https://source.android.com/security/bulletin/2018-08-01
CVE-2017-18249*
CVE-2018-9465
CVE-2018-9439
CVE-2018-1068

* currently no 4.4 backports exist for CVE-2017-18249 on android-4.4
  release branches. This affects only devices using f2fs running
  4.4 kernels.
Merge 4.14.61 into android-4.14-p

Changes in 4.14.61
	bonding: avoid lockdep confusion in bond_get_stats()
	inet: frag: enforce memory limits earlier
	ipv4: frags: handle possible skb truesize change
	net: dsa: Do not suspend/resume closed slave_dev
	netlink: Fix spectre v1 gadget in netlink_create()
	net: stmmac: Fix WoL for PCI-based setups
	rxrpc: Fix user call ID check in rxrpc_service_prealloc_one
	net/mlx5e: E-Switch, Initialize eswitch only if eswitch manager
	squashfs: more metadata hardening
	squashfs: more metadata hardenings
	can: ems_usb: Fix memory leak on ems_usb_disconnect()
	net: socket: fix potential spectre v1 gadget in socketcall
	virtio_balloon: fix another race between migration and ballooning
	x86/apic: Future-proof the TSC_DEADLINE quirk for SKX
	x86/entry/64: Remove %ebx handling from error_entry/exit
	kvm: x86: vmx: fix vpid leak
	audit: fix potential null dereference 'context->module.name'
	userfaultfd: remove uffd flags from vma->vm_flags if UFFD_EVENT_FORK fails
	iwlwifi: add more card IDs for 9000 series
	RDMA/uverbs: Expand primary and alt AV port checks
	crypto: padlock-aes - Fix Nano workaround data corruption
	drm/vc4: Reset ->{x, y}_scaling[1] when dealing with uniplanar formats
	scsi: sg: fix minor memory leak in error path
	Linux 4.14.61

Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>