Once "x86, mm: Report state of NX protections during boot"[1] is in the Lucid
kernel, "UBUNTU: SAUCE: [x86] implement cs-limit nx-emulation for ia32"
will not cleanly apply. This patch is a replacement for that one.
The upstream fix functionally contains the following commits, which can
be dropped at the next rebase: