Thank you for your contribution to Debian.
Accepted:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Fri, 28 Jul 2023 23:18:00 +0200
Source: linux
Architecture: source
Version: 6.1.38-2~bpo11+1
Distribution: bullseye-backports
Urgency: high
Maintainer: Debian Kernel Team <
debian-kernel@lists.debian.org>
Changed-By: Ben Hutchings <
benh@debian.org>
Closes: 871216 1033398 1035359 1035824 1036755 1038271 1038665 1038754
Changes:
linux (6.1.38-2~bpo11+1) bullseye-backports; urgency=medium
.
* Rebuild for bullseye-backports:
- Set ABI to 0.deb11.10
.
linux (6.1.38-2) bookworm-security; urgency=high
.
* [x86] cpu/amd: Move the errata checking functionality up
* [x86] cpu/amd: Add a Zenbleed fix (CVE-2023-20593)
.
linux (6.1.38-1) bookworm; urgency=medium
.
* New upstream stable update:
https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.38
- drm/amd/display: Remove optimization for VRR updates
- drm/amd/display: Do not update DRR while BW optimizations pending
- PCI/ACPI: Validate acpi_pci_set_power_state() parameter
- PCI/ACPI: Call _REG when transitioning D-states
- execve: always mark stack as growing down during early stack setup
- perf symbols: Symbol lookup with kcore can fail if multiple segments match
stext
- scripts/tags.sh: Resolve gtags empty index generation
- drm/amdgpu: Validate VM ioctl flags.
- drm/amd/display: Ensure vmin and vmax adjust for DCE
.
[ Salvatore Bonaccorso ]
* drm: use mgr->dev in drm_dbg_kms in drm_dp_add_payload_part2
* mm/mmap: Fix VM_LOCKED check in do_vmi_align_munmap()
* netfilter: nf_tables: do not ignore genmask when looking up chain by id
(CVE-2023-31248)
* netfilter: nf_tables: prevent OOB access in nft_byteorder_eval
(CVE-2023-35001)
.
linux (6.1.37-1) bookworm-security; urgency=high
.
* New upstream stable update:
https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.28
- [x86] ASOC: Intel: sof_sdw: add quirk for Intel 'Rooks County' NUC M15
- [x86] ASoC: Intel: soc-acpi: add table for Intel 'Rooks County' NUC M15
- ASoC: soc-pcm: fix hw->formats cleared by soc_pcm_hw_init() for dpcm
- [x86] hyperv: Block root partition functionality in a Confidential VM
- [x86] ASoC: amd: yc: Add DMI entries to support Victus by HP Laptop
16-e1xxx (8A22)
- [x86] ASoC: Intel: bytcr_rt5640: Add quirk for the Acer Iconia One 7
B1-750
- [x86] ASoC: da7213.c: add missing pm_runtime_disable()
- scsi: mpi3mr: Handle soft reset in progress fault code (0xF002)
- net: sfp: add quirk enabling 2500Base-x for HG MXPD-483II
- [x86] platform/x86: thinkpad_acpi: Add missing T14s Gen1 type to s2idle
quirk list
- wifi: ath11k: reduce the MHI timeout to 20s
- tracing: Error if a trace event has an array for a __field()
- [x86] cpu: Add model number for Intel Arrow Lake processor
- wireguard: timers: cast enum limits members to int in prints
- wifi: mt76: mt7921e: Set memory space enable in PCI_COMMAND if unset
- [arm64] Always load shadow stack pointer directly from the task struct
- [arm64] Stash shadow stack pointer in the task struct on interrupt
- PCI: pciehp: Fix AB-BA deadlock between reset_lock and device_lock
- [arm64] PCI: qcom: Fix the incorrect register usage in v2.7.0 config
- [arm64] phy: qcom-qmp-pcie: sc8180x PCIe PHY has 2 lanes
- [arm64,armhf] usb: dwc3: gadget: Stall and restart EP0 if host is
unresponsive
- [arm64,armhf] USB: dwc3: fix runtime pm imbalance on probe errors
- [arm64,armhf] USB: dwc3: fix runtime pm imbalance on unbind
- [x86] hwmon: (k10temp) Check range scale when CUR_TEMP register is
read-write
- hwmon: (adt7475) Use device_property APIs when configuring polarity
- tpm: Add !tpm_amd_is_rng_defective() to the hwrng_unregister() call site
- posix-cpu-timers: Implement the missing timer_wait_running callback
- blk-stat: fix QUEUE_FLAG_STATS clear
- blk-crypto: don't use struct request_queue for public interfaces
- blk-crypto: add a blk_crypto_config_supported_natively helper
- blk-crypto: move internal only declarations to blk-crypto-internal.h
- blk-crypto: Add a missing include directive
- blk-mq: release crypto keyslot before reporting I/O complete
- blk-crypto: make blk_crypto_evict_key() return void
- blk-crypto: make blk_crypto_evict_key() more robust
- tty: Prevent writing chars during tcsetattr TCSADRAIN/FLUSH
- xhci: fix debugfs register accesses while suspended
- serial: fix TIOCSRS485 locking
- serial: 8250: Fix serial8250_tx_empty() race with DMA Tx
- tick/nohz: Fix cpu_is_hotpluggable() by checking with nohz subsystem
- fs: fix sysctls.c built
- [mips*] fw: Allow firmware to pass a empty env
- ipmi:ssif: Add send_retries increment
- ipmi: fix SSIF not responding under certain cond.
- wifi: mt76: add missing locking to protect against concurrent rx/status
calls
- [arm64,armhf] pwm: meson: Fix axg ao mux parents
- [arm64,armhf] pwm: meson: Fix g12a ao clk81 name
- soundwire: qcom: correct setting ignore bit on v1.5.1
- ring-buffer: Ensure proper resetting of atomic variables in
ring_buffer_reset_online_cpus
- ring-buffer: Sync IRQ works before buffer destruction
- crypto: api - Demote BUG_ON() in crypto_unregister_alg() to a WARN_ON()
- [arm64] crypto: safexcel - Cleanup ring IRQ workqueues on load failure
- [x86] crypto: ccp - Don't initialize CCP for PSP 0x1649
- rcu: Avoid stack overflow due to __rcu_irq_enter_check_tick() being
kprobe-ed
- reiserfs: Add security prefix to xattr name in reiserfs_security_write()
- [x86] KVM: nVMX: Emulate NOPs in L2, and PAUSE if it's not intercepted
- [arm64] KVM: arm64: Avoid vcpu->mutex v. kvm->lock inversion in CPU_ON
- [arm64] KVM: arm64: Avoid lock inversion when setting the VM register
width
- [arm64] KVM: arm64: Use config_lock to protect data ordered against
KVM_RUN
- [arm64] KVM: arm64: Use config_lock to protect vgic state
- [arm64] KVM: arm64: vgic: Don't acquire its_lock before config_lock
- relayfs: fix out-of-bounds access in relay_file_read (CVE-2023-3268)
- drm/amd/display: Remove stutter only configurations
- drm/amd/display: limit timing for single dimm memory
- drm/amd/display: fix PSR-SU/DSC interoperability support
- drm/amd/display: fix a divided-by-zero error
- ksmbd: fix racy issue under cocurrent smb2 tree disconnect
(CVE-2023-32254)
- ksmbd: call rcu_barrier() in ksmbd_server_exit()
- ksmbd: fix NULL pointer dereference in smb2_get_info_filesystem()
- ksmbd: fix memleak in session setup
- ksmbd: not allow guest user on multichannel
- ksmbd: fix deadlock in ksmbd_find_crypto_ctx()
- [x86] ACPI: video: Remove acpi_backlight=video quirk for Lenovo ThinkPad
W530
- [arm64,armhf] i2c: omap: Fix standard mode false ACK readings
- tracing: Fix permissions for the buffer_percent file
- swsmu/amdgpu_smu: Fix the wrong if-condition
- drm/amd/pm: re-enable the gfx imu when smu resume
- [amd64] iommu/amd: Fix "Guest Virtual APIC Table Root Pointer"
configuration in IRTE
- Revert "ubifs: dirty_cow_znode: Fix memleak in error handling path"
- ubifs: Fix memleak when insert_old_idx() failed
- ubi: Fix return value overwrite issue in try_write_vid_and_data()
- ubifs: Free memory for tmpfile name
- ubifs: Fix memory leak in do_rename
- ceph: fix potential use-after-free bug when trimming caps
- xfs: don't consider future format versions valid
- cxl/hdm: Fail upon detecting 0-sized decoders
- bus: mhi: host: Remove duplicate ee check for syserr
- bus: mhi: host: Use mhi_tryset_pm_state() for setting fw error state
- bus: mhi: host: Range check CHDBOFF and ERDBOFF
- rcu: Fix missing TICK_DEP_MASK_RCU_EXP dependency check
- tpm, tpm_tis: Do not skip reset of original interrupt vector
- tpm, tpm_tis: Claim locality before writing TPM_INT_ENABLE register
- tpm, tpm_tis: Disable interrupts if tpm_tis_probe_irq() failed
- tpm, tpm_tis: Claim locality before writing interrupt registers
- tpm, tpm: Implement usage counter for locality
- tpm, tpm_tis: Claim locality when interrupts are reenabled on resume
- erofs: stop parsing non-compact HEAD index if clusterofs is invalid
- erofs: initialize packed inode after root inode is assigned
- erofs: fix potential overflow calculating xattr_isize
- [arm64,armhf] drm/rockchip: Drop unbalanced obj unref
- [x86] drm/i915/dg2: Drop one PCI ID
- drm/vgem: add missing mutex_destroy
- drm/probe-helper: Cancel previous job before starting new one
- drm/amdgpu: register a vga_switcheroo client for MacBooks with apple-gmux
- [arm64] dts: ti: k3-am62-main: Fix GPIO numbers in DT
- [arm64] drm/msm/disp/dpu: check for crtc enable rather than crtc active to
release shared resources
- [amd64] EDAC/skx: Fix overflows on the DRAM row address mapping arrays
- regulator: core: Shorten off-on-delay-us for always-on/boot-on by time
since booted
- [arm64] dts: ti: k3-am62a7-sk: Fix DDR size to full 4GB
- [arm64] dts: qcom: msm8998: Fix stm-stimulus-base reg name
- [arm64] dts: qcom: sdm845: correct dynamic power coefficients
- [x86] MCE/AMD: Use an u64 for bank_map
- [arm64] firmware: qcom_scm: Clear download bit during reboot
- [arm64] drm/bridge: adv7533: Fix adv7533_mode_valid for adv7533 and
adv7535
- [arm64] drm/msm/adreno: drop bogus pm_runtime_set_active()
- [arm64] drm: msm: adreno: Disable preemption on Adreno 510
- [amd64] virt/coco/sev-guest: Double-buffer messages
- [arm64] dts: qcom: sm8350-microsoft-surface: fix USB dual-role mode
property
- [x86] ACPI: processor: Fix evaluating _PDC method when running as Xen dom0
- [arm64] mmc: sdhci-of-esdhc: fix quirk to ignore command inhibit for data
- [armhf] dts: gta04: fix excess dma channel usage
- [arm64] firmware: arm_scmi: Fix xfers allocation on Rx channel
- [arm64] perf/arm-cmn: Move overlapping wp_combine field
- [armhf] dts: stm32: fix spi1 pin assignment on stm32mp15
- [arm64] cpufreq: qcom-cpufreq-hw: Revert adding cpufreq qos
- [arm64,armhf] drm/lima/lima_drv: Add missing unwind goto in
lima_pdev_probe()
- [arm64,armhf] gpu: host1x: Fix potential double free if IOMMU is disabled
- [arm64,armhf] gpu: host1x: Fix memory leak of device names
- drm/ttm: optimize pool allocations a bit v2
- drm/ttm/pool: Fix ttm_pool_alloc error path
- regulator: core: Consistently set mutex_owner when using
ww_mutex_lock_slow()
- regulator: core: Avoid lockdep reports when resolving supplies
- [x86] apic: Fix atomic update of offset in reserve_eilvt_offset()
- [arm64] dts: qcom: msm8994-angler: Fix cont_splash_mem mapping
- [arm64] dts: qcom: msm8994-angler: removed clash with smem_region
- [arm64,armhf] media: cedrus: fix use after free bug in cedrus_remove due
to race condition (CVE-2023-35826)
- [arm64] media: rkvdec: fix use after free bug in rkvdec_remove
(CVE-2023-35829)
- [amd64] platform/x86/amd: pmc: Don't try to read SMU version on Picasso
- [amd64] platform/x86/amd: pmc: Hide SMU version and program attributes for
Picasso
- [amd64] platform/x86/amd: pmc: Don't dump data after resume from s0i3 on
picasso
- [amd64] platform/x86/amd: pmc: Move idlemask check into
`amd_pmc_idlemask_read`
- [amd64] platform/x86/amd: pmc: Utilize SMN index 0 for driver probe
- [amd64] platform/x86/amd: pmc: Move out of BIOS SMN pair for STB init
- media: dm1105: Fix use after free bug in dm1105_remove due to race
condition (CVE-2023-35824)
- media: saa7134: fix use after free bug in saa7134_finidev due to race
condition (CVE-2023-35823)
- media: v4l: async: Return async sub-devices to subnotifier list
- drm/amd/display: Fix potential null dereference
- [arm64,armhf] media: rc: gpio-ir-recv: Fix support for wake-up
- [arm64] media: venus: dec: Fix handling of the start cmd
- [arm64] media: venus: dec: Fix capture formats enumeration order
- [armhf] regulator: stm32-pwr: fix of_iomap leak
- [x86] ioapic: Don't return 0 from arch_dynirq_lower_bound()
- [arm64] kgdb: Set PSTATE.SS to 1 to re-enable single-step
- [arm64] perf/arm-cmn: Fix port detection for CMN-700
- [x86] drm/i915: Make intel_get_crtc_new_encoder() less oopsy
- tick/common: Align tick period with the HZ tick.
- ACPI: bus: Ensure that notify handlers are not running after removal
- cpufreq: use correct unit when verify cur freq
- [arm64] rpmsg: glink: Propagate TX failures in intentless mode as well
- platform/chrome: cros_typec_switch: Add missing fwnode_handle_put()
- wifi: ath6kl: minor fix for allocation size
- wifi: ath9k: hif_usb: fix memory leak of remain_skbs
- wifi: ath11k: Use platform_get_irq() to get the interrupt
- wifi: ath5k: Use platform_get_irq() to get the interrupt
- wifi: ath5k: fix an off by one check in ath5k_eeprom_read_freq_list()
- wifi: ath11k: fix SAC bug on peer addition with sta band migration
- wifi: brcmfmac: support CQM RSSI notification with older firmware
- wifi: ath6kl: reduce WARN to dev_dbg() in callback
- tools: bpftool: Remove invalid \' json escape
- wifi: rtw88: mac: Return the original error from rtw_pwr_seq_parser()
- wifi: rtw88: mac: Return the original error from rtw_mac_power_switch()
- bpf: take into account liveness when propagating precision
- bpf: fix precision propagation verbose logging
- [x86] crypto: qat - fix concurrency issue when device state changes
- scm: fix MSG_CTRUNC setting condition for SO_PASSSEC
- wifi: ath11k: fix deinitialization of firmware resources
- bpf: Remove misleading spec_v1 check on var-offset stack read
- net: pcs: xpcs: remove double-read of link state when using AN
- vlan: partially enable SIOCSHWTSTAMP in container
- net/packet: annotate accesses to po->xmit
- net/packet: convert po->origdev to an atomic flag
- net/packet: convert po->auxdata to an atomic flag
- libbpf: Fix ld_imm64 copy logic for ksym in light skeleton.
- netfilter: keep conntrack reference until IPsecv6 policy checks are done
- bpf: Fix __reg_bound_offset 64->32 var_off subreg propagation
- scsi: target: core: Change the way target_xcopy_do_work() sets restiction
on max I/O
- scsi: target: Move sess cmd counter to new struct
- scsi: target: Move cmd counter allocation
- scsi: target: Pass in cmd counter to use during cmd setup
- scsi: target: iscsit: isert: Alloc per conn cmd counter
- scsi: target: iscsit: Stop/wait on cmds during conn close
- scsi: target: Fix multiple LUN_RESET handling
- scsi: target: iscsit: Fix TAS handling during conn cleanup
- scsi: megaraid: Fix mega_cmd_done() CMDID_INT_CMDS
- net: sunhme: Fix uninitialized return code
- f2fs: handle dqget error in f2fs_transfer_project_quota()
- f2fs: fix uninitialized skipped_gc_rwsem
- f2fs: apply zone capacity to all zone type
- f2fs: compress: fix to call f2fs_wait_on_page_writeback() in
f2fs_write_raw_pages()
- f2fs: fix scheduling while atomic in decompression path
- [arm64,armhf] crypto: caam - Clear some memory in instantiate_rng
- wifi: rtlwifi: fix incorrect error codes in rtl_debugfs_set_write_rfreg()
- wifi: rtlwifi: fix incorrect error codes in rtl_debugfs_set_write_reg()
- scsi: libsas: Add sas_ata_device_link_abort()
- [arm64] scsi: hisi_sas: Handle NCQ error when IPTT is valid
- wifi: rt2x00: Fix memory leak when handling surveys
- f2fs: fix iostat lock protection
- net: qrtr: correct types of trace event parameters
- bpftool: Fix bug for long instructions in program CFG dumps
- crypto: drbg - Only fail when jent is unavailable in FIPS mode
- xsk: Fix unaligned descriptor validation
- f2fs: fix to avoid use-after-free for cached IPU bio
- wifi: iwlwifi: fix duplicate entry in iwl_dev_info_table
- bpf/btf: Fix is_int_ptr()
- scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup()
- [arm64,armhf] net: ethernet: stmmac: dwmac-rk: rework optional clock
handling
- [arm64,armhf] net: ethernet: stmmac: dwmac-rk: fix optional phy regulator
handling
- wifi: ath11k: fix writing to unintended memory region
- bpf, sockmap: fix deadlocks in the sockhash and sockmap
- nvmet: fix error handling in nvmet_execute_identify_cns_cs_ns()
- nvmet: fix Identify Namespace handling
- nvmet: fix Identify Controller handling
- nvmet: fix Identify Active Namespace ID list handling
- nvmet: fix I/O Command Set specific Identify Controller
- nvme: fix async event trace event
- blk-mq: don't plug for head insertions in blk_execute_rq_nowait
- wifi: iwlwifi: debug: fix crash in __iwl_err()
- wifi: iwlwifi: trans: don't trigger d3 interrupt twice
- wifi: iwlwifi: mvm: don't set CHECKSUM_COMPLETE for unsupported protocols
- bpf, sockmap: Revert buggy deadlock fix in the sockhash and sockmap
- f2fs: fix to check return value of f2fs_do_truncate_blocks()
- f2fs: fix to check return value of inc_valid_block_count()
- md/raid10: fix task hung in raid10d
- md/raid10: fix leak of 'r10bio->remaining' for recovery
- md/raid10: fix memleak for 'conf->bio_split'
- md/raid10: fix memleak of md thread
- md/raid10: don't call bio_start_io_acct twice for bio which experienced
read error
- wifi: iwlwifi: mvm: don't drop unencrypted MCAST frames
- wifi: iwlwifi: yoyo: skip dump correctly on hw error
- wifi: iwlwifi: yoyo: Fix possible division by zero
- wifi: iwlwifi: mvm: initialize seq variable
- wifi: iwlwifi: fw: move memset before early return
- jdb2: Don't refuse invalidation of already invalidated buffers
- io_uring/rsrc: use nospec'ed indexes
- wifi: iwlwifi: make the loop for card preparation effective
- wifi: mt76: handle failure of vzalloc in mt7615_coredump_work
- wifi: mt76: add flexible polling wait-interval support
- wifi: mt76: mt7921e: fix probe timeout after reboot
- wifi: mt76: fix 6GHz high channel not be scanned
- mt76: mt7921: fix kernel panic by accessing unallocated eeprom.data
- wifi: mt76: mt7921: fix missing unwind goto in `mt7921u_probe`
- wifi: mt76: mt7921e: improve reliability of dma reset
- wifi: mt76: mt7921e: stop chip reset worker in unregister hook
- wifi: mt76: connac: fix txd multicast rate setting
- wifi: iwlwifi: mvm: check firmware response size
- netfilter: conntrack: restore IPS_CONFIRMED out of
nf_conntrack_hash_check_insert()
- netfilter: conntrack: fix wrong ct->timeout value
- wifi: iwlwifi: fw: fix memory leak in debugfs
- ixgbe: Allow flow hash to be set via ethtool
- ixgbe: Enable setting RSS table to default values
- net/mlx5e: Don't clone flow post action attributes second time
- net/mlx5: E-switch, Create per vport table based on devlink encap mode
- net/mlx5: E-switch, Don't destroy indirect table in split rule
- net/mlx5e: Fix error flow in representor failing to add vport rx rule
- net/mlx5: Suspend auxiliary devices only in case of PCI device suspend
- net/mlx5: Use recovery timeout on sync reset flow
- net/mlx5e: Nullify table pointer when failing to create
- net: stmmac:fix system hang when setting up tag_8021q VLAN for DSA ports
- bpf: Fix race between btf_put and btf_idr walk.
- bpf: Don't EFAULT for getsockopt with optval=NULL
- netfilter: nf_tables: don't write table validation state without mutex
- net/sched: sch_fq: fix integer overflow of "credit"
- ipv4: Fix potential uninit variable access bug in __ip_make_skb()
- Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to
unfinished work"
- netlink: Use copy_to_user() for optval in netlink_getsockopt().
- [x86] net: amd: Fix link leak when verifying config failed
- tcp/udp: Fix memleaks of sk and zerocopy skbs with TX timestamp.
- [x86] ASoC: cs35l41: Only disable internal boost
- drivers: staging: rtl8723bs: Fix locking in _rtw_join_timeout_handler()
- drivers: staging: rtl8723bs: Fix locking in rtw_scan_timeout_handler()
- [arm64] usb: host: xhci-rcar: remove leftover quirk handling
- [arm64,armhf] usb: dwc3: gadget: Change condition for processing suspend
event
- [armhf] serial: stm32: Re-assert RTS/DE GPIO in RS485 mode only if more
data are transmitted
- iio: light: max44009: add missing OF device matching
- [arm64,armhf] spi: imx: Don't skip cleanup in remove's error path
- [x86] ASoC: soc-compress: Inherit atomicity from DAI link for Compress FE
- [arm64,armhf] PCI: imx6: Install the fault handler only on compatible
match
- ASoC: es8316: Handle optional IRQ assignment
- [arm64] spi: qup: Don't skip cleanup in remove's error path
- [x86] vmci_host: fix a race condition in vmci_host_poll() causing GPF
- of: Fix modalias string generation
- [amd64] HID: amd_sfh: Correct the structure fields
- [amd64] HID: amd_sfh: Correct the sensor enable and disable command
- [amd64] HID: amd_sfh: Fix illuminance value
- [amd64] HID: amd_sfh: Add support for shutdown operation
- [amd64] HID: amd_sfh: Correct the stop all command
- [amd64] HID: amd_sfh: Increase sensor command timeout for SFH1.1
- [amd64] HID: amd_sfh: Handle "no sensors" enabled for SFH1.1
- cacheinfo: Check sib_leaf in cache_leaves_are_shared()
- [arm64] coresight: etm_pmu: Set the module field
- PCI/PM: Extend D3hot delay for NVIDIA HDA controllers
- spi: cadence-quadspi: fix suspend-resume implementations
- [arm64,armhf] usb: chipidea: fix missing goto in `ci_hdrc_probe`
- [arm64] tty: serial: fsl_lpuart: adjust buffer length to the intended size
- serial: 8250: Add missing wakeup event reporting
- spi: cadence-quadspi: use macro DEFINE_SIMPLE_DEV_PM_OPS
- [x86] staging: rtl8192e: Fix W_DISABLE# does not work after stop/start
- [arm64] spmi: Add a check for remove callback when removing a SPMI driver
- virtio_ring: don't update event idx on get_buf
- [powerpc*] rtas: use memmove for potentially overlapping buffer copy
- sched/fair: Fix inaccurate tally of ttwu_move_affine
- perf/core: Fix hardlockup failure caused by perf throttle
- Revert "objtool: Support addition to set CFA base"
- sched/rt: Fix bad task migration for rt tasks
- tracing/user_events: Ensure write index cannot be negative
- [amd64] IB/hifi1: add a null check of kzalloc_node in
hfi1_ipoib_txreq_init
- [amd64] RDMA/rdmavt: Delete unnecessary NULL check
- workqueue: Fix hung time report of worker pools
- [armhf] rtc: omap: include header for omap_rtc_power_off_program prototype
- RDMA/mlx4: Prevent shift wrapping in set_user_sq_size()
- [arm64,armhf] rtc: meson-vrtc: Use ktime_get_real_ts64() to get the
current time
- clk: add missing of_node_put() in "assigned-clocks" property parsing
- [arm64] power: supply: rk817: Fix low SOC bugs
- RDMA/cm: Trace icm_send_rej event before the cm state is reset
- RDMA/srpt: Add a check for valid 'mad_agent' pointer
- [amd64] IB/hfi1: Fix SDMA mmu_rb_node not being evicted in LRU order
- [amd64] IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA
requests
- [arm64,armhf] clk: imx: fracn-gppll: fix the rate table
- [arm64,armhf] clk: imx: fracn-gppll: disable hardware select control
- NFSv4.1: Always send a RECLAIM_COMPLETE after establishing lease
- [amd64] iommu/amd: Set page size bitmap during V2 domain allocation
- [arm64] Input: raspberrypi-ts - fix refcount leak in rpi_ts_probe
- swiotlb: relocate PageHighMem test away from rmem_swiotlb_setup
- swiotlb: fix debugfs reporting of reserved memory pools
- RDMA/mlx5: Check pcie_relaxed_ordering_enabled() in UMR
- RDMA/mlx5: Fix flow counter query via DEVX
- SUNRPC: remove the maximum number of retries in call_bind_status
- RDMA/mlx5: Use correct device num_ports when modify DC
- timekeeping: Fix references to nonexistent ktime_get_fast_ns()
- SMB3: Add missing locks to protect deferred close file list
- SMB3: Close deferred file handles in case of handle lease break
- ext4: fix i_disksize exceeding i_size problem in paritally written case
- ext4: fix use-after-free read in ext4_find_extent for bigalloc + inline
- [arm64] dmaengine: mv_xor_v2: Fix an error code.
- [armhf] leds: tca6507: Fix error handling of using
fwnode_property_read_string
- soundwire: cadence: rename sdw_cdns_dai_dma_data as sdw_cdns_dai_runtime
- [x86] soundwire: intel: don't save hw_params for use in prepare
- [arm64,armhf] phy: tegra: xusb: Add missing tegra_xusb_port_unregister for
usb2_port and ulpi_port
- [arm64,armhf] pinctrl-bcm2835.c: fix race condition when setting gpio dir
- [x86] ACPI: PM: Do not turn of unused power resources on the Toshiba Click
Mini
- PM: hibernate: Turn snapshot_test into global variable
- PM: hibernate: Do not get block device exclusively in test_resume mode
- afs: Fix updating of i_size with dv jump from server
- afs: Fix getattr to report server i_size on dirs, not local size
- afs: Avoid endless loop if file is larger than expected
- ALSA: usb-audio: Add quirk for Pioneer DDJ-800
- [x86] ALSA: hda/realtek: Add quirk for ThinkPad P1 Gen 6
- [x86] ALSA: hda/realtek: Add quirk for ASUS UM3402YAR using CS35L41
- [x86] ALSA: hda/realtek: support HP Pavilion Aero 13-be0xxx Mute LED
- [x86] ALSA: hda/realtek: Fix mute and micmute LEDs for an HP laptop
- nilfs2: do not write dirty data after degenerating to read-only
- nilfs2: fix infinite loop in nilfs_mdt_get_block()
- mm: do not reclaim private data from pinned page
- drbd: correctly submit flush bio on barrier
- md/raid10: fix null-ptr-deref in raid10_sync_request
- md/raid5: Improve performance for sequential IO
- mtd: core: provide unique name for nvmem device, take two
- mtd: core: fix nvmem error reporting
- mtd: core: fix error path for nvmem provider
- mtd: spi-nor: core: Update flash's current address mode when changing
address mode
- [arm64] mailbox: zynqmp: Fix IPI isr handling
- [arm64] mailbox: zynqmp: Fix typo in IPI documentation
- wifi: rtl8xxxu: RTL8192EU always needs full init
- wifi: rtw89: fix potential race condition between napi_init and
napi_enable
- [arm64] clk: rockchip: rk3399: allow clk_cifout to force clk_cifout_src to
reparent
- btrfs: scrub: reject unsupported scrub flags
- [s390x] dasd: fix hanging blockdevice after request requeue
- mm/mempolicy: correctly update prev when policy is equal on mbind
- dm verity: fix error handling for check_at_most_once on FEC
- dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
- dm flakey: fix a crash with invalid table line
- dm ioctl: fix nested locking in table_clear() to remove deadlock concern
(CVE-2023-2269)
- dm: don't lock fs when the map is NULL in process of resume
- blk-iocost: avoid 64-bit division in ioc_timer_fn
- cifs: fix potential use-after-free bugs in TCP_Server_Info::hostname
- cifs: protect session status check in smb2_reconnect()
- [x86] thunderbolt: Use correct type in tb_port_is_clx_enabled() prototype
- wifi: ath11k: synchronize ath11k_mac_he_gi_to_nl80211_he_gi()'s return
type
- [x86] perf auxtrace: Fix address filter entire kernel size
- [x86] perf intel-pt: Fix CYC timestamps after standalone CBR
- i40e: Remove unused i40e status codes
- i40e: Remove string printing for i40e_status
- i40e: use int for i40e_status
- scsi: libsas: Grab the ATA port lock in sas_ata_device_link_abort()
https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.29
- [arm64,armhf] USB: dwc3: gadget: drop dead hibernation code
- [arm64,armhf] usb: dwc3: gadget: Execute gadget stop after halting the
controller
- drm/vmwgfx: Remove explicit and broken vblank handling
- drm/vmwgfx: Fix Legacy Display Unit atomic drm support
- [amd64] crypto: ccp - Clear PSP interrupt status register before calling
handler
- [x86] perf/x86/core: Zero @lbr instead of returning -1 in
x86_perf_get_lbr() stub
- [x86] KVM: x86: Track supported PERF_CAPABILITIES in kvm_caps
- [x86] KVM: x86/pmu: Disallow legacy LBRs if architectural LBRs are
available
- mtd: spi-nor: spansion: Remove NO_SFDP_FLAGS from s28hs512t info
- mtd: spi-nor: add SFDP fixups for Quad Page Program
- mtd: spi-nor: Add a RWW flag
- mtd: spi-nor: spansion: Enable JFFS2 write buffer for Infineon s28hx
SEMPER flash
- [arm64] mailbox: zynq: Switch to flexible array to simplify code
- [arm64] mailbox: zynqmp: Fix counts of child nodes
- mtd: spi-nor: spansion: Enable JFFS2 write buffer for Infineon s25hx
SEMPER flash
- drm/amd/display: Ext displays with dock can't recognized after resume
- [x86] KVM: x86/mmu: Avoid indirect call for get_cr3
- [x86] KVM: x86: Do not unload MMU roots when only toggling CR0.WP with TDP
enabled
- [x86] KVM: x86: Make use of kvm_read_cr*_bits() when testing bits
- [x86] KVM: VMX: Make CR0.WP a guest owned bit
- [x86] KVM: x86/mmu: Refresh CR0.WP prior to checking for emulated
permission faults
- [x86] ASoC: Intel: soc-acpi-byt: Fix "WM510205" match no longer working
- scsi: qedi: Fix use after free bug in qedi_remove()
- drm/amd/display: Remove FPU guards from the DML folder
- drm/amd/display: Add missing WA and MCLK validation
- drm/amd/display: Return error code on DSC atomic check failure
- drm/amd/display: Fixes for dcn32_clk_mgr implementation
- drm/amd/display: Reset OUTBOX0 r/w pointer on DMUB reset
- drm/amd/display: Do not clear GPINT register when releasing DMUB from
reset
- drm/amd/display: Update bounding box values for DCN321
- ixgbe: Fix panic during XDP_TX with > 64 CPUs
- [armhf] net/ncsi: clear Tx enable mode when handling a Config required AEN
- tcp: fix skb_copy_ubufs() vs BIG TCP
- net/sched: cls_api: remove block_cb from driver_list before freeing
- sit: update dev->needed_headroom in ipip6_tunnel_bind_dev()
- net: ipv6: fix skb hash for some RST packets
- [arm64,armhf] net: dsa: mv88e6xxx: add mv88e6321 rsvd2cpu
- writeback: fix call of incorrect macro
- block: Skip destroyed blkg when restart in blkg_destroy_all()
- [arm64,armhf] watchdog: dw_wdt: Fix the error handling path of
dw_wdt_drv_probe()
- [arm64,armhf] i2c: tegra: Fix PEC support for SMBUS block read
- net/sched: act_mirred: Add carrier check
- r8152: fix flow control issue of RTL8156A
- r8152: fix the poor throughput for 2.5G devices
[continued in next message]
--- SoupGate-Win32 v1.05
* Origin: fsxNet Usenet Gateway (21:1/5)