printk_address for direct addresses (bnc#845621). - commit 19325c2 - patches.fixes/futex-fix-handling-of-read-only-mapped-hugepages.patch: futex: fix handling of read-only-mapped hugepages (VM Functionality). - commit 995cee1 ++++ udev: - udevd: add support for max_childs to cmdline (bnc#837804). add: udev-147-add-cmdline-support-for-max_childs.patch - udevd: limit the number of workers count to 16 (bnc#837804). add: udev-147-limit-minimum-worker-count-to-16.patch ++++ openCryptoki: - Using bootstrap.sh to initialize build environment - Updated to v2.4.3.1 (FATE#316176) - CKM_SHA256_RSA_PKCS,CKM_SHA384_RSA_PKCS,CKM_SHA512_RSA_PKCS support for ICA token. - Allow import of RSA public and private keys into CCA token. - Systemd support added. - Various bugfixes and additional testcases. - Allow imported rsa private keys in cca to also decrypt. - Updated 0001-use-DESTDIR-when-creating-locks-dir.patch ------------------------------------------------------------------ ------------------ 2014-1-3 - Jan 3 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/autofs4-autofs4_wait-vs-autofs4_catatonic_mode-race.patch: autofs4: autofs4_wait() vs. autofs4_catatonic_mode() race (bnc#851314). - patches.fixes/autofs4-catatonic_mode-vs-notify_daemon-race.patch: autofs4: catatonic_mode vs. notify_daemon race (bnc#851314). - patches.fixes/autofs4-close-the-races-around-autofs4_notify_daemon.patch: autofs4: close the races around autofs4_notify_daemon() (bnc#851314). - patches.fixes/autofs4-deal-with-autofs4_write-autofs4_write-races.patch: autofs4: deal with autofs4_write/autofs4_write races (bnc#851314). - patches.fixes/autofs4-dont-clear-DCACHE_NEED_AUTOMOUNT-on-rootless-mount.patch: autofs4 - dont clear DCACHE_NEED_AUTOMOUNT on rootless mount (bnc#851314). - patches.fixes/autofs4-fix-deal-with-autofs4_write-races.patch: autofs4 - fix deal with autofs4_write races (bnc#851314). - patches.fixes/autofs4-use-simple_empty-for-empty-directory-check.patch: autofs4 - use simple_empty() for empty directory check (bnc#851314). - commit b552bc0 - sched: Avoid throttle_cfs_rq() racing with period_timer stopping (bnc#848336). - commit 6ec09c9 - sched/balancing: Periodically decay max cost of idle balance (bnc#849256). - sched: Consider max cost of idle balance per sched domain (bnc#849256). - sched: Reduce overestimating rq->avg_idle (bnc#849256). - commit b3f6220 - mutex: Make more scalable by doing fewer atomic operations (bnc#849256). - commit 817d6dd ------------------------------------------------------------------ ------------------ 2014-1-2 - Jan 2 2014 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/dlm-set-zero-linger-time-on-sctp-socket.patch: dlm: set zero linger time on sctp socket (bnc#787843). - commit a11a11f ++++ libqt4: - Fixes XML Entity Expansion Denial of Service (bnc#856832, CVE-2013-4549) * add backported patch libqt4-disallow-deep-or-widely-nested-entity-references.patch * add backported patch libqt4-fully-expand-all-entities.patch ++++ libqt4-devel-doc: - Fixes XML Entity Expansion Denial of Service (bnc#856832, CVE-2013-4549) * add backported patch libqt4-disallow-deep-or-widely-nested-entity-references.patch * add backported patch libqt4-fully-expand-all-entities.patch ++++ libqt4-devel-doc-data: - Fixes XML Entity Expansion Denial of Service (bnc#856832, CVE-2013-4549) * add backported patch libqt4-disallow-deep-or-widely-nested-entity-references.patch * add backported patch libqt4-fully-expand-all-entities.patch ++++ libqt4-sql-plugins: - Fixes XML Entity Expansion Denial of Service (bnc#856832, CVE-2013-4549) * add backported patch libqt4-disallow-deep-or-widely-nested-entity-references.patch * add backported patch libqt4-fully-expand-all-entities.patch ++++ xorg-x11-server: - U_xace-Invalid-reference-to-out-of-scope-data.patch * Fix Invalid reference to out-of-scope data. (bnc#856958) ------------------------------------------------------------------ ------------------ 2013-12-27 - Dec 27 2013 ------------------- ------------------------------------------------------------------ ++++ nagios: - Fix possible denial of service in CGI executables: * nagios-CVE-2013-7108.patch (bnc#856837) ------------------------------------------------------------------ ------------------ 2013-12-25 - Dec 25 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/wireless-radiotap-fix-parsing-buffer-overrun.patch: wireless: radiotap: fix parsing buffer overrun (bnc#854634 CVE-2013-7027). - commit 93ad340 ------------------------------------------------------------------ ------------------ 2013-12-22 - Dec 22 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - KVM: x86: fix guest-initiated crash with x2apic (CVE-2013-6376) (bnc#853053 CVE-2013-6376). - commit ee4b173 ------------------------------------------------------------------ ------------------ 2013-12-20 - Dec 20 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Fix include-fixed removals. ++++ kernel-docs: - lpfc 8.3.42: Fixed issue of task management commands having a fixed timeout (bnc#856481). - advansys: Remove 'last_reset' references (bnc#856481). - dc395: Move 'last_reset' into internal host structure (bnc#856481). - dpt_i2o: Remove DPTI_STATE_IOCTL (bnc#856481). - dpt_i2o: return SCSI_MLQUEUE_HOST_BUSY when in reset (bnc#856481). - Add 'eh_deadline' to limit SCSI EH runtime (bnc#856481). - remove check for 'resetting' (bnc#856481). - tmscsim: Move 'last_reset' into host structure (bnc#856481). - Refresh patches.drivers/0030-scsi-Added-support-for-adapter-and-firmware-reset.patch. - commit 3d9269d ++++ libvirt: - CVE-2013-6436: Fix crashes in lxc memtune code, one of which results in DoS f8c1cb90-CVE-2013-6436.patch, 9faf3f29-LXC-memtune.patch bnc#854486 ++++ timezone-java: - remove handling the solar files also from timezone-java.spec and timezone-java.spec.in ++++ wireshark: - update to 1.8.12 [bnc#855980, bnc#856496, bnc#856498] + vulnerabilities fixed: * The SIP dissector could go into an infinite loop. wnpa-sec-2013-66 CVE-2013-7112 * The NTLMSSP v2 dissector could crash. Discovered by Garming Sam. wnpa-sec-2013-68 CVE-2013-7114 + Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.8.12.html ------------------------------------------------------------------ ------------------ 2013-12-19 - Dec 19 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r206104). ++++ kernel-docs: - s390/pci: obtain function handle in hotplug notifier (bnc#856307, LTC#101276). - commit e2d4b3a - s390/pci/dma: fix accounting of allocated_pages (bnc#856307, LTC#101276). - commit 2be2c16 - s390/pci: set error state for unavailable functions (bnc#856307, LTC#101276). - commit bd467f6 - s390/pci: fix removal of nonexistent pci bus (bnc#856307, LTC#101276). - commit a7ccd21 - s390/pci: prevent inadvertently triggered bus scans (bnc#856307, LTC#101276). - commit 96c2b7b - patches.fixes/kvm-x86-fix-potential-divide-by-0-in-lapic-cve-2013-6367.patch: KVM: x86: Fix potential divide by 0 in lapic (CVE-2013-6367) (bnc#853051 CVE-2013-6367). - commit 728ec36 - patches.arch/s390-69-01-crypto-Fix_aes_xts_parameter_corruption.patch: crypto: Fix aes-xts parameter corruption (bnc#854546, LTC#100718). - commit 7dae336 - crypto: Fix aes-xts parameter corruption (bnc#854548, LTC#100718). - commit 4b9a3a7 - ptp: dynamic allocation of PHC char devices (bnc#851290). - commit 5b9268c - Btrfs: don't clear the default compression type - commit 1321c6e - patches.fixes/kvm-improve-create-vcpu-parameter-cve-2013-4587.patch: KVM: Improve create VCPU parameter (CVE-2013-4587) (bnc#853050 CVE-2013-4587). - commit ed502ac ++++ pixman: - 0001-pixman_trapezoid_valid-Fix-underflow-when-bottom-is-.patch, 0001-test-trap-crasher.c-Add-trapezoid-that-demonstrates-.patch: fix crash in trapezoid (bnc#853824 CVE-2013-6425) ++++ timezone-java: - update to 2013i (bnc#856305): * Jordan switches back to standard time at 00:00 on Dec. 20 2013 * The compile-time flag NOSOLAR has been removed * The files solar87, solar88, solar89 are no longer distributed ------------------------------------------------------------------ ------------------ 2013-12-18 - Dec 18 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - perf/x86: Fix offcore_rsp valid mask for SNB/IVB (bnc#825006). - perf/x86: Add Intel IvyBridge event scheduling constraints (bnc#825006). - commit 4192f4e - patches.fixes/libertas-potential-oops-in-debugfs.patch: libertas: potential oops in debugfs (bnc#852559 CVE-2013-6378). - commit c4070a9 - patches.fixes/aacraid-prevent-invalid-pointer-dereference.patch: aacraid: prevent invalid pointer dereference (bnc#852373 CVE-2013-6380). - commit 5f53614 - patches.fixes/wlags49_h2-buffer-overflow-setting-station-name.patch: staging: wlags49_h2: buffer overflow setting station name (bnc#849029 CVE-2013-4514). - commit 48bb50c - patches.fixes/staging-bcm-info-leak-in-ioctl.patch: Staging: bcm: info leak in ioctl (bnc#849034 CVE-2013-4515). - commit 06935dc ------------------------------------------------------------------ ------------------ 2013-12-17 - Dec 17 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/net-rework-recvmsg-handler-msg_name-and-msg_namelen-logic.patch: Refresh. - commit 248ea58 - pcifront: Deal with toolstack missing 'XenbusStateClosing' state. - xencons: generalize use of add_preferred_console() (bnc#733022, bnc#852652). - Refresh other Xen patches. - commit be0cbdb - patches.fixes/net-rework-recvmsg-handler-msg_name-and-msg_namelen-logic.patch: net: rework recvmsg handler msg_name and msg_namelen logic (bnc#854722). - commit bcd6863 ++++ lxc: - add lxc-opensuse-CVE-2013-6441.patch: security update for bnc#855809 ------------------------------------------------------------------ ------------------ 2013-12-16 - Dec 16 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/crypto-gf128mul-fix-call-to-memset.patch: crypto: gf128mul - fix call to memset() (obvious fix). - commit dd2e215 - patches.fixes/crypto-ansi_cprng-fix-off-by-one-error-in-non-block-size-request.patch: crypto: ansi_cprng - Fix off by one error in non-block size request (bnc#840226). - commit 1f9d5e1 ++++ libvirt: - Update to libvirt 1.0.5.7 stable release - http://wiki.libvirt.org/page/Maintenance_Releases#1.0.5_series contains complete changelog ++++ xen: - bnc#853049 - VUL-0: CVE-2013-6885: xen: XSA-82: Guest triggerable AMD CPU erratum may cause host hang 28102-x86-AMD-work-around-erratum-793.patch - bnc#853048 - VUL-0: CVE-2013-6400: xen: XSA-80: IOMMU TLB flushing may be inadvertently suppressed 28164-IOMMU-clear-don-t-flush-override-on-error-paths.patch - bnc#831120 - VUL-0: CVE-2013-2212: xen: XSA-60: Excessive time to disable caching with HVM guests with PCI passthrough 27852-VMX-disable-EPT-when-cpu_has_vmx_pat.patch 27853-VMX-remove-the-problematic-set_uc_mode-logic.patch 27854-VMX-fix-cr0.cd-handling.patch - bnc#848014 - [HP HPS] Xen hypervisor panics on 8-blades nPar with 46-bit memory addressing 27829-x86-ACPI-x2APIC-guard-against-out-of-range-ACPI-or-APIC-IDs.patch 27965-x86-consider-modules-when-cutting-off-memory.patch - bnc#833251 - [HP BCS SLES11 Bug]: In HP’s UEFI x86_64 platform and with xen environment, in booting stage ,xen hypervisor will panic. 28167-x86-cpuidle-publish-new-states-only-after-fully-initializing-them.patch - Upstream patches from Jan 27961-credit-Update-other-parameters-when-setting-tslice_ms.patch 27962-fix-leaking-of-v-cpu_affinity_saved-on-domain-destruction.patch 27963-nested-VMX-don-t-ignore-mapping-errors.patch 28022-x86-hvm-reset-TSC-to-0-after-domain-resume-from-S3.patch 28023-x86-crash-disable-the-watchdog-NMIs-on-the-crashing-cpu.patch 28041-x86-xsave-fix-nonlazy-state-handling.patch 28057-x86-hvm-fix-segment-validation.patch 28065-x86-restrict-XEN_DOMCTL_getmemlist.patch (Replaces CVE-2013-4553-xsa74.patch) 28066-x86-HVM-only-allow-ring-0-guest-code-to-make-hypercalls.patch (Replaces CVE-2013-4554-xsa76.patch) 28068-x86-properly-handle-MSI-X-unmask-operation-from-guests.patch 28092-Fix-ptr-calculation-when-converting-from-a-VA.patch 28103-nested-vmx-fix-I-O-port-bitmap-indexing-arithmetic.patch 28108-fix-locking-in-offline_page.patch 28112-nested-VMX-fix-I-O-port-exit-emulation.patch 28113-x86-fix-early-boot-command-line-parsing.patch 28131-Nested-VMX-CR-emulation-fix-up.patch 28133-x86-boot-fix-BIOS-memory-corruption-on-certain-IBM-systems.patch 28144-defer-the-domain-mapping-in-scrub_one_page.patch 28168-x86-PV-don-t-commit-debug-register-values-early-in-arch_set_info_guest.patch 28169-kexec-x86-do-not-map-crash-kernel-area.patch 28183-x86-p2m-restrict-auditing-to-debug-builds.patch ++++ xorg-x11-server: - u_exa-only-draw-valid-trapezoids.patch * Fix possible x server crash using invalid trapezoids. (bnc#853846 CVE-2013-6424) ------------------------------------------------------------------ ------------------ 2013-12-14 - Dec 14 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/aacraid-missing-capable-check-in-compat-ioctl.patch: aacraid: missing capable() check in compat ioctl (bnc#852558). - commit de0d113 ------------------------------------------------------------------ ------------------ 2013-12-13 - Dec 13 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - igb: Fix get_fw_version function for all parts (bnc#848317). - igb: Refactor of init_nvm_params (bnc#848317). - commit cd50178 ++++ libHBAAPI2: - Add '-ldl' during link (bnc#854160) ++++ php53: - security update * CVE-2013-6420.patch [bnc#854880] * CVE-2013-6712.patch [bnc#853045] * CVE-2013-4248.patch [bnc#837746] ------------------------------------------------------------------ ------------------ 2013-12-12 - Dec 12 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Wunprototyped-calls.diff: properly initialize warning ++++ kernel-docs: - patches.fixes/st-take-additional-queue-ref-in-st_probe.patch: Update upstream reference. - commit 0cd9ac8 ++++ libxml2: - fix for CVE-2013-2877 (bnc#854869, bnc#829077) * libxml2: denial of service (out of bounds read) at EOF ++++ libzypp: - Fix disk usage computation for single packages (bnc#852943) - version 9.37.4 (8) ++++ rubygem-actionpack-3_2: - fix CVE-2013-4389: rubygem-actionmailer-3_1: possible DoS vulnerability in the log subscriber component (bnc#846239) File CVE-2013-4389.patch contains the fix. ++++ rubygem-activesupport-3_2: - update license to SPDX-name MIT - fix CVE-2013-4389: rubygem-actionmailer-3_1: possible DoS vulnerability in the log subscriber component (bnc#846239) File CVE-2013-4389.patch contains the fix. ++++ rubygem-i18n-0_6: - add ruby requirement as a workaround for bnc#855139 (rubygem lacks ruby runtime requires) ++++ rubygems: - rubygems should require ruby if we downgrade the dependency for ruby-devel to recomends (bnc#855139) ------------------------------------------------------------------ ------------------ 2013-12-11 - Dec 11 2013 ------------------- ------------------------------------------------------------------ ++++ MozillaFirefox: - update to Firefox 24.2.0esr (bnc#854370, bnc#854367) * MFSA 2013-104/CVE-2013-5609/CVE-2013-5610 Miscellaneous memory safety hazards * MFSA 2013-108/CVE-2013-5616 (bmo#938341) Use-after-free in event listeners * MFSA 2013-109/CVE-2013-5618 (bmo#926361) Use-after-free during Table Editing * MFSA 2013-111/CVE-2013-6671 (bmo#930281) Segmentation violation when replacing ordered list elements * MFSA 2013-113/CVE-2013-6673 (bmo#970380) Trust settings for built-in roots ignored during EV certificate validation * MFSA 2013-114/CVE-2013-5613 (bmo#930381, bmo#932449) Use-after-free in synthetic mouse movement * MFSA 2013-115/CVE-2013-5615 (bmo#929261) GetElementIC typed array stubs can be generated outside observed typesets * MFSA 2013-116/CVE-2013-6629/CVE-2013-6630 (bmo#891693) JPEG information leak * MFSA 2013-117 (bmo#946351) Mis-issued ANSSI/DCSSI certificate (fixed via NSS 3.15.3.1) - requires NSS 3.15.3.1 / NSPR 4.10.2 or higher ++++ emacs: - 0001-Fix-vc-annotate-for-renamed-files-when-using-Git.patch (bnc#854683) ++++ kernel-docs: - Update a bugzilla reference. - commit 1b9a7b8 - perf/ftrace: Fix paranoid level for enabling function tracer (bnc#849362). - commit 1422b5d - xhci: Limit the spurious wakeup fix only to HP machines (bnc#833097). - commit de50395 - patches.fixes/SUNRPC-Fix-a-data-corruption-issue-when-retransmitti.patch: SUNRPC: Fix a data corruption issue when retransmitting RPC calls (no bugzilla yet - netapp confirms problem and fix). - commit f31f71b ++++ kiwi: - v5.05.48 released ++++ release-notes-sdk: - add back the rest of architectures ++++ rubygem-actionmailer-3_2: - fix bnc#846239 - CVE-2013-4389: rubygem-actionmailer-3_1: possible DoS vulnerability in the log subscriber component CVE-2013-4389.patch contains the fix. ++++ rubygem-i18n-0_6: - fix bnc#854166: CVE-2013-4492: rubygem-i18n: missing translation XSS. File CVE-2013-4492.patch.i18n.0.6.x contains the fix. ------------------------------------------------------------------ ------------------ 2013-12-10 - Dec 10 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Update to gcc-4_8-branch head (r205850). ++++ java-1_7_1-ibm: - package IBM Java Version 7 Release 1 (FATE#316606) IBM(R) SDK, Java Technology Edition, Version 7 Release 1 is the latest release of the Java SE 7 application programming interfaces (APIs). This release contains the latest virtual machine technology from IBM and is for users who wish to use Java SE 7 APIs to: * utilize enhanced native record processing * exploit the new zEC12 capabilities * improve monitoring and diagnostics * evaluate IBM's latest cloud enablement technology * see http://www-01.ibm.com/support/docview.wss?uid=swg21657707 ++++ kernel-docs: - patches.fixes/xfs-Account-log-unmount-transaction-correctly.patch: xfs: Account log unmount transaction correctly (bnc#849950). - commit e9c61b3 ++++ kiwi: - cleanup the evaluation of kiwi_ variables inside the initrd + the following elements/attributes accepts true|false values: , compressed, hybrid, hybridpersistent and ramonly These settings are propagated without changes to the linuxrc code that evaluates the variable to decide whether or not to perform an action. The evaluation in the shell code was based on yes|no an old relic that used to be use in the XML a long time ago. This update changes the evaluation in the shell code to true|false. - v5.05.47 released ++++ xen: - pygrub: Support (/dev/xvda) style disk specifications 27756-pygrub-xvda-style-disk.patch ++++ yast2-slp-server: - Checkbox for firewall service fix - bnc#825505 - 2.17.5 ++++ yast2-storage: - fixed update with EVMS (bnc#848821) - version 2.17.145 ------------------------------------------------------------------ ------------------ 2013-12-9 - Dec 9 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Cleanup include-fixed removals. ++++ docbook-xsl-stylesheets: - Added missing patch description to follow Patch Guidlines (see http://en.opensuse.org/openSUSE:Packaging_Patches_guidelines) - Added upstream patch (r9732-r9743 for base.dir parameter in EPUB3) ++++ kernel-docs: - Update config files. - commit ff0135e - powerpc: Fix memory hotplug with sparse vmemmap (bnc#827527). - memory-hotplug: implement register_page_bootmem_info_section of sparse-vmemmap (bnc#827527). - powerpc/mm: Mark Memory Resources as busy (bnc#827527). - powerpc: Add System RAM to /proc/iomem (bnc#827527). - commit df0d341 - Btrfs: don't BUG_ON() if we get an error walking backrefs (FATE#312888). - Delete patches.suse/btrfs-8151-optimize-key-searches-in-btrfs_search_slot.patch. - commit 2c55b45 - iscsi_target: race condition on shutdown (bnc#850072). - commit 41d0aa3 - lpfc: correct some issues with txcomplq processing (bnc#818064). - lpfc: correct an issue with rrq processing (bnc#818064). - commit 50052f7 ++++ samba: - Samba is chatty about being unable to open a printer; (bso#10118). - nsswitch: Fix short writes in winbind_write_sock; (bso#10195). - xattr: fix listing EAs on *BSD for non-root users; (bso#10247). - spoolss: accept XPS_PASS datatype used by Windows 8; (bso#10267). - The preceding bugs are tracked by (bnc#854520) too. - DCE-RPC fragment length field is incorrectly checked; CVE-2013-4408; (bnc#844720). - pam_winbind login without require_membership_of restrictions; CVE-2012-6150; (bnc#853347). ++++ lighttpd: - added cve-2013-4559.patch (bnc#850468) check success of setuid,setgid,setgroups - added cve-2013-4560.patch (bnc#850469) FAM: fix use after free ++++ vhostmd: - link libmetrics with libxml to fix Factory build ------------------------------------------------------------------ ------------------ 2013-12-8 - Dec 8 2013 ------------------- ------------------------------------------------------------------ ++++ cmake: - Added fix-check-for-freetype251.patch, for resolving build problems with Freetype2 2.5.1. For more details see: http://www.cmake.org/Bug/view.php?id=14601 and http://www.cmake.org/Bug/view.php?id=13959 ++++ mozilla-nss: - update to 3.15.3.1 (bnc#854367) * revoke certificate for google domains mistakenly issued by intermediate CA linked to the French government (bmo#946351) ++++ python-keyring: - Update to version 3.3 * KWallet backend will now honor the KDE_FULL_SESSION environment variable as found on openSUSE. - Changes from 3.2.1 * SecretService backend: use a different function to check that the backend is functional. The default collection may not exist, but the collection will remain usable in that case. Also, make the error message more verbose. Resolves https://bugs.launchpad.net/bugs/1242412. - Changes from 3.2 * Issue #120: Invoke KeyringBackend.priority during load_keyring to ensure that any keyring loaded is actually viable (or raises an informative exception). * Issue #123: fix removing items. * Correctly escape item name when removing. * Use with statement when working with files. * Add a test for removing one item in group. * Issue #81: Added experimental support for third-party backends. See keyring.core._load_library_extensions for information on supplying a third-party backend. - Changes from 3.1 * All code now runs natively on both Python 2 and Python 3, no 2to3 conversion is required. * Testsuite: clean up, and make more use of unittest2 methods. ------------------------------------------------------------------ ------------------ 2013-12-6 - Dec 6 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - powerpc: Fix fatal SLB miss when restoring PPR (bnc#853465). - commit 8196bce - powerpc/pseries: Parse and handle EPOW interrupts (bnc#852761). - powerpc: Make function that parses RTAS error logs global (bnc#852761). - commit 5469c49 ++++ kiwi: - fixed use of uninitialized variable $screenLogs (bnc #902424) * if logging to the terminal is requested this variable is empty ++++ ocaml: - Disable opt on ppc64le (ocaml-ppc64.patch doesn't support ELVv2) ++++ postgresql94-libs: - Update to version 9.3.2: * Fix VACUUM's tests to see whether it can update relfrozenxid * Fix multiple bugs in MultiXactId freezing * Fix initialization of pg_clog and og_subtrans during hot standby startup * Fix multiple bugs in update chain traversal * Fix dangling-pointer problem in fast-path locking * Fix assorted race conditions in timeout management * Prevent intra-transaction memory leak when printing range values * Truncate pg_multixact contents during WAL replay * Ensure an anti-wraparound VACUUM counts a page as scanned when it's only verified that no tuples need freezing * Fix full-table-vacuum request mechanism for MultiXactIds * Fix race condition in GIN index posting tree page deletion * Avoid flattening a subquery whose SELECT list contains a volatile function wrapped inside a sub-SELECT * See release notes for a full list of changes: http://www.postgresql.org/docs/9.3/static/release-9-3-2.html /usr/share/doc/packages/postgresql93/HISTORY - Added option to build postgresql-devel package separatly from postresql-libs ------------------------------------------------------------------ ------------------ 2013-12-5 - Dec 5 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Fix icecream environments to include required shared libraries again. ++++ crash: - crash-compressed-booted-kernel.patch: Fix a bug that may cause removal of the booted kernel's vmlinux image (bnc#828260). ++++ kernel-docs: - patches.fixes/blkdev_max_block-make-private-to-fs-buffer.c.patch: blkdev_max_block: make private to fs/buffer.c (bnc#820338). - patches.fixes/vfs-avoid-attempt-to-access-beyond-end-of-device-war.patch: vfs: avoid "attempt to access beyond end of device" warnings (bnc#820338). - patches.fixes/vfs-fix-O_DIRECT-read-past-end-of-block-device.patch: vfs: fix O_DIRECT read past end of block device (bnc#820338). - patches.suse/block-nonblock-causes-failfast: Refresh. - commit 806eab3 - drm/i915: add I915_PARAM_HAS_VEBOX to i915_getparam (bnc#831103,FATE#316109). - drm/i915: add I915_EXEC_VEBOX to i915_gem_do_execbuffer() (bnc#831103,FATE#316109). - drm/i915: add VEBOX into debugfs (bnc#831103,FATE#316109). - drm/i915: Enable vebox interrupts (bnc#831103,FATE#316109). - drm/i915: vebox interrupt get/put (bnc#831103,FATE#316109). - drm/i915: consolidate interrupt naming scheme (bnc#831103,FATE#316109). - drm/i915: Convert irq_refounct to struct (bnc#831103,FATE#316109). - drm/i915: make PM interrupt writes non-destructive (bnc#831103,FATE#316109). - drm/i915: Add PM regs to pre/post install (bnc#831103,FATE#316109). - drm/i915: Create an ivybridge_irq_preinstall (bnc#831103,FATE#316109). - drm/i915: Create a more generic pm handler for hsw+ (bnc#831103,FATE#316109). - drm/i915: Vebox ringbuffer init (bnc#831103,FATE#316109). - drm/i915: add HAS_VEBOX (bnc#831103,FATE#316109). - drm/i915: Rename ring flush functions (bnc#831103,FATE#316109). - drm/i915: Add VECS semaphore bits (bnc#831103,FATE#316109). - drm/i915: Introduce VECS: the 4th ring (bnc#831103,FATE#316109). - drm/i915: Semaphore MBOX update generalization (bnc#831103,FATE#316109). - drm/i915: Comments for semaphore clarification (bnc#831103,FATE#316109). - commit a647e22 - target: Fixup workqueue name (bnc#825056) - commit 6abfbbd - patches.fixes/scsi_dh-invoke-callback-if-activate-is-not-present.patch: scsi_dh: invoke callback if ->activate is not present (bnc#708296). - patches.fixes/scsi_dh-return-individual-errors-in-scsi_dh_activate.patch: scsi_dh: return individual errors in scsi_dh_activate() (bnc#708296). - patches.fixes/scsi_dh_alua-Decode-EMC-Clariion-extended-inquiry.patch: scsi_dh_alua: Decode EMC Clariion extended inquiry (bnc#708296). - patches.fixes/scsi_dh_alua-Decode-HP-EVA-array-identifier.patch: scsi_dh_alua: Decode HP EVA array identifier (bnc#708296). - patches.fixes/scsi_dh_alua-Evaluate-state-for-all-port-groups.patch: scsi_dh_alua: Evaluate state for all port groups (bnc#708296). - patches.fixes/scsi_dh_alua-Fix-missing-close-brace-in-alua_check_s.patch: scsi_dh_alua: Fix missing close brace in alua_check_sense (bnc#843642). - patches.fixes/scsi_dh_alua-Make-stpg-synchronous.patch: scsi_dh_alua: Make stpg synchronous (bnc#708296). - patches.fixes/scsi_dh_alua-Pass-buffer-as-function-argument.patch: scsi_dh_alua: Pass buffer as function argument (bnc#708296). - patches.fixes/scsi_dh_alua-Re-evaluate-port-group-states-after-STP.patch: scsi_dh_alua: Re-evaluate port group states after STPG (bnc#708296). - patches.fixes/scsi_dh_alua-Recheck-state-on-transitioning.patch: scsi_dh_alua: Recheck state on transitioning (bnc#708296). - patches.fixes/scsi_dh_alua-Rework-rtpg-workqueue.patch: scsi_dh_alua: Rework rtpg workqueue (bnc#708296). - patches.fixes/scsi_dh_alua-Use-separate-alua_port_group-structure.patch: scsi_dh_alua: Use separate alua_port_group structure (bnc#708296). - patches.fixes/scsi_dh_alua-allow-get_alua_data-to-return-NULL.patch: scsi_dh_alua: Allow get_alua_data() to return NULL (bnc#839407). - patches.fixes/scsi_dh_alua-asynchronous-RTPG.patch: scsi_dh_alua: asynchronous RTPG (bnc#708296). - patches.fixes/scsi_dh_alua-correctly-terminate-target-port-strings.patch: scsi_dh_alua: correctly terminate target port strings (bnc#708296). - patches.fixes/scsi_dh_alua-defer-I-O-while-workqueue-item-is-pendi.patch: scsi_dh_alua: defer I/O while workqueue item is pending (bnc#708296). - patches.fixes/scsi_dh_alua-do-not-attach-raid-devices.patch: scsi_dh_alua: Do not attach to RAID or enclosure devices (bnc#819979). - patches.fixes/scsi_dh_alua-do-not-attach-to-WLUNs.patch: scsi_dh_alua: Do not attach to well-known LUNs (bnc#821980). - patches.fixes/scsi_dh_alua-fine-grained-locking-in-alua_rtpg_work.patch: scsi_dh_alua: fine-grained locking in alua_rtpg_work() (bnc#708296). - patches.fixes/scsi_dh_alua-invalid-state-information-for-optimized.patch: scsi_dh_alua: invalid state information for 'optimized' paths (bnc#843445). - patches.fixes/scsi_dh_alua-move-RTPG-to-workqueue.patch: scsi_dh_alua: move RTPG to workqueue (bnc#708296). - patches.fixes/scsi_dh_alua-move-expiry-into-PG-structure.patch: scsi_dh_alua: move 'expiry' into PG structure (bnc#708296). - patches.fixes/scsi_dh_alua-move-some-sense-codes.patch: scsi_dh_alua: move some sense code handling into generic code (bnc#813245). - patches.fixes/scsi_dh_alua-multipath-failover-fails.patch: scsi_dh_alua: multipath failover fails with error 15 (bnc#825696). - patches.fixes/scsi_dh_alua-parse-target-device-id.patch: scsi_dh_alua: parse target device id (bnc#708296). - patches.fixes/scsi_dh_alua-protect-accesses-to-struct-alua_port_gr.patch: scsi_dh_alua: protect accesses to struct alua_port_group (bnc#708296). - patches.fixes/scsi_dh_alua-put-sense-buffer-on-stack.patch: scsi_dh_alua: put sense buffer on stack (bnc#708296). - patches.fixes/scsi_dh_alua-reattach-device-handler-failure.patch: scsi_dh_alua: reattaching device handler fails with 'Error 15' (bnc#843429). - patches.fixes/scsi_dh_alua-remove-locking-when-checking-state.patch: scsi_dh_alua: remove locking when checking state (bnc#708296). - patches.fixes/scsi_dh_alua-remove-stale-variable.patch: scsi_dh_alua: remove stale variable (bnc#708296). - patches.fixes/scsi_dh_alua-retry-RTPG-on-UNIT-ATTENTION.patch: scsi_dh_alua: retry RTPG on UNIT ATTENTION (bnc#708296). - patches.fixes/scsi_dh_alua-retry-command-on-mode-parameter-changed.patch: scsi_dh_alua: retry command on 'mode parameter changed' sense code (bnc#843645). - patches.fixes/scsi_dh_alua-simplify-alua_check_sense.patch: scsi_dh_alua: simplify alua_check_sense() (bnc#843642). - patches.fixes/scsi_dh_alua-simplify-state-update.patch: scsi_dh_alua: simplify state update (bnc#708296). - patches.fixes/scsi_dh_alua-use-delayed_work.patch: scsi_dh_alua: use delayed_work (bnc#708296). - patches.fixes/scsi_dh_alua-use-flag-for-RTPG-extended-header.patch: scsi_dh_alua: use flag for RTPG extended header (bnc#708296). - patches.fixes/scsi_dh_alua-use-local-buffer-for-VPD-inquiry.patch: scsi_dh_alua: use local buffer for VPD inquiry (bnc#708296). - patches.fixes/scsi_dh_alua-use-spin_lock_irqsave-for-port-group.patch: scsi_dh_alua: use spin_lock_irqsave for port group (bnc#708296). - patches.fixes/sd-avoid-deadlocks-when-running-under-multipath.patch: sd: avoid deadlocks when running under multipath (bnc#818545). - commit 032683b ++++ lsscsi: - Include changes from 0.24: * Merge FC layout fixes - Include changes from 0.25: * Additional SAS information * Additional FC information (bnc#844851) - Remove obsolete patches ++++ release-notes-sdk: - 11.3.12: - Update SP3 release notes from FATE. - Scope of packages regarding SLES/SLED (bnc#835413). ++++ rubygem-actionpack-3_2: - fix CVE-2013-4491: rubygem-actionpack: i18n missing translation XSS (bnc#853625). File CVE-2013-4491.patch contains the patch - fix CVE-2013-6414: rubygem-actionpack: Action View DoS (bnc#853633). File CVE-2013-6414.patch contains the patch. - fix CVE-2013-6415: rubygem-actionpack: number_to_currency XSS (bnc#853632). File CVE-2013-6415.patch contains the patch. - fix CVE-2013-6417: rubygem-actionpack: unsafe query generation risk (incomplete fix for CVE-2013-0155) (bnc#853627). File CVE-2013-6417.patch contains the patch. ------------------------------------------------------------------ ------------------ 2013-12-4 - Dec 4 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - netback: bump tx queue length (bnc#849404). - commit 7422e9b - Refresh Xen patches. - patches.xen/xen-netback-tx-queue-len: netback: bump tx queue length (bnc#849404). - commit 4648aa1 - storage: SMI Corporation usb key added to READ_CAPACITY_10 quirk (bnc#850324). - commit dfc2413 - patches.fixes/xfs-improve-ioend-error-handling: Refresh. - commit f4d97d7 ++++ kiwi: - fixed kiwi analyser default skip list * proc, sys and others were not excluded because of an invalid search pattern ------------------------------------------------------------------ ------------------ 2013-12-3 - Dec 3 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - r8169: check ALDPS bit and disable it if enabled for the 8168g (bnc#845352). (cherry picked from commit 17053c4cdd75206964e9a5cca9edaeeec8f012cf) - r8169: check ALDPS bit and disable it if enabled for the 8168g (bnc#845352). - commit 5173ee5 - patches.fixes/nfs-lock-recovery.fix: Change NFSv4 to not recover locks after they are lost (bnc#828236). - commit b63ceea ++++ kiwi: - deactivate the use of systemd helper tools * The following functions have been disabled because they use the systemd tools timedatectl and localectl. Problem is that these tools doesn't work correctly from within a chroot environment. They access the dbus daemon from the host system and thus they change the currently active configuration on the host system which is unwanted setupHWclock setupKeyboardMap setupLocale setupTimezone Instead the old suseConfig kiwi function is used again This function simply changes the configuration files inside the chrooted system tree. suseConfig is called as part of the config.sh kiwi script ------------------------------------------------------------------ ------------------ 2013-12-2 - Dec 2 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/sg-fix-blk_get_queue-usage: sg: fix blk_get_queue usage (bnc#834808). - commit ee7db2e - patches.fixes/sg-fix-blk_get_queue-usage: sg: fix blk_get_queue usage (bnc#834808). - commit 82fe542 - sg: fix blk_get_queue usage (bnc#834808). - commit d085b03 ++++ curl: - fix CVE-2013-4545 (bnc#849596) = acknowledge VERIFYHOST without VERIFYPEER ++++ samba: - Remove bogus libsmbclient0 package description and cleanup the libsmbclient line from baselibs.conf; (bnc#853021). ------------------------------------------------------------------ ------------------ 2013-11-30 - Nov 30 2013 ------------------- ------------------------------------------------------------------ ++++ python-httplib2: - SUSE internal build service does not recognize %0{sles_version} use a different version inidcator to depend on openssl-certs vs ca-certificates ------------------------------------------------------------------ ------------------ 2013-11-29 - Nov 29 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/mgag200: Bug fix: Modified pll algorithm for EH project (bnc#841654). - commit b5c36c6 - drm/i915: fix gen4 digital port hotplug definitions (bnc#850103). - commit 1cf0993 - patches.fixes/netxen-fix-off-by-one-bug-in-netxen_release_tx_buffe.patch: netxen: fix off by one bug in netxen_release_tx_buffer() (bnc#845729). - commit dcebd6d - patches.drivers/lpfc-Do-not-free-original-IOCB-whenever-ABTS-fails.patch: lpfc: Do not free original IOCB whenever ABTS fails (bnc#806988). - patches.drivers/lpfc-Fix-kernel-warning-on-spinlock-usage.patch: lpfc: Fix kernel warning on spinlock usage (bnc#806988). - patches.drivers/lpfc-Fixed-system-panic-due-to-midlayer-abort.patch: lpfc: Fixed system panic due to midlayer abort (bnc#806988). - commit c0b78d3 - dm-mpath: Fixup race condition in activate_path() (bnc#708296). - dm-mpath: do not detach stale hardware handler (bnc#708296). - dm-multipath: Improve logging (bnc#708296). - scsi_dh_alua: defer I/O while workqueue item is pending (bnc#708296). - scsi_dh_alua: Rework rtpg workqueue (bnc#708296). - scsi_dh_alua: use delayed_work (bnc#708296). - scsi_dh_alua: move 'expiry' into PG structure (bnc#708296). - scsi_dh: invoke callback if ->activate is not present (bnc#708296). - scsi_dh_alua: correctly terminate target port strings (bnc#708296). - scsi_dh_alua: retry RTPG on UNIT ATTENTION (bnc#708296). - scsi_dh_alua: protect accesses to struct alua_port_group (bnc#708296). - scsi_dh_alua: fine-grained locking in alua_rtpg_work() (bnc#708296). - scsi_dh_alua: use spin_lock_irqsave for port group (bnc#708296). - scsi_dh_alua: remove locking when checking state (bnc#708296). - scsi_dh_alua: remove stale variable (bnc#708296). - scsi_dh: return individual errors in scsi_dh_activate() (bnc#708296). - commit d56ac36 - patches.fixes/sd-fix-crash-when-UA-received.patch: Delete. - commit ad38cef - patches.drivers/qla2xxx-add-module-paremeter-to-override.patch: qla2xxx: Add module parameter to override the default request queue size (bnc#826756). - patches.fixes/sd-fix-crash-when-UA-received.patch: sd: fix crash when UA received on DIF enabled device (bnc#841445). - commit 778a1ab - qla2xxx: Add module parameter to override the default request queue size (bnc#826756). - commit 85605a9 - mei: ME hardware reset needs to be synchronized (bnc#821619). - commit 97a989b ------------------------------------------------------------------ ------------------ 2013-11-28 - Nov 28 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Enhance suffixing of shared library packages to individual packages via %product_libs_gcc_ver_$shlib$sover. ++++ kernel-docs: - patches.drivers/watchdog-get-rid-of-module_alias_miscdev-statements.patch: watchdog: Get rid of MODULE_ALIAS_MISCDEV statements (bnc#827767). - commit 2da7aa7 - patches.fixes/pci-fix-truncation-of-resource-size-to-32-bits.patch: PCI: fix truncation of resource size to 32 bits (bnc#843419). - commit c10ab49 ------------------------------------------------------------------ ------------------ 2013-11-27 - Nov 27 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - kabi: Restore struct irq_desc::timer_rand_state. - commit 6de8362 - Delete obsolete patches.suse/revert-tytsos-random-changes - commit 4a6bbb2 ------------------------------------------------------------------ ------------------ 2013-11-26 - Nov 26 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.arch/s390-68-01-qeth-snmp-ioctl.patch: qeth: request length checking in snmp ioctl (bnc#849848, LTC#99511). - commit 6b73c0b - patches.fixes/random-fix-accounting-race-condition-with-lockless-i.patch: random: fix accounting race condition with lockless irq entropy_count update (bnc#789359). - patches.suse/revert-some-random-changes: Delete. Remove the temporary revert (workaround) and replace with proper fix. - commit 20e6c5e - kernel: correct handling of asce-type exceptions (bnc#851879, LTC#100293). - commit a59225c - fs3270: unloading module does not remove device (bnc#851879, LTC#100284). - commit 84392d9 - Updated status of some of the fixes for the mgag200 KMS driver. patches.drm/drm-mgag200-Add-an-crtc_disable-callback-to-the-crtc-helper-funcs.patch. patches.drm/drm-mgag200-Add-sysfs-support-for-connectors.patch. patches.drm/drm-mgag200-Fix-LUT-programming-for-16bpp.patch. patches.drm/drm-mgag200-Fix-framebuffer-pitch-calculation.patch. patches.drm/drm-mgag200-Fix-logic-in-mgag200_bo_pin-v2.patch. - commit 3dbed64 - Pragmatic workaround for realtime class abuse induced latency issues. - patches.fixes/sched-provide-nortsched-boot-option.patch: Provide boot option to disable sched_rt_runtime (bnc#610783). - patches.fixes/sched-provide-rtkthreads-rtworkqueues-boot-options.patch: Provide realtime priority kthread and workqueue boot options (bnc#836718). - patches.arch/bug-610783_uv_nortsched_boot_option.patch: Delete. - commit d033a55 ++++ subversion: - fix bnc#850667 - mod_dontdothat and mod_dav_svn canonicalize paths CVE-2013-4505 and CVE-2013-4558 * 0001-mod_dontdothat-canonicalize-the-path.patch * 0002-mod_dontdothat-use-apr_uri_parse.patch * 0000-mod_dav_svn-use-canonical-path.patch ++++ yast2-storage: - disable btrfs multivolume support (bnc#832196) - version 2.17.144 ------------------------------------------------------------------ ------------------ 2013-11-25 - Nov 25 2013 ------------------- ------------------------------------------------------------------ ++++ cmake: - Drop old 2.8.12 tarball - Adjust cmake-gui.spec so it uses 2.8.12.1 ++++ kernel-docs: - patches.fixes/kvm-fix-iommu-map-unmap-to-handle-memory-slot-moves.patch: KVM: Fix iommu map/unmap to handle memory slot moves (CVE-2013-4592 bnc851101). - patches.fixes/kvm-perform-an-invalid-memslot-step-for-gpa-base-change.patch: KVM: perform an invalid memslot step for gpa base change (CVE-2013-4592 bnc851101). - commit 7b82306 - KVM: Fix iommu map/unmap to handle memory slot moves (CVE-2013-4592 bnc851101). - KVM: perform an invalid memslot step for gpa base change (CVE-2013-4592 bnc851101). - commit 9643d5a - Refresh patches.drivers/pci-Chelsio-quirk-Enable-Bus-Master-during-Function-Level-Reset.patch - commit a103dd6 - bnc#848336 L3: Fix several races in CFS_BANDWIDTH - patches.fixes/sched-Fix-cfs_bandwidth-misuse-of-hrtimer_expires_remaining.patch: sched: Fix cfs_bandwidth misuse of hrtimer_expires_remaining (bnc#848336). - patches.fixes/sched-Fix-hrtimer_cancel-vs-rq-lock-deadlock.patch: sched: Fix hrtimer_cancel()/rq->lock deadlock (bnc#848336). - patches.fixes/sched-Fix-race-on-toggling-cfs_bandwidth_used.patch: sched: Fix race on toggling cfs_bandwidth_used (bnc#848336). - patches.fixes/sched-Guarantee-new-group-entities-always-have-weight.patch: sched: Guarantee new group-entities always have weight (bnc#848336). - patches.fixes/sched-Use-jump-labels-to-reduce-overhead-when-bandwidth-control-is-inactive.patch: sched: Use jump labels to reduce overhead when bandwidth control is inactive (bnc#848336). - patches.suse/perfmon2.patch: Refresh. - commit 606167f ++++ libqb: - New api function to retrieve client buffer size - Enforce buffer size limits on the server side - Filter logs using regex patter on function, format, or filename - Upstream version cs: b09473fd4a03b4434efd44408f7ae631a855f9cd ------------------------------------------------------------------ ------------------ 2013-11-23 - Nov 23 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - btrfs: refresh patchset - Several patches replaced by upstream versions - Move SUSE patches to the end of the btrfs series to keep context sane for backports. - Minor code changes, no functional changes except for the removal of a double-call of btrfs_truncate_item that would have done nothing anyway. - Moved shims out of transaction.c and into compat.h - commit 827e1df ------------------------------------------------------------------ ------------------ 2013-11-22 - Nov 22 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - s390/pci: implement hotplug notifications (FATE#83037, LTC#94737). - commit 3dfd89f - s390/pci: implement pcibios_remove_bus (FATE#83037, LTC#94737). - commit 0693f22 - s390/pci: improve handling of bus resources (FATE#83037, LTC#94737). - commit e76e0dd - patches.drivers/pci-Chelsio-quirk-Enable-Bus-Master-during-Function-Level-Reset.patch: Modify reset method for Chelsio T4 to avoid hanging when, for example, VM using it is terminated (bnc#831168). - commit 24e374c ++++ ruby: - fix CVE-2013-4164: heap overflow in float point parsing (bnc#851803) The file CVE-2013-4164.patch contains the patch ------------------------------------------------------------------ ------------------ 2013-11-21 - Nov 21 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - btrfs: update Git-commit tags - commit 9d5900e - Delete patches.drivers/0001-quirks-add-touchscreen-that-is-dazzeled-by-remote-wa.patch. The patch fixed an issue but caused bnc#846568 - commit 63dbbf1 ++++ kiwi: - improvements to KIWIAnalyse: + added functions to create a diff of changed configuration files all config files are checked against the rpm database and if they have changed the original packages are downloaded and a diff of them is created. The original config files are stored in the cache to prevent another download of the packages at next invocation. The result is stored in the file 'changed_config.diff' - fixed setup of /boot/efi directory * instead of checking for boot/efi check for the label EFI in the kiwi_JumpPart partition * even without a seperate boot partition there might be a an EFI partition which should be added into fstab ++++ libzypp: - Filter control chars illegal in XML1.0 (bnc#850907) - version 9.37.3 (8) ------------------------------------------------------------------ ------------------ 2013-11-20 - Nov 20 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.arch/iommu-vt-d-remove-stack-trace-from-broken-irq-remapping-warning.patch: Update upstream reference. - commit b8e6c1d - patches.fixes/xfs-improve-ioend-error-handling: xfs: improve ioend error handling (bnc#846036). - patches.fixes/xfs-reduce-ioend-latency: xfs: reduce ioend latency (bnc#846036). - patches.fixes/xfs-use-per-filesystem-i-o-completion-workqueues: xfs: use per-filesystem I/O completion workqueues (bnc#846036). - patches.kabi/xfs-use-per-filesystem-i-o-completion-workqueues-kabi: xfs: Hide additional entries in struct xfs_mount (bnc#846036 bnc#848544). - commit bab15b2 - xfs: Hide additional entries in struct xfs_mount (bnc#846036 bnc#848544). - xfs: use per-filesystem I/O completion workqueues (bnc#846036). - xfs: improve ioend error handling (bnc#846036). - xfs: reduce ioend latency (bnc#846036). - commit 0e85461 ------------------------------------------------------------------ ------------------ 2013-11-19 - Nov 19 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - supported.conf: marked net/netfilter/xt_set as supported (bnc#851066) xt_set should have been enabled together with the ip_set modules in fate#313309 - commit 66f20ac - patches.suse/suse-hv-hv_kvp-sles11sp2-negotiate-serveral-versions.patch: handle more than just WS2008 in KVP negotiation (bnc#850640). - commit 8faab33 - Update s390x kabi files (bnc#848335, LTC#99117) - commit 9d9ac3c net/mlx4_core: Fix endianness bug in set_param_l (bnc#848335,LTC#94737). - commit ffcbd68 asm-generic: io: Fix ioread16/32be and iowrite16/32be (bnc#848335,LTC#94737). - commit b2ad829 - PCI: Add pcibios_add_device (bnc#848335,LTC#94737). - Refresh patches.drivers/pci-001-PCI-Add-pcibios_release_device.patch. - Refresh patches.drivers/pci-002-PCI-Add-pcibios_pm_ops.patch. - commit 0c94da6 ++++ samba: - Allow smbcacls to take a '--propagate-inheritance' flag to indicate that the add, delete, modify and set operations now support automatic propagation of inheritable ACE(s); (FATE#316474). ++++ mozilla-nspr: - update to version 4.10.2 (bnc#850148) * CVE-2013-5607 (bmo#927687) Avoid unsigned integer wrapping in PL_ArenaAllocate(). * bmo#770534: possible pointer overflow in PL_ArenaAllocate() * bmo#888546: ptio.c:PR_ImportUDPSocket didn't work ++++ mozilla-nss: - update to 3.15.3 (bnc#850148) * MFSA-2013-103/CVE-2013-1741 (bmo#925100) Ensure a size is <= half of the maximum PRUint32 value * MFSA-2013-103/CVE-2013-5605 (bmo#934016) Handle invalid handshake packets * MFSA-2013-103/CVE-2013-5606 (bmo#910438) Return the correct result in CERT_VerifyCert on failure, if a verifyLog isn't used * MFSA-2013-103/CVE-2013-2566 (bmo#850478) ++++ xen: - bnc#849667 - VUL-0: xen: XSA-74: Lock order reversal between page_alloc_lock and mm_rwlock CVE-2013-4553-xsa74.patch - bnc#849668 - VUL-0: xen: XSA-76: Hypercalls exposed to privilege rings 1 and 2 of HVM guests CVE-2013-4554-xsa76.patch - bnc#851386 - VUL-0: xen: XSA-78: Insufficient TLB flushing in VT-d (iommu) code 27964-TLB-flushing-in-dma_pte_clear_one.patch ------------------------------------------------------------------ ------------------ 2013-11-18 - Nov 18 2013 ------------------- ------------------------------------------------------------------ ++++ crash: - crash-xen-Always-calculate-max_cpus-value.patch: xen: Always calculate max_cpus value (bnc#835850). - crash-xen-Read-only-crash-notes-for-onlined-CPUs.patch: xen: Read only crash notes for onlined CPUs (bnc#835850). - crash-xen-Dynamically-allocated-per_cpu-data.patch: x86/xen: Read variables from dynamically allocated per_cpu data (bnc#835850). - crash-xen-Get-idle-data-from-alternative-source.patch: xen: Get idle data from alternative source (bnc#835850). - crash-xen-Dynamically-allocated-console-ring.patch: xen: Read data correctly from dynamically allocated console ring, too (bnc#835850). - crash-xen-Add-support-for-3-level-P2M-tree.patch: xen: Add support for 3 level P2M tree (bnc#835850). - crash-xen-Fix-page-tables-caching.patch: xen: Fix page tables caching issues (bnc#835850). - crash-xen-Use-init_tss-array-or-per_cpu__init_tss.patch: xen: Use init_tss array or per_cpu__init_tss (bnc#835850). - crash-xen-Use-per_cpu__crash_notes-or-crash_notes-array.patch: xen: Use per_cpu__crash_notes or crash_notes array (bnc#835850). - crash-xen-Try-hard-to-get-max_cpus-value.patch: xen: Try hard to get max_cpus value (bnc#835850). - crash-xen-Use-cpu_present_map-instead-of-cpu_online_map.patch: xen: Use cpu_present_map instead of cpu_online_map (bnc#835850). ++++ kernel-docs: - qeth: request length checking in snmp ioctl (bnc#847660, LTC#99511). - commit 863e8e8 - kernel: correct tlb flush on page table upgrade (bnc#847660, LTC#99268). - commit 8201957 - kernel: fix floating-point-control register save and restore (bnc#847660, LTC#99000). - commit 1b4e1b0 - crypto: unload of aes_s390 module causes kernel panic (bnc#847660, LTC#98706). - commit fa6fa56 - patches.fixes/mlx4-allocate-just-enough-pages-instead-of-always-4-.patch: mlx4: allocate just enough pages instead of always 4 pages (bnc#835186 bnc#835074). - patches.fixes/mlx4-allow-order-0-memory-allocations-in-RX-path.patch: mlx4: allow order-0 memory allocations in RX path (bnc#835186 bnc#835074). - patches.fixes/net-mlx4-use-one-page-fragment-per-incoming-frame.patch: net/mlx4: use one page fragment per incoming frame (bnc#835186 bnc#835074). - commit 968eb52 - ALSA: hda - load EQ params into IDT codec on HP bNB13 systems (bnc#850493). - commit 67b7d16 - Remove limit from patches.drm/drm-mgag200-Add-missing-limits.patch This limit should be taken care of by: patches.drm/drm-mgag200-Reject-modes-that-are-too-big-for-VRAM - Refresh patches.drm/drm-mgag200-Reject-modes-when-hdisplay-is-no-multiple-of-8.patch. - commit 4f969d0 drm/mgag200: Add missing write to index before accessing data register (bnc #806990). This patch replaces patches.drm/drm-mgag200-Add-missing-write-to-index-before-accessing-data-register.patch by its upstream variant. - Refresh: * patches.drm/drm-mgag200-Add-doublescan-and-interlace-support.patch. * patches.drm/drm-mgag200-Add-missing-limits.patch. * patches.drm/drm-mgag200-Added-resolution-and-bandwidth-limits-for-various-G200e-products.patch. * patches.drm/drm-mgag200-Reject-modes-when-hdisplay-is-no-multiple-of-8.patch. - Delete * patches.drm/drm-mgag200-In-all-code-paths-set-index-register-before-writing-data-register.patch. - commit ed29d54 - patches.fixes/NFS-Adapt-readdirplus-to-application-usage-patterns.patch: NFS: Adapt readdirplus to application usage patterns (bnc#834708). - commit 87021d7 ++++ kiwi: - fixed company name in analyse report page ++++ libvirt: - Update to libvirt 1.0.5.7 stable release - http://wiki.libvirt.org/page/Maintenance_Releases#1.0.5_series contains complete changelog - Don't use deprecated -no-kvm-pit-reinjection 1569fa14-kvm-pit-reinjection.patch bnc#842016 ++++ python-setuptools: - setuptools-0.6c12-ssl.patch - use HTTPS by default to retrieve index and packages (fixes bnc#843759, CVE-2013-1633) ------------------------------------------------------------------ ------------------ 2013-11-17 - Nov 17 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - pr58369.patch: Add backport of PR58369 ++++ timezone-java: - Define TM_GMTOFF and TM_ZONE like glibc did (bnc#807624) ------------------------------------------------------------------ ------------------ 2013-11-16 - Nov 16 2013 ------------------- ------------------------------------------------------------------ ++++ postgresql94-libs: - Update to version 9.3.1: * Update hstore extension with JSON functionality * Fix memory leak when creating range indexes * Serializable snapshot fixes * Fix libpq SSL deadlock bug * Fix timeline handling bugs in pg_receivexlog * Prevent CREATE FUNCTION from checking SET variables unless function body checking is enabled * Remove rare inaccurate warning during vacuum of index-less tables ------------------------------------------------------------------ ------------------ 2013-11-15 - Nov 15 2013 ------------------- ------------------------------------------------------------------ ++++ ant-contrib: - don't require ant-junit for build, junit is sufficient * reducing of cycles ++++ kernel-docs: - Replace MGA G200 bandwidth limit code with variant from upstream Add limits still missing upstream in separate patches, refresh subsequent patches: - drm/mgag200: Added resolution and bandwidth limits for various G200e products. - drm/mgag200: Add doublescan and interlace support. - drm/mgag200: Add additional limits for certain G200 variants. - Refresh patches.drm/drm-mgag200-Add-sysfs-support-for-connectors.patch. - Refresh patches.drm/drm-mgag200-Fix-logic-in-mgag200_bo_pin-v2.patch. - Refresh patches.drm/drm-mgag200-In-all-code-paths-set-index-register-before-writing-data-register.patch. - Refresh patches.drm/drm-mgag200-Reject-modes-when-hdisplay-is-no-multiple-of-8.patch. - Delete patches.drm/drm-mgag200-Add-bandwidth-and-resolution-limits.patch. - commit 4236b29 - Working around KABI breakage for the newly introduce disable field in struct cpuidle_state is wrong. We have a real KABI break. Re-implement disabling C-state patches by using an unused bit of the flags field: - Refresh patches.fixes/cpuidle_disable_cstates_also_honor_ladder_governor.patch. - Refresh patches.fixes/cpuidle_disable_cstates_via_sysfs.patch. - commit 9ee60ec - Refresh Xen patches. - commit 1e135a5 - isci: Fix a race condition in the SSP task management path (bnc#826978). - commit 9bf07c6 ++++ yast2: - Warn the user if Chef could overwrite her changes (bnc#803358). - 2.17.132 ------------------------------------------------------------------ ------------------ 2013-11-14 - Nov 14 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - drm/mgag200: Add sysfs support for connectors. - commit 4de2ac9 - drm/mgag200: Add an crtc_disable callback to the crtc helper funcs. - commit c1b6196 - drm/mgag200: Fix logic in mgag200_bo_pin() (v2). Replace patches.drm/drm-mgag200-Fix-logic-in-mgag200_bo_pin.patch by patches.drm/drm-mgag200-Fix-logic-in-mgag200_bo_pin-v2.patch. which is considerably simpler. - commit 8b51fb9 - Introduce KABI exception for cpuidle_state->disable via #ifndef __GENKSYMS__ Refresh patches.fixes/cpuidle_disable_cstates_via_sysfs.patch. - commit 908c75f - patches.drivers/drm-don-t-add-inferred-modes-for-monitors-that-don-t-support-them.patch: drm: don't add inferred modes for monitors that don't support them (bnc #849809). This patch is a backport of 19874f6d774ef39dbfa5e12ecd19df7fd62a1af5 in the SP3 branch for bnc#798466. - commit 41c0919 - patches.fixes/0001-PCI-pciehp-Retrieve-link-speed-after-link-is-trained.patch: PCI: pciehp: Retrieve link speed after link is trained (bnc#820102). - patches.fixes/0002-PCI-Separate-pci_bus_read_dev_vendor_id-from-pci_sca.patch: PCI: Separate pci_bus_read_dev_vendor_id from pci_scan_device (bnc#820102). - patches.fixes/0003-PCI-pciehp-replace-unconditional-sleep-with-config-s.patch: PCI: pciehp: replace unconditional sleep with config space access check (bnc#820102). - patches.fixes/0004-PCI-pciehp-make-check_link_active-more-helpful.patch: PCI: pciehp: make check_link_active more helpful (bnc#820102). - patches.fixes/0005-PCI-pciehp-Add-pcie_wait_link_not_active.patch: PCI: pciehp: Add pcie_wait_link_not_active() (bnc#820102). - patches.fixes/0006-PCI-pciehp-Add-Disable-enable-link-functions.patch: PCI: pciehp: Add Disable/enable link functions (bnc#820102). - patches.fixes/0007-PCI-pciehp-Disable-enable-link-during-slot-power-off.patch: PCI: pciehp: Disable/enable link during slot power off/on (bnc#820102). - commit 9cda8d4 - Honor state disabling in the cpuidle ladder governor (bnc#845378). - cpuidle: add a sysfs entry to disable specific C state for debug purpose (bnc#845378). - commit 0b84803 ++++ kiwi: - v5.05.46 released - partial fix for initrd creation for EC2 images + With the latest release of mkinitrd the multipath.sh script no longer exists. We need to check for it's precense before moving it ++++ ksh: - Finally the last changes had fixed the crash reported in bnc#844071 maybe also fixes bnc#863315 ------------------------------------------------------------------ ------------------ 2013-11-13 - Nov 13 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Disable new cross-compilers and use the icecream fallback again for now. ++++ hwinfo: - update pci id list (bnc #813172) ++++ kernel-docs: - x86: Remove some noise from boot log when starting cpus (bnc#770541). - nohz: Remove "Switched to NOHz mode" debugging messages (bnc#770541). - commit 2e35920 - Update drivers/tty/hvc kabi checksums for s390x (bnc#837739) - commit e00bb91 - x86/microcode/amd: Tone down printk(), don't treat a missing firmware file as an error (bnc#843654). - commit e5e75f6 - patches.fixes/xfrm-invalidate-dst-on-policy-insertion-deletion.patch: xfrm: invalidate dst on policy insertion/deletion (bnc#842239). - patches.fixes/xfrm-prevent-ipcomp-scratch-buffer-race-condition.patch: xfrm: prevent ipcomp scratch buffer race condition (bnc#842239). - commit 69d3894 ++++ xen: - bnc#842417 - In HP’s UEFI x86_64 platform and sles11sp3 with xen environment, dom0 will soft lockup on multiple blades nPar. 27870-x86-idle-reduce-contention-on-ACPI-register-accesses.patch - bnc#848014 - [HP HPS] Xen hypervisor panics on 8-blades nPar with 46-bit memory addressing 27926-VMX-don-t-crash-processing-d-debug-key.patch - bnc#846849 - L3: Soft lockup with PCI passthrough and many VCPUs 27926-VMX-don-t-crash-processing-d-debug-key.patch - bnc#833483 - Boot Failure with xen kernel in UEFI mode with error "No memory for trampoline" 27864-x86-EFI-make-trampoline-allocation-more-flexible.patch (Replaces x86-EFI-trampoline-fallback.patch) - Upstream patches from Jan 27736-scheduler-adjust-internal-locking-interface.patch 27737-sched-fix-race-between-sched_move_domain-and-vcpu_wake.patch 27759-credit-unpause-parked-vcpu-before-destroying-it.patch 27764-x86-print-relevant-tail-part-of-filename-for-warnings-and-crashes.patch 27766-x86-xsave-also-save-restore-XCR0-across-suspend-ACPI-S3.patch 27785-x86-refine-address-validity-checks-before-accessing-page-tables.patch 27792-fix-locking-in-cpu_disable_scheduler.patch 27848-x86-HVM-32-bit-IN-result-must-be-zero-extended-to-64-bits.patch 27925-nested-SVM-adjust-guest-handling-of-structure-mappings.patch 27928-x86-eliminate-has_arch_mmios.patch ------------------------------------------------------------------ ------------------ 2013-11-12 - Nov 12 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/dcache-soft-lockup.fix: Avoid softlockup in shrink_dcache_for_umount_subtree (bnc#834473). - commit fa05a75 ------------------------------------------------------------------ ------------------ 2013-11-11 - Nov 11 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Update config files. - commit cdcbda4 - Refresh patches.drivers/pci-001-PCI-Add-pcibios_release_device.patch. - commit 5f2ea02 - s390/pci: cleanup function information block (bnc#848335,FATE#83037,LTC#94737). - commit 02fd661 - s390/pci: remove CONFIG_PCI_DEBUG dependancy (bnc#848335,FATE#83037,LTC#94737). - commit c50f61b - s390/pci: message cleanup (bnc#848335,FATE#83037,LTC#94737). - commit 4fc547c - s390/pci: implement hibernation hooks (bnc#848335,FATE#83037,LTC#94737). - commit ff7e67a - s390/pci: use virtual memory for iommu bitmap (bnc#848335,FATE#83037,LTC#94737). - commit b61049c - s390/pci: update function handle after resume from hibernate (bnc#848335,FATE#83037,LTC#94737). - commit b96cb9f - s390/pci/hotplug: convert to be builtin only (bnc#848335,FATE#83037,LTC#94737). - commit fac2a7e - s390/hibernate: add early resume function (bnc#848335,FATE#83037,LTC#94737). - commit ce0eec6 - s390/pci: try harder to modify a function (bnc#848335,FATE#83037,LTC#94737). - commit 3caf703 - s390/pci: split lpf (bnc#848335,FATE#83037,LTC#94737). - commit 8857fdd - s390/pci: add recover sysfs knob (bnc#848335,FATE#83037,LTC#94737). - commit a1af0ea - s390/pci: use claim_resource (bnc#848335,FATE#83037,LTC#94737). - commit db92ce5 - s390/pci: use adapter interrupt vector helpers (bnc#848335,FATE#83037,LTC#94737). - commit a98ab40 - s390/pci: cleanup function names (bnc#848335,FATE#83037,LTC#94737). - commit 0830fa5 - s390/airq: introduce adapter interrupt vector helper (bnc#848335,FATE#83037,LTC#94737). - commit 611520d - s390/airq: simplify adapter interrupt code (bnc#848335,FATE#83037,LTC#94737). - commit ebee033 - s390/bitops: fix find_next_bit_left (bnc#848335,FATE#83037,LTC#94737). - commit 8537c73 - s390/pci: remove per device debug attribute (bnc#848335,FATE#83037,LTC#94737). - commit 175c1bc - s390/dma: fix mapping_error detection (bnc#848335,FATE#83037,LTC#94737). - commit cf0f2ea - s390/dma: do not call debug_dma after free (bnc#848335,FATE#83037,LTC#94737). - commit 7c011e6 - s390/pci: sysfs remove strlen (bnc#848335,FATE#83037,LTC#94737). - commit 492c202 - s390/pci: remove pdev during unplug (bnc#848335,FATE#83037,LTC#94737). - commit 22d6af9 - s390/pci: cleanup hotplug code (bnc#848335,FATE#83037,LTC#94737). - commit c93a3d5 - s390/pci: implement pcibios_release_device (bnc#848335,FATE#83037,LTC#94737). - commit 2ca3f43 - s390/pci: use to_pci_dev (bnc#848335,FATE#83037,LTC#94737). - commit f7865dc - s390/pci: use pci_scan_root_bus (bnc#848335,FATE#83037,LTC#94737). - commit 6d771f7 - s390/pci: return correct dma address for offset > PAGE_SIZE (bnc#848335,FATE#83037,LTC#94737). - commit 1a974dc - s390/pci: remove disable_device implementation (bnc#848335,FATE#83037,LTC#94737). - commit c29fbf2 - s390/pci: disable per default (bnc#848335,FATE#83037,LTC#94737). - commit 380f301 - s390/pci: return error after failed pci ops (bnc#848335,FATE#83037,LTC#94737). - commit c9dc6b8 - s390/pci: do not read data after failed load (bnc#848335,FATE#83037,LTC#94737). - commit 4afacc5 - s390/pci: add exception table to load/store instructions (bnc#848335,FATE#83037,LTC#94737). - commit e73ce37 - s390/pci: rename instruction wrappers (bnc#848335,FATE#83037,LTC#94737). - commit 00b45d9 - s390/pci: uninline instruction wrappers (bnc#848335,FATE#83037,LTC#94737). - commit c6999bd - s390/pci: implement pcibios_add_device (bnc#848335,FATE#83037,LTC#94737). - commit fbccfb0 - s390/pci: do not modify function handles (bnc#848335,FATE#83037,LTC#94737). - commit 4ec4c21 - s390/pci: debug device states (bnc#848335,FATE#83037,LTC#94737). - commit d071469 - s390/pci: msi cleanup hash usage (bnc#848335,FATE#83037,LTC#94737). - commit e272160 - s390/pci: use kmem_cache_zalloc instead of kmem_cache_alloc/memset (bnc#848335,FATE#83037,LTC#94737). - commit 4b19e32 - s390/pci: fix hotplug module init (bnc#848335,FATE#83037,LTC#94737). - commit 498f4e5 - s390/pci: cleanup clp page allocation (bnc#848335,FATE#83037,LTC#94737). - commit a4f6ca7 - s390/pci: cleanup clp inline assembly (bnc#848335,FATE#83037,LTC#94737). - commit bc3f7da - s390/pci: rename pci_probe to s390_pci_probe (bnc#848335,FATE#83037,LTC#94737). - commit 4d0ab6d - s390/pci: remove dead code (bnc#848335,FATE#83037,LTC#94737). - commit c5c5981 - s390/chsc: cleanup SEI helper functions (bnc#848335,FATE#83037,LTC#94737). - commit 27a5343 - s390/chsc: fix SEI usage (bnc#848335,FATE#83037,LTC#94737). - commit b3603c3 - s390/pci: performance statistics and debug infrastructure (bnc#848335,FATE#83037,LTC#94737). - commit a01e0ff - s390/qdio: rename the misleading PCI flag of qdio devices (bnc#848335,FATE#83037,LTC#94737). - commit b0c7162 - s390/pci: remove obsolete email addresses (bnc#848335,FATE#83037,LTC#94737). - commit fd1e317 - s390/pci: speed up __iowrite64_copy by using pci store block insn (bnc#848335,FATE#83037,LTC#94737). - commit cc5952b - s390/pci: no msleep in potential IRQ context (bnc#848335,FATE#83037,LTC#94737). - commit f566deb - s390/pci: s390 specific PCI sysfs attributes (bnc#848335,FATE#83037,LTC#94737). - commit d5d443f - s390/pci: PCI hotplug support via SCLP (bnc#848335,FATE#83037,LTC#94737). - commit cf986b3 - s390/pci: CHSC PCI support for error and availability events (bnc#848335,FATE#83037,LTC#94737). - commit a98ab8a - s390/pci: DMA support (bnc#848335,FATE#83037,LTC#94737). - commit c8e4cc7 - s390/pci: PCI adapter interrupts for MSI/MSI-X (bnc#848335,FATE#83037,LTC#94737). - commit fe90e84 - s390/bitops: find leftmost bit instruction support (bnc#848335,FATE#83037,LTC#94737). - commit 5aca718 - s390/pci: CLP interface (bnc#848335,FATE#83037,LTC#94737). - commit 6389351 - s390/pci: base support (bnc#848335,FATE#83037,LTC#94737). - commit f674416 - PCI: Add pcibios_pm_ops for optional arch-specific hibernate functionality (bnc#848335,FATE#83037,LTC#94737). - commit 9d169e7 - PCI: Add pcibios_release_device() (bnc#848335,FATE#83037,LTC#94737). - commit 882b46c - patches.arch/s390-cio_robust-1-add_message_for_timeouts_on_internal_IO.patch: cio: add message for timeouts on internal I/O (bnc#837739,LTC#97047). - patches.arch/s390-cio_robust-2-dont_abort_verification_after_missing_irq.patch: s390/cio: dont abort verification after missing irq (bnc#837739,LTC#97047). - patches.arch/s390-cio_robust-3-skip_broken_paths.patch: s390/cio: skip broken paths (bnc#837739,LTC#97047). - patches.arch/s390-cio_robust-4-export_vpm_via_sysfs.patch: s390/cio: export vpm via sysfs (bnc#837739,LTC#97047). - patches.arch/s390-cio_robust-5-handle_unknown_pgroup_state.patch: s390/cio: handle unknown pgroup state (bnc#837739,LTC#97047). - commit 62e2e92 - patches.fixes/fix-printk-oops-from-nmi.patch: printk: forcibly flush nmi ringbuffer if oops is in progress (bnc#849675). - commit 2aef1d8 - x86: Update UV3 hub revision ID (bnc#846298 fate#314987). - commit ba3f7c4 ++++ kiwi: - fixed creation of rpmsort cache data in KIWIAnalyseManagedSoftware * the data was stored as reference but the reference was changed during the process - don't remove the satsolver cache when running kiwi --describe - fixed creation of toplevel menu in kiwi analyse * the menu should only contain items found by the analyser - added new CSS and menu for the kiwi --describe report - fixed createDatabaseDump to force compression of database dump even if there is an older dump available ++++ xen: - bnc#849665 - VUL-0: CVE-2013-4551: xen: XSA-75: Host crash due to guest VMX instruction execution 27868-nested-VMX-VMLANUCH-VMRESUME-emulation-must-check-permission-1st.patch ++++ yast2-network: - bnc#779531 - workaround for buggy implementation of inotify which causes that nscd's cache is not updated when src files are edited. - bnc#829556 - Fixed detection whether interface is handled by firewall and thus fixed accidental stopping and disabling the firewall services. Added detection of interfaces handled by implicit assignment with 'any' in firewall zone. (author: locilka@suse.com) - 2.17.197 ------------------------------------------------------------------ ------------------ 2013-11-9 - Nov 9 2013 ------------------- ------------------------------------------------------------------ ++++ hal: - hal-handle-sigterm-after-probe.patch: the forked hald should not install a signal handler before being able to properly handle it (bnc#808462) - hal-ignore-block.patch: allow disabling storage device probing by setting HALD_IGNORE_STORAGE to non-zero in /etc/sysconfig/hal (bnc#808462) - hal-ignore-child-timeout.patch: don't kill the child when it takes too long to probe devices, as it will only shutdown hald after the probe is complete (bnc#808462) ------------------------------------------------------------------ ------------------ 2013-11-8 - Nov 8 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - tty/hvc_iucv: Disconnect IUCV connection when lowering DTR (bnc#839973, LTC#97595). - commit e9dc7d2 - tty/hvc_console: Add DTR/RTS callback to handle HUPCL control (bnc#839973, LTC#97595). - commit 523c126 ++++ xen: - The upstream version of checking for xend when using the 'xl' command is used is not working. disable-xl-when-using-xend-fix.patch ------------------------------------------------------------------ ------------------ 2013-11-7 - Nov 7 2013 ------------------- ------------------------------------------------------------------ ++++ cmake: - update to 2.8.12.1 * Reverts a change in behaviour from older versions caused by a bad implementation of a CMake Policy introduced in 2.8.12: CMP0022 (bnc#849378) ++++ glib2: - Add glib2-bnc846912.patch Ignore multiple (incorrect usage) g_thread_init calls. Needed to workaround a broken upstream Java implementation ++++ kernel-docs: - ALSA: hda - Fix inconsistent mic-mute LED (bnc#848864). - commit d038121 - patches.fixes/ipc-ipc_rcu_putref-race.patch: fix ipc_rcu_{get,put}ref during destruction (bnc#848321, CVE-2013-4483). - commit 931061f ++++ krb5: - fix Multi-realm KDC null deref CVE-2013-1418 (bnc#849240) ------------------------------------------------------------------ ------------------ 2013-11-6 - Nov 6 2013 ------------------- ------------------------------------------------------------------ ++++ ant-contrib: - upgrade to 1.0b3 * no upstream changelog available - removed patches: * ant-contrib-1.0b2-enable-for-task.patch there is no for task in beta3 * ant-contrib-ant-1.7.0.patch no longer needed * ant-contrib-build_xml.patch fixed upstream * ant-contrib-BuildFileTest_java.patch no longer needed - added patches: * ant-contrib-antservertest.patch * ant-contrib-pom.patch * local-ivy.patch - add pom file - add ant.d configuration - Move from jpackage-utils to javapackage-tools - disable javadoc build - Remove redundant tags/sections from specfile - fix bnc#644661 - ant-contrib does not export the antcontrib:for task - rename ant_version to ant_minimal_version - use requires_eq for the ant package - bump ant-version to 1.7.1 ++++ cmake: - updated cmake.macros to include installation path for cmake modules ++++ kernel-docs: - patches.fixes/Fix-a-few-incorrectly-checked-io_-remap_pfn_range-ca.patch: Fix a few incorrectly checked [io_]remap_pfn_range() calls (bnc#849021, CVE-2013-4511). - commit 69b0eb0 ++++ libxslt: - applied an incremental fix for CVE-2012-2825 where the node type was not checked in one more case (CVE-2013-4520 bnc#849019) ++++ xen: - bnc#840997 - It is possible to start a VM twice on the same node. xend-xm-reboot-fix.patch ------------------------------------------------------------------ ------------------ 2013-11-5 - Nov 5 2013 ------------------- ------------------------------------------------------------------ ++++ apache2-mod_fcgid: - flawed patch apache2-mod_fcgid-CVE-2013-4365-bnc844935.diff revised: loop counter handled incorrectly, leading to SEGV and "Premature end of script headers" errors. [bnc#844935] CVE-2013-4365 ++++ kernel-docs: - Delete patches.drivers/mlx4-0016-net-remove-use-of-ndo_set_multicast_list-in-drivers.patch. (bnc#847261) - Delete patches.drivers/qlge-0008-net-remove-use-of-ndo_set_multicast_list-in-drivers.patch. (bnc#847261) - Delete patches.drivers/tg3-0002-net-remove-use-of-ndo_set_multicast_list-in-drivers.patch. (bnc#847261) - Refresh patches.drivers/tg3-0050-tg3-Move-tg3_change_mtu-to-a-better-location.patch. - commit 1c5f591 - patches.drivers/bna-do-not-register-ndo_set_rx_mode-callback.patch: bna: do not register ndo_set_rx_mode callback (bnc#847261). - patches.drivers/0005-net-remove-use-of-ndo_set_multicast_list-in-drivers.patch: Delete (bnc#847261). - patches.drivers/0022-net-remove-use-of-ndo_set_multicast_list-in-drivers.patch: Delete (bnc#847261). - patches.suse/msft-hv-0064-net-remove-use-of-ndo_set_multicast_list-in-drivers.patch: Delete (bnc#847261). - patches.suse/msft-hv-0287-staging-hv-move-hv_netvsc-out-of-staging-area.patch: Refresh. - patches.suse/msft-hv-0305-net-hyperv-Add-support-for-jumbo-frame-up-to-64KB.patch: Refresh. - patches.suse/msft-hv-0361-hyperv-Add-support-for-setting-MAC-from-within-guest.patch: Refresh. - commit 59d07a4 - usb: Fix xHCI host issues on remote wakeup (bnc#846989). - commit 301e5e0 - Intel xhci: refactor EHCI/xHCI port switching (bnc#840116). - xhci-hub.c: preserved kABI (bnc#840116). - xhci: Refactor port status into a new function (bnc#840116). - commit 68d24cc ------------------------------------------------------------------ ------------------ 2013-11-4 - Nov 4 2013 ------------------- ------------------------------------------------------------------ ++++ gcc48: - Change s390 and s390x to use -march=z196 -mtune=zEC12 by default. [fate#315297] ++++ kernel-docs: - patches.drivers/qla2xxx-Module-parameter-ql2xasynclogin.patch: qla2xxx: Module parameter 'ql2xasynclogin' (bnc#825896). - commit 6f4951a - powerpc/rtas_flash: Fix validate_flash buffer overflow issue (bnc#847842). - powerpc/rtas_flash: Fix bad memory access (bnc#847842). - commit 583a4e9 ++++ kiwi: - keep error messages from db_test_cmd in createDatabaseDump under perl control - v5.05.45 released - follow up fix to prevent call of setupBootPartition (bnc #847893) * if the hybrid RW partition can't be created HYBRID_RW will be unset, thus setupBootPartition would be called but we are still in a hybrid mode. In order to make that clear a new variable skipSetupBootPartition is set to handle all cases ++++ wireshark: - update to 1.8.11 [bnc#848738] + vulnerabilities fixed: * The IEEE 802.15.4 dissector could crash. wnpa-sec-2013-61 CVE-2013-6336 * The NBAP dissector could crash. Discovered by Laurent Butti. wnpa-sec-2013-62 CVE-2013-6337 * The SIP dissector could crash. wnpa-sec-2013-63 CVE-2013-6338 * The OpenWire dissector could go into a large loop. Discovered by Murali. wnpa-sec-2013-64 CVE-2013-6339 * The TCP dissector could crash. wnpa-sec-2013-65 CVE-2013-6340 + Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.8.11.html - update to 1.8.10 [bnc#839607] + vulnerabilities fixed: * The NBAP dissector could crash. wnpa-sec-2013-55 CVE-2013-5718 * The ASSA R3 dissector could go into an infinite loop. wnpa-sec-2013-56 CVE-2013-5719 * The RTPS dissector could overflow a buffer. wnpa-sec-2013-57 CVE-2013-5720 * The MQ dissector could crash. wnpa-sec-2013-58 CVE-2013-5721 * The LDAP dissector could crash. wnpa-sec-2013-59 CVE-2013-5722 * The Netmon file parser could crash. wnpa-sec-2013-60 + Further bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-1.8.10.html ++++ xen: - bnc#848657 - VUL-0: xen: CVE-2013-4494: XSA-73: Lock order reversal between page allocation and grant table locks 27828-gnttab-correct-locking-order-reversal.patch ------------------------------------------------------------------ ------------------ 2013-11-1 - Nov 1 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - Revert aer_recover_queue() __GENKSYMS__ hack, add a fake symset with the previous value instead (bnc#847721) - commit 2417eb9 - rpm/kernel-binary.spec.in: Fix for kabi/*/symvers*.fake - commit f0a52f0 ------------------------------------------------------------------ ------------------ 2013-10-31 - Oct 31 2013 ------------------- ------------------------------------------------------------------ ++++ kernel-docs: - patches.fixes/nfs-xs_tcp_setup_socket.fix: SUNRPC: close a rare race in xs_tcp_setup_socket (bnc#794824). - commit 36fae46 ++++ kiwi: - KIWIAnalyse: added function importDatabases() to KIWIConfig.sh in order to allow the import of complete database sets. This is the counterpart for the recently added KIWIAnalyseCustomData function createDatabaseDump() - the config.sh created by KIWIAnalyse will automatically add an entry to call this function to allow the reimport of the databases during image creation - KIWIAnalyse: use `mysqladmin ping` instead of a netstat+grep to check for running mysql database - KIWIAnalyse: store exported dbs in