New stable version: HardenedBSD-stable 10-STABLE v46.12

HardenedBSD-10-STABLE-v46.12 - https://github.com/HardenedBSD/hardenedBSD-stable/releases/tag/HardenedB...

Warning: This is a SECURITY UPDATE!

Highlights:

Installers:
http://installer.hardenedbsd.org/pub/HardenedBSD/releases/amd64/amd64/IS...

CHECKSUM.SHA512:

SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-bootonly.iso) = ad66abde022d64e135c982453b285e2732ded77a87ade9cb24d46ec82385d8d5230094b47eff160a3190023732d0aec8ac960c7d1ec9dbe84c54b0d0d38ec009
SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-disc1.iso) = a39b04e17144642b44b0e1b6adc8a174aa568aaf1fdeb775d7d172826d0933c68d54640032625e4ceec2d50085eb72bcadac05f710dc711adbf93f9f84a9224c
SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-memstick.img) = f0dac00ed97c80b14940813563977582efa6a26db77102830e78d8100f9a0f7691a9e13fad06700dd46c6cbf72a56a5209687caf65a87c39f2a7ecfc8ba2590f
SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-mini-memstick.img) = b1a75e65018f260232445ed1880f0e573e6527e0be6bced64003938cc7d95753f409f5770e71cb3be67a5de19ae1c96f775f39a3945087d9fc5adbc07f75f694
SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-uefi-bootonly.iso) = c0763d816b49e7265704370151ae4e42b44b9fc4b9534ce3ab14e0691c7e4d111a2b7c3e39a144b24318e77b4f6280291d92a9174f3ba872f1fb1c46c48198c4
SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-uefi-disc1.iso) = 08574fd958d58c5f349554a05559c79778f59f916a9877b40a4a52a7bb8869fe749b2cc776eb2958a4e327b5d9617ebd9cad13b2b5bc8ea761593042131ed69f
SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-uefi-memstick.img) = fff7fd50b4e7207dfde29058d8e28ea7f2d07af19419a00ed208315c12e8e082c38b7fc3ccb31c50d86ad9c8d4763014b796204da689159393c642ee50f7c9a8
SHA512 (HardenedBSD-10-STABLE-v46.12-amd64-uefi-mini-memstick.img) = b7d5c2ef974d9ad4f280351475c8934f696c4dadb91273dcd95be1a53a8c08a1bbd2fd4082e9bd3581885fe467aba09a4644a9d8752be8ce4d4ac4a378817b03

CHECKSUM.SHA512.asc:

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=VzeW
-----END PGP SIGNATURE-----

Changelog:

Oliver Pinter (6):
HBSD: try to fix lib/libc/sys/mmap_test:mmap_va0 kyua test case on HardenedBSD
HBSD: declare missing PACKAGE to tests in lib/libc/tests/sys/Makefile kyua tests' Makefile
HBSD: build fix in contrib/netbsd-tests/lib/libc/sys/t_mmap.c after 344052806a8d200e2dc2af5a8547d46a82d63ecf
HBSD: fix the inverted logic in contrib/netbsd-tests/lib/libc/sys/t_mmap.c
HBSD: prepare the cherry-pick of proper libarchive fix(53359a8ebc373b953ea95eb20baa9d9d92f735e9)
HBSD: update OP-HBSD kernel config

Oliver Pinter + (17):
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master
Merge branch 'freebsd/10-stable/master' into hardened/10-stable/master

asomers (2):
MFC r304162
MFC r302778

avg (9):
MFC r305535: amdsbwd: add support for FCH in family 16h models 30h-3Fh processors
MFC r303111: Document list of supported chipsets.
MFC r303113: Cross-link some SMBus controller drivers man pages.
MFC r305596: intpm.4 update supported hardware list
MFC r305600: amdsbwd.4: update supported hardware list
MFC r305603: intpm: do not try attaching to unsupported controller revisions
MFC r305604: intpm: better clean up resources after a failed attachment
MFC r305606: intpm: make sure to register smbus driver before intpm driver
MFC r305602: intpm: fix attachment to supported AMD FCHs

bde (4):
HBSD MFC: Fix key delay and repeat, part 1.
HBSD MFC - Fix key delay and repeat, part 2.
HBSD MFC: - Fix translation of the PrintScreen/SysRq and Pause/Break keys.
HBSD MFC: - Further fixes for translation of PrintScreen/SysRq.

br (1):
HBSD MFC: Use kqueue(2) instead of select(2).

cem (1):
HBSD MFC: - Fix ddb "show proc" to show full arguments

dim (1):
MFC r305430:

emaste (2):
MFC r275240 (bapt): Implement --no-fatal-warnings
HBSD MFC: vt: fix old keyboard release in CONS_SETKBD

gnn (1):
MFC: 304825 Unlike Solaris, in FreeBSD p_args can be 0 so check for that instead of walking down to ar_args blindly.

hiren (1):
MFC r301522 (by bz)

hselasky (2):
MFC r305421: Resolve deadlock between device_detach() and usbd_do_request_flags() by reviving the SX control request lock and refining which lock protects the common scratch area in "struct usb_device".
MFC r305590: Correctly map the USB mouse tilt delta values into buttons 5 and 6 instead of 3 and 4 which is used for the scroll wheel, according to X.org.

jilles (1):
HBSD MFC: wait: Do not copyout uninitialized status/rusage/wrusage.

jkim (1):
Merge OpenSSL 1.0.1u.

kib (11):
MFC r305129: Make swapoff reliable.
MFC r305744: Fix typo in comment.
MFC r305939: Remove trailing space.
MFC r305592: Partially lift suspension when ffs_reload() finished with cgs and going to re-read inodes.
MFC r305593: There is no need to upgrade the last dvp lock on lookups for modifying operations. Instead of upgrading, assert that the lock is exclusive. Explain the cause in comments.
MFC r305594: In softdep_prealloc(), return early not only for snapshots, but for the quota files as well.
MFC r305595: In dqsync(), when called from quotactl(), um_quotas entry might appear cleared since nothing prevents completion of the parallel quotaoff. There is nothing to sync in this case, and no reason to panic.
MFC r305597: When extending directory inode in ufs_direnter(), adjust i_endoff.
MFC r305598: When logging unlikely UFS_TRUNCATE() failure in ufs_direnter(), include error code.
MFC r305599: Do not leak transient ENOLCK error from flush_newblk_dep() loop.
MFC r305601: On rename, do not perform truncation of dirhash if the vnode truncation failed.

lwhsu (1):
MFC r303935

mav (7):
MFC r305679: Switch random_get_pseudo_bytes() shim to arc4rand().
MFC r305536: Fix channel initialization in FBS mode.
MFC r305123: Fix kernel panic when inheriting properties without default.
MFC r305608: "ATA pass through information available" is not an error.
MFC r305609: "Extended copy information available" is not an error either.
MFC r305610: Don't report to devd statuses that CAM doesn't consider errors.
HBSD MFC (partial) - Add more UEFI/e820 memory types from latest specifications.

mjg (2):
HBSD MFC: nullfs: stop special-casing directories in null_vptocnp
HBSD MFC: nullfs: plug vnode ref leak in null_vptocnp

mm (2):
MFC r305422: Sync libarchive with vendor
HBSD MFC: Sync libarchive with vendor including important security fixes. (dfb2179f22587dff6eeae3ed56a8afc4a412b5ff)

ngie (3):
MFstable/11 r305910:
MFstable/11 r305912:
MFstable/11 r305914:

roberto (2):
HBSD MFCL pam_ssh - Add support for Ed25519 keys.
HBSD MFC: pam_ssh - Remove support for SSH1 as it is already disabled in our OpenSSH.

sephe (1):
MFC 305177 net/vlan: Shift for pri is 13 (pri mask 0xe000) not 1.

stevek (1):
HBSD MFC: - Add kernel environment variables under smbios.system