• linux_6.1.38-2~bpo11+1_source.changes ACCEPTED into bullseye-backports

    From Debian FTP Masters@21:1/5 to All on Wed Aug 30 07:30:02 2023
    Thank you for your contribution to Debian.



    Accepted:

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    Format: 1.8
    Date: Fri, 28 Jul 2023 23:18:00 +0200
    Source: linux
    Architecture: source
    Version: 6.1.38-2~bpo11+1
    Distribution: bullseye-backports
    Urgency: high
    Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org>
    Changed-By: Ben Hutchings <benh@debian.org>
    Closes: 871216 1033398 1035359 1035824 1036755 1038271 1038665 1038754
    Changes:
    linux (6.1.38-2~bpo11+1) bullseye-backports; urgency=medium
    .
    * Rebuild for bullseye-backports:
    - Set ABI to 0.deb11.10
    .
    linux (6.1.38-2) bookworm-security; urgency=high
    .
    * [x86] cpu/amd: Move the errata checking functionality up
    * [x86] cpu/amd: Add a Zenbleed fix (CVE-2023-20593)
    .
    linux (6.1.38-1) bookworm; urgency=medium
    .
    * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.38
    - drm/amd/display: Remove optimization for VRR updates
    - drm/amd/display: Do not update DRR while BW optimizations pending
    - PCI/ACPI: Validate acpi_pci_set_power_state() parameter
    - PCI/ACPI: Call _REG when transitioning D-states
    - execve: always mark stack as growing down during early stack setup
    - perf symbols: Symbol lookup with kcore can fail if multiple segments match
    stext
    - scripts/tags.sh: Resolve gtags empty index generation
    - drm/amdgpu: Validate VM ioctl flags.
    - drm/amd/display: Ensure vmin and vmax adjust for DCE
    .
    [ Salvatore Bonaccorso ]
    * drm: use mgr->dev in drm_dbg_kms in drm_dp_add_payload_part2
    * mm/mmap: Fix VM_LOCKED check in do_vmi_align_munmap()
    * netfilter: nf_tables: do not ignore genmask when looking up chain by id
    (CVE-2023-31248)
    * netfilter: nf_tables: prevent OOB access in nft_byteorder_eval
    (CVE-2023-35001)
    .
    linux (6.1.37-1) bookworm-security; urgency=high
    .
    * New upstream stable update:
    https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.28
    - [x86] ASOC: Intel: sof_sdw: add quirk for Intel 'Rooks County' NUC M15
    - [x86] ASoC: Intel: soc-acpi: add table for Intel 'Rooks County' NUC M15
    - ASoC: soc-pcm: fix hw->formats cleared by soc_pcm_hw_init() for dpcm
    - [x86] hyperv: Block root partition functionality in a Confidential VM
    - [x86] ASoC: amd: yc: Add DMI entries to support Victus by HP Laptop
    16-e1xxx (8A22)
    - [x86] ASoC: Intel: bytcr_rt5640: Add quirk for the Acer Iconia One 7
    B1-750
    - [x86] ASoC: da7213.c: add missing pm_runtime_disable()
    - scsi: mpi3mr: Handle soft reset in progress fault code (0xF002)
    - net: sfp: add quirk enabling 2500Base-x for HG MXPD-483II
    - [x86] platform/x86: thinkpad_acpi: Add missing T14s Gen1 type to s2idle
    quirk list
    - wifi: ath11k: reduce the MHI timeout to 20s
    - tracing: Error if a trace event has an array for a __field()
    - [x86] cpu: Add model number for Intel Arrow Lake processor
    - wireguard: timers: cast enum limits members to int in prints
    - wifi: mt76: mt7921e: Set memory space enable in PCI_COMMAND if unset
    - [arm64] Always load shadow stack pointer directly from the task struct
    - [arm64] Stash shadow stack pointer in the task struct on interrupt
    - PCI: pciehp: Fix AB-BA deadlock between reset_lock and device_lock
    - [arm64] PCI: qcom: Fix the incorrect register usage in v2.7.0 config
    - [arm64] phy: qcom-qmp-pcie: sc8180x PCIe PHY has 2 lanes
    - [arm64,armhf] usb: dwc3: gadget: Stall and restart EP0 if host is
    unresponsive
    - [arm64,armhf] USB: dwc3: fix runtime pm imbalance on probe errors
    - [arm64,armhf] USB: dwc3: fix runtime pm imbalance on unbind
    - [x86] hwmon: (k10temp) Check range scale when CUR_TEMP register is
    read-write
    - hwmon: (adt7475) Use device_property APIs when configuring polarity
    - tpm: Add !tpm_amd_is_rng_defective() to the hwrng_unregister() call site
    - posix-cpu-timers: Implement the missing timer_wait_running callback
    - blk-stat: fix QUEUE_FLAG_STATS clear
    - blk-crypto: don't use struct request_queue for public interfaces
    - blk-crypto: add a blk_crypto_config_supported_natively helper
    - blk-crypto: move internal only declarations to blk-crypto-internal.h
    - blk-crypto: Add a missing include directive
    - blk-mq: release crypto keyslot before reporting I/O complete
    - blk-crypto: make blk_crypto_evict_key() return void
    - blk-crypto: make blk_crypto_evict_key() more robust
    - tty: Prevent writing chars during tcsetattr TCSADRAIN/FLUSH
    - xhci: fix debugfs register accesses while suspended
    - serial: fix TIOCSRS485 locking
    - serial: 8250: Fix serial8250_tx_empty() race with DMA Tx
    - tick/nohz: Fix cpu_is_hotpluggable() by checking with nohz subsystem
    - fs: fix sysctls.c built
    - [mips*] fw: Allow firmware to pass a empty env
    - ipmi:ssif: Add send_retries increment
    - ipmi: fix SSIF not responding under certain cond.
    - wifi: mt76: add missing locking to protect against concurrent rx/status
    calls
    - [arm64,armhf] pwm: meson: Fix axg ao mux parents
    - [arm64,armhf] pwm: meson: Fix g12a ao clk81 name
    - soundwire: qcom: correct setting ignore bit on v1.5.1
    - ring-buffer: Ensure proper resetting of atomic variables in
    ring_buffer_reset_online_cpus
    - ring-buffer: Sync IRQ works before buffer destruction
    - crypto: api - Demote BUG_ON() in crypto_unregister_alg() to a WARN_ON()
    - [arm64] crypto: safexcel - Cleanup ring IRQ workqueues on load failure
    - [x86] crypto: ccp - Don't initialize CCP for PSP 0x1649
    - rcu: Avoid stack overflow due to __rcu_irq_enter_check_tick() being
    kprobe-ed
    - reiserfs: Add security prefix to xattr name in reiserfs_security_write()
    - [x86] KVM: nVMX: Emulate NOPs in L2, and PAUSE if it's not intercepted
    - [arm64] KVM: arm64: Avoid vcpu->mutex v. kvm->lock inversion in CPU_ON
    - [arm64] KVM: arm64: Avoid lock inversion when setting the VM register
    width
    - [arm64] KVM: arm64: Use config_lock to protect data ordered against
    KVM_RUN
    - [arm64] KVM: arm64: Use config_lock to protect vgic state
    - [arm64] KVM: arm64: vgic: Don't acquire its_lock before config_lock
    - relayfs: fix out-of-bounds access in relay_file_read (CVE-2023-3268)
    - drm/amd/display: Remove stutter only configurations
    - drm/amd/display: limit timing for single dimm memory
    - drm/amd/display: fix PSR-SU/DSC interoperability support
    - drm/amd/display: fix a divided-by-zero error
    - ksmbd: fix racy issue under cocurrent smb2 tree disconnect
    (CVE-2023-32254)
    - ksmbd: call rcu_barrier() in ksmbd_server_exit()
    - ksmbd: fix NULL pointer dereference in smb2_get_info_filesystem()
    - ksmbd: fix memleak in session setup
    - ksmbd: not allow guest user on multichannel
    - ksmbd: fix deadlock in ksmbd_find_crypto_ctx()
    - [x86] ACPI: video: Remove acpi_backlight=video quirk for Lenovo ThinkPad
    W530
    - [arm64,armhf] i2c: omap: Fix standard mode false ACK readings
    - tracing: Fix permissions for the buffer_percent file
    - swsmu/amdgpu_smu: Fix the wrong if-condition
    - drm/amd/pm: re-enable the gfx imu when smu resume
    - [amd64] iommu/amd: Fix "Guest Virtual APIC Table Root Pointer"
    configuration in IRTE
    - Revert "ubifs: dirty_cow_znode: Fix memleak in error handling path"
    - ubifs: Fix memleak when insert_old_idx() failed
    - ubi: Fix return value overwrite issue in try_write_vid_and_data()
    - ubifs: Free memory for tmpfile name
    - ubifs: Fix memory leak in do_rename
    - ceph: fix potential use-after-free bug when trimming caps
    - xfs: don't consider future format versions valid
    - cxl/hdm: Fail upon detecting 0-sized decoders
    - bus: mhi: host: Remove duplicate ee check for syserr
    - bus: mhi: host: Use mhi_tryset_pm_state() for setting fw error state
    - bus: mhi: host: Range check CHDBOFF and ERDBOFF
    - rcu: Fix missing TICK_DEP_MASK_RCU_EXP dependency check
    - tpm, tpm_tis: Do not skip reset of original interrupt vector
    - tpm, tpm_tis: Claim locality before writing TPM_INT_ENABLE register
    - tpm, tpm_tis: Disable interrupts if tpm_tis_probe_irq() failed
    - tpm, tpm_tis: Claim locality before writing interrupt registers
    - tpm, tpm: Implement usage counter for locality
    - tpm, tpm_tis: Claim locality when interrupts are reenabled on resume
    - erofs: stop parsing non-compact HEAD index if clusterofs is invalid
    - erofs: initialize packed inode after root inode is assigned
    - erofs: fix potential overflow calculating xattr_isize
    - [arm64,armhf] drm/rockchip: Drop unbalanced obj unref
    - [x86] drm/i915/dg2: Drop one PCI ID
    - drm/vgem: add missing mutex_destroy
    - drm/probe-helper: Cancel previous job before starting new one
    - drm/amdgpu: register a vga_switcheroo client for MacBooks with apple-gmux
    - [arm64] dts: ti: k3-am62-main: Fix GPIO numbers in DT
    - [arm64] drm/msm/disp/dpu: check for crtc enable rather than crtc active to
    release shared resources
    - [amd64] EDAC/skx: Fix overflows on the DRAM row address mapping arrays
    - regulator: core: Shorten off-on-delay-us for always-on/boot-on by time
    since booted
    - [arm64] dts: ti: k3-am62a7-sk: Fix DDR size to full 4GB
    - [arm64] dts: qcom: msm8998: Fix stm-stimulus-base reg name
    - [arm64] dts: qcom: sdm845: correct dynamic power coefficients
    - [x86] MCE/AMD: Use an u64 for bank_map
    - [arm64] firmware: qcom_scm: Clear download bit during reboot
    - [arm64] drm/bridge: adv7533: Fix adv7533_mode_valid for adv7533 and
    adv7535
    - [arm64] drm/msm/adreno: drop bogus pm_runtime_set_active()
    - [arm64] drm: msm: adreno: Disable preemption on Adreno 510
    - [amd64] virt/coco/sev-guest: Double-buffer messages
    - [arm64] dts: qcom: sm8350-microsoft-surface: fix USB dual-role mode
    property
    - [x86] ACPI: processor: Fix evaluating _PDC method when running as Xen dom0
    - [arm64] mmc: sdhci-of-esdhc: fix quirk to ignore command inhibit for data
    - [armhf] dts: gta04: fix excess dma channel usage
    - [arm64] firmware: arm_scmi: Fix xfers allocation on Rx channel
    - [arm64] perf/arm-cmn: Move overlapping wp_combine field
    - [armhf] dts: stm32: fix spi1 pin assignment on stm32mp15
    - [arm64] cpufreq: qcom-cpufreq-hw: Revert adding cpufreq qos
    - [arm64,armhf] drm/lima/lima_drv: Add missing unwind goto in
    lima_pdev_probe()
    - [arm64,armhf] gpu: host1x: Fix potential double free if IOMMU is disabled
    - [arm64,armhf] gpu: host1x: Fix memory leak of device names
    - drm/ttm: optimize pool allocations a bit v2
    - drm/ttm/pool: Fix ttm_pool_alloc error path
    - regulator: core: Consistently set mutex_owner when using
    ww_mutex_lock_slow()
    - regulator: core: Avoid lockdep reports when resolving supplies
    - [x86] apic: Fix atomic update of offset in reserve_eilvt_offset()
    - [arm64] dts: qcom: msm8994-angler: Fix cont_splash_mem mapping
    - [arm64] dts: qcom: msm8994-angler: removed clash with smem_region
    - [arm64,armhf] media: cedrus: fix use after free bug in cedrus_remove due
    to race condition (CVE-2023-35826)
    - [arm64] media: rkvdec: fix use after free bug in rkvdec_remove
    (CVE-2023-35829)
    - [amd64] platform/x86/amd: pmc: Don't try to read SMU version on Picasso
    - [amd64] platform/x86/amd: pmc: Hide SMU version and program attributes for
    Picasso
    - [amd64] platform/x86/amd: pmc: Don't dump data after resume from s0i3 on
    picasso
    - [amd64] platform/x86/amd: pmc: Move idlemask check into
    `amd_pmc_idlemask_read`
    - [amd64] platform/x86/amd: pmc: Utilize SMN index 0 for driver probe
    - [amd64] platform/x86/amd: pmc: Move out of BIOS SMN pair for STB init
    - media: dm1105: Fix use after free bug in dm1105_remove due to race
    condition (CVE-2023-35824)
    - media: saa7134: fix use after free bug in saa7134_finidev due to race
    condition (CVE-2023-35823)
    - media: v4l: async: Return async sub-devices to subnotifier list
    - drm/amd/display: Fix potential null dereference
    - [arm64,armhf] media: rc: gpio-ir-recv: Fix support for wake-up
    - [arm64] media: venus: dec: Fix handling of the start cmd
    - [arm64] media: venus: dec: Fix capture formats enumeration order
    - [armhf] regulator: stm32-pwr: fix of_iomap leak
    - [x86] ioapic: Don't return 0 from arch_dynirq_lower_bound()
    - [arm64] kgdb: Set PSTATE.SS to 1 to re-enable single-step
    - [arm64] perf/arm-cmn: Fix port detection for CMN-700
    - [x86] drm/i915: Make intel_get_crtc_new_encoder() less oopsy
    - tick/common: Align tick period with the HZ tick.
    - ACPI: bus: Ensure that notify handlers are not running after removal
    - cpufreq: use correct unit when verify cur freq
    - [arm64] rpmsg: glink: Propagate TX failures in intentless mode as well
    - platform/chrome: cros_typec_switch: Add missing fwnode_handle_put()
    - wifi: ath6kl: minor fix for allocation size
    - wifi: ath9k: hif_usb: fix memory leak of remain_skbs
    - wifi: ath11k: Use platform_get_irq() to get the interrupt
    - wifi: ath5k: Use platform_get_irq() to get the interrupt
    - wifi: ath5k: fix an off by one check in ath5k_eeprom_read_freq_list()
    - wifi: ath11k: fix SAC bug on peer addition with sta band migration
    - wifi: brcmfmac: support CQM RSSI notification with older firmware
    - wifi: ath6kl: reduce WARN to dev_dbg() in callback
    - tools: bpftool: Remove invalid \' json escape
    - wifi: rtw88: mac: Return the original error from rtw_pwr_seq_parser()
    - wifi: rtw88: mac: Return the original error from rtw_mac_power_switch()
    - bpf: take into account liveness when propagating precision
    - bpf: fix precision propagation verbose logging
    - [x86] crypto: qat - fix concurrency issue when device state changes
    - scm: fix MSG_CTRUNC setting condition for SO_PASSSEC
    - wifi: ath11k: fix deinitialization of firmware resources
    - bpf: Remove misleading spec_v1 check on var-offset stack read
    - net: pcs: xpcs: remove double-read of link state when using AN
    - vlan: partially enable SIOCSHWTSTAMP in container
    - net/packet: annotate accesses to po->xmit
    - net/packet: convert po->origdev to an atomic flag
    - net/packet: convert po->auxdata to an atomic flag
    - libbpf: Fix ld_imm64 copy logic for ksym in light skeleton.
    - netfilter: keep conntrack reference until IPsecv6 policy checks are done
    - bpf: Fix __reg_bound_offset 64->32 var_off subreg propagation
    - scsi: target: core: Change the way target_xcopy_do_work() sets restiction
    on max I/O
    - scsi: target: Move sess cmd counter to new struct
    - scsi: target: Move cmd counter allocation
    - scsi: target: Pass in cmd counter to use during cmd setup
    - scsi: target: iscsit: isert: Alloc per conn cmd counter
    - scsi: target: iscsit: Stop/wait on cmds during conn close
    - scsi: target: Fix multiple LUN_RESET handling
    - scsi: target: iscsit: Fix TAS handling during conn cleanup
    - scsi: megaraid: Fix mega_cmd_done() CMDID_INT_CMDS
    - net: sunhme: Fix uninitialized return code
    - f2fs: handle dqget error in f2fs_transfer_project_quota()
    - f2fs: fix uninitialized skipped_gc_rwsem
    - f2fs: apply zone capacity to all zone type
    - f2fs: compress: fix to call f2fs_wait_on_page_writeback() in
    f2fs_write_raw_pages()
    - f2fs: fix scheduling while atomic in decompression path
    - [arm64,armhf] crypto: caam - Clear some memory in instantiate_rng
    - wifi: rtlwifi: fix incorrect error codes in rtl_debugfs_set_write_rfreg()
    - wifi: rtlwifi: fix incorrect error codes in rtl_debugfs_set_write_reg()
    - scsi: libsas: Add sas_ata_device_link_abort()
    - [arm64] scsi: hisi_sas: Handle NCQ error when IPTT is valid
    - wifi: rt2x00: Fix memory leak when handling surveys
    - f2fs: fix iostat lock protection
    - net: qrtr: correct types of trace event parameters
    - bpftool: Fix bug for long instructions in program CFG dumps
    - crypto: drbg - Only fail when jent is unavailable in FIPS mode
    - xsk: Fix unaligned descriptor validation
    - f2fs: fix to avoid use-after-free for cached IPU bio
    - wifi: iwlwifi: fix duplicate entry in iwl_dev_info_table
    - bpf/btf: Fix is_int_ptr()
    - scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup()
    - [arm64,armhf] net: ethernet: stmmac: dwmac-rk: rework optional clock
    handling
    - [arm64,armhf] net: ethernet: stmmac: dwmac-rk: fix optional phy regulator
    handling
    - wifi: ath11k: fix writing to unintended memory region
    - bpf, sockmap: fix deadlocks in the sockhash and sockmap
    - nvmet: fix error handling in nvmet_execute_identify_cns_cs_ns()
    - nvmet: fix Identify Namespace handling
    - nvmet: fix Identify Controller handling
    - nvmet: fix Identify Active Namespace ID list handling
    - nvmet: fix I/O Command Set specific Identify Controller
    - nvme: fix async event trace event
    - blk-mq: don't plug for head insertions in blk_execute_rq_nowait
    - wifi: iwlwifi: debug: fix crash in __iwl_err()
    - wifi: iwlwifi: trans: don't trigger d3 interrupt twice
    - wifi: iwlwifi: mvm: don't set CHECKSUM_COMPLETE for unsupported protocols
    - bpf, sockmap: Revert buggy deadlock fix in the sockhash and sockmap
    - f2fs: fix to check return value of f2fs_do_truncate_blocks()
    - f2fs: fix to check return value of inc_valid_block_count()
    - md/raid10: fix task hung in raid10d
    - md/raid10: fix leak of 'r10bio->remaining' for recovery
    - md/raid10: fix memleak for 'conf->bio_split'
    - md/raid10: fix memleak of md thread
    - md/raid10: don't call bio_start_io_acct twice for bio which experienced
    read error
    - wifi: iwlwifi: mvm: don't drop unencrypted MCAST frames
    - wifi: iwlwifi: yoyo: skip dump correctly on hw error
    - wifi: iwlwifi: yoyo: Fix possible division by zero
    - wifi: iwlwifi: mvm: initialize seq variable
    - wifi: iwlwifi: fw: move memset before early return
    - jdb2: Don't refuse invalidation of already invalidated buffers
    - io_uring/rsrc: use nospec'ed indexes
    - wifi: iwlwifi: make the loop for card preparation effective
    - wifi: mt76: handle failure of vzalloc in mt7615_coredump_work
    - wifi: mt76: add flexible polling wait-interval support
    - wifi: mt76: mt7921e: fix probe timeout after reboot
    - wifi: mt76: fix 6GHz high channel not be scanned
    - mt76: mt7921: fix kernel panic by accessing unallocated eeprom.data
    - wifi: mt76: mt7921: fix missing unwind goto in `mt7921u_probe`
    - wifi: mt76: mt7921e: improve reliability of dma reset
    - wifi: mt76: mt7921e: stop chip reset worker in unregister hook
    - wifi: mt76: connac: fix txd multicast rate setting
    - wifi: iwlwifi: mvm: check firmware response size
    - netfilter: conntrack: restore IPS_CONFIRMED out of
    nf_conntrack_hash_check_insert()
    - netfilter: conntrack: fix wrong ct->timeout value
    - wifi: iwlwifi: fw: fix memory leak in debugfs
    - ixgbe: Allow flow hash to be set via ethtool
    - ixgbe: Enable setting RSS table to default values
    - net/mlx5e: Don't clone flow post action attributes second time
    - net/mlx5: E-switch, Create per vport table based on devlink encap mode
    - net/mlx5: E-switch, Don't destroy indirect table in split rule
    - net/mlx5e: Fix error flow in representor failing to add vport rx rule
    - net/mlx5: Suspend auxiliary devices only in case of PCI device suspend
    - net/mlx5: Use recovery timeout on sync reset flow
    - net/mlx5e: Nullify table pointer when failing to create
    - net: stmmac:fix system hang when setting up tag_8021q VLAN for DSA ports
    - bpf: Fix race between btf_put and btf_idr walk.
    - bpf: Don't EFAULT for getsockopt with optval=NULL
    - netfilter: nf_tables: don't write table validation state without mutex
    - net/sched: sch_fq: fix integer overflow of "credit"
    - ipv4: Fix potential uninit variable access bug in __ip_make_skb()
    - Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to
    unfinished work"
    - netlink: Use copy_to_user() for optval in netlink_getsockopt().
    - [x86] net: amd: Fix link leak when verifying config failed
    - tcp/udp: Fix memleaks of sk and zerocopy skbs with TX timestamp.
    - [x86] ASoC: cs35l41: Only disable internal boost
    - drivers: staging: rtl8723bs: Fix locking in _rtw_join_timeout_handler()
    - drivers: staging: rtl8723bs: Fix locking in rtw_scan_timeout_handler()
    - [arm64] usb: host: xhci-rcar: remove leftover quirk handling
    - [arm64,armhf] usb: dwc3: gadget: Change condition for processing suspend
    event
    - [armhf] serial: stm32: Re-assert RTS/DE GPIO in RS485 mode only if more
    data are transmitted
    - iio: light: max44009: add missing OF device matching
    - [arm64,armhf] spi: imx: Don't skip cleanup in remove's error path
    - [x86] ASoC: soc-compress: Inherit atomicity from DAI link for Compress FE
    - [arm64,armhf] PCI: imx6: Install the fault handler only on compatible
    match
    - ASoC: es8316: Handle optional IRQ assignment
    - [arm64] spi: qup: Don't skip cleanup in remove's error path
    - [x86] vmci_host: fix a race condition in vmci_host_poll() causing GPF
    - of: Fix modalias string generation
    - [amd64] HID: amd_sfh: Correct the structure fields
    - [amd64] HID: amd_sfh: Correct the sensor enable and disable command
    - [amd64] HID: amd_sfh: Fix illuminance value
    - [amd64] HID: amd_sfh: Add support for shutdown operation
    - [amd64] HID: amd_sfh: Correct the stop all command
    - [amd64] HID: amd_sfh: Increase sensor command timeout for SFH1.1
    - [amd64] HID: amd_sfh: Handle "no sensors" enabled for SFH1.1
    - cacheinfo: Check sib_leaf in cache_leaves_are_shared()
    - [arm64] coresight: etm_pmu: Set the module field
    - PCI/PM: Extend D3hot delay for NVIDIA HDA controllers
    - spi: cadence-quadspi: fix suspend-resume implementations
    - [arm64,armhf] usb: chipidea: fix missing goto in `ci_hdrc_probe`
    - [arm64] tty: serial: fsl_lpuart: adjust buffer length to the intended size
    - serial: 8250: Add missing wakeup event reporting
    - spi: cadence-quadspi: use macro DEFINE_SIMPLE_DEV_PM_OPS
    - [x86] staging: rtl8192e: Fix W_DISABLE# does not work after stop/start
    - [arm64] spmi: Add a check for remove callback when removing a SPMI driver
    - virtio_ring: don't update event idx on get_buf
    - [powerpc*] rtas: use memmove for potentially overlapping buffer copy
    - sched/fair: Fix inaccurate tally of ttwu_move_affine
    - perf/core: Fix hardlockup failure caused by perf throttle
    - Revert "objtool: Support addition to set CFA base"
    - sched/rt: Fix bad task migration for rt tasks
    - tracing/user_events: Ensure write index cannot be negative
    - [amd64] IB/hifi1: add a null check of kzalloc_node in
    hfi1_ipoib_txreq_init
    - [amd64] RDMA/rdmavt: Delete unnecessary NULL check
    - workqueue: Fix hung time report of worker pools
    - [armhf] rtc: omap: include header for omap_rtc_power_off_program prototype
    - RDMA/mlx4: Prevent shift wrapping in set_user_sq_size()
    - [arm64,armhf] rtc: meson-vrtc: Use ktime_get_real_ts64() to get the
    current time
    - clk: add missing of_node_put() in "assigned-clocks" property parsing
    - [arm64] power: supply: rk817: Fix low SOC bugs
    - RDMA/cm: Trace icm_send_rej event before the cm state is reset
    - RDMA/srpt: Add a check for valid 'mad_agent' pointer
    - [amd64] IB/hfi1: Fix SDMA mmu_rb_node not being evicted in LRU order
    - [amd64] IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA
    requests
    - [arm64,armhf] clk: imx: fracn-gppll: fix the rate table
    - [arm64,armhf] clk: imx: fracn-gppll: disable hardware select control
    - NFSv4.1: Always send a RECLAIM_COMPLETE after establishing lease
    - [amd64] iommu/amd: Set page size bitmap during V2 domain allocation
    - [arm64] Input: raspberrypi-ts - fix refcount leak in rpi_ts_probe
    - swiotlb: relocate PageHighMem test away from rmem_swiotlb_setup
    - swiotlb: fix debugfs reporting of reserved memory pools
    - RDMA/mlx5: Check pcie_relaxed_ordering_enabled() in UMR
    - RDMA/mlx5: Fix flow counter query via DEVX
    - SUNRPC: remove the maximum number of retries in call_bind_status
    - RDMA/mlx5: Use correct device num_ports when modify DC
    - timekeeping: Fix references to nonexistent ktime_get_fast_ns()
    - SMB3: Add missing locks to protect deferred close file list
    - SMB3: Close deferred file handles in case of handle lease break
    - ext4: fix i_disksize exceeding i_size problem in paritally written case
    - ext4: fix use-after-free read in ext4_find_extent for bigalloc + inline
    - [arm64] dmaengine: mv_xor_v2: Fix an error code.
    - [armhf] leds: tca6507: Fix error handling of using
    fwnode_property_read_string
    - soundwire: cadence: rename sdw_cdns_dai_dma_data as sdw_cdns_dai_runtime
    - [x86] soundwire: intel: don't save hw_params for use in prepare
    - [arm64,armhf] phy: tegra: xusb: Add missing tegra_xusb_port_unregister for
    usb2_port and ulpi_port
    - [arm64,armhf] pinctrl-bcm2835.c: fix race condition when setting gpio dir
    - [x86] ACPI: PM: Do not turn of unused power resources on the Toshiba Click
    Mini
    - PM: hibernate: Turn snapshot_test into global variable
    - PM: hibernate: Do not get block device exclusively in test_resume mode
    - afs: Fix updating of i_size with dv jump from server
    - afs: Fix getattr to report server i_size on dirs, not local size
    - afs: Avoid endless loop if file is larger than expected
    - ALSA: usb-audio: Add quirk for Pioneer DDJ-800
    - [x86] ALSA: hda/realtek: Add quirk for ThinkPad P1 Gen 6
    - [x86] ALSA: hda/realtek: Add quirk for ASUS UM3402YAR using CS35L41
    - [x86] ALSA: hda/realtek: support HP Pavilion Aero 13-be0xxx Mute LED
    - [x86] ALSA: hda/realtek: Fix mute and micmute LEDs for an HP laptop
    - nilfs2: do not write dirty data after degenerating to read-only
    - nilfs2: fix infinite loop in nilfs_mdt_get_block()
    - mm: do not reclaim private data from pinned page
    - drbd: correctly submit flush bio on barrier
    - md/raid10: fix null-ptr-deref in raid10_sync_request
    - md/raid5: Improve performance for sequential IO
    - mtd: core: provide unique name for nvmem device, take two
    - mtd: core: fix nvmem error reporting
    - mtd: core: fix error path for nvmem provider
    - mtd: spi-nor: core: Update flash's current address mode when changing
    address mode
    - [arm64] mailbox: zynqmp: Fix IPI isr handling
    - [arm64] mailbox: zynqmp: Fix typo in IPI documentation
    - wifi: rtl8xxxu: RTL8192EU always needs full init
    - wifi: rtw89: fix potential race condition between napi_init and
    napi_enable
    - [arm64] clk: rockchip: rk3399: allow clk_cifout to force clk_cifout_src to
    reparent
    - btrfs: scrub: reject unsupported scrub flags
    - [s390x] dasd: fix hanging blockdevice after request requeue
    - mm/mempolicy: correctly update prev when policy is equal on mbind
    - dm verity: fix error handling for check_at_most_once on FEC
    - dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
    - dm flakey: fix a crash with invalid table line
    - dm ioctl: fix nested locking in table_clear() to remove deadlock concern
    (CVE-2023-2269)
    - dm: don't lock fs when the map is NULL in process of resume
    - blk-iocost: avoid 64-bit division in ioc_timer_fn
    - cifs: fix potential use-after-free bugs in TCP_Server_Info::hostname
    - cifs: protect session status check in smb2_reconnect()
    - [x86] thunderbolt: Use correct type in tb_port_is_clx_enabled() prototype
    - wifi: ath11k: synchronize ath11k_mac_he_gi_to_nl80211_he_gi()'s return
    type
    - [x86] perf auxtrace: Fix address filter entire kernel size
    - [x86] perf intel-pt: Fix CYC timestamps after standalone CBR
    - i40e: Remove unused i40e status codes
    - i40e: Remove string printing for i40e_status
    - i40e: use int for i40e_status
    - scsi: libsas: Grab the ATA port lock in sas_ata_device_link_abort()
    https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.29
    - [arm64,armhf] USB: dwc3: gadget: drop dead hibernation code
    - [arm64,armhf] usb: dwc3: gadget: Execute gadget stop after halting the
    controller
    - drm/vmwgfx: Remove explicit and broken vblank handling
    - drm/vmwgfx: Fix Legacy Display Unit atomic drm support
    - [amd64] crypto: ccp - Clear PSP interrupt status register before calling
    handler
    - [x86] perf/x86/core: Zero @lbr instead of returning -1 in
    x86_perf_get_lbr() stub
    - [x86] KVM: x86: Track supported PERF_CAPABILITIES in kvm_caps
    - [x86] KVM: x86/pmu: Disallow legacy LBRs if architectural LBRs are
    available
    - mtd: spi-nor: spansion: Remove NO_SFDP_FLAGS from s28hs512t info
    - mtd: spi-nor: add SFDP fixups for Quad Page Program
    - mtd: spi-nor: Add a RWW flag
    - mtd: spi-nor: spansion: Enable JFFS2 write buffer for Infineon s28hx
    SEMPER flash
    - [arm64] mailbox: zynq: Switch to flexible array to simplify code
    - [arm64] mailbox: zynqmp: Fix counts of child nodes
    - mtd: spi-nor: spansion: Enable JFFS2 write buffer for Infineon s25hx
    SEMPER flash
    - drm/amd/display: Ext displays with dock can't recognized after resume
    - [x86] KVM: x86/mmu: Avoid indirect call for get_cr3
    - [x86] KVM: x86: Do not unload MMU roots when only toggling CR0.WP with TDP
    enabled
    - [x86] KVM: x86: Make use of kvm_read_cr*_bits() when testing bits
    - [x86] KVM: VMX: Make CR0.WP a guest owned bit
    - [x86] KVM: x86/mmu: Refresh CR0.WP prior to checking for emulated
    permission faults
    - [x86] ASoC: Intel: soc-acpi-byt: Fix "WM510205" match no longer working
    - scsi: qedi: Fix use after free bug in qedi_remove()
    - drm/amd/display: Remove FPU guards from the DML folder
    - drm/amd/display: Add missing WA and MCLK validation
    - drm/amd/display: Return error code on DSC atomic check failure
    - drm/amd/display: Fixes for dcn32_clk_mgr implementation
    - drm/amd/display: Reset OUTBOX0 r/w pointer on DMUB reset
    - drm/amd/display: Do not clear GPINT register when releasing DMUB from
    reset
    - drm/amd/display: Update bounding box values for DCN321
    - ixgbe: Fix panic during XDP_TX with > 64 CPUs
    - [armhf] net/ncsi: clear Tx enable mode when handling a Config required AEN
    - tcp: fix skb_copy_ubufs() vs BIG TCP
    - net/sched: cls_api: remove block_cb from driver_list before freeing
    - sit: update dev->needed_headroom in ipip6_tunnel_bind_dev()
    - net: ipv6: fix skb hash for some RST packets
    - [arm64,armhf] net: dsa: mv88e6xxx: add mv88e6321 rsvd2cpu
    - writeback: fix call of incorrect macro
    - block: Skip destroyed blkg when restart in blkg_destroy_all()
    - [arm64,armhf] watchdog: dw_wdt: Fix the error handling path of
    dw_wdt_drv_probe()
    - [arm64,armhf] i2c: tegra: Fix PEC support for SMBUS block read
    - net/sched: act_mirred: Add carrier check
    - r8152: fix flow control issue of RTL8156A
    - r8152: fix the poor throughput for 2.5G devices

    [continued in next message]

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)