This is an automated email from the git hooks/post-receive script. It was generated because a ref change was pushed to the repository containing the project "IPFire 2.x development tree".
The branch, next has been updated via 383eefc0aeada63c453eae1c59ad6daf06bf172e (commit) via 73f4e7b4c693a0d42389720b8997b6d8dbd9d7d9 (commit) from b04f532f70576e1c6eeb8cf72f14b9440a633d03 (commit)
Those revisions listed above that are new to this repository have not appeared on any other notification email; so we list those revisions in full, below.
- Log ----------------------------------------------------------------- commit 383eefc0aeada63c453eae1c59ad6daf06bf172e Author: Arne Fitzenreiter arne_f@ipfire.org Date: Fri Sep 18 05:28:26 2020 +0000
kernel: update aarch64 rootfile
Signed-off-by: Arne Fitzenreiter arne_f@ipfire.org
commit 73f4e7b4c693a0d42389720b8997b6d8dbd9d7d9 Author: Arne Fitzenreiter arne_f@ipfire.org Date: Fri Sep 18 05:23:18 2020 +0000
kernel: aarch64: disable SSDT_OVERLAYS
this option was visible by enabling ACPI and is enabled by default but adds an attacking vector.
Signed-off-by: Arne Fitzenreiter arne_f@ipfire.org
-----------------------------------------------------------------------
Summary of changes: config/kernel/kernel.config.aarch64-ipfire | 3 +- config/rootfiles/common/aarch64/linux | 73 ++++++++++++++++++++++++++++++ 2 files changed, 75 insertions(+), 1 deletion(-)
Difference in files: diff --git a/config/kernel/kernel.config.aarch64-ipfire b/config/kernel/kernel.config.aarch64-ipfire index d94c69ca9..2d4934a09 100644 --- a/config/kernel/kernel.config.aarch64-ipfire +++ b/config/kernel/kernel.config.aarch64-ipfire @@ -1,6 +1,6 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/arm64 4.14.195-ipfire Kernel Configuration +# Linux/arm64 4.14.198-ipfire Kernel Configuration # CONFIG_ARM64=y CONFIG_64BIT=y @@ -6095,6 +6095,7 @@ CONFIG_EFI_BOOTLOADER_CONTROL=m # CONFIG_EFI_CAPSULE_LOADER is not set # CONFIG_EFI_TEST is not set # CONFIG_RESET_ATTACK_MITIGATION is not set +# CONFIG_EFI_CUSTOM_SSDT_OVERLAYS is not set CONFIG_UEFI_CPER=y # CONFIG_EFI_DEV_PATH_PARSER is not set CONFIG_MESON_SM=y diff --git a/config/rootfiles/common/aarch64/linux b/config/rootfiles/common/aarch64/linux index 3d9abdb1e..6f76519d0 100644 --- a/config/rootfiles/common/aarch64/linux +++ b/config/rootfiles/common/aarch64/linux @@ -5773,6 +5773,43 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/ac97 #lib/modules/KVER-ipfire/build/include/config/ac97/bus.h #lib/modules/KVER-ipfire/build/include/config/acenic.h +#lib/modules/KVER-ipfire/build/include/config/acpi +#lib/modules/KVER-ipfire/build/include/config/acpi.h +#lib/modules/KVER-ipfire/build/include/config/acpi/apei +#lib/modules/KVER-ipfire/build/include/config/acpi/apei.h +#lib/modules/KVER-ipfire/build/include/config/acpi/apei/ghes.h +#lib/modules/KVER-ipfire/build/include/config/acpi/apei/pcieaer.h +#lib/modules/KVER-ipfire/build/include/config/acpi/apei/sea.h +#lib/modules/KVER-ipfire/build/include/config/acpi/button.h +#lib/modules/KVER-ipfire/build/include/config/acpi/cca +#lib/modules/KVER-ipfire/build/include/config/acpi/cca/required.h +#lib/modules/KVER-ipfire/build/include/config/acpi/configfs.h +#lib/modules/KVER-ipfire/build/include/config/acpi/container.h +#lib/modules/KVER-ipfire/build/include/config/acpi/cppc +#lib/modules/KVER-ipfire/build/include/config/acpi/cppc/cpufreq.h +#lib/modules/KVER-ipfire/build/include/config/acpi/cppc/lib.h +#lib/modules/KVER-ipfire/build/include/config/acpi/fan.h +#lib/modules/KVER-ipfire/build/include/config/acpi/generic +#lib/modules/KVER-ipfire/build/include/config/acpi/generic/gsi.h +#lib/modules/KVER-ipfire/build/include/config/acpi/gtdt.h +#lib/modules/KVER-ipfire/build/include/config/acpi/hed.h +#lib/modules/KVER-ipfire/build/include/config/acpi/hotplug +#lib/modules/KVER-ipfire/build/include/config/acpi/hotplug/cpu.h +#lib/modules/KVER-ipfire/build/include/config/acpi/i2c +#lib/modules/KVER-ipfire/build/include/config/acpi/i2c/opregion.h +#lib/modules/KVER-ipfire/build/include/config/acpi/iort.h +#lib/modules/KVER-ipfire/build/include/config/acpi/mcfg.h +#lib/modules/KVER-ipfire/build/include/config/acpi/processor +#lib/modules/KVER-ipfire/build/include/config/acpi/processor.h +#lib/modules/KVER-ipfire/build/include/config/acpi/processor/idle.h +#lib/modules/KVER-ipfire/build/include/config/acpi/reduced +#lib/modules/KVER-ipfire/build/include/config/acpi/reduced/hardware +#lib/modules/KVER-ipfire/build/include/config/acpi/reduced/hardware/only.h +#lib/modules/KVER-ipfire/build/include/config/acpi/spcr +#lib/modules/KVER-ipfire/build/include/config/acpi/spcr/table.h +#lib/modules/KVER-ipfire/build/include/config/acpi/table +#lib/modules/KVER-ipfire/build/include/config/acpi/table/upgrade.h +#lib/modules/KVER-ipfire/build/include/config/acpi/thermal.h #lib/modules/KVER-ipfire/build/include/config/adaptec #lib/modules/KVER-ipfire/build/include/config/adaptec/starfire.h #lib/modules/KVER-ipfire/build/include/config/adm8211.h @@ -5815,6 +5852,9 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/arch/dma/addr/t #lib/modules/KVER-ipfire/build/include/config/arch/dma/addr/t/64bit.h #lib/modules/KVER-ipfire/build/include/config/arch/has +#lib/modules/KVER-ipfire/build/include/config/arch/has/acpi +#lib/modules/KVER-ipfire/build/include/config/arch/has/acpi/table +#lib/modules/KVER-ipfire/build/include/config/arch/has/acpi/table/upgrade.h #lib/modules/KVER-ipfire/build/include/config/arch/has/cache #lib/modules/KVER-ipfire/build/include/config/arch/has/cache/line #lib/modules/KVER-ipfire/build/include/config/arch/has/cache/line/size.h @@ -5851,6 +5891,10 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/arch/has/ubsan #lib/modules/KVER-ipfire/build/include/config/arch/has/ubsan/sanitize #lib/modules/KVER-ipfire/build/include/config/arch/has/ubsan/sanitize/all.h +#lib/modules/KVER-ipfire/build/include/config/arch/have +#lib/modules/KVER-ipfire/build/include/config/arch/have/nmi +#lib/modules/KVER-ipfire/build/include/config/arch/have/nmi/safe +#lib/modules/KVER-ipfire/build/include/config/arch/have/nmi/safe/cmpxchg.h #lib/modules/KVER-ipfire/build/include/config/arch/hibernation #lib/modules/KVER-ipfire/build/include/config/arch/hibernation/possible.h #lib/modules/KVER-ipfire/build/include/config/arch/meson.h @@ -5929,7 +5973,9 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/arm/gic/v3 #lib/modules/KVER-ipfire/build/include/config/arm/gic/v3.h #lib/modules/KVER-ipfire/build/include/config/arm/gic/v3/its.h +#lib/modules/KVER-ipfire/build/include/config/arm/pmu #lib/modules/KVER-ipfire/build/include/config/arm/pmu.h +#lib/modules/KVER-ipfire/build/include/config/arm/pmu/acpi.h #lib/modules/KVER-ipfire/build/include/config/arm/psci #lib/modules/KVER-ipfire/build/include/config/arm/psci/fw.h #lib/modules/KVER-ipfire/build/include/config/arm/sp805 @@ -6007,6 +6053,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/at803x/phy.h #lib/modules/KVER-ipfire/build/include/config/ata #lib/modules/KVER-ipfire/build/include/config/ata.h +#lib/modules/KVER-ipfire/build/include/config/ata/acpi.h #lib/modules/KVER-ipfire/build/include/config/ata/bmdma.h #lib/modules/KVER-ipfire/build/include/config/ata/sff.h #lib/modules/KVER-ipfire/build/include/config/ata/verbose @@ -6480,6 +6527,10 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/cpu/freq/gov/schedutil.h #lib/modules/KVER-ipfire/build/include/config/cpu/freq/gov/userspace.h #lib/modules/KVER-ipfire/build/include/config/cpu/freq/stat.h +#lib/modules/KVER-ipfire/build/include/config/cpu/idle +#lib/modules/KVER-ipfire/build/include/config/cpu/idle.h +#lib/modules/KVER-ipfire/build/include/config/cpu/idle/gov +#lib/modules/KVER-ipfire/build/include/config/cpu/idle/gov/menu.h #lib/modules/KVER-ipfire/build/include/config/cpu/pm.h #lib/modules/KVER-ipfire/build/include/config/cpu/rmap.h #lib/modules/KVER-ipfire/build/include/config/cpu/thermal.h @@ -6705,6 +6756,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/dm/zero.h #lib/modules/KVER-ipfire/build/include/config/dm9102.h #lib/modules/KVER-ipfire/build/include/config/dma +#lib/modules/KVER-ipfire/build/include/config/dma/acpi.h #lib/modules/KVER-ipfire/build/include/config/dma/bcm2835.h #lib/modules/KVER-ipfire/build/include/config/dma/cma.h #lib/modules/KVER-ipfire/build/include/config/dma/engine @@ -7291,6 +7343,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/geneve.h #lib/modules/KVER-ipfire/build/include/config/glob.h #lib/modules/KVER-ipfire/build/include/config/gpio +#lib/modules/KVER-ipfire/build/include/config/gpio/acpi.h #lib/modules/KVER-ipfire/build/include/config/gpio/adnp.h #lib/modules/KVER-ipfire/build/include/config/gpio/axp209.h #lib/modules/KVER-ipfire/build/include/config/gpio/generic @@ -7331,6 +7384,8 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/has/ioport #lib/modules/KVER-ipfire/build/include/config/has/ioport/map.h #lib/modules/KVER-ipfire/build/include/config/have +#lib/modules/KVER-ipfire/build/include/config/have/acpi +#lib/modules/KVER-ipfire/build/include/config/have/acpi/apei.h #lib/modules/KVER-ipfire/build/include/config/have/aligned #lib/modules/KVER-ipfire/build/include/config/have/aligned/struct #lib/modules/KVER-ipfire/build/include/config/have/aligned/struct/page.h @@ -7413,6 +7468,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/have/memory/present.h #lib/modules/KVER-ipfire/build/include/config/have/net #lib/modules/KVER-ipfire/build/include/config/have/net/dsa.h +#lib/modules/KVER-ipfire/build/include/config/have/nmi.h #lib/modules/KVER-ipfire/build/include/config/have/pata #lib/modules/KVER-ipfire/build/include/config/have/pata/platform.h #lib/modules/KVER-ipfire/build/include/config/have/perf @@ -9115,6 +9171,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/partition #lib/modules/KVER-ipfire/build/include/config/partition/advanced.h #lib/modules/KVER-ipfire/build/include/config/partition/percpu.h +#lib/modules/KVER-ipfire/build/include/config/pcc.h #lib/modules/KVER-ipfire/build/include/config/pci #lib/modules/KVER-ipfire/build/include/config/pci.h #lib/modules/KVER-ipfire/build/include/config/pci/atmel.h @@ -9218,6 +9275,8 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/pnfs/file/layout.h #lib/modules/KVER-ipfire/build/include/config/pnfs/flexfile #lib/modules/KVER-ipfire/build/include/config/pnfs/flexfile/layout.h +#lib/modules/KVER-ipfire/build/include/config/pnp.h +#lib/modules/KVER-ipfire/build/include/config/pnpacpi.h #lib/modules/KVER-ipfire/build/include/config/posix #lib/modules/KVER-ipfire/build/include/config/posix/mqueue #lib/modules/KVER-ipfire/build/include/config/posix/mqueue.h @@ -9255,6 +9314,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/printer.h #lib/modules/KVER-ipfire/build/include/config/printk #lib/modules/KVER-ipfire/build/include/config/printk.h +#lib/modules/KVER-ipfire/build/include/config/printk/nmi.h #lib/modules/KVER-ipfire/build/include/config/printk/safe #lib/modules/KVER-ipfire/build/include/config/printk/safe/log #lib/modules/KVER-ipfire/build/include/config/printk/safe/log/buf @@ -9469,6 +9529,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/rtc/drv/ds3232 #lib/modules/KVER-ipfire/build/include/config/rtc/drv/ds3232.h #lib/modules/KVER-ipfire/build/include/config/rtc/drv/ds3232/hwmon.h +#lib/modules/KVER-ipfire/build/include/config/rtc/drv/efi.h #lib/modules/KVER-ipfire/build/include/config/rtc/drv/em3027.h #lib/modules/KVER-ipfire/build/include/config/rtc/drv/fm3130.h #lib/modules/KVER-ipfire/build/include/config/rtc/drv/hid @@ -9744,6 +9805,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/serial/8250/nr #lib/modules/KVER-ipfire/build/include/config/serial/8250/nr/uarts.h #lib/modules/KVER-ipfire/build/include/config/serial/8250/pci.h +#lib/modules/KVER-ipfire/build/include/config/serial/8250/pnp.h #lib/modules/KVER-ipfire/build/include/config/serial/8250/rsa.h #lib/modules/KVER-ipfire/build/include/config/serial/8250/runtime #lib/modules/KVER-ipfire/build/include/config/serial/8250/runtime/uarts.h @@ -10277,6 +10339,7 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/tigon3.h #lib/modules/KVER-ipfire/build/include/config/tigon3/hwmon.h #lib/modules/KVER-ipfire/build/include/config/timer +#lib/modules/KVER-ipfire/build/include/config/timer/acpi.h #lib/modules/KVER-ipfire/build/include/config/timer/of.h #lib/modules/KVER-ipfire/build/include/config/timer/probe.h #lib/modules/KVER-ipfire/build/include/config/timerfd.h @@ -10331,6 +10394,8 @@ etc/modprobe.d/ipv6.conf #lib/modules/KVER-ipfire/build/include/config/udf #lib/modules/KVER-ipfire/build/include/config/udf/fs.h #lib/modules/KVER-ipfire/build/include/config/udf/nls.h +#lib/modules/KVER-ipfire/build/include/config/uefi +#lib/modules/KVER-ipfire/build/include/config/uefi/cper.h #lib/modules/KVER-ipfire/build/include/config/uevent #lib/modules/KVER-ipfire/build/include/config/uevent/helper #lib/modules/KVER-ipfire/build/include/config/uevent/helper.h @@ -17229,6 +17294,12 @@ lib/modules/KVER-ipfire/kernel #lib/modules/KVER-ipfire/kernel/crypto/xor.ko.xz #lib/modules/KVER-ipfire/kernel/crypto/xts.ko.xz #lib/modules/KVER-ipfire/kernel/drivers +#lib/modules/KVER-ipfire/kernel/drivers/acpi +#lib/modules/KVER-ipfire/kernel/drivers/acpi/acpi_configfs.ko.xz +#lib/modules/KVER-ipfire/kernel/drivers/acpi/button.ko.xz +#lib/modules/KVER-ipfire/kernel/drivers/acpi/fan.ko.xz +#lib/modules/KVER-ipfire/kernel/drivers/acpi/processor.ko.xz +#lib/modules/KVER-ipfire/kernel/drivers/acpi/thermal.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/ata #lib/modules/KVER-ipfire/kernel/drivers/ata/ahci_ceva.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/ata/ahci_mvebu.ko.xz @@ -17275,6 +17346,7 @@ lib/modules/KVER-ipfire/kernel #lib/modules/KVER-ipfire/kernel/drivers/cpufreq #lib/modules/KVER-ipfire/kernel/drivers/cpufreq/arm_big_little.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/cpufreq/arm_big_little_dt.ko.xz +#lib/modules/KVER-ipfire/kernel/drivers/cpufreq/cppc_cpufreq.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/crypto #lib/modules/KVER-ipfire/kernel/drivers/crypto/virtio #lib/modules/KVER-ipfire/kernel/drivers/crypto/virtio/virtio_crypto.ko.xz @@ -18759,6 +18831,7 @@ lib/modules/KVER-ipfire/kernel #lib/modules/KVER-ipfire/kernel/drivers/rtc/rtc-ds1742.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/rtc/rtc-ds2404.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/rtc/rtc-ds3232.ko.xz +#lib/modules/KVER-ipfire/kernel/drivers/rtc/rtc-efi.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/rtc/rtc-em3027.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/rtc/rtc-fm3130.ko.xz #lib/modules/KVER-ipfire/kernel/drivers/rtc/rtc-hid-sensor-time.ko.xz
hooks/post-receive -- IPFire 2.x development tree