Bug 30199 - Update request: kernel-5.15.32-1.mga8
Summary: Update request: kernel-5.15.32-1.mga8
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 8
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: QA Team
QA Contact: Sec team
URL:
Whiteboard: MGA8-64-OK, MGA8-32-OK
Keywords: advisory, validated_update
: 30219 (view as bug list)
Depends on:
Blocks:
 
Reported: 2022-03-24 09:10 CET by Thomas Backlund
Modified: 2022-03-29 16:26 CEST (History)
11 users (show)

See Also:
Source RPM: kernel
CVE:
Status comment:


Attachments

Description Thomas Backlund 2022-03-24 09:10:10 CET
Security and bugfixes, advisory will follow


SRPMS:
kernel-5.15.31-1.mga8.src.rpm
kmod-virtualbox-6.1.32-1.11.mga8.src.rpm
kmod-xtables-addons-3.18-1.61.mga8.src.rpm



i586:
bpftool-5.15.31-1.mga8.i586.rpm
cpupower-5.15.31-1.mga8.i586.rpm
cpupower-devel-5.15.31-1.mga8.i586.rpm
kernel-desktop-5.15.31-1.mga8-1-1.mga8.i586.rpm
kernel-desktop586-5.15.31-1.mga8-1-1.mga8.i586.rpm
kernel-desktop586-devel-5.15.31-1.mga8-1-1.mga8.i586.rpm
kernel-desktop586-devel-latest-5.15.31-1.mga8.i586.rpm
kernel-desktop586-latest-5.15.31-1.mga8.i586.rpm
kernel-desktop-devel-5.15.31-1.mga8-1-1.mga8.i586.rpm
kernel-desktop-devel-latest-5.15.31-1.mga8.i586.rpm
kernel-desktop-latest-5.15.31-1.mga8.i586.rpm
kernel-doc-5.15.31-1.mga8.noarch.rpm
kernel-server-5.15.31-1.mga8-1-1.mga8.i586.rpm
kernel-server-devel-5.15.31-1.mga8-1-1.mga8.i586.rpm
kernel-server-devel-latest-5.15.31-1.mga8.i586.rpm
kernel-server-latest-5.15.31-1.mga8.i586.rpm
kernel-source-5.15.31-1.mga8-1-1.mga8.noarch.rpm
kernel-source-latest-5.15.31-1.mga8.noarch.rpm
kernel-userspace-headers-5.15.31-1.mga8.i586.rpm
libbpf0-5.15.31-1.mga8.i586.rpm
libbpf-devel-5.15.31-1.mga8.i586.rpm
perf-5.15.31-1.mga8.i586.rpm

xtables-addons-kernel-5.15.31-desktop-1.mga8-3.18-1.61.mga8.i586.rpm
xtables-addons-kernel-5.15.31-desktop586-1.mga8-3.18-1.61.mga8.i586.rpm
xtables-addons-kernel-5.15.31-server-1.mga8-3.18-1.61.mga8.i586.rpm
xtables-addons-kernel-desktop586-latest-3.18-1.61.mga8.i586.rpm
xtables-addons-kernel-desktop-latest-3.18-1.61.mga8.i586.rpm
xtables-addons-kernel-server-latest-3.18-1.61.mga8.i586.rpm



x86_64:
bpftool-5.15.31-1.mga8.x86_64.rpm
cpupower-5.15.31-1.mga8.x86_64.rpm
cpupower-devel-5.15.31-1.mga8.x86_64.rpm
kernel-desktop-5.15.31-1.mga8-1-1.mga8.x86_64.rpm
kernel-desktop-devel-5.15.31-1.mga8-1-1.mga8.x86_64.rpm
kernel-desktop-devel-latest-5.15.31-1.mga8.x86_64.rpm
kernel-desktop-latest-5.15.31-1.mga8.x86_64.rpm
kernel-doc-5.15.31-1.mga8.noarch.rpm
kernel-server-5.15.31-1.mga8-1-1.mga8.x86_64.rpm
kernel-server-devel-5.15.31-1.mga8-1-1.mga8.x86_64.rpm
kernel-server-devel-latest-5.15.31-1.mga8.x86_64.rpm
kernel-server-latest-5.15.31-1.mga8.x86_64.rpm
kernel-source-5.15.31-1.mga8-1-1.mga8.noarch.rpm
kernel-source-latest-5.15.31-1.mga8.noarch.rpm
kernel-userspace-headers-5.15.31-1.mga8.x86_64.rpm
lib64bpf0-5.15.31-1.mga8.x86_64.rpm
lib64bpf-devel-5.15.31-1.mga8.x86_64.rpm
perf-5.15.31-1.mga8.x86_64.rpm

virtualbox-kernel-5.15.31-desktop-1.mga8-6.1.32-1.11.mga8.x86_64.rpm
virtualbox-kernel-5.15.31-server-1.mga8-6.1.32-1.11.mga8.x86_64.rpm
virtualbox-kernel-desktop-latest-6.1.32-1.11.mga8.x86_64.rpm
virtualbox-kernel-server-latest-6.1.32-1.11.mga8.x86_64.rpm

xtables-addons-kernel-5.15.31-desktop-1.mga8-3.18-1.61.mga8.x86_64.rpm
xtables-addons-kernel-5.15.31-server-1.mga8-3.18-1.61.mga8.x86_64.rpm
xtables-addons-kernel-desktop-latest-3.18-1.61.mga8.x86_64.rpm
xtables-addons-kernel-server-latest-3.18-1.61.mga8.x86_64.rpm
Comment 1 Morgan Leijström 2022-03-24 12:14:10 CET
OK here mga8-64, i7, nvidia-current

This is with update Bug 30202 - Update request: mesa-21.3.8-2.mga8.

System was running desktop backport kernel 5.16.17-1

Disabled backports repo and downgraded versions to 5.15.31-1:
$ sudo urpmi --downgrade cpupower kernel-userspace-headers lib64bpf0

Then used drakrpm to install
- kernel-desktop-5.15.31-1.mga8-1-1.mga8.x86_64
- kernel-desktop-devel-5.15.31-1.mga8-1-1.mga8.x86_64
- virtualbox-kernel-5.15.31-desktop-1.mga8-6.1.32-1.11.mga8.x86_64

-reboot-

$ uname -a
Linux svarten.tribun 5.16.17-desktop-1.mga8 #1 SMP PREEMPT Wed Mar 23 16:24:51 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux

$ dkms status - say nvidia and virtualbox modules are correct

BOINC detects CUDA and OpenCL

Hardware:
  My workstation "svarten": Mainboard: Sabertooth P67, CPU: i7-3770, RAM 16G, GM107 [GeForce GTX 750] using nvidia-current; GeForce 635 series and later, 4k display.  Disk&Filesystem: SSD with /boot/EFI and ext4 /boot, LUKS{LVM {swap, ext4 /home & / } and a spinner at /mnt/spinner


Tested:

Plasma desktop; using Thunderbird, LibreOffice, Ktorrent, Nextcloud client, Syncthing, Firefox ESR with video, flatpak Firefox, java program FriBOK, ... 

 VirtualBox tests OK: 

a) Guest: my usual MSW7pro-64, tests OK: bidirectional clipboard, shared folders write protected and not, USB2 memory stick read&write (using upstream extension pack), drag file from Dolphin to Windows Explorer, video playing in Firefox and Chrome.

b) Guest: BOINC LHC@home ATLAS simulation virtual machine 7CPU

CC: (none) => fri

Comment 2 Morgan Leijström 2022-03-24 12:15:40 CET
Shit, I see from my own $ uname -a output above I forgot to select the correct kernel at boot.
...Will be back after lunch...
Comment 3 Morgan Leijström 2022-03-24 13:47:24 CET
OK here mga8-64, i7, nvidia-current

Tests per comment 1, performed with correct kernel booted:

$ uname -a
Linux svarten.tribun 5.15.31-desktop-1.mga8 #1 SMP Wed Mar 23 14:46:34 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux
Comment 4 Thomas Backlund 2022-03-24 14:06:51 CET
putting on hold, a few more fixes lands...

Keywords: (none) => feedback

Comment 5 Thomas Backlund 2022-03-24 15:18:19 CET
Advisory, added to svn:

type: security
subject: Updated kernel packages fix security vulnerabilities
CVE:
 - CVE-2022-0995
 - CVE-2022-1011
 - CVE-2022-26490
 - CVE-2022-27666
src:
  8:
   core:
     - kernel-5.15.31-2.mga8
     - kmod-virtualbox-6.1.32-1.12.mga8
     - kmod-xtables-addons-3.18-1.62.mga8
description: |
  This kernel update is based on upstream 5.15.31 and fixes at least the
  following security issues:

  An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s
  watch_queue event notification subsystem. This flaw can overwrite parts
  of the kernel state, potentially allowing a local user to gain privileged
  access or cause a denial of service on the system (CVE-2022-0995).

  A flaw use after free in the Linux kernel FUSE filesystem was found in
  the way user triggers write(). A local user could use this flaw to get
  some unauthorized access to some data from the FUSE filesystem and as
  result potentially privilege escalation too (CVE-2022-1011).

  st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c has
  EVT_TRANSACTION buffer overflows because of untrusted length parameters
  (CVE-2022-26490).

  There is a buffer overflow in ESP transformation in net/ipv4/esp4.c and
  net/ipv6/esp6.c via a large message. In some configurations, local users
  can gain privileges by overwriting kernel heap objects (CVE-2022-27666).

  Other fixes in this update:
  - locking/lockdep: Avoid potential access of invalid memory in lock_class
  - net: ipv6: fix skb_over_panic in __ip6_append_data
  - rtw88: Add support for Realtek 8821CE RFE Type 6

  For other upstream fixes, see the referenced changelogs.
references:
 - https://bugs.mageia.org/show_bug.cgi?id=30199
 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.29
 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.30
 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.31

Keywords: (none) => advisory

Comment 6 Thomas Backlund 2022-03-24 18:12:55 CET
Nwe rpms for test:


SRPMS:
kernel-5.15.31-2.mga8.src.rpm
kmod-virtualbox-6.1.32-1.12.mga8.src.rpm
kmod-xtables-addons-3.18-1.62.mga8.src.rpm


i586:
bpftool-5.15.31-2.mga8.i586.rpm
cpupower-5.15.31-2.mga8.i586.rpm
cpupower-devel-5.15.31-2.mga8.i586.rpm
kernel-desktop-5.15.31-2.mga8-1-1.mga8.i586.rpm
kernel-desktop586-5.15.31-2.mga8-1-1.mga8.i586.rpm
kernel-desktop586-devel-5.15.31-2.mga8-1-1.mga8.i586.rpm
kernel-desktop586-devel-latest-5.15.31-2.mga8.i586.rpm
kernel-desktop586-latest-5.15.31-2.mga8.i586.rpm
kernel-desktop-devel-5.15.31-2.mga8-1-1.mga8.i586.rpm
kernel-desktop-devel-latest-5.15.31-2.mga8.i586.rpm
kernel-desktop-latest-5.15.31-2.mga8.i586.rpm
kernel-doc-5.15.31-2.mga8.noarch.rpm
kernel-server-5.15.31-2.mga8-1-1.mga8.i586.rpm
kernel-server-devel-5.15.31-2.mga8-1-1.mga8.i586.rpm
kernel-server-devel-latest-5.15.31-2.mga8.i586.rpm
kernel-server-latest-5.15.31-2.mga8.i586.rpm
kernel-source-5.15.31-2.mga8-1-1.mga8.noarch.rpm
kernel-source-latest-5.15.31-2.mga8.noarch.rpm
kernel-userspace-headers-5.15.31-2.mga8.i586.rpm
libbpf0-5.15.31-2.mga8.i586.rpm
libbpf-devel-5.15.31-2.mga8.i586.rpm
perf-5.15.31-2.mga8.i586.rpm

xtables-addons-kernel-5.15.31-desktop-2.mga8-3.18-1.62.mga8.i586.rpm
xtables-addons-kernel-5.15.31-desktop586-2.mga8-3.18-1.62.mga8.i586.rpm
xtables-addons-kernel-5.15.31-server-2.mga8-3.18-1.62.mga8.i586.rpm
xtables-addons-kernel-desktop586-latest-3.18-1.62.mga8.i586.rpm
xtables-addons-kernel-desktop-latest-3.18-1.62.mga8.i586.rpm
xtables-addons-kernel-server-latest-3.18-1.62.mga8.i586.rpm



x86_64:
bpftool-5.15.31-2.mga8.x86_64.rpm
cpupower-5.15.31-2.mga8.x86_64.rpm
cpupower-devel-5.15.31-2.mga8.x86_64.rpm
kernel-desktop-5.15.31-2.mga8-1-1.mga8.x86_64.rpm
kernel-desktop-devel-5.15.31-2.mga8-1-1.mga8.x86_64.rpm
kernel-desktop-devel-latest-5.15.31-2.mga8.x86_64.rpm
kernel-desktop-latest-5.15.31-2.mga8.x86_64.rpm
kernel-doc-5.15.31-2.mga8.noarch.rpm
kernel-server-5.15.31-2.mga8-1-1.mga8.x86_64.rpm
kernel-server-devel-5.15.31-2.mga8-1-1.mga8.x86_64.rpm
kernel-server-devel-latest-5.15.31-2.mga8.x86_64.rpm
kernel-server-latest-5.15.31-2.mga8.x86_64.rpm
kernel-source-5.15.31-2.mga8-1-1.mga8.noarch.rpm
kernel-source-latest-5.15.31-2.mga8.noarch.rpm
kernel-userspace-headers-5.15.31-2.mga8.x86_64.rpm
lib64bpf0-5.15.31-2.mga8.x86_64.rpm
lib64bpf-devel-5.15.31-2.mga8.x86_64.rpm
perf-5.15.31-2.mga8.x86_64.rpm

virtualbox-kernel-5.15.31-desktop-2.mga8-6.1.32-1.12.mga8.x86_64.rpm
virtualbox-kernel-5.15.31-server-2.mga8-6.1.32-1.12.mga8.x86_64.rpm
virtualbox-kernel-desktop-latest-6.1.32-1.12.mga8.x86_64.rpm
virtualbox-kernel-server-latest-6.1.32-1.12.mga8.x86_64.rpm

xtables-addons-kernel-5.15.31-desktop-2.mga8-3.18-1.62.mga8.x86_64.rpm
xtables-addons-kernel-5.15.31-server-2.mga8-3.18-1.62.mga8.x86_64.rpm
xtables-addons-kernel-desktop-latest-3.18-1.62.mga8.x86_64.rpm
xtables-addons-kernel-server-latest-3.18-1.62.mga8.x86_64.rpm

Summary: Update request: kernel-5.15.31-1.mga8 => Update request: kernel-5.15.31-2.mga8
Keywords: feedback => (none)

Comment 7 Morgan Leijström 2022-03-24 20:30:01 CET
OK mga8-64 again same tests on same system but now with:

- cpupower-5.15.31-2.mga8.x86_64
- kernel-desktop-5.15.31-2.mga8-1-1.mga8.x86_64
- kernel-desktop-devel-5.15.31-2.mga8-1-1.mga8.x86_64
- kernel-desktop-devel-latest-5.15.31-2.mga8.x86_64
- kernel-desktop-latest-5.15.31-2.mga8.x86_64
- kernel-userspace-headers-5.15.31-2.mga8.x86_64
- lib64bpf0-5.15.31-2.mga8.x86_64
- virtualbox-kernel-5.15.31-desktop-2.mga8-6.1.32-1.12.mga8.x86_64
- virtualbox-kernel-desktop-latest-6.1.32-1.12.mga8.x86_64

$ uname -a
Linux svarten.tribun 5.15.31-desktop-2.mga8 #1 SMP Thu Mar 24 13:16:51 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux
Comment 8 Dave Hodgins 2022-03-24 22:27:07 CET
No regressions noticed on any of my installs. Two x86_64 hosts, one aarch64
(rpi 4b), i586 and x86_64 vb guests.

CC: (none) => davidwhodgins

Comment 9 Nicolas Salguero 2022-03-25 11:17:42 CET
Hi,

I have been hit by a regression with WiFi (ath9k).  With kernel 5.15.28, I have no problem but with 5.15.29 and above, including 5.15.31-desktop-2.mga8, my connection stops under load.

See:
https://bugs.archlinux.org/task/74187
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=ddbd89deb7d32b1fbb879f48d68fda1a8ac58e8e
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=aa6f8dcbab473f3a3c7454b74caa46d36cdc5d13
https://lore.kernel.org/linux-wireless/1812355.tdWV9SEqCh%40natalenko.name/

Best regards,

Nico.

CC: (none) => nicolas.salguero
Keywords: (none) => feedback

Comment 10 Thomas Backlund 2022-03-25 19:05:19 CET
(In reply to Nicolas Salguero from comment #9)
> Hi,
> 
> I have been hit by a regression with WiFi (ath9k).  With kernel 5.15.28, I
> have no problem but with 5.15.29 and above, including
> 5.15.31-desktop-2.mga8, my connection stops under load.
> 
>

Yeah, seems it't brought up a long debate of what/how to fix it...
I suggested to upstream to revert the breakage from stable trees in the upcoming 5.15.32 but we'll see...
Comment 11 Len Lawrence 2022-03-25 21:04:20 CET
Updated all but the source packages.
Rebooted without fuss to Kernel: 5.15.31-desktop-2.mga8 x86_64
Intel I219-V driver: e1000e
Intel Core i9-7900X
GeForce GTX 1080 Ti

Mate desktop working as before.  No problems.

CC: (none) => tarazed25

Comment 12 Len Lawrence 2022-03-26 00:13:21 CET
Installed desktop and server kernels with the other packages, excluding source.  Smooth reboot.
5.15.31-desktop-2.mga8, x86_64
6-Core Intel Core i7-10710U
Intel Comet Lake UHD Graphics driver: i915
Intel Comet Lake PCH-LP CNVi WiFi driver: iwlwifi
Intel Ethernet I219-V driver: e1000e

Running for two or three hours.
Mate desktop is OK.  Bluetooth, pulseaudio.  NAS drive mounted.  Provides NFS shares for other machines.
Comment 13 Guillaume Royer 2022-03-27 14:51:23 CEST
MGA 64 XFCE with core I3, 4Go RAM, Nvidia Gefore 520M kernel 390 and brodacom nonfree.

Updated with QA repo and RPM:

cpupower                       5.15.31      2.mga8        x86_64  
kernel-desktop-5.15.31-2.mga8  1            1.mga8        x86_64  
kernel-desktop-devel-5.15.31-> 1            1.mga8        x86_64  
kernel-desktop-devel-latest    5.15.31      2.mga8        x86_64  
kernel-desktop-latest          5.15.31      2.mga8        x86_64  
kernel-userspace-headers       5.15.31      2.mga8        x86_64  
lib64bpf0                      5.15.31      2.mga8        x86_64  
virtualbox-kernel-5.15.31-des> 6.1.32       1.12.mga8     x86_64  
virtualbox-kernel-desktop-lat> 6.1.32       1.12.mga8     x86_64  

No issues after reboot.
VBox Ok
Browsing with FF Ok
Thunderbird Ok

Switching with mageia-prim video card OK

=================================================================

Asus T100A TA 64 LxQt Atom processor with 2Go RAM

Updated with QA repo

No issues after reboot.
Browsing with FF Ok

Sounds problems are still here

CC: (none) => guillaume.royer

Thomas Andrews 2022-03-27 19:00:41 CEST

CC: (none) => andrewsfarm

Comment 14 Jose Manuel López 2022-03-28 11:41:05 CEST
Hi,

Updated in Vbox X86_64, works fine for the moment.

No issues after next reboots.

Firefox, office, sound and video ok.

Writing from here in Vbox in this moment.

CC: (none) => joselp

Comment 15 Thomas Backlund 2022-03-28 16:59:06 CEST
new sets:


SRPMS:
kernel-5.15.32-1.mga8.src.rpm
kmod-virtualbox-6.1.32-1.14.mga8.src.rpm
kmod-xtables-addons-3.18-1.64.mga8.src.rpm



i586:
bpftool-5.15.32-1.mga8.i586.rpm
cpupower-5.15.32-1.mga8.i586.rpm
cpupower-devel-5.15.32-1.mga8.i586.rpm
kernel-desktop-5.15.32-1.mga8-1-1.mga8.i586.rpm
kernel-desktop586-5.15.32-1.mga8-1-1.mga8.i586.rpm
kernel-desktop586-devel-5.15.32-1.mga8-1-1.mga8.i586.rpm
kernel-desktop586-devel-latest-5.15.32-1.mga8.i586.rpm
kernel-desktop586-latest-5.15.32-1.mga8.i586.rpm
kernel-desktop-devel-5.15.32-1.mga8-1-1.mga8.i586.rpm
kernel-desktop-devel-latest-5.15.32-1.mga8.i586.rpm
kernel-desktop-latest-5.15.32-1.mga8.i586.rpm
kernel-doc-5.15.32-1.mga8.noarch.rpm
kernel-server-5.15.32-1.mga8-1-1.mga8.i586.rpm
kernel-server-devel-5.15.32-1.mga8-1-1.mga8.i586.rpm
kernel-server-devel-latest-5.15.32-1.mga8.i586.rpm
kernel-server-latest-5.15.32-1.mga8.i586.rpm
kernel-source-5.15.32-1.mga8-1-1.mga8.noarch.rpm
kernel-source-latest-5.15.32-1.mga8.noarch.rpm
kernel-userspace-headers-5.15.32-1.mga8.i586.rpm
libbpf0-5.15.32-1.mga8.i586.rpm
libbpf-devel-5.15.32-1.mga8.i586.rpm
perf-5.15.32-1.mga8.i586.rpm

xtables-addons-kernel-5.15.32-desktop-1.mga8-3.18-1.64.mga8.i586.rpm
xtables-addons-kernel-5.15.32-desktop586-1.mga8-3.18-1.64.mga8.i586.rpm
xtables-addons-kernel-5.15.32-server-1.mga8-3.18-1.64.mga8.i586.rpm
xtables-addons-kernel-desktop586-latest-3.18-1.64.mga8.i586.rpm
xtables-addons-kernel-desktop-latest-3.18-1.64.mga8.i586.rpm
xtables-addons-kernel-server-latest-3.18-1.64.mga8.i586.rpm



x86_64:
bpftool-5.15.32-1.mga8.x86_64.rpm
cpupower-5.15.32-1.mga8.x86_64.rpm
cpupower-devel-5.15.32-1.mga8.x86_64.rpm
kernel-desktop-5.15.32-1.mga8-1-1.mga8.x86_64.rpm
kernel-desktop-devel-5.15.32-1.mga8-1-1.mga8.x86_64.rpm
kernel-desktop-devel-latest-5.15.32-1.mga8.x86_64.rpm
kernel-desktop-latest-5.15.32-1.mga8.x86_64.rpm
kernel-doc-5.15.32-1.mga8.noarch.rpm
kernel-server-5.15.32-1.mga8-1-1.mga8.x86_64.rpm
kernel-server-devel-5.15.32-1.mga8-1-1.mga8.x86_64.rpm
kernel-server-devel-latest-5.15.32-1.mga8.x86_64.rpm
kernel-server-latest-5.15.32-1.mga8.x86_64.rpm
kernel-source-5.15.32-1.mga8-1-1.mga8.noarch.rpm
kernel-source-latest-5.15.32-1.mga8.noarch.rpm
kernel-userspace-headers-5.15.32-1.mga8.x86_64.rpm
lib64bpf0-5.15.32-1.mga8.x86_64.rpm
lib64bpf-devel-5.15.32-1.mga8.x86_64.rpm
perf-5.15.32-1.mga8.x86_64.rpm

virtualbox-kernel-5.15.32-desktop-1.mga8-6.1.32-1.14.mga8.x86_64.rpm
virtualbox-kernel-5.15.32-server-1.mga8-6.1.32-1.14.mga8.x86_64.rpm
virtualbox-kernel-desktop-latest-6.1.32-1.14.mga8.x86_64.rpm
virtualbox-kernel-server-latest-6.1.32-1.14.mga8.x86_64.rpm

xtables-addons-kernel-5.15.32-desktop-1.mga8-3.18-1.64.mga8.x86_64.rpm
xtables-addons-kernel-5.15.32-server-1.mga8-3.18-1.64.mga8.x86_64.rpm
xtables-addons-kernel-desktop-latest-3.18-1.64.mga8.x86_64.rpm
xtables-addons-kernel-server-latest-3.18-1.64.mga8.x86_64.rpm

Keywords: feedback => (none)
Summary: Update request: kernel-5.15.31-2.mga8 => Update request: kernel-5.15.32-1.mga8

Comment 16 Thomas Backlund 2022-03-28 17:14:23 CEST

Updated advisory, added to svn:

type: security
subject: Updated kernel packages fix security vulnerabilities
CVE:
 - CVE-2022-0995
 - CVE-2022-1011
 - CVE-2022-1048
 - CVE-2022-26490
 - CVE-2022-27666
src:
  8:
   core:
     - kernel-5.15.32-1.mga8
     - kmod-virtualbox-6.1.32-1.14.mga8
     - kmod-xtables-addons-3.18-1.64.mga8
description: |
  This kernel update is based on upstream 5.15.32 and fixes at least the
  following security issues:

  An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s
  watch_queue event notification subsystem. This flaw can overwrite parts
  of the kernel state, potentially allowing a local user to gain privileged
  access or cause a denial of service on the system (CVE-2022-0995).

  A flaw use after free in the Linux kernel FUSE filesystem was found in
  the way user triggers write(). A local user could use this flaw to get
  some unauthorized access to some data from the FUSE filesystem and as
  result potentially privilege escalation too (CVE-2022-1011).

  A use-after-free flaw was found in the Linux kernel’s sound subsystem in
  the way a user triggers concurrent calls of PCM hw_params. The hw_free
  ioctls or similar race condition happens inside ALSA PCM for other ioctls.
  This flaw allows a local user to crash or potentially escalate their
  privileges on the system (CVE-2022-1048).

  st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c has
  EVT_TRANSACTION buffer overflows because of untrusted length parameters
  (CVE-2022-26490).

  There is a buffer overflow in ESP transformation in net/ipv4/esp4.c and
  net/ipv6/esp6.c via a large message. In some configurations, local users
  can gain privileges by overwriting kernel heap objects (CVE-2022-27666).

  Other fixes in this update:
  - locking/lockdep: Avoid potential access of invalid memory in lock_class
  - mm: kfence: fix missing objcg housekeeping for SLAB
  - net: ipv6: fix skb_over_panic in __ip6_append_data
  - rtw88: Add support for Realtek 8821CE RFE Type 6
  - revert: "swiotlb: rework 'fix info leak with DMA_FROM_DEVICE'" as it
    breaks atleast ath9k

  For other upstream fixes, see the referenced changelogs.
references:
 - https://bugs.mageia.org/show_bug.cgi?id=30199
 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.29
 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.30
 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.31
 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.32
Comment 17 Dave Hodgins 2022-03-28 17:40:45 CEST
No regressions noticed on x86_64 or aarch64 installs, or i586 under virtualbox.
Comment 18 Thomas Backlund 2022-03-28 17:43:36 CEST
(In reply to Nicolas Salguero from comment #9)
> Hi,
> 
> I have been hit by a regression with WiFi (ath9k).  With kernel 5.15.28, I
> have no problem but with 5.15.29 and above, including
> 5.15.31-desktop-2.mga8, my connection stops under load.
> 


Can  you confirm that the 5.15.32-1.mga8 works for you
Comment 19 Nicolas Salguero 2022-03-28 18:39:59 CEST
(In reply to Thomas Backlund from comment #18)
> Can  you confirm that the 5.15.32-1.mga8 works for you

Yes, it works.  The regression in ath9k is over, for me.

Many thanks!
Comment 20 Thomas Andrews 2022-03-28 20:42:04 CEST
MGA8-64 Plasma, AMD Phenom II X4 910, AMD HD 8490 graphics. This system has an ath9k device on an internal card, and has been set up to use an rtl8192eu device, as well. This system uses Network Manager to mange Internet connections.

I was about to test this when I saw Comment 9. I decided to wait, so I do not know if my device was affected by the problem.

Tested the ath9k connection with https://www.speakeasy.net/speedtest/ before updating. No installation issues. The rtl8192eu module appeared to build and install OK, though it seemed like it took forever. It would be nice if the GUI users had some sort of an indication that things were actually happening when driver modules are being built.

After the reboot, I tried the ath9k connection with the above speed test, using both available frequency bands. Both looked good, if possible even a little faster than before the update. The rtl8192eu device is also working as designed.

Tried this and that, Firefox, VirtualBox, vlc, with no obvious issues.
Comment 21 Thomas Andrews 2022-03-28 22:02:04 CEST
MGA8-32 Plasma, server kernel, AMD Phenom II 910,AMD HD 8490 graphics, ath9k wifi device.

No installation issues. After reboot, speed test indicates wifi OK. Everything else looks OK, too.

Also MGA8-32 Xfce, kernel-desktop, on Foolishness, a Dell Inspiron 5100, P4, Radeon RV200 graphics, ath3k wifi. No issues with this system, either.
Comment 22 Brian Rockwell 2022-03-28 23:22:12 CEST
MGA8-64, Gnome, Asus Laptop

AMD A6-9225 RADEON R4
RTL8723BE 
Bluetooth

The following 4 packages are going to be installed:

- cpupower-5.15.32-1.mga8.x86_64
- kernel-desktop-5.15.32-1.mga8-1-1.mga8.x86_64
- kernel-desktop-latest-5.15.32-1.mga8.x86_64
- kernel-userspace-headers-5.15.32-1.mga8.x86_64The following 3 packages are going to be installed:

---- restarted

$ uname -a
Linux localhost.localdomain 5.15.32-desktop-1.mga8 #1 SMP Mon Mar 28 08:31:19 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux


- firefox works
- wifi works
- sound works
- libreoffice works
- suspend works

CC: (none) => brtians1

Comment 23 Thomas Backlund 2022-03-29 09:53:20 CEST
Security fixes addendum to advisory

  A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c
  of the netfilter subsystem. This flaw allows a local user to cause an
  out-of-bounds write issue (CVE-2022-1015).

  A flaw was found in the Linux kernel in net/netfilter/nf_tables_core.c:
  nft_do_chain, which can cause a use-after-free. This issue needs to handle
  'return' with proper preconditions, as it can lead to a kernel information
  leak problem caused by a local, unprivileged attacker (CVE-2022-1016).
Comment 24 Len Lawrence 2022-03-29 12:21:29 CEST
Mga8, x8_64
Installed desktop and  server kernels on four Intel systems, two with nvidia graphics, two with Intel graphics, one a netbook.
All rebooted smoothly and no regressions have been seen yet for server or desktop.
Comment 25 David Walser 2022-03-29 14:34:39 CEST
*** Bug 30219 has been marked as a duplicate of this bug. ***

CC: (none) => 79625490833

Comment 26 Thomas Backlund 2022-03-29 15:37:39 CEST
Thanks for the tests...

Flushing out due to exploits gone public

CC: (none) => sysadmin-bugs
Whiteboard: (none) => MGA8-64-OK, MGA8-32-OK
Keywords: (none) => validated_update

Comment 27 Herman Viaene 2022-03-29 15:42:48 CEST
MGA8-64 Plasma on Lenovo B50 in Dutch
No installation issues, using the server version.
Tested NFS-access, websites with text, photos and video, file formats odt, ods, odp, odb, xlsx, txt, pdf, jpg, gif, tif, wav, mpg. All without problems

CC: (none) => herman.viaene

Comment 28 Morgan Leijström 2022-03-29 16:24:00 CEST
OK Same tests as comment 1.

$ uname -a
Linux svarten.tribun 5.15.32-desktop-1.mga8 #1 SMP Mon Mar 28 08:31:19 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux
Comment 29 Mageia Robot 2022-03-29 16:26:26 CEST
An update for this issue has been pushed to the Mageia Updates repository.

https://advisories.mageia.org/MGASA-2022-0121.html

Resolution: (none) => FIXED
Status: NEW => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.