This bug was fixed in the package linux - 5.19.0-18.18 --------------- linux (5.19.0-18.18) kinetic; urgency=medium
* kinetic/linux: 5.19.0-18.18 -proposed tracker (LP: #1990366) * 5.19.0-17.17: kernel NULL pointer dereference, address: 0000000000000084 (LP: #1990236) - Revert "UBUNTU: SAUCE: apparmor: Fix regression in stacking due to label flags" - Revert "UBUNTU: [Config] disable SECURITY_APPARMOR_RESTRICT_USERNS" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - add an internal buffer"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - don't wait on cleanup"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - don't waste entropy"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - always add a pending request"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - unregister device before reset"" - Revert "UBUNTU: SAUCE: Revert "virtio-rng: make device ready before making request"" - Revert "UBUNTU: [Config] update configs after apply new apparmor patch set" - Revert "UBUNTU: SAUCE: apparmor: add user namespace creation mediation" - Revert "UBUNTU: SAUCE: selinux: Implement userns_create hook" - Revert "UBUNTU: SAUCE: bpf-lsm: Make bpf_lsm_userns_create() sleepable" - Revert "UBUNTU: SAUCE: security, lsm: Introduce security_create_user_ns()" - Revert "UBUNTU: SAUCE: lsm stacking v37: AppArmor: Remove the exclusive flag" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Add /proc attr entry for full LSM context" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Removed scaffolding function lsmcontext_init" - Revert "UBUNTU: SAUCE: lsm stacking v37: netlabel: Use a struct lsmblob in audit data" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Add record for multiple object contexts" - Revert "UBUNTU: SAUCE: lsm stacking v37: audit: multiple subject lsm values for netlabel" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Add record for multiple task security contexts" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Allow multiple records in an audit_buffer" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Add a function to report multiple LSMs" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Create audit_stamp structure" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Keep multiple LSM data in audit_names" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: security_secid_to_secctx module selection" - Revert "UBUNTU: SAUCE: lsm stacking v37: binder: Pass LSM identifier for confirmation" - Revert "UBUNTU: SAUCE: lsm stacking v37: NET: Store LSM netlabel data in a lsmblob" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: security_secid_to_secctx in netlink netfilter" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmcontext in security_dentry_init_security" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmcontext in security_inode_getsecctx" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmcontext in security_secid_to_secctx" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Ensure the correct LSM context releaser" - Revert "UBUNTU: SAUCE: fixup lsm stacking v37: LSM: Specify which LSM to display" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Specify which LSM to display" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_cred_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_inode_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_current_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_ipc_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_secid_to_secctx" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_secctx_to_secid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_kernel_act_as" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_audit_rule_match" - Revert "UBUNTU: SAUCE: lsm stacking v37: IMA: avoid label collisions with stacked LSMs" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: provide lsm name and id slot mappings" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Add the lsmblob data structure." - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Infrastructure management of the sock security" - Revert "UBUNTU: SAUCE: lsm stacking v37: integrity: disassociate ima_filter_rule from security_audit_rule" - Revert "UBUNTU: SAUCE: apparmor: LSM stacking: switch from SK_CTX() to aa_sock()" - Revert "UBUNTU: SAUCE: apparmor: Add fine grained mediation of posix mqueues" - Revert "UBUNTU: SAUCE: apparmor: rename aa_sock() to aa_unix_sk()" - Revert "UBUNTU: SAUCE: fix shutdown unix socket owner conditional check" - Revert "UBUNTU: SAUCE: apparmor: af_unix mediation" - Revert "UBUNTU: SAUCE: apparmor: patch to provide compatibility with v2.x net rules" - Revert "UBUNTU: SAUCE: apparmor: add/use fns to print hash string hex value" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix aa_class_names[] to match reserved classes" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: rework profile->rules to be a list" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: refactor profile rules and attachments" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: verify loaded permission bits masks don't overlap" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: cleanup: move perm accumulation into perms.h" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: make sure perm indexes are accumulated" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: verify permission table indexes" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: add the ability for policy to specify a permission table" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: make unpack_array return a trianary value" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: group dfa policydb unpacking" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: make transition table unpack generic so it can be reused" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: add user mode flag" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: add mediation class information to auditing" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: extend permissions to support a label and tag string" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: isolate policy backwards compatibility to its own file" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: extend xindex size" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: move dfa perm macros into policy_unpack" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: extend policydb permission set by making use of the xbits" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix apparmor mediating locking non-fs unix sockets" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: Fix abi check to include v8 abi" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: preparse for state being more than just an integer" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert policy lookup to use accept as an index" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: cleanup shared permission struct" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert xmatch lookup to use accept as an index" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert fperm lookup to use accept as an index" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert xmatch to using the new shared policydb struct" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: combine file_rules and aa_policydb into a single shared struct" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: compute policydb permission on profile load" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert xmatch to use aa_perms structure" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: rework and cleanup fperm computation" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: move fperm computation into policy_unpack" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: compute xmatch permissions on profile load" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: compute file permissions on profile load" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: expose compression level limits in sysfs" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: use zstd compression for profile data" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: reserve mediation classes" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix lockdep warning when removing a namespace" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix a memleak in multi_transaction_new()" - Revert "UBUNTU: SAUCE: upstream v6.0: Smack: Provide read control for io_uring_cmd" - Revert "UBUNTU: SAUCE: upstream v6.0: selinux: implement the security_uring_cmd() LSM hook" - Revert "UBUNTU: SAUCE: upstream v6.0: lsm,io_uring: add LSM hooks for the new uring_cmd file op" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: correct config reference to intended one" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: move ptrace mediation to more logical task.{h,c}" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: extend policydb permission set by making use of the xbits" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: allow label to carry debug flags" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Mark alloc_unconfined() as static" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: disable showing the mode as part of a secid to secctx" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Convert secid mapping to XArrays instead of IDR" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: add a kernel label to use on kernel objects" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: test: Remove some casts which are no-longer required" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix undefined reference to `zlib_deflate_workspacesize'" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix match_mnt_path_str() and match_mnt() kernel-doc comment" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Use struct_size() helper in kmalloc()" - Revert "UBUNTU: SAUCE: upstream v6.0: security/apparmor: remove redundant ret variable" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: resolve uninitialized symbol warnings in policy_unpack_test.c" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: don't create raw_sha1 symlink if sha1 hashing is disabled" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Enable tuning of policy paranoid load for embedded systems" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: make export of raw binary profile to userspace optional" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Update help description of policy hash for introspection" - Revert "UBUNTU: SAUCE: upstream v6.0: lsm: Fix kernel-doc" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix kernel-doc" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: fix absroot causing audited secids to begin with =" - Revert "Revert "UBUNTU: SAUCE: apparmor: add/use fns to print hash string hex value"" - Revert "Revert "UBUNTU: SAUCE: apparmor: patch to provide compatibility with v2.x net rules"" - Revert "Revert "UBUNTU: SAUCE: apparmor: af_unix mediation"" - Revert "Revert "UBUNTU: SAUCE: apparmor: fix use after free in sk_peer_label"" - Revert "Revert "UBUNTU SAUCE: apparmor: fix apparmor mediating locking non- fs, unix sockets"" - Revert "Revert "apparmor: fix absroot causing audited secids to begin with ="" - Revert "Revert "UBUNTU: SAUCE: apparmor: disable showing the mode as part of a secid to secctx"" - Revert "Revert "UBUNTU: SAUCE: apparmor: rename aa_sock() to aa_unix_sk()"" - Revert "Revert "UBUNTU: SAUCE: apparmor: LSM stacking: switch from SK_CTX() to aa_sock()"" - Revert "Revert "UBUNTU: SAUCE: LSM: Infrastructure management of the sock security"" - Revert "Revert "UBUNTU: SAUCE: LSM: Create and manage the lsmblob data structure."" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_audit_rule_match"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_kernel_act_as"" - Revert "Revert "UBUNTU: SAUCE: net: Prepare UDS for security module stacking"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_secctx_to_secid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_secid_to_secctx"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_ipc_getsecid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_task_getsecid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_inode_getsecid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_cred_getsecid"" - Revert "Revert "UBUNTU: SAUCE: IMA: Change internal interfaces to use lsmblobs"" - Revert "Revert "UBUNTU: SAUCE: LSM: Specify which LSM to display"" - Revert "Revert "UBUNTU: SAUCE: LSM: Ensure the correct LSM context releaser"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmcontext in security_secid_to_secctx"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmcontext in security_inode_getsecctx"" - Revert "Revert "UBUNTU: SAUCE: LSM: security_secid_to_secctx in netlink netfilter"" - Revert "Revert "UBUNTU: SAUCE: NET: Store LSM netlabel data in a lsmblob"" - Revert "Revert "UBUNTU: SAUCE: Audit: Add new record for multiple process LSM attributes"" - Revert "Revert "UBUNTU: SAUCE: Audit: Fix incorrect static inline function declration."" - Revert "Revert "UBUNTU: SAUCE: Audit: Add a new record for multiple object LSM attributes"" - Revert "Revert "UBUNTU: SAUCE: LSM: Add /proc attr entry for full LSM context"" - Revert "Revert "UBUNTU: SAUCE: AppArmor: Remove the exclusive flag"" - Revert "Revert "UBUNTU: SAUCE: Audit: Fix for missing NULL check"" - Revert "Revert "UBUNTU: SAUCE: apparmor: rename kzfree() to kfree_sensitive()"" - Revert "Revert "UBUNTU: SAUCE: LSM: change ima_read_file() to use lsmblob"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in smk_netlbl_mls()"" - Revert "Revert "UBUNTU: SAUCE: apparmor: Fix build error, make sk parameter const"" - Revert "Revert "UBUNTU: SAUCE: LSM: Specify which LSM to display (using struct cred as input)"" * [22.04 FEAT] Enhanced Interpretation for PCI Functions on s390x - kernel part (LP: #1853306) - s390/sclp: detect the zPCI load/store interpretation facility - s390/sclp: detect the AISII facility - s390/sclp: detect the AENI facility - s390/sclp: detect the AISI facility - s390/airq: pass more TPI info to airq handlers - s390/airq: allow for airq structure that uses an input vector - s390/pci: externalize the SIC operation controls and routine - s390/pci: stash associated GISA designation - s390/pci: stash dtsm and maxstbl - vfio/pci: introduce CONFIG_VFIO_PCI_ZDEV_KVM - KVM: s390: pci: add basic kvm_zdev structure - KVM: s390: pci: do initial setup for AEN interpretation - KVM: s390: pci: enable host forwarding of Adapter Event Notifications - KVM: s390: mechanism to enable guest zPCI Interpretation - KVM: s390: pci: provide routines for enabling/disabling interrupt forwarding - KVM: s390: pci: add routines to start/stop interpretive execution - vfio-pci/zdev: add open/close device hooks - vfio-pci/zdev: add function handle to clp base capability - vfio-pci/zdev: different maxstbl for interpreted devices - KVM: s390: add KVM_S390_ZPCI_OP to manage guest zPCI devices - MAINTAINERS: additional files related kvm s390 pci passthrough - Documentation: kvm: extend KVM_S390_ZPCI_OP subheading underline - KVM: s390: pci: Hook to access KVM lowlevel from VFIO * [22.10 FEAT] [IO2201] Independent Usage of Secondary Physical Function (LP: #1959542) - PCI: Clean up pci_scan_slot() - PCI: Split out next_ari_fn() from next_fn() - PCI: Move jailhouse's isolated function handling to pci_scan_slot() - PCI: Extend isolated function probing to s390 - s390/pci: allow zPCI zbus without a function zero * AMD ACP 6.2 DMIC support (LP: #1989518) - ASoC: amd: add Pink Sardine platform ACP IP register header - ASoC: amd: add Pink Sardine ACP PCI driver - ASoC: amd: add acp6.2 init/de-init functions - ASoC: amd: add platform devices for acp6.2 pdm driver and dmic driver - ASoC: amd: add acp6.2 pdm platform driver - ASoC: amd: add acp6.2 irq handler - ASoC: amd: add acp6.2 pdm driver dma ops - ASoC: amd: add acp6.2 pci driver pm ops - ASoC: amd: add acp6.2 pdm driver pm ops - ASoC: amd: enable Pink Sardine acp6.2 drivers build - ASoC: amd: create platform device for acp6.2 machine driver - ASoC: amd: add Pink Sardine machine driver using dmic - ASoC: amd: enable Pink sardine platform machine driver build. - [Config] Enable audio for AMD PinkSardine * support independent clock and LED GPIOs for Intel IPU6 platforms (LP: #1989046) - SAUCE: platform/x86: int3472: support independent clock and LED GPIOs * CVE-2022-2978 - SAUCE: fs: fix UAF/GPF bug in nilfs_mdt_destroy * Miscellaneous Ubuntu changes - [Config] disable SECURITY_APPARMOR_RESTRICT_USERNS - SAUCE: Add mdev_set_iommu_device() kABI. - SAUCE: apparmor: Fix regression in stacking due to label flags - [Config] update toolchain version * Miscellaneous upstream changes - Revert "drm/i915/opregion: check port number bounds for SWSCI display power state" -- Andrea Righi <andrea.ri...@canonical.com> Wed, 21 Sep 2022 16:28:46 +0200 ** Changed in: linux (Ubuntu Kinetic) Status: Confirmed => Fix Released ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-2978 -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1988732 Title: Kinetic update: v5.19.6 upstream stable release Status in linux package in Ubuntu: Fix Released Status in linux source package in Kinetic: Fix Released Bug description: SRU Justification Impact: The upstream process for stable tree updates is quite similar in scope to the Ubuntu SRU process, e.g., each patch has to demonstrably fix a bug, and each patch is vetted by upstream by originating either directly from a mainline/stable Linux tree or a minimally backported form of that patch. The following upstream stable patches should be included in the Ubuntu kernel: v5.19.6 upstream stable release from git://git.kernel.org/ Linux 5.19.6 bpf: Don't use tnum_range on array range checking for poke descriptors riscv: dts: microchip: mpfs: remove pci axi address translation property riscv: dts: microchip: mpfs: remove bogus card-detect-delay riscv: dts: microchip: mpfs: remove ti,fifo-depth property riscv: dts: microchip: mpfs: fix incorrect pcie child node name scsi: core: Fix passthrough retry counter handling scsi: storvsc: Remove WQ_MEM_RECLAIM from storvsc_error_wq scsi: ufs: core: Enable link lost interrupt arm64/sme: Don't flush SVE register state when handling SME traps arm64/sme: Don't flush SVE register state when allocating SME storage arm64/signal: Flush FPSIMD register state when disabling streaming mode arm64: fix rodata=full perf stat: Clear evsel->reset_group for each stat run perf/x86/intel/ds: Fix precise store latency handling perf/x86/intel/uncore: Fix broken read_counter() for SNB IMC PMU perf python: Fix build when PYTHON_CONFIG is user supplied blk-mq: fix io hung due to missing commit_rqs Documentation/ABI: Mention retbleed vulnerability info file for sysfs drm/amdkfd: Fix isa version for the GC 10.3.7 x86/nospec: Fix i386 RSB stuffing binder_alloc: add missing mmap_lock calls when using the VMA arm64: Fix match_list for erratum 1286807 on Arm Cortex-A76 md: call __md_stop_writes in md_stop Revert "md-raid: destroy the bitmap after destroying the thread" mm/hugetlb: fix hugetlb not supporting softdirty tracking io_uring: fix issue with io_write() not always undoing sb_start_write() Revert "zram: remove double compression logic" riscv: dts: microchip: correct L2 cache interrupts riscv: traps: add missing prototype riscv: signal: fix missing prototype warning xen/privcmd: fix error exit of privcmd_ioctl_dm_op() ocfs2: fix freeing uninitialized resource on ocfs2_dlm_shutdown smb3: missing inode locks in punch hole nouveau: explicitly wait on the fence in nouveau_bo_move_m2mf ACPI: processor: Remove freq Qos request for all CPUs shmem: update folio if shmem_replace_page() updates the page Revert "memcg: cleanup racy sum avoidance code" fbdev: fbcon: Properly revert changes when vc_resize() failed s390: fix double free of GS and RI CBs on fork() failure cifs: skip extra NULL byte in filenames mm/mprotect: only reference swap pfn page if type match mm/hugetlb: avoid corrupting page->mapping in hugetlb_mcopy_atomic_pte bootmem: remove the vmemmap pages from kmemleak in put_page_bootmem s390/mm: do not trigger write fault when vma does not allow VM_WRITE mm/damon/dbgfs: avoid duplicate context directory creation asm-generic: sections: refactor memory_intersects audit: move audit_return_fixup before the filters writeback: avoid use-after-free after removing device loop: Check for overflow while configuring loop x86/PAT: Have pat_enabled() properly reflect state when running on Xen x86/nospec: Unwreck the RSB stuffing x86/bugs: Add "unknown" reporting for MMIO Stale Data x86/sev: Don't use cc_platform_has() for early SEV-SNP calls x86/unwind/orc: Unwind ftrace trampolines with correct ORC entry x86/entry: Fix entry_INT80_compat for Xen PV guests perf/x86/lbr: Enable the branch type for the Arch LBR by default perf/x86/intel: Fix pebs event constraints for ADL x86/boot: Don't propagate uninitialized boot_params->cc_blob_address btrfs: update generation of hole file extent item when merging holes btrfs: fix possible memory leak in btrfs_get_dev_args_from_path() btrfs: check if root is readonly while setting security xattr btrfs: fix space cache corruption and potential double allocations btrfs: add info when mount fails due to stale replace target btrfs: replace: drop assert for suspended replace btrfs: fix silent failure when deleting root reference net: lantiq_xrx200: restore buffer if memory allocation failed net: lantiq_xrx200: fix lock under memory pressure net: lantiq_xrx200: confirm skb is allocated before using net: stmmac: work around sporadic tx issue on link-up ionic: VF initial random MAC address if no assigned mac ionic: fix up issues with handling EAGAIN on FW cmds ionic: clear broken state on generation change rxrpc: Fix locking in rxrpc's sendmsg net: ethernet: mtk_eth_soc: fix hw hash reporting for MTK_NETSYS_V2 net: ethernet: mtk_eth_soc: enable rx cksum offload for MTK_NETSYS_V2 i40e: Fix incorrect address type for IPv6 flow rules ixgbe: stop resetting SYSTIME in ixgbe_ptp_start_cyclecounter net: Fix a data-race around sysctl_somaxconn. net: Fix a data-race around netdev_unregister_timeout_secs. net: Fix a data-race around gro_normal_batch. net: Fix data-races around sysctl_devconf_inherit_init_net. net: Fix data-races around sysctl_fb_tunnels_only_for_init_net. net: Fix a data-race around netdev_budget_usecs. net: Fix data-races around sysctl_max_skb_frags. net: Fix a data-race around netdev_budget. net: Fix a data-race around sysctl_net_busy_read. net: Fix a data-race around sysctl_net_busy_poll. net: Fix a data-race around sysctl_tstamp_allow_data. net: Fix data-races around sysctl_optmem_max. ratelimit: Fix data-races in ___ratelimit(). net: Fix data-races around netdev_tstamp_prequeue. net: Fix data-races around netdev_max_backlog. net: Fix data-races around weight_p and dev_weight_[rt]x_bias. net: Fix data-races around sysctl_[rw]mem_(max|default). netfilter: flowtable: fix stuck flows on cleanup due to pending work netfilter: flowtable: add function to invoke garbage collection immediately netfilter: nf_tables: disallow binding to already bound chain netfilter: nft_tunnel: restrict it to netdev family netfilter: nft_osf: restrict osf to ipv4, ipv6 and inet families netfilter: nf_tables: do not leave chain stats enabled on error netfilter: nft_payload: do not truncate csum_offset and csum_type netfilter: nft_payload: report ERANGE for too long offset and length netfilter: nf_tables: make table handle allocation per-netns friendly netfilter: nf_tables: disallow updates of implicit chain bnxt_en: fix LRO/GRO_HW features in ndo_fix_features callback bnxt_en: fix NQ resource accounting during vf creation on 57500 chips bnxt_en: set missing reload flag in devlink features bnxt_en: Use PAGE_SIZE to init buffer when multi buffer XDP is not in use netfilter: nft_tproxy: restrict to prerouting hook netfilter: ebtables: reject blobs that don't provide all entry points net: ipvtap - add __init/__exit annotations to module init/exit funcs bonding: 802.3ad: fix no transmission of LACPDUs net: moxa: get rid of asymmetry in DMA mapping/unmapping net: phy: Don't WARN for PHY_READY state in mdio_bus_phy_resume() net: ipa: don't assume SMEM is page-aligned net: dsa: microchip: keep compatibility with device tree blobs with no phy-mode net: dsa: microchip: update the ksz_phylink_get_caps net: dsa: microchip: move the port mirror to ksz_common net: dsa: microchip: move vlan functionality to ksz_common net: dsa: microchip: move tag_protocol to ksz_common net: dsa: microchip: move switch chip_id detection to ksz_common net: dsa: microchip: ksz9477: cleanup the ksz9477_switch_detect net/mlx5e: Fix wrong tc flag used when set hw-tc-offload off net/mlx5e: Fix wrong application of the LRO state net/mlx5: Avoid false positive lockdep warning by adding lock_class_key net/mlx5: Fix cmd error logging for manage pages cmd net/mlx5: Disable irq when locking lag_lock net/mlx5: Eswitch, Fix forwarding decision to uplink net/mlx5: LAG, fix logic over MLX5_LAG_FLAG_NDEVS_READY net/mlx5e: Properly disable vlan strip on non-UL reps ice: xsk: use Rx ring's XDP ring when picking NAPI context ice: xsk: prohibit usage of non-balanced queue id nfc: pn533: Fix use-after-free bugs caused by pn532_cmd_timeout r8152: fix the RX FIFO settings when suspending r8152: fix the units of some registers for RTL8156A rose: check NULL rose_loopback_neigh->loopback ntfs: fix acl handling mm/smaps: don't access young/dirty bit if pte unpresent SUNRPC: RPC level errors should set task->tk_rpc_status NFSv4.2 fix problems with __nfs42_ssc_open Revert "net: macsec: update SCI upon MAC address change." fs: require CAP_SYS_ADMIN in target namespace for idmapped mounts xfrm: policy: fix metadata dst->dev xmit null pointer dereference af_key: Do not call xfrm_probe_algs in parallel xfrm: clone missing x->lastused in xfrm_do_migrate Revert "xfrm: update SA curlft.use_time" xfrm: fix refcount leak in __xfrm_policy_check() mt76: mt7921: fix command timeout in AP stop period mm/hugetlb: support write-faults in shared mappings mm/uffd: reset write protection when unregister with wp-mode kprobes: don't call disarm_kprobe() for disabled kprobes kernel/sys_ni: add compat entry for fadvise64_64 parisc: Fix exception handler for fldw and fstw instructions parisc: Make CONFIG_64BIT available for ARCH=parisc64 only cgroup: Fix race condition at rebind_subsystems() audit: fix potential double free on error path from fsnotify_add_inode_mark NFS: Fix another fsync() issue after a server reboot mm/gup: fix FOLL_FORCE COW security issue and remove FOLL_COW To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1988732/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp