Amazon Linux 2 version 2.0.20210525.0 release notes
These are the release notes for Amazon Linux 2 version 2.0.20210525.0.
Major updates
-
Updated chrony to 4.0 from 3.5.1
Package updates
Amazon Linux 2 includes the following packages.
Packages |
---|
bind-export-libs-9.11.4-26.P2.amzn2.5.aarch64 |
bind-export-libs-9.11.4-26.P2.amzn2.5.x86_64 |
bind-libs-9.11.4-26.P2.amzn2.5.aarch64 |
bind-libs-9.11.4-26.P2.amzn2.5.x86_64 |
bind-libs-lite-9.11.4-26.P2.amzn2.5.aarch64 |
bind-libs-lite-9.11.4-26.P2.amzn2.5.x86_64 |
bind-license-9.11.4-26.P2.amzn2.5.noarch |
bind-utils-9.11.4-26.P2.amzn2.5.aarch64 |
bind-utils-9.11.4-26.P2.amzn2.5.x86_64 |
chrony-4.0-3.amzn2.0.1.aarch64 |
chrony-4.0-3.amzn2.0.1.x86_64 |
ec2-utils-1.2-44.amzn2.noarch |
glibc-2.26-45.amzn2.aarch64 |
glibc-2.26-45.amzn2.x86_64 |
glibc-all-langpacks-2.26-45.amzn2.aarch64 |
glibc-all-langpacks-2.26-45.amzn2.x86_64 |
glibc-common-2.26-45.amzn2.aarch64 |
glibc-common-2.26-45.amzn2.x86_64 |
glibc-devel-2.26-45.amzn2.x86_64 |
glibc-headers-2.26-45.amzn2.x86_64 |
glibc-langpack-en-2.26-45.amzn2.aarch64 |
glibc-langpack-en-2.26-45.amzn2.x86_64 |
glibc-locale-source-2.26-45.amzn2.aarch64 |
glibc-locale-source-2.26-45.amzn2.x86_64 |
glibc-minimal-langpack-2.26-45.amzn2.aarch64 |
glibc-minimal-langpack-2.26-45.amzn2.x86_64 |
kernel-4.14.232-176.381.amzn2.aarch64 |
kernel-4.14.232-176.381.amzn2.x86_64 |
kernel-devel-4.14.232-176.381.amzn2.x86_64 |
kernel-headers-4.14.232-176.381.amzn2.x86_64 |
kernel-tools-4.14.232-176.381.amzn2.aarch64 |
kernel-tools-4.14.232-176.381.amzn2.x86_64 |
libcrypt-2.26-45.amzn2.aarch64 |
libcrypt-2.26-45.amzn2.x86_64 |
libjpeg-turbo-2.0.90-2.amzn2.0.1.aarch64 |
libjpeg-turbo-2.0.90-2.amzn2.0.1.x86_64 |
openldap-2.4.44-23.amzn2.aarch64 |
openldap-2.4.44-23.amzn2.x86_64 |
python2-setuptools-41.2.0-4.amzn2.0.2.noarch |
python3-3.7.9-1.amzn2.0.3.aarch64 |
python3-3.7.9-1.amzn2.0.3.x86_64 |
python3-libs-3.7.9-1.amzn2.0.3.aarch64 |
python3-libs-3.7.9-1.amzn2.0.3.x86_64 |
python3-pip-20.2.2-1.amzn2.0.2.noarch |
python3-setuptools-49.1.3-1.amzn2.0.2.noarch |
Kernel updates
Rebase kernel to upstream stable 4.14.232.
Lustre: Update to Client v2.10.8-7
CVEs fixed:
-
CVE-2020-29374 [gup: document and work around "COW can break either way" issue]
-
CVE-2021-23133 [net/sctp: fix race condition in sctp_destroy_sock]
Amazon Features and Backports:
-
bpf: Fixes up selftests after backports were fixed
-
bpf, selftests: Fixes up some test_verifier cases for unprivileged
-
bpf: Moves off_reg into sanitize_ptr_alu
-
bpf: Ensures off_reg has no mixed signed bounds for all types
-
bpf: Reworkes ptr_limit into alu_limit and add common error path
-
bpf: Improves verifier error messages for users
-
bpf: Refactors and streamlines bounds check into helper
-
bpf: Moves sanitize_val_alu out of op switch
-
bpf: Tightens speculative pointer arithmetic mask
-
bpf: Updates selftests to reflect new error states
-
bpf: Doesn't allow root to mangle valid pointers
-
bpf/verifier: Doesn't allow pointer subtraction
-
selftests/bpf: Fixes test_align
-
selftests/bpf: Makes 'dubious pointer arithmetic' test useful
-
bpf: Fixes masking negation logic upon negative dst register
-
bpf: Fixes leakage of uninitialized bpf stack under speculation
-
Reverts "net/sctp: fix race condition in sctp_destroy_sock"
-
sctp: Delays auto_asconf init until binding the first addr
-
cifs: Fixes panic in smb2_reconnect
Other Fixes:
-
arm64: Fixes inline asm in load_unaligned_zeropad()
-
ext4: Corrects the error label in ext4_rename()
-
x86/crash: Fixes crash_setup_memmap_entries() out-of-bounds access