Nuovi aggiornamenti di sicurezza per il kernel Linux in Ubuntu 11.10 Oneiric Ocelot

Creato il 15 febbraio 2012 da Hugor @msdiaz61

Visto che il kernel controlla il networking del vostro computer, è importante che sia molto sicuro e non venga compromesso. Per evitare alcuni dei recenti attacchi via rete dovreste tentare di mantenere aggiornato il vostro kernel. Potete trovare nuovi kernel presso ftp://ftp.kernel.org o dal distributore del vostro sistema.

Esiste anche un gruppo internazionale che fornisce una singola patch crittografica per il kernel principale di Linux. Questa patch fornisce il supporto per una serie di sottosistemi crittografici e caratteristiche che non possono essere incluse nel kernel principale per limiti di esportazione. Per ulteriori informazioni visitate la loro pagina web presso: http://www.kerneli.org

Dato che il codice sorgente di Linux è disponibile a tutti, è ampiamente personalizzabile, al punto da rendere possibile, in fase di compilazione, l'esclusione di codice non strettamente indispensabile. La flessibilità di questo kernel lo rende adatto a tutte quelle tecnologie embedded emergenti e anche nei centri di calcolo distribuito (cluster Beowulf) fino ad essere incorporato in alcuni videoregistratori digitali e nei telefoni cellulari.

Gli ultimi aggiornamenti di sicurezza ritenuti importanti (in dettaglio) riguardanti l’ultima versione del kernel Linux (3.0.0.16.19) sono stati rilasciati com’è abituale da Canonical nel suo bollettino settimanale e quindi pronti per l’installazione (manuale o automatica) nella vostra distribuzione Ubuntu:

Modifiche per le versioni:
Versione installata: 3.0.0.15.17
Versione disponibile: 3.0.0.16.19

Versione 3.0.0.16.19:

  [ Leann Ogasawara ]

  * Add compat-wireless v3.2 meta package
   - LP: #918351


Versione 3.0.0.16.18:

•   Bump ABI

This package will always depend on the latest complete generic Linux kernel available.

Modifiche per le versioni:
Versione installata: None
Versione disponibile: 3.0.0-16.28

Versione 3.0.0-16.28:

  [Herton R. Krzesinski]

  * Release Tracking Bug
   - LP: #922692

  [ Upstream Kernel Changes ]

  * Revert "drm/i915/dp: Fix the math in intel_dp_link_required"
   - LP: #919350


Versione 3.0.0-16.27:

  [Brad Figg]

  * Release Tracking Bug
   - LP: #920735

  [ Paolo Pisati ]

  * Revert "SAUCE: omap3: beagle: if rev unknown, assume xM revision C"
   - LP: #912199
  * Revert "SAUCE: omap3: beagle: detect new xM revision C"
   - LP: #912199
  * Revert "SAUCE: omap3: beagle: detect new xM revision B"
   - LP: #912199
  * Revert "SAUCE: omap3: beaglexm: fix DVI initialization"
   - LP: #912199
  * [Config] DEFAULT_MMAP_MIN_ADDR=32k on arm
   - LP: #903346

  [ Upstream Kernel Changes ]

  * Revert "rtc: Disable the alarm in the hardware"
   - LP: #913373
  * Support for Terratec G1
   - LP: #821061
  * drm/radeon/kms: fix DP detect and EDID fetch for DP bridges
   - LP: #825777
  * drm/radeon/kms/DCE4.1: fix Select_CrtcSource EncodeMode setting for DP
   bridges (v2)
   - LP: #825777
  * drm/radeon/kms: cleanup atombios_adjust_pll()
   - LP: #825777
  * drm/radeon/kms/atom: rework encoder dpms
   - LP: #825777
  * drm/radeon/kms: check for DP MST mode in a few more places (v2)
   - LP: #825777
  * drm/radeon/kms: rework DP bridge checks
   - LP: #825777
  * drm/radeon/kms: fix DP setup on TRAVIS bridges
   - LP: #825777
  * ALSA: sis7019 - give slow codecs more time to reset
   - LP: #907778
  * ALSA: hda/realtek - Fix Oops in alc_mux_select()
   - LP: #907778
  * alarmtimers: Fix time comparison
   - LP: #907778
  * ARM: davinci: da850 evm: change audio edma event queue to EVENTQ_0
   - LP: #907778
  * arm: mx23: recognise stmp378x as mx23
   - LP: #907778
  * ARM: at91: fix clock conid for atmel_tcb.1 on 9260/9g20
   - LP: #907778
  * ARM: davinci: dm646x evm: wrong register used in
   setup_vpif_input_channel_mode
   - LP: #907778
  * ASoC: Provide a more complete DMA driver stub
   - LP: #907778
  * fs/proc/meminfo.c: fix compilation error
   - LP: #907778
  * thp: add compound tail page _mapcount when mapped
   - LP: #907778
  * thp: set compound tail page _count to zero
   - LP: #907778
  * ptp: Fix clock_getres() implementation
   - LP: #907778
  * mm: Ensure that pfn_valid() is called once per pageblock when reserving
   pageblocks
   - LP: #907778
  * mm: vmalloc: check for page allocation failure before vmlist insertion
   - LP: #907778
  * fix apparmor dereferencing potentially freed dentry, sanitize
   __d_path() API
   - LP: #907778
  * target: Handle 0 correctly in transport_get_sectors_6()
   - LP: #907778
  * intel-iommu: fix return value of iommu_unmap() API
   - LP: #907778
  * intel-iommu: set iommu_superpage on VM domains to lowest common
   denominator
   - LP: #907778
  * intel-iommu: fix superpage support in pfn_to_dma_pte()
   - LP: #907778
  * percpu: fix chunk range calculation
   - LP: #907778
  * iwlwifi: do not re-configure HT40 after associated
   - LP: #907778
  * mac80211: fix race condition caused by late addBA response
   - LP: #907778
  * linux/log2.h: Fix rounddown_pow_of_two(1)
   - LP: #907778
  * hwmon: (jz4740) fix signedness bug
   - LP: #907778
  * mmc: mxcmmc: fix falling back to PIO
   - LP: #907778
  * x86, hpet: Immediately disable HPET timer 1 if rtc irq is masked
   - LP: #907778
  * jbd/jbd2: validate sb->s_first in journal_get_superblock()
   - LP: #907778
  * hfs: fix hfs_find_init() sb->ext_tree NULL ptr oops
   - LP: #907778
  * hwmon: (coretemp) Fix oops on CPU offlining
   - LP: #907778
  * xfs: fix nfs export of 64-bit inodes numbers on 32-bit kernels
   - LP: #907778
  * xfs: avoid synchronous transactions when deleting attr blocks
   - LP: #907778
  * md/raid5: fix bug that could result in reads from a failed device.
   - LP: #907778
  * xen: only limit memory map to maximum reservation for domain 0.
   - LP: #907778
  * ext4: display the correct mount option in /proc/mounts for
   [no]init_itable
   - LP: #907778
  * ext4: avoid hangs in ext4_da_should_update_i_disksize()
   - LP: #907778
  * ext4: avoid potential hang in mpage_submit_io() when blocksize <
   pagesize
   - LP: #907778
  * ext4: handle EOF correctly in ext4_bio_write_page()
   - LP: #907778
  * fuse: fix fuse_retrieve
   - LP: #907778
  * staging: r8712u: Add new USB ID
   - LP: #907778
  * drm/radeon/kms: add some new pci ids
   - LP: #907778
  * ibft: Fix finding IBFT ACPI table on UEFI
   - LP: #907778
  * USB: cdc-acm: add IDs for Motorola H24 HSPA USB module.
   - LP: #907778
  * usb: option: Add Huawei E398 controlling interfaces
   - LP: #907778
  * USB: option: Removing one bogus and adding some new Huawei combinations
   - LP: #907778
  * ASoC: core: Don't schedule deferred_resume_work twice
   - LP: #907778
  * Linux 3.0.14
   - LP: #907778
  * drm/i915: Fix PCH port pipe select in CPT disable paths
   - LP: #906756
  * KVM: x86: Prevent starting PIT timers in the absence of irqchip support
   - LP: #911303
   - CVE-2011-4622
  * Linux 3.0.15
   - LP: #913373
  * ARM: OMAP: rx51: fix USB
   - LP: #913373
  * ipip, sit: copy parms.name after register_netdevice
   - LP: #913373
  * rtc: m41t80: Workaround broken alarm functionality
   - LP: #913373
  * drm/i915: prevent division by zero when asking for chipset power
   - LP: #913373
  * cfq-iosched: free cic_index if blkio_alloc_blkg_stats fails
   - LP: #913373
  * cfq-iosched: fix cfq_cic_link() race confition
   - LP: #913373
  * SCSI: zfcp: return early from slave_destroy if slave_alloc returned
   early
   - LP: #913373
  * SCSI: mpt2sas: _scsih_smart_predicted_fault uses GFP_KERNEL in
   interrupt context
   - LP: #913373
  * SCSI: fcoe: Fix preempt count leak in fcoe_filter_frames()
   - LP: #913373
  * mac80211: fix another race in aggregation start
   - LP: #913373
  * block: initialize request_queue's numa node during
   - LP: #913373
  * ssb: fix init regression with SoCs
   - LP: #913373
  * MXC PWM: should active during DOZE/WAIT/DBG mode
   - LP: #913373
  * Input: synaptics - fix touchpad not working after S2R on Vostro V13
   - LP: #913373
  * percpu: fix per_cpu_ptr_to_phys() handling of non-page-aligned
   addresses
   - LP: #913373
  * binary_sysctl(): fix memory leak
   - LP: #913373
  * oom: fix integer overflow of points in oom_badness
   - LP: #913373
  * oprofile: Fix uninitialized memory access when writing to writing to
   oprofilefs
   - LP: #913373
  * NFSv4.1: Ensure that we handle _all_ SEQUENCE status bits.
   - LP: #913373
  * SELinux: Fix RCU deref check warning in sel_netport_insert()
   - LP: #913373
  * nilfs2: unbreak compat ioctl
   - LP: #913373
  * mmc: vub300: fix type of firmware_rom_wait_states module parameter
   - LP: #913373
  * cgroups: fix a css_set not found bug in cgroup_attach_proc
   - LP: #913373
  * mfd: Fix twl-core oops while calling twl_i2c_* for unbound driver
   - LP: #913373
  * vfs: __read_cache_page should use gfp argument rather than GFP_KERNEL
   - LP: #913373
  * media: s5p-fimc: Use correct fourcc for RGB565 colour format
   - LP: #913373
  * ath9k: fix max phy rate at rate control init
   - LP: #913373
  * iwlwifi: do not set the sequence control bit is not needed
   - LP: #913373
  * iwlwifi: allow to switch to HT40 if not associated
   - LP: #913373
  * memcg: keep root group unchanged if creation fails
   - LP: #913373
  * VFS: Fix race between CPU hotplug and lglocks
   - LP: #913373
  * ARM:imx:fix pwm period value
   - LP: #913373
  * ARM: 7214/1: mmc: mmci: Fixup handling of MCI_STARTBITERR
   - LP: #913373
  * ARM: 7220/1: mmc: mmci: Fixup error handling for dma
   - LP: #913373
  * oprofile, arm/sh: Fix oprofile_arch_exit() linkage issue
   - LP: #913373
  * futex: Fix uninterruptible loop due to gate_area
   - LP: #913373
  * watchdog: hpwdt: Changes to handle NX secure bit in 32bit path
   - LP: #913373
  * drm/radeon/kms: bail on BTC parts if MC ucode is missing

Se ti è piaciuto l'articolo , iscriviti al feed cliccando sull'immagine sottostante per tenerti sempre aggiornato sui nuovi contenuti del blog:


Potrebbero interessarti anche :

Possono interessarti anche questi articoli :