Re: Bug#1012547: linux: disable user namespaces per default

2022-07-19 Thread Philippe Cerfon
On Tue, Jul 19, 2022 at 12:20 PM wrote: > I'm sorry that you didn't read the actual CVE. Well I did... which is why I haven't written "the next security hole in user ns" but "the next one that have been mitigated if Debian were to ship sane defaults". > Do correct me if I'm wrong, though. In t

Bug#1015728: Please upgrade to current linux-firmware release

2022-07-19 Thread Dmitry Baryshkov
Package: firmware-qcom-soc Version: 20210818-1 Severity: normal Upstream linux-firmware releases have been updated with improved firmware for Qualcomm platforms (including, but not being limited to both device firmware and WiFi board files). Please consider updating firmware-nonfree package to usi

Bug#919652: ath10k - QCA6174 - Surface Go - missing board data - fix .bin included extracted form official .msi

2022-07-19 Thread Dmitry Baryshkov
Package: firmware-atheros Version: 20210818-1 Followup-For: Bug #919652 Hi, I'd suggest submitting the board files to the ath10k-firmware repo, which will then find it's way into linux-firmware. See [1] for the proper process description. However checking the license text would also be required b

Bug#1015534: linux: ftbfs with LTO (link time optimization) enabled

2022-07-19 Thread Matthias Klose
Package: src:linux Version: 5.18.2-1 Severity: minor Tags: sid bookworm User: debian-...@lists.debian.org Usertags: ftbfs-lto This package currently fails to build (at least on the amd64 architecture) with link time optimizations enabled. For a background for LTO please see https://wiki.debian.o

Bug#1015240: Acknowledgement (linux: rejecting DMA map of vmalloc memory)

2022-07-19 Thread Kurt Roeckx
On Tue, Jul 19, 2022 at 06:11:23PM +0200, Diederik de Haas wrote: > According to that bug report it should be fixed with 5.19-rc6 and that > version > is available in experimental. Can you verify whether it also fixes your issue? With that version the error goes away.

Bug#1015240: Acknowledgement (linux: rejecting DMA map of vmalloc memory)

2022-07-19 Thread Diederik de Haas
On Monday, 18 July 2022 11:00:30 CEST Kurt Roeckx wrote: > This is probably https://bugzilla.kernel.org/show_bug.cgi?id=216140 According to that bug report it should be fixed with 5.19-rc6 and that version is available in experimental. Can you verify whether it also fixes your issue? signature.a

Re: Bug#1012547: linux: disable user namespaces per default

2022-07-19 Thread mikoxyzzz
On Tue, 5 Jul 2022 at 16:22 Philippe Cerfon wrote: > Say welcome to CVE-2022-32250, the next root security hole which would apparently have been mitigated if Debian were to ship sane defaults. I'm sorry that you didn't read the actual CVE. This wasn't a bug with user namespaces, but rather a b

Processed: reassign 1015240 to src:linux ..., tagging 1015240

2022-07-19 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 1015240 src:linux 5.18.5-1 Bug #1015240 [linux-image-5.18.0-2-amd64] linux: rejecting DMA map of vmalloc memory Bug reassigned from package 'linux-image-5.18.0-2-amd64' to 'src:linux'. No longer marked as found in versions linux-signed-a

Processed: reassign 1015295 to src:linux, severity of 1015295 is important

2022-07-19 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org: > reassign 1015295 src:linux 5.10.127-1 Bug #1015295 [linux-image-5.10.0-16-arm64] linux-image-5.10.0-16-arm64: Unbootable system due to F2FS sanity_check_inode errors after upgrading kernel Bug reassigned from package 'linux-image-5.10.0-16-arm64'