-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 07 Aug 2023 23:01:57 +0200 Source: linux Binary: bpftool bpftool-dbgsym hyperv-daemons hyperv-daemons-dbgsym libcpupower-dev libcpupower1 libcpupower1-dbgsym linux-compiler-gcc-12-x86 linux-config-6.1 linux-cpupower linux-cpupower-dbgsym linux-headers-6.1.0-11-686 linux-headers-6.1.0-11-686-pae linux-headers-6.1.0-11-rt-686-pae linux-image-6.1.0-11-686-dbg linux-image-6.1.0-11-686-pae-dbg linux-image-6.1.0-11-686-pae-unsigned linux-image-6.1.0-11-686-unsigned linux-image-6.1.0-11-rt-686-pae-dbg linux-image-6.1.0-11-rt-686-pae-unsigned linux-image-686-dbg linux-image-686-pae-dbg linux-image-i386-signed-template linux-image-rt-686-pae-dbg linux-kbuild-6.1 linux-kbuild-6.1-dbgsym linux-libc-dev linux-perf linux-perf-dbgsym rtla usbip usbip-dbgsym Architecture: i386 Version: 6.1.38-3 Distribution: bookworm-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-ubc-02) Changed-By: Salvatore Bonaccorso Description: bpftool - Inspection and simple manipulation of BPF programs and maps hyperv-daemons - Support daemons for Linux running on Hyper-V libcpupower-dev - CPU frequency and voltage scaling tools for Linux (development fi libcpupower1 - CPU frequency and voltage scaling tools for Linux (libraries) linux-compiler-gcc-12-x86 - Compiler for Linux on x86 (meta-package) linux-config-6.1 - Debian kernel configurations for Linux 6.1 linux-cpupower - CPU power management tools for Linux linux-headers-6.1.0-11-686 - Header files for Linux 6.1.0-11-686 linux-headers-6.1.0-11-686-pae - Header files for Linux 6.1.0-11-686-pae linux-headers-6.1.0-11-rt-686-pae - Header files for Linux 6.1.0-11-rt-686-pae linux-image-6.1.0-11-686-dbg - Debug symbols for linux-image-6.1.0-11-686 linux-image-6.1.0-11-686-pae-dbg - Debug symbols for linux-image-6.1.0-11-686-pae linux-image-6.1.0-11-686-pae-unsigned - Linux 6.1 for modern PCs linux-image-6.1.0-11-686-unsigned - Linux 6.1 for older PCs linux-image-6.1.0-11-rt-686-pae-dbg - Debug symbols for linux-image-6.1.0-11-rt-686-pae linux-image-6.1.0-11-rt-686-pae-unsigned - Linux 6.1 for modern PCs, PREEMPT_RT linux-image-686-dbg - Debugging symbols for Linux 686 configuration (meta-package) linux-image-686-pae-dbg - Debugging symbols for Linux 686-pae configuration (meta-package) linux-image-i386-signed-template - Template for signed linux-image packages for i386 linux-image-rt-686-pae-dbg - Debugging symbols for Linux rt-686-pae configuration (meta-packag linux-kbuild-6.1 - Kbuild infrastructure for Linux 6.1 linux-libc-dev - Linux support headers for userspace development linux-perf - Performance analysis tools for Linux rtla - Real-Time Linux Analysis tools usbip - USB device sharing system over IP network Changes: linux (6.1.38-3) bookworm-security; urgency=high . [ Salvatore Bonaccorso ] * [x86] Add mitigations for Gather Data Sampling (GDS) (CVE-2022-40982) - init: Provide arch_cpu_finalize_init() - x86/cpu: Switch to arch_cpu_finalize_init() - ARM: cpu: Switch to arch_cpu_finalize_init() - ia64/cpu: Switch to arch_cpu_finalize_init() - loongarch/cpu: Switch to arch_cpu_finalize_init() - m68k/cpu: Switch to arch_cpu_finalize_init() - mips/cpu: Switch to arch_cpu_finalize_init() - sh/cpu: Switch to arch_cpu_finalize_init() - sparc/cpu: Switch to arch_cpu_finalize_init() - um/cpu: Switch to arch_cpu_finalize_init() - init: Remove check_bugs() leftovers - init: Invoke arch_cpu_finalize_init() earlier - init, x86: Move mem_encrypt_init() into arch_cpu_finalize_init() - x86/init: Initialize signal frame size late - x86/fpu: Remove cpuinfo argument from init functions - x86/fpu: Mark init functions __init - x86/fpu: Move FPU initialization into arch_cpu_finalize_init() - x86/speculation: Add Gather Data Sampling mitigation - x86/speculation: Add force option to GDS mitigation - x86/speculation: Add Kconfig option for GDS - KVM: Add GDS_NO support to KVM - x86/mem_encrypt: Unbreak the AMD_MEM_ENCRYPT=n build - x86/xen: Fix secondary processors' FPU initialization - x86/mm: fix poking_init() for Xen PV guests - x86/mm: Use mm_alloc() in poking_init() - mm: Move mm_cachep initialization to mm_init() - x86/mm: Initialize text poking earlier - Documentation/x86: Fix backwards on/off logic about YMM support * [x86] Add a Speculative RAS Overflow (SRSO) mitigation (CVE-2023-20569) - x86/bugs: Increase the x86 bugs vector size to two u32s - x86/srso: Add a Speculative RAS Overflow mitigation - x86/srso: Add IBPB_BRTYPE support - x86/srso: Add SRSO_NO support - x86/srso: Add IBPB - x86/srso: Add IBPB on VMEXIT - x86/srso: Fix return thunks in generated code - x86/srso: Add a forgotten NOENDBR annotation * Bump ABI to 11 . [ Ben Hutchings ] * [x86] Add missing pieces of SRSO mitigation: - x86/cpu, kvm: Add support for CPUID_80000021_EAX - x86/srso: Tie SBPB bit setting to microcode patch detection Checksums-Sha1: d3c0ef8f20caa4d7ae53b9b9b26e784b1c39c6d6 759948 bpftool-dbgsym_7.1.0+6.1.38-3_i386.deb 57908652562d2b306192c11f21c71b0bca5158c6 939144 bpftool_7.1.0+6.1.38-3_i386.deb 3a4cc63eaf5eed488587db47e0214e6a99d2c4c8 45372 hyperv-daemons-dbgsym_6.1.38-3_i386.deb b45bf29d296545d9556d54bce1e57eb251eaa5c2 683884 hyperv-daemons_6.1.38-3_i386.deb e9ab8056e3ffcdfc8c1d2c08453463b361483fc0 668812 libcpupower-dev_6.1.38-3_i386.deb cc165f4a9abe57e3f73e609125018098445c37b3 22336 libcpupower1-dbgsym_6.1.38-3_i386.deb 71576e3707edf73a38d0604d1ab959e0b615e965 674664 libcpupower1_6.1.38-3_i386.deb a86ffaa62e345e86946634a8318a95027db16e9a 666856 linux-compiler-gcc-12-x86_6.1.38-3_i386.deb fcefa503ec6e21cff7b1081e2e0fa50ec3682357 826736 linux-config-6.1_6.1.38-3_i386.deb c2c602a54e4036f48a260958f892983536be332f 190120 linux-cpupower-dbgsym_6.1.38-3_i386.deb ce6067bc808895159cc484579e4df850ff5e866a 783564 linux-cpupower_6.1.38-3_i386.deb 6c778ead54fd213e189805f7b6aed6ed8cb79d59 1186524 linux-headers-6.1.0-11-686-pae_6.1.38-3_i386.deb 07e36bec381b775dc23887fc2f45abe866c01f36 1187116 linux-headers-6.1.0-11-686_6.1.38-3_i386.deb 4ea7d2947b760527aab030b8d4eeeeaedd5811ea 1186836 linux-headers-6.1.0-11-rt-686-pae_6.1.38-3_i386.deb eed0928712eb55e9a3b2b99a06d91cce0e7e6b97 759477072 linux-image-6.1.0-11-686-dbg_6.1.38-3_i386.deb 19ab876018a739bd413c85cf64db15434d1959fd 762112908 linux-image-6.1.0-11-686-pae-dbg_6.1.38-3_i386.deb bae5f2761939933bebbbc817a239fe39a4d084df 49171728 linux-image-6.1.0-11-686-pae-unsigned_6.1.38-3_i386.deb 82f34807256ff39506159b5345ec43e4ee0c4423 48943616 linux-image-6.1.0-11-686-unsigned_6.1.38-3_i386.deb fe188f7c4bb527a21914a17d2f8c44ade6c6c18d 768531420 linux-image-6.1.0-11-rt-686-pae-dbg_6.1.38-3_i386.deb 43796eaaf7e53b8516d56c23be33d8c8972627b4 49304248 linux-image-6.1.0-11-rt-686-pae-unsigned_6.1.38-3_i386.deb 1dea606bf304545da02add71925847f21c94fbb6 1296 linux-image-686-dbg_6.1.38-3_i386.deb ab8c192fae6f8c8987ca5fb52c82fc05d86df93e 1308 linux-image-686-pae-dbg_6.1.38-3_i386.deb 9cf8faa48b0f55cc4e279d18d0a3a47d3144b8c6 1233020 linux-image-i386-signed-template_6.1.38-3_i386.deb 6ceba9f25c8e3748aa330a6b94b3c53e499ff167 1320 linux-image-rt-686-pae-dbg_6.1.38-3_i386.deb ed671f775a20b11ab23cfd48572b080bb90cb9e8 976348 linux-kbuild-6.1-dbgsym_6.1.38-3_i386.deb fc717bf581c4760add78e74d3e4105235cd53f5d 934480 linux-kbuild-6.1_6.1.38-3_i386.deb 74ac21b8b83419892ce2c6ac31d6227bd40c4b03 1811476 linux-libc-dev_6.1.38-3_i386.deb bef16907a9bb2b73425a3413fa256bfee7cb9472 7611948 linux-perf-dbgsym_6.1.38-3_i386.deb 0313c93b549690db56ba3ef013884651b0e37d25 2783148 linux-perf_6.1.38-3_i386.deb 6fcd6d2cc652335b7712d6403f9464ea02cf596e 18768 linux_6.1.38-3_i386-buildd.buildinfo ca4734c005f58d830208a210af2db983e39724bb 705736 rtla_6.1.38-3_i386.deb 4015059012ccc5e47533b95704408a92779e8492 137928 usbip-dbgsym_2.0+6.1.38-3_i386.deb 3a5957a95eeea86625f8a935f900674873f97f58 705368 usbip_2.0+6.1.38-3_i386.deb Checksums-Sha256: 17b9d782cf732fb53a4f3863db29f0fb2d7400eefda85de0594379d783c7df29 759948 bpftool-dbgsym_7.1.0+6.1.38-3_i386.deb e6358f635f0337c2c1b269e5facf095975209148cbc901ef373523550266b218 939144 bpftool_7.1.0+6.1.38-3_i386.deb 830cfab56b3a004d9b46a523c96781df072461e0860c4f53dfe9a52f2f3fb6ce 45372 hyperv-daemons-dbgsym_6.1.38-3_i386.deb a679d2a52df7791288a2b092ee3d9af4649942aa7d093e239c74a98ec254a43c 683884 hyperv-daemons_6.1.38-3_i386.deb d3458234b2c5c7b582c42029a141428c36ee775d1344b1499ca1adc2b389d547 668812 libcpupower-dev_6.1.38-3_i386.deb a2bfdf7e0d9ec412acf5f58b41818f232d6e331aa844177a71973967bcf1e1f3 22336 libcpupower1-dbgsym_6.1.38-3_i386.deb a67c7d7490e6a1aac246fb4d2b42bc8aca36e43c67d8414670ad42ffd80dfe8b 674664 libcpupower1_6.1.38-3_i386.deb 8bb944103588c3b79f64296d1c4bff841f45b5844100cae5ead55176e91b2c58 666856 linux-compiler-gcc-12-x86_6.1.38-3_i386.deb 37742564c6e374bde7dcad333fb7193a17e2dc2cb2c282328c873538254e1544 826736 linux-config-6.1_6.1.38-3_i386.deb 238822e3ec7944f50aab4cbd64015ef77fcc09702e5a993b3a5d045088d8739e 190120 linux-cpupower-dbgsym_6.1.38-3_i386.deb a31ceeb40b4a3fa40b243db6425a67160653523a2d02861c997a0fa2f1e8d9e8 783564 linux-cpupower_6.1.38-3_i386.deb 589f7d6e3b918b339495aea6cb99ba0186ec7b6705177cca32537d5b76c48990 1186524 linux-headers-6.1.0-11-686-pae_6.1.38-3_i386.deb c08ef9306db0e73ee916c2359ca9f121a4b6d9527203e3e8aa583470f2ca9a4e 1187116 linux-headers-6.1.0-11-686_6.1.38-3_i386.deb be521ffb170e6ed3ad7d3bd160f593158394de2892e3ae57a902955c4e7b3a74 1186836 linux-headers-6.1.0-11-rt-686-pae_6.1.38-3_i386.deb ba34f0432fb169455b73cc0555473d7d886216a4fb7e4430f621df440687c3c5 759477072 linux-image-6.1.0-11-686-dbg_6.1.38-3_i386.deb 237c9a0ab3b0b35f69084615fff3dcd5a2aabcbbdb8eb3029630e60b917afda9 762112908 linux-image-6.1.0-11-686-pae-dbg_6.1.38-3_i386.deb deea89dcb6a7bdda8f518cca0aab75aa30951619b9070f673fe9387bf3c552f7 49171728 linux-image-6.1.0-11-686-pae-unsigned_6.1.38-3_i386.deb 93afb957750cf02f6cfdca5965576cc4c2d51749a3913d788d72c406965b52a3 48943616 linux-image-6.1.0-11-686-unsigned_6.1.38-3_i386.deb 39bb92f041b739b4ac1ed8ec1d69a11d88945b0b2965453a9ac5c8c15b8b4d05 768531420 linux-image-6.1.0-11-rt-686-pae-dbg_6.1.38-3_i386.deb 57dd2fcaeaed74d8e71f274ba9dc606ed5574be1b4c0b83d7169d91937c09fba 49304248 linux-image-6.1.0-11-rt-686-pae-unsigned_6.1.38-3_i386.deb 25ea1fa85fc4eae87d4bf406fb317b9a9eb4048571b87d39f9b4a8b85f3b56a4 1296 linux-image-686-dbg_6.1.38-3_i386.deb cebba909eb27ca4a33352378692fce0873e76448663100c6aeb3a2766c610d9b 1308 linux-image-686-pae-dbg_6.1.38-3_i386.deb b9d0059fbd56312e7f217306b7d869a4029d53070bb04a0bc8c9fcbba2a208e4 1233020 linux-image-i386-signed-template_6.1.38-3_i386.deb 8c9ba473a7bb76d4c9d8c564e9967e7501170de1fdbb4f0c4eb06650eee691d1 1320 linux-image-rt-686-pae-dbg_6.1.38-3_i386.deb b9c276b276b9f16231ccc8c1a9896cae98a7292178df32529ab06044122261ac 976348 linux-kbuild-6.1-dbgsym_6.1.38-3_i386.deb 9bd8ee36eb85ec2058b78e7f8f425e5f31fd5346ca219041e83f4d8355458e8b 934480 linux-kbuild-6.1_6.1.38-3_i386.deb 215de55d9ea93290c2421ecc1c268b4c33d9e08077e1ea1bc3080e1f89a73a49 1811476 linux-libc-dev_6.1.38-3_i386.deb 23b91e9ae623fe2f5331fe3dab4f182a5c75cacd0d90dcd543b2e115139758ad 7611948 linux-perf-dbgsym_6.1.38-3_i386.deb 706847cfaa03cf4a0c89fd5ec9a9585fa5642450b987ea5768682bfa2413f6cc 2783148 linux-perf_6.1.38-3_i386.deb cecb5d4a1824190cd8afc6f14edfc21a64ec7988f6839b5da1a64ae054713cb1 18768 linux_6.1.38-3_i386-buildd.buildinfo 2a851843b826ac8e06461c1f802efb0e17f7f0d9e52f6d65e2bcb4cc889de984 705736 rtla_6.1.38-3_i386.deb 4039a1257ddbe71429ae1b8279d7c743c0510cb6f9fdb121d0a2bb5dc9dba528 137928 usbip-dbgsym_2.0+6.1.38-3_i386.deb 8c9456787d52d7185fb1434ee4d92c5675a20e544a7a442a018c0efac9ac2a69 705368 usbip_2.0+6.1.38-3_i386.deb Files: 06747c8243560c9f1151f28b010887c1 759948 debug optional bpftool-dbgsym_7.1.0+6.1.38-3_i386.deb 5914d0ee7d9d32fb5a4182f98d938422 939144 devel optional bpftool_7.1.0+6.1.38-3_i386.deb 137b580e20e73c23d229e6ecbeaf8808 45372 debug optional hyperv-daemons-dbgsym_6.1.38-3_i386.deb 3ecd1e09d7b52c09cf4d29a00bbc8b9c 683884 admin optional hyperv-daemons_6.1.38-3_i386.deb ee311fa21ff44bb817531c84ea5d1059 668812 libdevel optional libcpupower-dev_6.1.38-3_i386.deb 2a782c3f2c56a5d6f49910eaa5826b05 22336 debug optional libcpupower1-dbgsym_6.1.38-3_i386.deb d50f42beca32f2b07246b474ed44b8b3 674664 libs optional libcpupower1_6.1.38-3_i386.deb 6278e17d4f63cf8d03d0725671afad0f 666856 kernel optional linux-compiler-gcc-12-x86_6.1.38-3_i386.deb 6c265b8519b36e001028a43e84b4491a 826736 kernel optional linux-config-6.1_6.1.38-3_i386.deb bebcbd9be4bccb0f0dcbdf89fc8daed0 190120 debug optional linux-cpupower-dbgsym_6.1.38-3_i386.deb f81d6bcd4a6574d656f478306e571333 783564 admin optional linux-cpupower_6.1.38-3_i386.deb 84c9da09abf03a327880dc0d30ddccd4 1186524 kernel optional linux-headers-6.1.0-11-686-pae_6.1.38-3_i386.deb 79f01baffa87f550b14984858145d599 1187116 kernel optional linux-headers-6.1.0-11-686_6.1.38-3_i386.deb db577ea5a811d7964f2044554fdc6c16 1186836 kernel optional linux-headers-6.1.0-11-rt-686-pae_6.1.38-3_i386.deb c4c0080376b275061d10f7b1d80ed03f 759477072 debug optional linux-image-6.1.0-11-686-dbg_6.1.38-3_i386.deb a557ed96b3ec25188ee61a57efed0f23 762112908 debug optional linux-image-6.1.0-11-686-pae-dbg_6.1.38-3_i386.deb 8cb34fabbc3a79b97a64980853d566b6 49171728 kernel optional linux-image-6.1.0-11-686-pae-unsigned_6.1.38-3_i386.deb f6b7518c777872720b70976f6fca00ca 48943616 kernel optional linux-image-6.1.0-11-686-unsigned_6.1.38-3_i386.deb 81894831283a33e42f9b0238967de120 768531420 debug optional linux-image-6.1.0-11-rt-686-pae-dbg_6.1.38-3_i386.deb b5628223e3e46fe96d75f0a31c2d0552 49304248 kernel optional linux-image-6.1.0-11-rt-686-pae-unsigned_6.1.38-3_i386.deb e939c49d04298b42a771aba8c3739590 1296 kernel optional linux-image-686-dbg_6.1.38-3_i386.deb 647a3d93b7d1e9a970a6d228a7863fd4 1308 kernel optional linux-image-686-pae-dbg_6.1.38-3_i386.deb b5ee32d756e07969d470d41e61caa28a 1233020 kernel optional linux-image-i386-signed-template_6.1.38-3_i386.deb 809f44f7a61bd5c7a6772c70c2159ffe 1320 kernel optional linux-image-rt-686-pae-dbg_6.1.38-3_i386.deb efeeb7256cc11967ad2589d150a6b09d 976348 debug optional linux-kbuild-6.1-dbgsym_6.1.38-3_i386.deb c6ac7fbb4f7312a41d394218f47a8685 934480 kernel optional linux-kbuild-6.1_6.1.38-3_i386.deb 7071cf62e981ebf2946e3932703a93da 1811476 devel optional linux-libc-dev_6.1.38-3_i386.deb 10370b4e8b1bad8a583c8d07fc4880c5 7611948 debug optional linux-perf-dbgsym_6.1.38-3_i386.deb 84258c33f91a06d334f990a798a0a33d 2783148 devel optional linux-perf_6.1.38-3_i386.deb 2382d5e528139953263496610d35101c 18768 kernel optional linux_6.1.38-3_i386-buildd.buildinfo 8faf1fe75696bdf8f500d453e01aa5cc 705736 devel optional rtla_6.1.38-3_i386.deb b64e913bdb124513360e8bdc10640448 137928 debug optional usbip-dbgsym_2.0+6.1.38-3_i386.deb f1cac0fec029c16cb67b2fd59321f432 705368 admin optional usbip_2.0+6.1.38-3_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEJyRdn7p9tGRfxctAots23/koc0EFAmTSTuUACgkQots23/ko c0EEHw/+OwKtPbAp+uPBJAtrg/1Hs3nN4fgkanTtTFsn6Y8BUmvedxodd9ie+tAA Awc288/KclXVTh34cYXuuviewJ9sLBP8+2ma+xyuDLUlA8ITKF5M44YB37DcMdtU 9wgHKw7MW7aNV3SzLV1FWzDfJHxfLsqDRfMGAhH7aP1i5JVTcJQJ44otLzdCevSG XdqVXymEp+cUzOexfRU/1btWKZrtUiohRZC8UBzeqhWev62vauHVGOcCAh7hHEVu rl4iH5ogEIyffCyWDfhOOQrTp0GKCfTOpTMPjsfM+2RTjEl5rKC0Xe8eSa1giMVs IXCugUe14QLPs1LvZ576dn0COwmlS/pcQ4t2TybR/7MRU5ay9y72e+dKR4+xTOHK GKKdZh85bzgK621LpiN1eXhUKVne5DChEJNl+oZ/pDRqYjanqnPLD+woYK9lTXQe zxVzy7AZ0TE0Xp/6WbPua/2KQ7PPQ8SwyfGRKDrOHJ6+4oCwdyISC5k02XpniGBD IU/oNPnEP1Y00xD6o0HlEceSqGoqAup6twGZTkfOkAEXLwtr88dY/LEJj+JDhWho N0kidHz3v5C7a4VosHgtipRjEIXAuShzWO/4dpLfwXLb3YDz3WRFGJikSv2Q2NyT +hBSuz4drHlrolORWxPxEsYKb9cPsN4JFmvGHdJrR/Lf2cNB9iA= =NQcb -----END PGP SIGNATURE-----